Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Recovering From Antivirus Xp 2008 - I Am Stuck


  • Please log in to reply
8 replies to this topic

#1 MichaelM10

MichaelM10

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:05:14 AM

Posted 16 August 2008 - 11:17 PM

This week I've spent several evenings trying to clean my family's home computer (a Dell tower running Windows XP) of an apparent infection of Antivirus XP 2008. It seems to be partially fixed, but it looks like something is still going wrong. I'm not sure what to try next, and would appreciate any suggestions.

Here's what has happened:

The infection by Antivirus XP 2008 looked a lot like the online descriptions -- porn appeared spontaneously on the computer, the screen background was changed to a message saying I had a malware infection, and AntiVirus XP 2008 popped up claiming it had detected numerous infections.

I downloaded and installed Malwarebytes Anti-Malware and ran a quick scan. It took a long time to run because the computer was running so slowly. Also, several messages that looked like the blue screen of death came up during the scan, telling me to reboot. But if I touched any key, the messages went away and MBAM kept running.

When the scan finally concluded, MBAM reported it had found more than 100 infected files, and said all were removed successfully. Since then, I have not seen Antivirus XP 2008 again, and the desktop background is back to plain blue.

However, just to be sure, I ran a full scan with MBAM. At the end of that, it reported it had found and removed several more infected files.

I was worried that some sort of infection might still be going on, so I have run MBAM again several times during the last two days. Each time, it reports finding about a dozen infected registry values (a mix of trojan clickers and trojan agents). It says all were quarantined and deleted successfully. But then they are back again the next time I run the scan.

I am wondering if some part of the infection survived MBAM, or if some other malware is also on the computer. My kids use it to browse, play games, etc, so who knows what might be on it.

One other data point -- Windows Task Manager shows a lot of activity in several instances of svchost.exe (it spikes up to 75% of CPU). That's when I am running no apps. I have the computer disconnected from the Internet because I'm afraid something may be trying to reach out onto the web.

What do you think? Does it sound like there's still an infection(s)? If so, what do you recommend as the next step to fix it?

Thanks in advance.

BC AdBot (Login to Remove)

 


#2 DaChew

DaChew

    Visiting Alien


  • Members
  • 10,317 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:millenium falcon and rockytop
  • Local time:08:14 AM

Posted 17 August 2008 - 04:21 AM

Welcome to Bleeping Computer

Your analysis sound right, you are still infected, probably with a backdoor/rootkit that's reloading those infections, unfortunately MBAM can't always remove everything on it's own. What you need to do with an infection like this is add another program or two to your arsenal.

http://www.bleepingcomputer.com/forums/ind...st&p=913381

After running atf cleaner and SAS from safe mode, run another scan with MBAM, would you post the last MBAM log, the SAS log and a new MBAM log

You could reconnect to the internet to download and update ATF and SAS, personally I like staying disconnected myself.

The hard part is transfering the logs and applying manual definition updates, you also run the risk of infecting another computer.
Chewy

No. Try not. Do... or do not. There is no try.

#3 MichaelM10

MichaelM10
  • Topic Starter

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:05:14 AM

Posted 18 August 2008 - 11:07 PM

Hi, Chewy.

Thanks very much for the quick reply. I thought you only worked on hyperdrives, but I really appreciate the help.

I followed all of your instructions, and I think the situation looks promising. MBAM now reports no infections. I have attached the three logs you asked for below.

What do you think, am I in the clear? Are there any other scans I should run?

If the system now looks OK, any recommendations on which security software I should install to prevent this from happening again?

Thanks again,

Mike

======================

MBAM log prior to running SAS

Malwarebytes' Anti-Malware 1.24
Database version: 1012
Windows 5.1.2600 Service Pack 2

8:26:03 PM 8/16/2008
mbam-log-8-16-2008 (20-26-02).txt

Scan type: Full Scan (C:\|D:\|)
Objects scanned: 366689
Time elapsed: 1 hour(s), 31 minute(s), 48 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 17
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\DriverCheck (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\SystemDriverLoad (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\SystemDriver (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\FDriver (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ADriver (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\DriverLoad (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\DriverLoad (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\DriverCheck (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\SystemDriverLoad (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\winhost (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\winhost1 (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\winhost2 (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\winhost3 (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\winhost4 (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\FDriver (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\ADriver (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\SystemDriver (Trojan.Clicker) -> Quarantined and deleted successfully.

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)


===========

SAS log


SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 08/17/2008 at 07:53 PM

Application Version : 4.15.1000

Core Rules Database Version : 3538
Trace Rules Database Version: 1527

Scan type : Complete Scan
Total Scan Time : 09:03:10

Memory items scanned : 163
Memory threats detected : 0
Registry items scanned : 5235
Registry threats detected : 66
File items scanned : 328999
File threats detected : 548

Trojan.Downloader-SVCHost/Fake
[CDriver] C:\GOOGLE.COM\SVCHOST.EXE
C:\GOOGLE.COM\SVCHOST.EXE
[DDriver] C:\GOOGLE.COM\SVCHOST.EXE
[alpha] C:\GOOGLE.COM\SVCHOST.EXE
[beta] C:\GOOGLE.COM\SVCHOST.EXE
[gamma] C:\GOOGLE.COM\SVCHOST.EXE
[CDriver] C:\GOOGLE.COM\SVCHOST.EXE
[DDriver] C:\GOOGLE.COM\SVCHOST.EXE
[alpha] C:\GOOGLE.COM\SVCHOST.EXE
[beta] C:\GOOGLE.COM\SVCHOST.EXE
[gamma] C:\GOOGLE.COM\SVCHOST.EXE
[CDriver] C:\GOOGLE.COM\SVCHOST.EXE
[DDriver] C:\GOOGLE.COM\SVCHOST.EXE
[alpha] C:\GOOGLE.COM\SVCHOST.EXE
[beta] C:\GOOGLE.COM\SVCHOST.EXE
[gamma] C:\GOOGLE.COM\SVCHOST.EXE
[CDriver] C:\GOOGLE.COM\SVCHOST.EXE
[DDriver] C:\GOOGLE.COM\SVCHOST.EXE
[alpha] C:\GOOGLE.COM\SVCHOST.EXE
[beta] C:\GOOGLE.COM\SVCHOST.EXE
[gamma] C:\GOOGLE.COM\SVCHOST.EXE

Trojan.MSDirect
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNLSVC
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNLSVC#NextInstance
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNLSVC\0000
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNLSVC\0000#Service
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNLSVC\0000#Legacy
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNLSVC\0000#ConfigFlags
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNLSVC\0000#Class
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNLSVC\0000#ClassGUID
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNLSVC\0000#DeviceDesc

Trojan.SystemDriver
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#DriverLoad
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#DriverCheck
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#SystemDriverLoad
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#Winhost
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#Winhost1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#Winhost2
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#Winhost3
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#Winhost4
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#DriverLoad
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#DriverCheck
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#SystemDriverLoad
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#SystemDriver
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#FDriver
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#ADriver
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run#CDriver [ c:\google.com\svchost.exe ]
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#CDriver [ c:\google.com\svchost.exe ]
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run#CDriver [ c:\google.com\svchost.exe ]
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run#DDriver [ c:\google.com\svchost.exe ]
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#DDriver [ c:\google.com\svchost.exe ]
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run#DDriver [ c:\google.com\svchost.exe ]
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run#alpha [ c:\google.com\svchost.exe ]
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#alpha [ c:\google.com\svchost.exe ]
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run#alpha [ c:\google.com\svchost.exe ]
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run#beta [ c:\google.com\svchost.exe ]
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#beta [ c:\google.com\svchost.exe ]
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run#beta [ c:\google.com\svchost.exe ]
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run#gamma [ c:\google.com\svchost.exe ]
HKU\S-1-5-21-1417001333-1708537768-1060284298-1004\Software\Microsoft\Windows\CurrentVersion\Run#gamma [ c:\google.com\svchost.exe ]
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run#gamma [ c:\google.com\svchost.exe ]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#ADriver
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#CDriver [ c:\google.com\svchost.exe ]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#DDriver [ c:\google.com\svchost.exe ]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#FDriver
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#SystemDriver
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#alpha [ c:\google.com\svchost.exe ]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#beta [ c:\google.com\svchost.exe ]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#gamma [ c:\google.com\svchost.exe ]

Adware.Tracking Cookie
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revsci.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.atdmt.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.questionmarket.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.questionmarket.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.doubleclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.doubleclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.avgtechnologies.112.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
statse.webtrendslive.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
server.iad.liveperson.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
server.iad.liveperson.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.mediaplex.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.mediaplex.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ar.atwola.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.edge.ru4.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.statcounter.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.fastclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.tribalfusion.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
ctxtad.tribalfusion.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.msnservices.112.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.msnportal.112.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
statse.webtrendslive.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.ads.pointroll.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.ads.pointroll.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.ads.pointroll.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.ads.pointroll.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.zedo.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.overture.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.adinterax.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.adinterax.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.adinterax.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.partner2profit.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.bluestreak.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.cnn.122.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.tacoda.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.burstnet.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.burstnet.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.burstnet.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
www.smartadserver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
www.smartadserver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
www.smartadserver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.yadro.ru [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.yadro.ru [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.ads.addynamix.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.perf.overture.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.webstat.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.webstat.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.webstat.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.discountmugs.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.secure.discountmugs.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.v7.stats.load.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.v7.stats.load.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revenue.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revenue.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revenue.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revenue.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revenue.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revenue.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revenue.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revenue.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.revenue.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.bfast.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.meetupcom.122.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
rotator.adjuggler.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
rotator.adjuggler.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.belnk.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.linksynergy.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.linksynergy.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.falkag.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.maxserving.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.maxserving.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.stats.adbrite.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
statse.webtrendslive.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.roiservice.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.roiservice.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.qksrv.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.qksrv.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
stats4.clicktracks.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
stats4.clicktracks.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
stats4.clicktracks.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
stats4.clicktracks.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.tradedoubler.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.teenfashion.about.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.adlegend.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
media.adrevolver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
media.adrevolver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.giftscom.122.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.imrworldwide.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.imrworldwide.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.nextag.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.nextag.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.nextag.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.nextag.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.serving-sys.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.serving-sys.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.serving-sys.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.serving-sys.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.bs.serving-sys.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.teenmag.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.teenmag.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.teenpeople.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
www.teenreads.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpresserdd.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpresserdd.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.insightexpresserdd.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.valueclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.adopt.specificclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.vitacost.122.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\j3gnp00w.default\cookies.txt ]
.casalemedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.casalemedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.casalemedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.casalemedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.casalemedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.casalemedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.casalemedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
as.casalemedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.questionmarket.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.questionmarket.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.questionmarket.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.atdmt.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.doubleclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.advertising.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.tradedoubler.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.imrworldwide.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.imrworldwide.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.fastclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.fastclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.fastclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.fastclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.fastclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.fastclick.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.tribalfusion.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
a.tribalfusion.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.adrevolver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
media.adrevolver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
media.adrevolver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
media.adrevolver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
ad.yieldmanager.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.trafficmp.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.trafficmp.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.trafficmp.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.trafficmp.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.trafficmp.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.trafficmp.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.trafficmp.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.trafficmp.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.hitbox.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ehg-wizardsofthecoast.hitbox.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ehg-wizardsofthecoast.hitbox.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ehg-wizardsofthecoast.hitbox.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ehg-wizardsofthecoast.hitbox.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
network.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
login.tracking101.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.precisionclick.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
login.tracking101.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.z1.adserver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.z1.adserver.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.mediaplex.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.atwola.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.2o7.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.partner2profit.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.partner2profit.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.partner2profit.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.partner2profit.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.edge.ru4.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.edge.ru4.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.edge.ru4.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.edge.ru4.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.edge.ru4.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.edge.ru4.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.edge.ru4.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.edge.ru4.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.adinterax.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.adinterax.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
www.burstnet.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.burstnet.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.burstnet.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.adecn.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.as-us.falkag.net [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.bluestreak.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ehg-attworldnet.hitbox.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.adknowledge.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.adknowledge.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ads.pointroll.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ads.pointroll.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ads.pointroll.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ads.pointroll.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
www.burstbeacon.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.ehg-hollywoodmedia.hitbox.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.247realmedia.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.optimost.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.insightexpressai.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
.perf.overture.com [ C:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\e58ibord.Default User\cookies.txt ]
C:\WINDOWS\Cookies\default@pathfinder[1].txt
C:\WINDOWS\Cookies\default@fortunecity[1].txt
C:\WINDOWS\Cookies\default@doubleclick[2].txt
C:\WINDOWS\Cookies\default@hg1.hitbox[2].txt
C:\WINDOWS\Cookies\default@adbureau[1].txt
C:\WINDOWS\Cookies\default@data.coremetrics[1].txt
C:\WINDOWS\Cookies\default@bizrate[2].txt
C:\WINDOWS\Cookies\default@valueclick[1].txt
C:\WINDOWS\Cookies\default@fastclick[2].txt
C:\WINDOWS\Cookies\default@superstats[1].txt
C:\WINDOWS\Cookies\default@linksynergy[2].txt
C:\WINDOWS\Cookies\default@www.qksrv[2].txt
C:\WINDOWS\Cookies\default@www.commission-junction[1].txt
C:\WINDOWS\Cookies\default@bfast[2].txt
C:\WINDOWS\Cookies\default@bilbo.counted[2].txt
C:\WINDOWS\Cookies\default@w128.hitbox[1].txt
C:\WINDOWS\Cookies\default@ads.iboost[2].txt
C:\WINDOWS\Cookies\default@ads.x10[2].txt
C:\WINDOWS\Cookies\default@atdmt[1].txt
C:\WINDOWS\Cookies\default@clickability[1].txt
C:\WINDOWS\Cookies\default@questionmarket[1].txt
C:\WINDOWS\Cookies\default@ehg.hitbox[1].txt
C:\WINDOWS\Cookies\default@aecmedia[1].txt
C:\WINDOWS\Cookies\default@www.highcountrygardens[2].txt
C:\WINDOWS\Cookies\default@z1.adserver[3].txt
C:\WINDOWS\Cookies\default@tribalfusion[5].txt
C:\WINDOWS\Cookies\default@stats.klsoft[1].txt
C:\WINDOWS\Cookies\default@advertising[1].txt
C:\WINDOWS\Cookies\default@ad1.impulsebuy[2].txt
C:\WINDOWS\Cookies\default@tribalfusion[1].txt
C:\WINDOWS\Cookies\default@hc2.humanclick[2].txt
C:\WINDOWS\Cookies\default@ads.enliven[1].txt
C:\WINDOWS\Cookies\default@hitbox[2].txt
C:\WINDOWS\Cookies\default@mediaplex[2].txt
C:\WINDOWS\Cookies\default@adserver.tribuneinteractive[2].txt
C:\WINDOWS\Cookies\default@ads.link4ads[2].txt
C:\WINDOWS\Cookies\default@ehg-espn.hitbox[2].txt
C:\WINDOWS\Cookies\default@webpower[1].txt
C:\WINDOWS\Cookies\default@web1.realtracker[1].txt
C:\WINDOWS\Cookies\default@rd.advertising[1].txt
C:\WINDOWS\Cookies\default@servedby.advertising[2].txt
C:\WINDOWS\Cookies\default@etracking[1].txt
C:\WINDOWS\Cookies\default@mediaplex[4].txt
C:\WINDOWS\Cookies\default@fastclick[3].txt
C:\WINDOWS\Cookies\default@hg1.hitbox[1].txt
C:\WINDOWS\Cookies\default@oas-central.realmedia[1].txt
C:\WINDOWS\Cookies\default@targetnet[2].txt
C:\WINDOWS\Cookies\default@ehg-dig.hitbox[4].txt
C:\WINDOWS\Cookies\default@ehg.hitbox[3].txt
C:\WINDOWS\Cookies\default@superstats[2].txt
C:\WINDOWS\Cookies\default@hitbox[4].txt
C:\WINDOWS\Cookies\default@advertising[3].txt
C:\WINDOWS\Cookies\default@hitbox[3].txt
C:\WINDOWS\Cookies\default@bluestreak[1].txt
C:\WINDOWS\Cookies\default@ehg-espn.hitbox[3].txt
C:\WINDOWS\Cookies\default@zedo[2].txt
C:\WINDOWS\Cookies\default@webpdp.gator[2].txt
C:\WINDOWS\Cookies\default@valueclick[2].txt
C:\WINDOWS\Cookies\default@ad1.impulsebuy[1].txt
C:\WINDOWS\Cookies\default@pointroll[2].txt
C:\WINDOWS\Cookies\default@questionmarket[2].txt
C:\WINDOWS\Cookies\default@tribalfusion[3].txt
C:\WINDOWS\Cookies\default@adultpain.nursing.uiowa[1].txt
C:\WINDOWS\Cookies\default@servedby.advertising[1].txt
C:\WINDOWS\Cookies\default@linksynergy[1].txt
C:\WINDOWS\Cookies\default@partner2profit[3].txt
C:\WINDOWS\Cookies\default@ehg-dig.hitbox[2].txt
C:\WINDOWS\Cookies\default@xiti[1].txt
C:\WINDOWS\Cookies\default@mediaplex[1].txt
C:\WINDOWS\Cookies\default@adserver.trb[2].txt
C:\WINDOWS\Cookies\default@advertising[2].txt
C:\WINDOWS\Cookies\default@dealtime[1].txt
C:\WINDOWS\Cookies\default@hg1.hitbox[4].txt
C:\WINDOWS\Cookies\default@server.iad.liveperson[2].txt
C:\WINDOWS\Cookies\default@ehg-dig.hitbox[1].txt
C:\WINDOWS\Cookies\default@hitbox[1].txt
C:\WINDOWS\Cookies\default@bluestreak[3].txt
C:\WINDOWS\Cookies\default@targetnet[1].txt
C:\WINDOWS\Cookies\default@zedo[5].txt
C:\WINDOWS\Cookies\default@www.popuptraffic[2].txt
C:\WINDOWS\Cookies\default@fastclick[5].txt
C:\WINDOWS\Cookies\default@zedo[3].txt
C:\WINDOWS\Cookies\default@analogstats[2].txt
C:\WINDOWS\Cookies\default@superstats[3].txt
C:\WINDOWS\Cookies\default@2o7[2].txt
C:\WINDOWS\Cookies\default@oas-central.realmedia[2].txt
C:\WINDOWS\Cookies\default@realmedia[1].txt
C:\WINDOWS\Cookies\default@ads.tripod.lycos.co[2].txt
C:\WINDOWS\Cookies\default@tribalfusion[4].txt
C:\WINDOWS\Cookies\default@trafficmp[2].txt
C:\WINDOWS\Cookies\default@pointroll[3].txt
C:\WINDOWS\Cookies\default@questionmarket[3].txt
C:\WINDOWS\Cookies\default@servedby.advertising[3].txt
C:\WINDOWS\Cookies\default@mediaplex[3].txt
C:\WINDOWS\Cookies\default@valueclick[3].txt
C:\WINDOWS\Cookies\default@tripod[2].txt
C:\WINDOWS\Cookies\default@trafficmp[3].txt
C:\WINDOWS\Cookies\default@webpdp.gator[1].txt
C:\WINDOWS\Cookies\default@linksynergy[4].txt
C:\WINDOWS\Cookies\default@ads.telegraph.co[1].txt
C:\WINDOWS\Cookies\default@fastclick[1].txt
C:\WINDOWS\Cookies\default@insightfirst[2].txt
C:\WINDOWS\Cookies\default@ads.specificpop[2].txt
C:\WINDOWS\Cookies\default@z1.adserver[1].txt
C:\WINDOWS\Cookies\default@carmelmission.sitetracker[2].txt
C:\WINDOWS\Cookies\default@ru4[2].txt
C:\WINDOWS\Cookies\default@revenue[3].txt
C:\WINDOWS\Cookies\default@w128.hitbox[2].txt
C:\WINDOWS\Cookies\default@2o7[4].txt
C:\WINDOWS\Cookies\default@tripod[3].txt
C:\WINDOWS\Cookies\default@addynamix[1].txt
C:\WINDOWS\Cookies\default@aff.oddcast[1].txt
C:\WINDOWS\Cookies\default@adrevolver[2].txt
C:\WINDOWS\Cookies\default@hypercount[2].txt
C:\WINDOWS\Cookies\default@adserv.internetfuel[1].txt
C:\WINDOWS\Cookies\default@ad-flow[1].txt
C:\WINDOWS\Cookies\default@valueclick[4].txt
C:\WINDOWS\Cookies\default@ads.as4x.tmcs[1].txt
C:\WINDOWS\Cookies\default@www.vibrantmedia[1].txt
C:\WINDOWS\Cookies\default@ehg-learningco.hitbox[2].txt
C:\WINDOWS\Cookies\default@adnetintads.valuead[1].txt
C:\WINDOWS\Cookies\default@w101.hitbox[2].txt
C:\WINDOWS\Cookies\default@www.pacificpoker[2].txt
C:\WINDOWS\Cookies\default@counter.hitslink[1].txt
C:\WINDOWS\Cookies\default@tribalfusion[2].txt
C:\WINDOWS\Cookies\default@ads.valuead[1].txt
C:\WINDOWS\Cookies\default@targetnet[4].txt
C:\WINDOWS\Cookies\default@ads.adworldnetwork[1].txt
C:\WINDOWS\Cookies\default@trafficmp[1].txt
C:\WINDOWS\Cookies\default@questionmarket[4].txt
C:\WINDOWS\Cookies\default@ehg-bizjournals.hitbox[2].txt
C:\WINDOWS\Cookies\default@ads.addesktop[2].txt
C:\WINDOWS\Cookies\default@www.qksrv[1].txt
C:\WINDOWS\Cookies\default@ehg-foxsports.hitbox[2].txt
C:\WINDOWS\Cookies\default@hg1.hitbox[3].txt
C:\WINDOWS\Cookies\default@www.commission-junction[3].txt
C:\WINDOWS\Cookies\default@stat.dealtime[1].txt
C:\WINDOWS\Cookies\default@dealtime[3].txt
C:\WINDOWS\Cookies\default@adtech[2].txt
C:\WINDOWS\Cookies\default@stats.absol.co[1].txt
C:\WINDOWS\Cookies\default@overture[2].txt
C:\WINDOWS\Cookies\default@overture[1].txt
C:\WINDOWS\Cookies\default@ehg-cbs.hitbox[2].txt
C:\WINDOWS\Cookies\default@fastclick[7].txt
C:\WINDOWS\Cookies\default@2o7[1].txt
C:\WINDOWS\Cookies\default@advertising[5].txt
C:\WINDOWS\Cookies\default@adviva[2].txt
C:\WINDOWS\Cookies\default@ads.specificpop[1].txt
C:\WINDOWS\Cookies\default@2o7[6].txt
C:\WINDOWS\Cookies\default@zedo[4].txt
C:\WINDOWS\Cookies\default@linksynergy[3].txt
C:\WINDOWS\Cookies\default@fastclick[4].txt
C:\WINDOWS\Cookies\default@bluestreak[2].txt
C:\WINDOWS\Cookies\default@ehg-gardeners.hitbox[2].txt
C:\WINDOWS\Cookies\default@servedby.advertising[5].txt
C:\WINDOWS\Cookies\default@targetnet[3].txt
C:\WINDOWS\Cookies\default@mediamgr.ugo[2].txt
C:\WINDOWS\Cookies\default@adv.webmd[1].txt
C:\WINDOWS\Cookies\default@bluestreak[5].txt
C:\WINDOWS\Cookies\default@click-fr[1].txt
C:\WINDOWS\Cookies\default@fastclick[9].txt
C:\WINDOWS\Cookies\default@tripod[4].txt
C:\WINDOWS\Cookies\default@findwhat[1].txt
C:\WINDOWS\Cookies\default@overture[3].txt
C:\WINDOWS\Cookies\default@ads.adorigin[1].txt
C:\WINDOWS\Cookies\default@adorigin[2].txt
C:\WINDOWS\Cookies\default@hitbox[5].txt
C:\WINDOWS\Cookies\default@fastclick[6].txt
C:\WINDOWS\Cookies\default@mediaplex[5].txt
C:\WINDOWS\Cookies\default@clickagents[1].txt
C:\WINDOWS\Cookies\default@addynamix[3].txt
C:\WINDOWS\Cookies\default@advertising[4].txt
C:\WINDOWS\Cookies\default@ehg-cbs.hitbox[3].txt
C:\WINDOWS\Cookies\default@hg1.hitbox[6].txt
C:\WINDOWS\Cookies\default@linksynergy[5].txt
C:\WINDOWS\Cookies\default@amazingmedia[1].txt
C:\WINDOWS\Cookies\default@alikatzrox.freestats[2].txt
C:\WINDOWS\Cookies\default@atwola[1].txt
C:\WINDOWS\Cookies\default@bannerspace[1].txt
C:\WINDOWS\Cookies\default@tribalfusion[6].txt
C:\WINDOWS\Cookies\default@www.nextag[1].txt
C:\WINDOWS\Cookies\default@qksrv[1].txt
C:\WINDOWS\Cookies\default@www.commission-junction[4].txt
C:\WINDOWS\Cookies\default@www.homeclick[2].txt
C:\WINDOWS\Cookies\default@commission-junction[2].txt
C:\WINDOWS\Cookies\default@ads.gamespy[2].txt
C:\WINDOWS\Cookies\default@ehg-dig.hitbox[3].txt
C:\WINDOWS\Cookies\default@media[2].txt
C:\WINDOWS\Cookies\default@gostats[2].txt
C:\WINDOWS\Cookies\default@nextag[1].txt
C:\WINDOWS\Cookies\default@hg1.hitbox[7].txt
C:\WINDOWS\Cookies\default@ads.specificclick[1].txt
C:\WINDOWS\Cookies\default@revenue[2].txt
C:\WINDOWS\Cookies\default@mediatrack.revenue[2].txt
C:\WINDOWS\Cookies\default@media[1].txt
C:\WINDOWS\Cookies\default@bs.serving-sys[2].txt
C:\WINDOWS\Cookies\default@adcentriconline[2].txt
C:\WINDOWS\Cookies\default@mediaplex[6].txt
C:\WINDOWS\Cookies\default@valueclick[5].txt
C:\WINDOWS\Cookies\default@questionmarket[5].txt
C:\WINDOWS\Cookies\default@www.entrepreneur[1].txt
C:\WINDOWS\Cookies\default@servedby.advertising[4].txt
C:\WINDOWS\Cookies\default@addynamix[2].txt
C:\WINDOWS\Cookies\default@ads.as4x.tmcs.ticketmaster[2].txt
C:\WINDOWS\Cookies\default@trafficmp[5].txt
C:\WINDOWS\Cookies\default@ads.x10[3].txt
C:\WINDOWS\Cookies\default@fastclick[8].txt
C:\WINDOWS\Cookies\default@adserver.checkm8[2].txt
C:\WINDOWS\Cookies\default@ads.fredericksburg[1].txt
C:\WINDOWS\Cookies\default@bravenet[1].txt
C:\WINDOWS\Cookies\default@serving-sys[2].txt
C:\WINDOWS\Cookies\default@pointroll[4].txt
C:\WINDOWS\Cookies\default@superstats[4].txt
C:\WINDOWS\Cookies\default@fortunecity[3].txt
C:\WINDOWS\Cookies\default@hg1.hitbox[5].txt
C:\WINDOWS\Cookies\default@hotlog[1].txt
C:\WINDOWS\Cookies\default@counter.search[1].txt
C:\WINDOWS\Cookies\default@bannerspace[2].txt
C:\WINDOWS\Cookies\default@adserver[1].txt
C:\WINDOWS\Cookies\default@ads.specificclick[2].txt
C:\WINDOWS\Cookies\default@hitbox[6].txt
C:\WINDOWS\Cookies\default@ehg-hasbro.hitbox[1].txt
C:\WINDOWS\Cookies\default@qksrv[3].txt
C:\WINDOWS\Cookies\default@commission-junction[1].txt
C:\WINDOWS\Cookies\default@ehg-buyseasons.hitbox[1].txt
C:\WINDOWS\Cookies\default@bizrate[3].txt
C:\WINDOWS\Cookies\default@z1.adserver[2].txt
C:\WINDOWS\Cookies\default@advertising[6].txt
C:\WINDOWS\Cookies\default@edge.ru4[2].txt
C:\WINDOWS\Cookies\default@questionmarket[7].txt
C:\WINDOWS\Cookies\default@atwola[2].txt
C:\WINDOWS\Cookies\default@pro-market[1].txt
C:\WINDOWS\Cookies\default@bfast[1].txt
C:\WINDOWS\Cookies\default@www.a2zwordfinder[1].txt
C:\WINDOWS\Cookies\default@adinterax[1].txt
C:\WINDOWS\Cookies\default@realmedia[3].txt
C:\WINDOWS\Cookies\default@statcounter[2].txt
C:\WINDOWS\Cookies\default@specificpop[2].txt
C:\WINDOWS\Cookies\default@ehg-wizardsofthecoast.hitbox[1].txt
C:\WINDOWS\Cookies\default@ads.gorillanation[1].txt
C:\WINDOWS\Cookies\default@www.findarticles[1].txt
C:\WINDOWS\Cookies\default@clickability[3].txt
C:\WINDOWS\Cookies\default@as-us.falkag[1].txt
C:\WINDOWS\Cookies\default@a.as-us.falkag[2].txt
C:\WINDOWS\Cookies\default@ehg-space.hitbox[2].txt
C:\WINDOWS\Cookies\default@www.burstbeacon[1].txt
C:\WINDOWS\Cookies\default@valueclick[6].txt
C:\WINDOWS\Cookies\default@insightexpress[1].txt
C:\WINDOWS\Cookies\default@ehg-wss.hitbox[1].txt
C:\WINDOWS\Cookies\default@ehg-bestbuy.hitbox[2].txt
C:\WINDOWS\Cookies\default@websponsors[2].txt
C:\WINDOWS\Cookies\default@bluestreak[4].txt
C:\WINDOWS\Cookies\default@adserv[2].txt
C:\WINDOWS\Cookies\default@intellisrv[1].txt
C:\WINDOWS\Cookies\default@icc.intellisrv[2].txt
C:\WINDOWS\Cookies\default@ads.guardian.co[1].txt
C:\WINDOWS\Cookies\default@zedo[1].txt
C:\WINDOWS\Cookies\default@specificclick[2].txt
C:\WINDOWS\Cookies\default@ehg-dig.hitbox[6].txt
C:\WINDOWS\Cookies\default@www.countryclubs[1].txt
C:\WINDOWS\Cookies\default@servedby.advertising[7].txt
C:\WINDOWS\Cookies\default@bilbo.counted[1].txt
C:\WINDOWS\Cookies\default@spylog[1].txt
C:\WINDOWS\Cookies\default@clickthrutraffic[2].txt
C:\WINDOWS\Cookies\default@www.clickxchange[2].txt
C:\WINDOWS\Cookies\default@ehg-info.hitbox[2].txt
C:\WINDOWS\Cookies\default@www.dgm2[1].txt
C:\WINDOWS\Cookies\default@ads.pointroll[2].txt
C:\WINDOWS\Cookies\default@tribalfusion[7].txt
C:\WINDOWS\Cookies\default@server.iad.liveperson[1].txt
C:\WINDOWS\Cookies\default@linksynergy[6].txt
C:\WINDOWS\Cookies\default@bs.serving-sys[1].txt
C:\WINDOWS\Cookies\default@ehg-attworldnet.hitbox[1].txt
C:\WINDOWS\Cookies\default@edge.ru4[3].txt
C:\WINDOWS\Cookies\default@advertising[7].txt
C:\WINDOWS\Cookies\default@z1.adserver[5].txt
C:\WINDOWS\Cookies\default@hitbox[8].txt
C:\WINDOWS\Cookies\default@revenue[4].txt
C:\WINDOWS\Cookies\default@rightmedia[2].txt
C:\WINDOWS\Cookies\default@bravenet[2].txt
C:\WINDOWS\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkyeidjggogmdj6x9ny-1seq-2-2.stats.esomniture[2].txt
C:\WINDOWS\Cookies\default@web4.realtracker[1].txt
C:\WINDOWS\Cookies\default@adrevolver[1].txt
C:\WINDOWS\Cookies\default@partner2profit[2].txt
C:\WINDOWS\Cookies\default@bannerspace[3].txt
C:\WINDOWS\Cookies\default@creativeby.viewpoint[1].txt
C:\WINDOWS\Cookies\default@exitexchange[2].txt
C:\WINDOWS\Cookies\default@ehg-comcast.hitbox[2].txt
C:\WINDOWS\Cookies\default@addynamix[4].txt
C:\WINDOWS\Cookies\default@bluestreak[6].txt
C:\WINDOWS\Cookies\default@superstats[5].txt
C:\WINDOWS\Cookies\default@serving-sys[1].txt
C:\WINDOWS\Cookies\default@casalemedia[2].txt
C:\WINDOWS\Cookies\default@questionmarket[6].txt
C:\WINDOWS\Cookies\default@ad.adition[2].txt
C:\WINDOWS\Cookies\default@ehg-learningco.hitbox[3].txt
C:\WINDOWS\Cookies\default@adknowledge[2].txt
C:\WINDOWS\Cookies\default@www.burstbeacon[3].txt
C:\WINDOWS\Cookies\default@linksynergy[8].txt
C:\WINDOWS\Cookies\default@specificpop[3].txt
C:\WINDOWS\Cookies\default@realmedia[4].txt
C:\WINDOWS\Cookies\default@ad-flow[2].txt
C:\WINDOWS\Cookies\default@ehg-webquest.hitbox[1].txt
C:\WINDOWS\Cookies\default@tk.admin-account[1].txt
C:\WINDOWS\Cookies\default@fastclick[10].txt
C:\WINDOWS\Cookies\default@overture[5].txt
C:\WINDOWS\Cookies\default@trafficmp[6].txt
C:\WINDOWS\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnywgdpcdowudj6x9ny-1seq-2-2.stats.esomniture[2].txt
C:\WINDOWS\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmycgdpcdow6dj6x9ny-1seq-2-2.stats.esomniture[2].txt
C:\WINDOWS\Cookies\default@a-1shz2prbmdj6wvny-1sez2pra2dj6wjny-1maziloaudj6x9ny-1seq-2-2.stats.esomniture[1].txt
C:\WINDOWS\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlokndzekpgidj6x9ny-1seq-2-2.stats.esomniture[2].txt
C:\WINDOWS\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wfk4ggcjchpasdj6x9ny-1seq-2-2.stats.esomniture[1].txt
C:\WINDOWS\Cookies\default@stats.cashring[1].txt
C:\WINDOWS\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmiokcjekqq2dj6x9ny-1seq-2-2.stats.esomniture[2].txt
C:\WINDOWS\Cookies\default@bfast[4].txt
C:\WINDOWS\Cookies\default@stats.manticoretechnology[2].txt
C:\WINDOWS\Cookies\default@specificclick[1].txt
C:\WINDOWS\Cookies\default@ads.specificpop[4].txt
C:\WINDOWS\Cookies\default@ehg-ubisoft.hitbox[1].txt
C:\WINDOWS\Cookies\default@sales.liveperson[1].txt
C:\WINDOWS\Cookies\default@websponsors[1].txt
C:\WINDOWS\Cookies\default@adopt.specificclick[2].txt
C:\WINDOWS\Cookies\default@atwola[3].txt
C:\WINDOWS\Cookies\default@starware[2].txt
C:\WINDOWS\Cookies\default@statcounter[1].txt
C:\WINDOWS\Cookies\default@ads.pointroll[3].txt
C:\WINDOWS\Cookies\default@insightexpress[2].txt
C:\WINDOWS\Cookies\default@ads.as4x.tmcs.ticketmaster[1].txt
C:\WINDOWS\Cookies\default@stat.onestat[2].txt
C:\WINDOWS\Cookies\default@qksrv[4].txt
C:\WINDOWS\Cookies\default@commission-junction[4].txt
C:\WINDOWS\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkywpdpkcpg6dj6x9ny-1seq-2-2.stats.esomniture[2].txt
C:\WINDOWS\Cookies\default@www.serveur-multimedia[1].txt
C:\WINDOWS\Cookies\default@as-us.falkag[3].txt
C:\WINDOWS\Cookies\default@fastclick[12].txt
C:\WINDOWS\Cookies\default@server.iad.liveperson[3].txt
C:\WINDOWS\Cookies\default@track.directleads[2].txt
C:\WINDOWS\Cookies\default@www.keepmedia[1].txt
C:\WINDOWS\Cookies\default@optimost[1].txt
C:\WINDOWS\Cookies\default@keepmedia[1].txt
C:\WINDOWS\Cookies\default@bs.serving-sys[3].txt
C:\WINDOWS\Cookies\default@okcounter[1].txt
C:\WINDOWS\Cookies\default@indextools[2].txt
C:\WINDOWS\Cookies\default@stat.dealtime[3].txt
C:\WINDOWS\Cookies\default@ads.addesktop[1].txt
C:\WINDOWS\Cookies\default@maxserving[2].txt
C:\WINDOWS\Cookies\default@2o7[5].txt
C:\WINDOWS\Cookies\default@icc.intellisrv[3].txt
C:\WINDOWS\Cookies\default@ehg-attworldnet.hitbox[3].txt
C:\WINDOWS\Cookies\default@ehg-dig.hitbox[5].txt
C:\WINDOWS\Cookies\default@a.as-us.falkag[3].txt
C:\WINDOWS\Cookies\default@zedo[7].txt
C:\WINDOWS\Cookies\default@servedby.advertising[6].txt
C:\WINDOWS\Cookies\default@bookfinder[1].txt
C:\WINDOWS\Cookies\default@hitbox[9].txt
C:\WINDOWS\Cookies\default@nextag[3].txt
C:\WINDOWS\Cookies\default@servedby.advertising[9].txt
C:\WINDOWS\Cookies\default@advertising[8].txt
C:\WINDOWS\Cookies\default@ehg-attworldnet.hitbox[2].txt
C:\WINDOWS\Cookies\default@apmebf[2].txt
C:\WINDOWS\Cookies\default@perf.overture[1].txt
C:\WINDOWS\Cookies\default@insightexpress[3].txt
C:\WINDOWS\Cookies\default@maxserving[1].txt
C:\WINDOWS\Cookies\default@trafficmp[4].txt
C:\WINDOWS\Cookies\default@realmedia[5].txt
C:\WINDOWS\Cookies\default@z1.adserver[6].txt
C:\WINDOWS\Cookies\default@websponsors[3].txt
C:\WINDOWS\Cookies\default@adknowledge[1].txt
C:\WINDOWS\Cookies\default@fastclick[11].txt
C:\WINDOWS\Cookies\default@ads.addynamix[1].txt
C:\WINDOWS\Cookies\default@tribalfusion[9].txt
C:\WINDOWS\Cookies\default@atwola[5].txt
C:\WINDOWS\Cookies\anyuser@okcounter[1].txt
C:\WINDOWS\Cookies\default@statcounter[4].txt
C:\WINDOWS\Cookies\anyuser@2o7[1].txt
C:\WINDOWS\Cookies\anyuser@trafficmp[2].txt
C:\WINDOWS\Cookies\anyuser@intellisrv[2].txt
C:\WINDOWS\Cookies\anyuser@bizrate[2].txt
C:\WINDOWS\Cookies\anyuser@atdmt[2].txt
C:\WINDOWS\Cookies\anyuser@mediaplex[1].txt
C:\WINDOWS\Cookies\anyuser@doubleclick[2].txt
C:\WINDOWS\Cookies\anyuser@bluestreak[2].txt
C:\WINDOWS\Cookies\anyuser@bfast[1].txt
C:\WINDOWS\Cookies\anyuser@valueclick[2].txt
C:\WINDOWS\Cookies\anyuser@ehg-attworldnet.hitbox[1].txt
C:\WINDOWS\Cookies\anyuser@adserver.trb[1].txt
C:\WINDOWS\Cookies\anyuser@z1.adserver[2].txt
C:\WINDOWS\Cookies\anyuser@insightexpress[1].txt
C:\WINDOWS\Cookies\anyuser@www.highcountrygardens[1].txt
C:\WINDOWS\Cookies\anyuser@www.sphosting-adserver[1].txt
C:\WINDOWS\Cookies\anyuser@findwhat[1].txt
C:\WINDOWS\Cookies\anyuser@burstnet[2].txt
C:\WINDOWS\Cookies\anyuser@phg.hitbox[1].txt
C:\WINDOWS\Cookies\anyuser@data.coremetrics[1].txt
C:\WINDOWS\Cookies\anyuser@zedo[2].txt
C:\WINDOWS\Cookies\anyuser@rightmedia[2].txt
C:\WINDOWS\Cookies\anyuser@maxserving[1].txt
C:\WINDOWS\Cookies\anyuser@as-us.falkag[1].txt
C:\WINDOWS\Cookies\anyuser@www5.yesadvertising[2].txt
C:\WINDOWS\Cookies\anyuser@fastclick[2].txt
C:\WINDOWS\Cookies\anyuser@bravenet[2].txt
C:\WINDOWS\Cookies\anyuser@serving-sys[2].txt
C:\WINDOWS\Cookies\anyuser@perf.overture[1].txt
C:\WINDOWS\Cookies\anyuser@edge.ru4[2].txt
C:\WINDOWS\Cookies\anyuser@icc.intellisrv[2].txt
C:\WINDOWS\Cookies\anyuser@advertising[1].txt
C:\WINDOWS\Cookies\anyuser@atwola[2].txt
C:\WINDOWS\Cookies\anyuser@realmedia[1].txt
C:\WINDOWS\Cookies\anyuser@ehg-dig.hitbox[1].txt
C:\WINDOWS\Cookies\anyuser@as1.falkag[2].txt
C:\WINDOWS\Cookies\anyuser@server.iad.liveperson[1].txt
C:\WINDOWS\Cookies\anyuser@hitbox[1].txt
C:\WINDOWS\Cookies\anyuser@overture[1].txt
C:\WINDOWS\Cookies\anyuser@ads.addynamix[1].txt
C:\WINDOWS\Cookies\anyuser@adknowledge[1].txt
C:\WINDOWS\Cookies\anyuser@image.masterstats[1].txt
C:\WINDOWS\Cookies\anyuser@hotlog[1].txt
C:\WINDOWS\Cookies\anyuser@tripod[1].txt
C:\WINDOWS\Cookies\anyuser@focalex[1].txt
C:\WINDOWS\Cookies\anyuser@z1.adserver[1].txt
C:\WINDOWS\Cookies\anyuser@fcstats.bcentral[2].txt
C:\WINDOWS\Cookies\anyuser@azjmp[2].txt
C:\WINDOWS\Cookies\anyuser@questionmarket[1].txt
C:\WINDOWS\Cookies\anyuser@bs.serving-sys[2].txt
C:\WINDOWS\Cookies\anyuser@ads.pointroll[1].txt
C:\WINDOWS\Cookies\anyuser@servedby.advertising[2].txt
C:\WINDOWS\Cookies\anyuser@z1.adserver[3].txt
C:\WINDOWS\Cookies\anyuser@advertising[3].txt
C:\WINDOWS\Cookies\anyuser@ath.belnk[1].txt
C:\WINDOWS\Cookies\anyuser@ads.adsag[1].txt
C:\WINDOWS\Cookies\anyuser@trafficmp[1].txt
C:\WINDOWS\Cookies\anyuser@dist.belnk[1].txt
C:\WINDOWS\Cookies\anyuser@belnk[2].txt
C:\WINDOWS\Cookies\anyuser@insightexpresserdd[1].txt
C:\WINDOWS\Cookies\anyuser@2o7[2].txt
C:\WINDOWS\Cookies\anyuser@bluestreak[1].txt
C:\WINDOWS\Cookies\anyuser@burstnet[1].txt
C:\WINDOWS\Cookies\anyuser@questionmarket[2].txt
C:\WINDOWS\Cookies\anyuser@atwola[3].txt
C:\WINDOWS\Cookies\anyuser@cnn.122.2o7[1].txt
C:\WINDOWS\Cookies\anyuser@hitbox[3].txt
C:\WINDOWS\Cookies\anyuser@ads.pointroll[2].txt
C:\WINDOWS\Cookies\anyuser@partner2profit[2].txt
C:\WINDOWS\Cookies\anyuser@ehg-dig.hitbox[3].txt
C:\WINDOWS\Cookies\anyuser@hotbar[2].txt
C:\WINDOWS\Cookies\anyuser@coxhsi.112.2o7[2].txt
C:\WINDOWS\Cookies\anyuser@ads.addynamix[3].txt
C:\WINDOWS\Cookies\anyuser@citi.bridgetrack[2].txt
C:\WINDOWS\Cookies\anyuser@fastclick[3].txt
C:\WINDOWS\Cookies\anyuser@servedby.advertising[1].txt
C:\WINDOWS\Cookies\anyuser@ad.yieldmanager[2].txt
C:\WINDOWS\Cookies\anyuser@bannerspace[1].txt
C:\WINDOWS\Cookies\anyuser@ehg-attworldnet.hitbox[3].txt
C:\WINDOWS\Cookies\anyuser@ehg-fitness.hitbox[1].txt
C:\WINDOWS\Cookies\anyuser@phg.hitbox[2].txt
C:\WINDOWS\Cookies\anyuser@fastclick[1].txt
C:\WINDOWS\Cookies\anyuser@atwola[1].txt
C:\WINDOWS\Cookies\anyuser@statcounter[1].txt
C:\WINDOWS\Cookies\anyuser@edge.ru4[1].txt
C:\WINDOWS\Cookies\anyuser@questionmarket[3].txt
C:\WINDOWS\Cookies\anyuser@2o7[3].txt
C:\WINDOWS\Cookies\anyuser@nextag[2].txt
C:\WINDOWS\Cookies\anyuser@microsofteup.112.2o7[1].txt
C:\WINDOWS\Cookies\anyuser@adopt.specificclick[1].txt
C:\WINDOWS\Cookies\anyuser@casalemedia[2].txt
C:\WINDOWS\Cookies\anyuser@tribalfusion[1].txt
C:\WINDOWS\Cookies\anyuser@atwola[5].txt
C:\WINDOWS\Cookies\anyuser@smileycentral[1].txt
C:\WINDOWS\Cookies\anyuser@counter4.sextracker[1].txt
C:\WINDOWS\Cookies\anyuser@sextracker[2].txt
C:\WINDOWS\Cookies\anyuser@ads.cnn[1].txt
C:\WINDOWS\Cookies\anyuser@cnn.122.2o7[2].txt
C:\WINDOWS\Cookies\anyuser@advertising[4].txt
C:\WINDOWS\Cookies\anyuser@ad.yieldmanager[3].txt
C:\WINDOWS\Cookies\anyuser@ads.addynamix[4].txt
C:\WINDOWS\Cookies\anyuser@casalemedia[3].txt
C:\WINDOWS\Cookies\anyuser@overture[3].txt
C:\WINDOWS\Cookies\anyuser@nakedaspirations[1].txt
C:\WINDOWS\Cookies\anyuser@tribalfusion[2].txt
C:\WINDOWS\Cookies\anyuser@ad.yieldmanager[4].txt
C:\WINDOWS\Cookies\anyuser@fastclick[5].txt
C:\WINDOWS\Cookies\anyuser@microsofteup.112.2o7[2].txt
C:\WINDOWS\Cookies\anyuser@2o7[4].txt
C:\WINDOWS\Cookies\anyuser@focalex[3].txt
C:\WINDOWS\Cookies\anyuser@www.burstnet[1].txt
C:\WINDOWS\Cookies\anyuser@realmedia[2].txt
C:\WINDOWS\Cookies\anyuser@zedo[3].txt
C:\WINDOWS\Cookies\anyuser@tradedoubler[1].txt
C:\WINDOWS\Cookies\anyuser@insightexpressai[2].txt
C:\WINDOWS\Cookies\anyuser@media.fastclick[2].txt
C:\WINDOWS\Cookies\anyuser@adopt.specificclick[2].txt
C:\WINDOWS\Cookies\anyuser@advertising[2].txt
C:\WINDOWS\Cookies\anyuser@2o7[6].txt
C:\WINDOWS\Cookies\anyuser@overture[2].txt
C:\WINDOWS\Cookies\anyuser@hitbox[4].txt
C:\WINDOWS\Cookies\anyuser@ehg-bestbuy.hitbox[1].txt
C:\WINDOWS\Cookies\anyuser@statse.webtrendslive[2].txt
C:\WINDOWS\Cookies\anyuser@msnservices.112.2o7[1].txt
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@ehg-sonycomputer.hitbox[2].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@casalemedia[1].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@edge.ru4[3].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@trafficmp[1].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@2o7[4].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@ad.yieldmanager[2].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@insightexpressai[1].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@2o7[1].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@insightexpressai[3].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@edge.ru4[4].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@2o7[2].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@2o7[3].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@insightexpressai[4].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@trafficmp[2].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@ads.pointroll[4].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@advertising[7].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@2o7[5].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@ad.yieldmanager[1].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@insightexpressai[5].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@fastclick[4].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@2o7[8].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@advertising[8].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@insightexpressai[2].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@2o7[6].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@ad.yieldmanager[4].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@advertising[6].txt.vir
D:\QooBox\Quarantine\D\Documents and Settings\Family\Cookies\family@amateurspixxx[1].txt.vir

Background Agent Application by Broderbund Software
C:\JESE\DSSAGENT.EXE

Rogue.MalwareProtector/Variant
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP692\A0095031.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP692\A0096029.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP692\A0097029.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP692\A0098030.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP692\A0098051.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP693\A0098069.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP693\A0098371.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP693\A0099370.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP694\A0099625.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP694\A0099638.EXE
D:\QOOBOX\QUARANTINE\D\WINDOWS\SYSTEM32\9.TMP.VIR

NotHarmful.Sysinternals Bluescreen Screen Saver
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP692\A0095033.SCR
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP692\A0096031.SCR
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP692\A0098029.SCR
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP692\A0098052.SCR
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP693\A0098068.SCR
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP693\A0098363.SCR
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP693\A0098370.SCR
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP693\A0099373.SCR
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP694\A0099624.SCR
D:\SYSTEM VOLUME INFORMATION\_RESTORE{75BD2A11-0A3B-41C6-A9FA-BAC8D7476AC1}\RP694\A0099639.SCR


=================

Malwarebytes' Anti-Malware 1.24
Database version: 1012
Windows 5.1.2600 Service Pack 2

1:15:17 AM 8/18/2008
mbam-log-8-18-2008 (01-15-17).txt

Scan type: Full Scan (C:\|D:\|)
Objects scanned: 363853
Time elapsed: 3 hour(s), 31 minute(s), 20 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

#4 DaChew

DaChew

    Visiting Alien


  • Members
  • 10,317 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:millenium falcon and rockytop
  • Local time:08:14 AM

Posted 19 August 2008 - 05:10 AM

Looks like you didn't use ATF Cleaner before SAS or those cookies were being replaced?

The restore files need to be purged if your system seems to have returned to normal

I reccomend avira free antivirus, but remember never have 2 AV resident(loading at bootup) programs

I also like spybot s & d for it's immunization features which protects IE from bad web sites, I don't reccomend the teatimer resident protection tho

Winpatrol is another good and powerful layer of protection

Comodo seems to be the free firewall of choice

Using firefox with the no script addon is the best option tho, if you know not to allow the bad scripts on suspect web pages
Chewy

No. Try not. Do... or do not. There is no try.

#5 MichaelM10

MichaelM10
  • Topic Starter

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:05:14 AM

Posted 19 August 2008 - 12:38 PM

Thanks again, Chewy.

Yeah, I did use ATF cleaner before SAS. I followed your instructions very carefully. So the return of the cookies is a little disturbing. Anything I need to check about that?

Is there any special procedure to purge the restore files, or do I just delete the files labeled RESTORE in the log?

Thanks also for the advice on the security software. I really appreciate all your help.

:thumbsup:

Mike

#6 quietman7

quietman7

    Bleepin' Janitor


  • Global Moderator
  • 51,939 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Virginia, USA
  • Local time:07:14 AM

Posted 19 August 2008 - 01:41 PM

So the return of the cookies is a little disturbing. Anything I need to check about that?

Cookies are text string messages given to a Web browser by a Web server. Whenever you visit a web page or navigate different pages with your browser, the web site generates a unique ID number which your browser stores in a text (cookie) file that is sent back to the server each time the browser requests a page from that server. Cookies allow third-party providers such as ad serving networks, spyware or adware providers to track personal information. The main purpose of cookies is to identify users and prepare customized Web pages for them.

The type of cookie that is a cause for some concern are "tracking cookies" because they can be considered a privacy risk. These types of cookies are used to track your Web browsing habits (your movement from site to site). Ad companies use them to record your activity on all sites where they have placed ads. They can keep count of how many times you visited a web page, store your username and password so you don't have to log in and retain your custom settings. When you visit one of these sites, a cookie is placed on your computer. Each time you visit another site that hosts one of their ads, that same cookie is read, and soon they have assembled a list of which of their sites you have visited and which of their ads that you have clicked on. They are used all over the Internet and advertisement companies often plant them whenever your browser loads one of their banners. Cookies are NOT a "threat". As text files they cannot be executed to cause any damage. Cookies do not cause any pop ups nor do they install malware.

As long as you surf the Internet, you are going to get cookies and some of your security programs will flag them for removal. However, you can minimize this by reading "Blocking & Managing Unwanted Cookies" and "Block Third-Party Cookies in IE7".


If there are no more problems or signs of infection, you should Create a New Restore Point to prevent possible reinfection from an old one. Some of the malware you picked up could have been saved in System Restore. Since this is a protected directory your tools cannot access to delete these files, they sometimes can reinfect your system if you accidentally use an old restore point. Setting a new restore point AFTER cleaning your system will help prevent this and enable your computer to "roll-back" to a clean working state.

The easiest and safest way to do this is:
  • Go to Start > Programs > Accessories > System Tools and click "System Restore".
  • Choose the radio button marked "Create a Restore Point" on the first screen then click "Next". Give the R.P. a name, then click "Create". The new point will be stamped with the current date and time. Keep a log of this so you can find it easily should you need to use System Restore.
  • Then use Disk Cleanup to remove all but the most recently created Restore Point.
  • Go to Start > Run and type: Cleanmgr
  • Click "Ok"
  • Disk Cleanup will scan your files for several minutes, then open.
  • Click the "More Options" Tab.
  • Click the "Clean up" button under System Restore.
  • Click Ok. You will be prompted with "Are you sure you want to delete all but the most recent restore point?"
  • Click Yes, then click Ok.
  • Click Yes again when prompted with "Are you sure you want to perform these actions?"
  • Disk Cleanup will remove the files and close automatically.

.
.
Windows Insider MVP 2017-2018
Microsoft MVP Reconnect 2016
Microsoft MVP Consumer Security 2007-2015 kO7xOZh.gif
Member of UNITE, Unified Network of Instructors and Trusted Eliminators

If I have been helpful & you'd like to consider a donation, click 38WxTfO.gif

#7 DaChew

DaChew

    Visiting Alien


  • Members
  • 10,317 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:millenium falcon and rockytop
  • Local time:08:14 AM

Posted 19 August 2008 - 06:25 PM

I have always wondered about what role these "harmless" cookies play. I would rather err on the side of caution and assume malware is attempting to invade your privacy more by locking the cookie file so you can't delete them. Unfortunately I haven't had ANY FIRST HAND EXPERIENCE WITH ATF CLEANER not eliminating all cookies before a scan with SAS from safe mode.

I agree with QM7 the issue is not worth losing any sleep over.

Repeating the cleanup and scan would verify if they wree really gone


http://www.google.com/search?hl=en&q=a...G=Google+Search

when I see an entry like this after a cleanup I throw up a red flag and run everything again
Chewy

No. Try not. Do... or do not. There is no try.

#8 MichaelM10

MichaelM10
  • Topic Starter

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:05:14 AM

Posted 21 August 2008 - 12:46 AM

Just wanted to thank you both very much for your help. I followed all of your advice, and the system now seems to be running properly. Quite a relief!

#9 quietman7

quietman7

    Bleepin' Janitor


  • Global Moderator
  • 51,939 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Virginia, USA
  • Local time:07:14 AM

Posted 21 August 2008 - 08:03 AM

You're welcome on behalf of the Bleeping Computer community.

For Tips to protect yourself against malware and reduce the potential for re-infection, be sure to read:
• "Simple and easy ways to keep your computer safe".
• "How did I get infected?, With steps so it does not happen again!".
• "Best Practices - Internet Safety for 2008".
• "Hardening Windows Security - Part 1 & Part 2".
• "IE Recommended Minimal Security Settings" - "How to Secure Your Web Browser".

• Avoid gaming sites, underground web pages, pirated software sites, and peer-to-peer (P2P) file sharing programs. They are a security risk which can make your computer susceptible to a smörgåsbord of malware infections, remote attacks, exposure of personal information, and identity theft. Many malicious worms and Trojans spread across P2P file sharing networks, gaming and underground sites. Users visiting such pages may see innocuous-looking banner ads containing code which can trigger pop-up ads and Flash ads that install viruses, Trojans and spyware. Ads are a target for hackers because they offer a stealthy way to distribute malware to a wide range of Internet users. The best way to reduce the risk of infection is to avoid these types of web sites and not use any P2P applications. Read P2P Software User Advisories and Risks of File-Sharing Technology.
.
.
Windows Insider MVP 2017-2018
Microsoft MVP Reconnect 2016
Microsoft MVP Consumer Security 2007-2015 kO7xOZh.gif
Member of UNITE, Unified Network of Instructors and Trusted Eliminators

If I have been helpful & you'd like to consider a donation, click 38WxTfO.gif




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users