Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Infected Blaster worm but can't run Malware- blue screen of death- help!


  • This topic is locked This topic is locked
8 replies to this topic

#1 cakegirl

cakegirl

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:01:01 AM

Posted 15 June 2011 - 10:26 AM

Hi,

Our older Dell W/ windows XP was hit by blaster worm fake security virus a few days ago. I have been through the posts on Rkill and Malware bytes, and I did successfully download Rkill to the computer. It does find a worm and stop it (in safe mode with networking), however, when I have tried to run SuperAntiSpyware and Malwarebyes my computer gives me the blue screen of death after only a minute or two into each scan, and says this INVALID_WORK_QUEUE_ITEM . I'm going in circles!! I've also tried backing it up while in safe mode but get the same bluescreen. Any ideas???? Thanks!!

BC AdBot (Login to Remove)

 


#2 invision

invision

  • Members
  • 91 posts
  • OFFLINE
  •  
  • Local time:02:01 AM

Posted 15 June 2011 - 11:47 AM

Hello,lets first see if there is a malware here.

Please download the TDSS Rootkit Removing Tool (TDSSKiller.exe) and save it to your Desktop. <-Important!!!
Be sure to download TDSSKiller.exe (v2.5.4.0) from Kaspersky's website
  • Double-click on TDSSKiller.exe to run the tool for known TDSS variants.
    Vista/Windows 7 users right-click and select Run As Administrator.
  • If TDSSKiller does not run, try renaming it.
  • To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
  • Click the Start Scan button.
  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
  • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
  • A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller.2.4.0.0_27.07.2010_09.o7.26_log.txt) will be created and saved to the root directory (usually Local Disk C:).
  • Copy and paste the contents of that file in your next reply.


If TDSSKiller does not run, try renaming it. To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to these instructions. In some cases it may be necessary to redownload TDSSKiller and randomly rename it before downloading and saving to the computer.

#3 cakegirl

cakegirl
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:01:01 AM

Posted 15 June 2011 - 08:25 PM

Ok- THANK YOU! At least I got it to run without shutting down- yay!
When it rebooted itself and I tried to log on to post the TDSSKiller log, I couldn't because of the popups that were bombarding me. I have no idea if they are ligite or another virus? The popups are from XP Home security 2012 Firewall alert. Even when I am in safemode it pops up to tell me Explorer is infected with Trojan-BNK.Win32.Keylogger.gen then it asks me to either Activate XP home security (which says is reccomended) or continue unprotected. I've just been Xing off of it, but the popups keep coming, and it won't let me get online to email you what the TDSSKiller log, which is in my C drive as you stated.

Here's what the TDSSKiller said it needed to cure before it rebooted. Any ideas? Thanks again for any help!

Rootkit.Win32.TDSS.tdl4
Physical Drive
Name:\Device\Harddisk0\DR0

#4 cakegirl

cakegirl
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:01:01 AM

Posted 16 June 2011 - 09:28 AM

Ok, I am now on my other computer because I can't access anything from my infected laptop. The fake security popups keep redirecting me and blocking my access. I tried logging in again in safe mode with networking, and running RKill. It runs and shows this:

Process was terminated by Rkill or while it was running.
C:\WINDOWS\system32\grpconv.exe

However, the popups are still coming in spite of RK and TDSS and I still can't even get online to post my TDSS log.

#5 invision

invision

  • Members
  • 91 posts
  • OFFLINE
  •  
  • Local time:02:01 AM

Posted 16 June 2011 - 09:59 AM

Can you follow this guide http://www.bleepingcomputer.com/virus-removal/remove-win-7-antispyware-2012

#6 cakegirl

cakegirl
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:01:01 AM

Posted 16 June 2011 - 12:32 PM

Thank you! After reviewing the link you gave it looks to be exactly what is infecting my laptop. I got FIXNCR.reg on the infected computer, ran Rkill, and am currently 5 minutes into a MalwareByes scan with already 5 files found infected.... and the best thing is no blue scrren during any of that!
I'll post when it is finshed and I make sure it has worked, but thank you again for that link, I had searched through te Spyware removal section for so long and not found it. I appreciate the time you've talen to help- and esp. saved my sanity!!

#7 cakegirl

cakegirl
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:01:01 AM

Posted 16 June 2011 - 02:53 PM

It took the Malwarebytes almost 2 hrs from start to finish, but It found 18 or 19 things and got them!
Am logging in right now from my infected computer and have had no signs of the virus at all. My computer is still running quite slow though.

Here is the Malware log:

Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org

Database version: 6862

Windows 5.1.2600 Service Pack 3 (Safe Mode)
Internet Explorer 8.0.6001.18702

6/16/2011 3:10:38 PM
mbam-log-2011-06-16 (15-10-28).txt

Scan type: Full scan (C:\|)
Objects scanned: 227872
Time elapsed: 1 hour(s), 37 minute(s), 41 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 1
Registry Keys Infected: 2
Registry Values Infected: 4
Registry Data Items Infected: 3
Folders Infected: 0
Files Infected: 16

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
c:\WINDOWS\system32\itlnfw32.dll (Trojan.Agent) -> No action taken.

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SETUP.EXE (Trojan.FakeAlert) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\itlnfw32 (Trojan.Agent) -> No action taken.

Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\507477898 (Trojan.ExeShell.Gen) -> Value: 507477898 -> No action taken.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\507477898 (Trojan.ExeShell.Gen) -> Value: 507477898 -> No action taken.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\YDZ1QVAGOJ (Trojan.Downloader) -> Value: YDZ1QVAGOJ -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Security Protection (Rogue.Spypro) -> Value: Security Protection -> No action taken.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

Folders Infected:
(No malicious items detected)

Files Infected:
c:\documents and settings\networkservice\local settings\application data\jmo.exe (Trojan.ExeShell.Gen) -> No action taken.
c:\WINDOWS\Temp\Cp1.exe (Trojan.Downloader) -> No action taken.
c:\documents and settings\networkservice\local settings\application data\echzn.exe (Trojan.FakeAlert) -> No action taken.
c:\documents and settings\Windows\local settings\Temp\E.tmp (Spyware.Passwords.XGen) -> No action taken.
c:\documents and settings\Windows\local settings\temporary internet files\Content.IE5\TT4YHEVI\calc[1].exe (Spyware.Passwords.XGen) -> No action taken.
c:\system volume information\_restore{99405003-f8db-4ba4-8748-d38cb8549ff1}\RP1\A0000023.exe (Trojan.FakeAlert) -> No action taken.
c:\WINDOWS\Temp\Cp0.exe (Trojan.Downloader) -> No action taken.
c:\WINDOWS\Temp\ver616.exe (Spyware.Zbot) -> No action taken.
c:\WINDOWS\Temp\dcmd\setup.exe (Trojan.FakeAlert) -> No action taken.
c:\WINDOWS\Temp\hyrc\out5sd.exe (Adware.Agent) -> No action taken.
c:\WINDOWS\Temp\hyrc\setup.exe (Trojan.Downloader) -> No action taken.
c:\WINDOWS\system32\itlnfw32.dll (Trojan.Agent) -> No action taken.
c:\WINDOWS\system32\itlpfw32.dll (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\explorer.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Tasks\{22116563-108c-42c0-a7ce-60161b75e508}.job (Trojan.Downloader) -> No action taken.
c:\WINDOWS\Tasks\{810401e2-dde0-454e-b0e2-aa89c9e5967c}.job (Trojan.FraudPack) -> No action taken.


I have AVG installed on this computer... is there anything else that you would suggest I need to do?

Thanks again for saving this girl's sanity!!

oops- I thought it said 18-19 infections but I see from the log it was 16

#8 cakegirl

cakegirl
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:01:01 AM

Posted 16 June 2011 - 03:07 PM

UGH! I spoke too soon. As I tried to use google search I am being redirected to other weird search engines like "scour". Any ideas?

#9 cakegirl

cakegirl
  • Topic Starter

  • Members
  • 23 posts
  • OFFLINE
  •  
  • Local time:01:01 AM

Posted 16 June 2011 - 09:17 PM

I decided to run SuperAntispyware to see if it would give me insight and it came up with 15 different things. Log is below. Hope this works!


SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 06/16/2011 at 10:07 PM

Application Version : 4.54.1000

Core Rules Database Version : 7263
Trace Rules Database Version: 5075

Scan type : Complete Scan
Total Scan Time : 00:58:29

Memory items scanned : 485
Memory threats detected : 0
Registry items scanned : 6578
Registry threats detected : 15
File items scanned : 28932
File threats detected : 868

Adware.Tracking Cookie
C:\Documents and Settings\Windows\Cookies\windows@CAXE7XCV.txt
C:\Documents and Settings\Windows\Cookies\windows@media.adfrontiers[2].txt
C:\Documents and Settings\Windows\Cookies\windows@burstnet[4].txt
C:\Documents and Settings\Windows\Cookies\windows@realmedia[8].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.cnn[1].txt
C:\Documents and Settings\Windows\Cookies\windows@hearstmagazines.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@www.hope4teens[1].txt
C:\Documents and Settings\Windows\Cookies\windows@segment-pixel.invitemedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@www.burstbeacon[3].txt
C:\Documents and Settings\Windows\Cookies\windows@ar.atwola[9].txt
C:\Documents and Settings\Windows\Cookies\windows@insightexpressai[5].txt
C:\Documents and Settings\Windows\Cookies\windows@overture[8].txt
C:\Documents and Settings\Windows\Cookies\windows@CATHJZBK.txt
C:\Documents and Settings\Windows\Cookies\windows@teenhelponline[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.wsod[6].txt
C:\Documents and Settings\Windows\Cookies\windows@trafficking.nabbr[1].txt
C:\Documents and Settings\Windows\Cookies\windows@advertise[2].txt
C:\Documents and Settings\Windows\Cookies\windows@CAVM2ENF.txt
C:\Documents and Settings\Windows\Cookies\windows@eyewonder[2].txt
C:\Documents and Settings\Windows\Cookies\windows@richmedia.yahoo[5].txt
C:\Documents and Settings\Windows\Cookies\windows@ewstv.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@burstbeacon[4].txt
C:\Documents and Settings\Windows\Cookies\windows@at.atwola[6].txt
C:\Documents and Settings\Windows\Cookies\windows@fim.122.2o7[4].txt
C:\Documents and Settings\Windows\Cookies\windows@www.countryliving[1].txt
C:\Documents and Settings\Windows\Cookies\windows@2o7[9].txt
C:\Documents and Settings\Windows\Cookies\windows@statcounter[4].txt
C:\Documents and Settings\Windows\Cookies\windows@revsci[3].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[10].txt
C:\Documents and Settings\Windows\Cookies\windows@yieldmanager[6].txt
C:\Documents and Settings\Windows\Cookies\windows@traffic.prod.cobaltgroup[1].txt
C:\Documents and Settings\Windows\Cookies\windows@lucidmedia[5].txt
C:\Documents and Settings\Windows\Cookies\windows@c.gigcount[1].txt
C:\Documents and Settings\Windows\Cookies\windows@specificmedia[4].txt
C:\Documents and Settings\Windows\Cookies\windows@countryliving[2].txt
C:\Documents and Settings\Windows\Cookies\windows@liveperson[4].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[9].txt
C:\Documents and Settings\Windows\Cookies\windows@mediabrandsww[5].txt
C:\Documents and Settings\Windows\Cookies\windows@liveperson[3].txt
C:\Documents and Settings\Windows\Cookies\windows@www.burstnet[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[8].txt
C:\Documents and Settings\Windows\Cookies\windows@interclick[6].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[9].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.undertone[3].txt
C:\Documents and Settings\Windows\Cookies\windows@worshiphousemedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@adserving.autotrader[1].txt
C:\Documents and Settings\Windows\Cookies\windows@stat.dealtime[2].txt
C:\Documents and Settings\Windows\Cookies\windows@g-pixel.invitemedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@data.coremetrics[1].txt
C:\Documents and Settings\Windows\Cookies\windows@serving-sys[4].txt
C:\Documents and Settings\Windows\Cookies\windows@adserver.adtechus[2].txt
C:\Documents and Settings\Windows\Cookies\windows@doubleclick[6].txt
C:\Documents and Settings\Windows\Cookies\windows@cn.clickable[2].txt
C:\Documents and Settings\Windows\Cookies\windows@revsci[7].txt
C:\Documents and Settings\Windows\Cookies\windows@stats.paypal[2].txt
C:\Documents and Settings\Windows\Cookies\windows@lucidmedia[4].txt
C:\Documents and Settings\Windows\Cookies\windows@pointroll[7].txt
C:\Documents and Settings\Windows\Cookies\windows@medhelpinternational.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@CABP8993.txt
C:\Documents and Settings\Windows\Cookies\windows@media6degrees[10].txt
C:\Documents and Settings\Windows\Cookies\windows@trafficmp[4].txt
C:\Documents and Settings\Windows\Cookies\windows@cdn1.trafficmp[3].txt
C:\Documents and Settings\Windows\Cookies\windows@imrworldwide[5].txt
C:\Documents and Settings\Windows\Cookies\windows@r1-ads.ace.advertising[2].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising.sheknows[1].txt
C:\Documents and Settings\Windows\Cookies\windows@adserver.adtechus[3].txt
C:\Documents and Settings\Windows\Cookies\windows@specificclick[3].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.bridgetrack[2].txt
C:\Documents and Settings\Windows\Cookies\windows@CA207HBB.txt
C:\Documents and Settings\Windows\Cookies\windows@counters.gigya[1].txt
C:\Documents and Settings\Windows\Cookies\windows@citi.bridgetrack[8].txt
C:\Documents and Settings\Windows\Cookies\windows@bs.serving-sys[3].txt
C:\Documents and Settings\Windows\Cookies\windows@rotator.hadj7.adjuggler[2].txt
C:\Documents and Settings\Windows\Cookies\windows@hope4teens[2].txt
C:\Documents and Settings\Windows\Cookies\windows@atdmt[6].txt
C:\Documents and Settings\Windows\Cookies\windows@CAR55064.txt
C:\Documents and Settings\Windows\Cookies\windows@ru4[5].txt
C:\Documents and Settings\Windows\Cookies\windows@paypal.112.2o7[4].txt
C:\Documents and Settings\Windows\Cookies\windows@beacon.dmsinsights[5].txt
C:\Documents and Settings\Windows\Cookies\windows@ehg-equifax.hitbox[2].txt
C:\Documents and Settings\Windows\Cookies\windows@azjmp[1].txt
C:\Documents and Settings\Windows\Cookies\windows@shopica[1].txt
C:\Documents and Settings\Windows\Cookies\windows@sales.liveperson[1].txt
C:\Documents and Settings\Windows\Cookies\windows@generalelectric.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@target.db.advertising[2].txt
C:\Documents and Settings\Windows\Cookies\windows@pro-market[1].txt
C:\Documents and Settings\Windows\Cookies\windows@media1.break[1].txt
C:\Documents and Settings\Windows\Cookies\windows@liveperson[8].txt
C:\Documents and Settings\Windows\Cookies\windows@eliteplasticsurgerygr[2].txt
C:\Documents and Settings\Windows\Cookies\windows@liveperson[7].txt
C:\Documents and Settings\Windows\Cookies\windows@walmart.112.2o7[2].txt
C:\Documents and Settings\Windows\Cookies\windows@eas.apm.emediate[2].txt
C:\Documents and Settings\Windows\Cookies\windows@stats.churchanalytics[1].txt
C:\Documents and Settings\Windows\Cookies\windows@yellowpages.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@kaspersky.122.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@legolas-media[2].txt
C:\Documents and Settings\Windows\Cookies\windows@CA19RVK0.txt
C:\Documents and Settings\Windows\Cookies\windows@fluencymedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@CAMUPZ47.txt
C:\Documents and Settings\Windows\Cookies\windows@stryker.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@counter.hitslink[1].txt
C:\Documents and Settings\Windows\Cookies\windows@hpi.rotator.hadj7.adjuggler[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.cpxadroit[3].txt
C:\Documents and Settings\Windows\Cookies\windows@rotator.hadj7.adjuggler[1].txt
C:\Documents and Settings\Windows\Cookies\windows@edgeadx[2].txt
C:\Documents and Settings\Windows\Cookies\windows@adxpose[3].txt
C:\Documents and Settings\Windows\Cookies\windows@lfstmedia[4].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda[3].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[11].txt
C:\Documents and Settings\Windows\Cookies\windows@CAGRAEAC.txt
C:\Documents and Settings\Windows\Cookies\windows@equifaxps.122.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@testdata.coremetrics[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.blog[2].txt
C:\Documents and Settings\Windows\Cookies\windows@countrykitchensa[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.monster[1].txt
C:\Documents and Settings\Windows\Cookies\windows@media303[1].txt
C:\Documents and Settings\Windows\Cookies\windows@bizzclick[1].txt
C:\Documents and Settings\Windows\Cookies\windows@www.countryliving[2].txt
C:\Documents and Settings\Windows\Cookies\windows@myweather.112.2o7[2].txt
C:\Documents and Settings\Windows\Cookies\windows@kantarmedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[10].txt
C:\Documents and Settings\Windows\Cookies\windows@247realmedia[5].txt
C:\Documents and Settings\Windows\Cookies\windows@www.googleadservices[2].txt
C:\Documents and Settings\Windows\Cookies\windows@dmtracker[2].txt
C:\Documents and Settings\Windows\Cookies\windows@basco.122.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@www.googleadservices[3].txt
C:\Documents and Settings\Windows\Cookies\windows@www.googleadservices[5].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.bleepingcomputer[2].txt
C:\Documents and Settings\Windows\Cookies\windows@liveperson[10].txt
C:\Documents and Settings\Windows\Cookies\windows@kontera[1].txt
C:\Documents and Settings\Windows\Cookies\windows@CA1JDH0X.txt
C:\Documents and Settings\Windows\Cookies\windows@in.getclicky[3].txt
C:\Documents and Settings\Windows\Cookies\windows@visitharborcountry[2].txt
C:\Documents and Settings\Windows\Cookies\windows@CA2MRQBZ.txt
C:\Documents and Settings\Windows\Cookies\windows@www.find-quick-results[1].txt
C:\Documents and Settings\Windows\Cookies\windows@server.iad.liveperson[3].txt
C:\Documents and Settings\Windows\Cookies\windows@liveperson[9].txt
C:\Documents and Settings\Windows\Cookies\windows@www.qsstats[2].txt
C:\Documents and Settings\Windows\Cookies\windows@hitbox[1].txt
C:\Documents and Settings\Windows\Cookies\windows@CAZYYAF9.txt
C:\Documents and Settings\Windows\Cookies\windows@rainbowmedia.122.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@fastclick[10].txt
C:\Documents and Settings\Windows\Cookies\windows@apmebf[10].txt
C:\Documents and Settings\Administrator\Cookies\administrator@2o7[1].txt
convoad.technoratimedia.net [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WMWFXDHG ]
crackle.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WMWFXDHG ]
media.kyte.tv [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WMWFXDHG ]
media.mtvnservices.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WMWFXDHG ]
media1.break.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WMWFXDHG ]
secure-us.imrworldwide.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WMWFXDHG ]
C:\Documents and Settings\NetworkService\Cookies\system@247realmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@247realmedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@2o7[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@2o7[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@2o7[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@a1.interclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@a1.interclick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.wsod[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.wsod[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.yieldmanager[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.yieldmanager[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.yieldmanager[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.yieldmanager[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.yieldmanager[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@adbrite[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@adbrite[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@adbrite[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@adbrite[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.adk2[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.ask[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.ask[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.blogtalkradio[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.blogtalkradio[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.blogtalkradio[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.lycos[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.lycos[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.parkingpath[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pointroll[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pointroll[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pointroll[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pointroll[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pointroll[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pointroll[6].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pubmatic[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pureleads[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pureleads[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.undertone[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.undertone[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.undertone[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@adserv.rotator.hadj7.adjuggler[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@adserv.rotator.hadj7.adjuggler[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@adserver.adtechus[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@adserver.adtechus[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@adserving.autotrader[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@adserving.versaneeds[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertise[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertise[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertise[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertise[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertising[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertising[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertising[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertising[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertising[6].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertising[7].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertnation[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertnation[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@adxpose[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@adxpose[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@adxpose[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@apartmentfinder[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@apmebf[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@apmebf[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@apmebf[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@apmebf[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@ar.atwola[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@at.atwola[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@atdmt[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@atdmt[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@atdmt[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@atwola[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@beacon.dmsinsights[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@bs.serving-sys[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@burstnet[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@burstnet[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@casalemedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@casalemedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@casalemedia[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@casalemedia[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@cdn.jemamedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@cdn.jemamedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@cdn.jemamedia[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@cdn.jemamedia[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@cdn1.trafficmp[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@cebwa.122.2o7[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@click.xmlmonetize[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@clickbank[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@clicks.thespecialsearch[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@collective-media[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@collective-media[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@collective-media[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@collective-media[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@collective-media[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@content.yieldmanager[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@content.yieldmanager[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@content.yieldmanager[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@content.yieldmanager[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@content.yieldmanager[6].txt
C:\Documents and Settings\NetworkService\Cookies\system@counter.hitslink[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@countercentral[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@crackle[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@crackle[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@crackle[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@d.mediadakine[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@d.mediadakine[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@d.mediadakine[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@dc.tremormedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@dc.tremormedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@dc.tremormedia[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@dc.tremormedia[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@educationcom.112.2o7[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@educationcom.112.2o7[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ehg-players.hitbox[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ehg-wss.hitbox[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@fastclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@fastclick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@fastclick[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@fastclick[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@fidelity.rotator.hadj7.adjuggler[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@findology[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@findology[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@findology[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@gemoneysallstateghr.112.2o7[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@gotacha.rotator.hadj7.adjuggler[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@hitbox[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@interclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@interclick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[6].txt
C:\Documents and Settings\NetworkService\Cookies\system@kontera[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@kontera[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@kontera[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@legolas-media[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@legolas-media[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@liveperson[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@liveperson[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@m1.mediasrv[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediabrandsww[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediabrandsww[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediabrandsww[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediabrandsww[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediadakine[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediadakine[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediaforge[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediaplex[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediaplex[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediatraffic[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediatraffic[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediatraffic[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@mm.chitika[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@mm.chitika[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@mtvn.112.2o7[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@network.realmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@network.realmedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@network.realmedia[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@phg.hitbox[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@pointroll[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@pointroll[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@pointroll[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@pointroll[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@pointroll[6].txt
C:\Documents and Settings\NetworkService\Cookies\system@pointroll[7].txt
C:\Documents and Settings\NetworkService\Cookies\system@pro-market[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@questionmarket[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@questionmarket[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@questionmarket[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@questionmarket[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@r1-ads.ace.advertising[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@r1-ads.ace.advertising[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@realmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@realmedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@realmedia[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@realmedia[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@realmedia[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@revsci[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@revsci[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@revsci[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@revsci[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@reztrack[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ru4[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ru4[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ru4[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@ru4[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@ru4[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.amazeclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.clicksare[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.clicksclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.clicksfind[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.clicksfind[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.clicksthe[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.clicksthe[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.clickwhale[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.hippofind[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@server.cpmstar[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@server.cpmstar[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@server.iad.liveperson[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@serving-sys[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@serving-sys[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@serving-sys[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@specificclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@specificclick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@specificclick[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@statcounter[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@statcounter[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@statcounter[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@statse.webtrendslive[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@statse.webtrendslive[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@surfaccuracy[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@surfaccuracy[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@tacoda.at.atwola[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@technoratimedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@technoratimedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@teen[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@track.clickpayz[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@track.clickpayz[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@tracking.keywordmax[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@tracking.waterfrontmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@trafficmp[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@trafficmp[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@trafficmp[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@tribalfusion[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@tribalfusion[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@tribalfusion[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@tribalfusion[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@tribalfusion[5].txt
C:\Documents and Settings\NetworkService\Cookies\system@tribalfusion[6].txt
C:\Documents and Settings\NetworkService\Cookies\system@uiadserver[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@viacom.adbureau[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@vidasco.rotator.hadj7.adjuggler[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@viewablemedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@wstat.wibiya[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.apartmentfinder[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.burstbeacon[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.burstnet[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.burstnet[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.burstnet[4].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.crackle[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.find-quick-results[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.find-quick-results[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.findeven[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.findeven[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.findsearchengineresults[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.googleadservices[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.googleadservices[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.mediatraffic[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.mediatraffic[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.teen[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@xiti[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@xml.trafficengine[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@xml.trafficengine[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@yieldmanager[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@yieldmanager[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@yieldmanager[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@zedo[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@zedo[3].txt
acvs.mediaonenetwork.net [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
ads1.msn.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
cdn.eyewonder.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
cdn.insights.gravity.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
cdn.media.abc.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
cdn1.image.freeporn.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
cdn4.specificclick.net [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
content.oddcast.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
core.insightexpressai.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
ia.media-imdb.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
ictv-bd-ec.indieclicktv.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
imagec17.247realmedia.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
konac.kontera.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
macromedia.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
malepornstarsexposed.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.entertonement.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.kyte.tv [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.lintvnews.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.mtvnservices.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.nwcn.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.oprah.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.salemwebnetwork.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.scanscout.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.socialvibe.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.spicynodes.org [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media.victoriassecret.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media1.break.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
media10.washingtonpost.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
mediaservice.mirror-image.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
mediastore.verizonwireless.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
msnbcmedia.msn.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
objects.tremormedia.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
s0.2mdn.net [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
secure-uk.imrworldwide.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
secure-us.imrworldwide.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
serving-sys.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
spe.atdmt.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
speed.pointroll.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
static.discoverymedia.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
track.webgains.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
vidego.multicastmedia.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
wdw2.wdpromedia.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
www.ignitermedia.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
www.naiadsystems.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
www.worshiphousemedia.com [ C:\Documents and Settings\Windows\Application Data\Macromedia\Flash Player\#SharedObjects\L96X2YTK ]
C:\Documents and Settings\Windows\Cookies\windows@247realmedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@247realmedia[3].txt
C:\Documents and Settings\Windows\Cookies\windows@247realmedia[4].txt
C:\Documents and Settings\Windows\Cookies\windows@2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@2o7[2].txt
C:\Documents and Settings\Windows\Cookies\windows@2o7[3].txt
C:\Documents and Settings\Windows\Cookies\windows@2o7[4].txt
C:\Documents and Settings\Windows\Cookies\windows@2o7[5].txt
C:\Documents and Settings\Windows\Cookies\windows@2o7[6].txt
C:\Documents and Settings\Windows\Cookies\windows@2o7[7].txt
C:\Documents and Settings\Windows\Cookies\windows@2o7[8].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[11].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[1].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[2].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[3].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[4].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[5].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[6].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[7].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[8].txt
C:\Documents and Settings\Windows\Cookies\windows@a1.interclick[9].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.wsod[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.wsod[3].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.wsod[4].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.wsod[5].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[10].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[11].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[3].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[4].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[5].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[6].txt
C:\Documents and Settings\Windows\Cookies\windows@ad.yieldmanager[7].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[10].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[1].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[2].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[3].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[4].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[5].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[6].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[7].txt
C:\Documents and Settings\Windows\Cookies\windows@adbrite[8].txt
C:\Documents and Settings\Windows\Cookies\windows@adbureau[1].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[10].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[11].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[1].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[2].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[3].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[4].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[5].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[6].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[7].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[8].txt
C:\Documents and Settings\Windows\Cookies\windows@adinterax[9].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.addynamix[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.advance[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.bridgetrack[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.cpxadroit[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.foodbuzz[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.intergi[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.mlive[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.mlive[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.mlive[3].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.mlive[4].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.nba[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pgatour[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[11].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[3].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[4].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[5].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[6].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[7].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[8].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pointroll[9].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pubmatic[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pubmatic[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pubmatic[3].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pubmatic[4].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.pubmatic[6].txt
C:\Documents and Settings\Windows\Cookies\windows@ads.undertone[1].txt
C:\Documents and Settings\Windows\Cookies\windows@adserver.adtechus[1].txt
C:\Documents and Settings\Windows\Cookies\windows@adtech[1].txt
C:\Documents and Settings\Windows\Cookies\windows@adtech[2].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[10].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[11].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[1].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[2].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[3].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[4].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[5].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[6].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[7].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[8].txt
C:\Documents and Settings\Windows\Cookies\windows@advertising[9].txt
C:\Documents and Settings\Windows\Cookies\windows@adxpose[1].txt
C:\Documents and Settings\Windows\Cookies\windows@adxpose[2].txt
C:\Documents and Settings\Windows\Cookies\windows@apmebf[1].txt
C:\Documents and Settings\Windows\Cookies\windows@apmebf[2].txt
C:\Documents and Settings\Windows\Cookies\windows@apmebf[3].txt
C:\Documents and Settings\Windows\Cookies\windows@apmebf[4].txt
C:\Documents and Settings\Windows\Cookies\windows@apmebf[5].txt
C:\Documents and Settings\Windows\Cookies\windows@apmebf[6].txt
C:\Documents and Settings\Windows\Cookies\windows@apmebf[8].txt
C:\Documents and Settings\Windows\Cookies\windows@apmebf[9].txt
C:\Documents and Settings\Windows\Cookies\windows@ar.atwola[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ar.atwola[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ar.atwola[3].txt
C:\Documents and Settings\Windows\Cookies\windows@ar.atwola[4].txt
C:\Documents and Settings\Windows\Cookies\windows@ar.atwola[5].txt
C:\Documents and Settings\Windows\Cookies\windows@ar.atwola[6].txt
C:\Documents and Settings\Windows\Cookies\windows@ar.atwola[7].txt
C:\Documents and Settings\Windows\Cookies\windows@ar.atwola[8].txt
C:\Documents and Settings\Windows\Cookies\windows@at.atwola[2].txt
C:\Documents and Settings\Windows\Cookies\windows@at.atwola[3].txt
C:\Documents and Settings\Windows\Cookies\windows@at.atwola[4].txt
C:\Documents and Settings\Windows\Cookies\windows@at.atwola[5].txt
C:\Documents and Settings\Windows\Cookies\windows@atdmt[1].txt
C:\Documents and Settings\Windows\Cookies\windows@atdmt[2].txt
C:\Documents and Settings\Windows\Cookies\windows@atdmt[3].txt
C:\Documents and Settings\Windows\Cookies\windows@atdmt[5].txt
C:\Documents and Settings\Windows\Cookies\windows@beacon.dmsinsights[2].txt
C:\Documents and Settings\Windows\Cookies\windows@beacon.dmsinsights[3].txt
C:\Documents and Settings\Windows\Cookies\windows@beacon.dmsinsights[4].txt
C:\Documents and Settings\Windows\Cookies\windows@bs.serving-sys[1].txt
C:\Documents and Settings\Windows\Cookies\windows@bs.serving-sys[2].txt
C:\Documents and Settings\Windows\Cookies\windows@burstbeacon[1].txt
C:\Documents and Settings\Windows\Cookies\windows@burstbeacon[2].txt
C:\Documents and Settings\Windows\Cookies\windows@burstnet[1].txt
C:\Documents and Settings\Windows\Cookies\windows@burstnet[2].txt
C:\Documents and Settings\Windows\Cookies\windows@burstnet[3].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[10].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[11].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[3].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[4].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[5].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[6].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[7].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[8].txt
C:\Documents and Settings\Windows\Cookies\windows@casalemedia[9].txt
C:\Documents and Settings\Windows\Cookies\windows@cdn1.trafficmp[1].txt
C:\Documents and Settings\Windows\Cookies\windows@citi.bridgetrack[1].txt
C:\Documents and Settings\Windows\Cookies\windows@citi.bridgetrack[2].txt
C:\Documents and Settings\Windows\Cookies\windows@citi.bridgetrack[3].txt
C:\Documents and Settings\Windows\Cookies\windows@citi.bridgetrack[4].txt
C:\Documents and Settings\Windows\Cookies\windows@citi.bridgetrack[5].txt
C:\Documents and Settings\Windows\Cookies\windows@citi.bridgetrack[6].txt
C:\Documents and Settings\Windows\Cookies\windows@citi.bridgetrack[7].txt
C:\Documents and Settings\Windows\Cookies\windows@clickbooth[1].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[10].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[11].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[1].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[2].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[3].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[4].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[5].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[6].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[7].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[8].txt
C:\Documents and Settings\Windows\Cookies\windows@collective-media[9].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[10].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[11].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[1].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[2].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[3].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[4].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[5].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[6].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[7].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[8].txt
C:\Documents and Settings\Windows\Cookies\windows@content.yieldmanager[9].txt
C:\Documents and Settings\Windows\Cookies\windows@dc.tremormedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@dc.tremormedia[3].txt
C:\Documents and Settings\Windows\Cookies\windows@dmtracker[1].txt
C:\Documents and Settings\Windows\Cookies\windows@doubleclick[1].txt
C:\Documents and Settings\Windows\Cookies\windows@doubleclick[2].txt
C:\Documents and Settings\Windows\Cookies\windows@doubleclick[3].txt
C:\Documents and Settings\Windows\Cookies\windows@doubleclick[4].txt
C:\Documents and Settings\Windows\Cookies\windows@eyewonder[1].txt
C:\Documents and Settings\Windows\Cookies\windows@fastclick[1].txt
C:\Documents and Settings\Windows\Cookies\windows@fastclick[2].txt
C:\Documents and Settings\Windows\Cookies\windows@fastclick[3].txt
C:\Documents and Settings\Windows\Cookies\windows@fastclick[4].txt
C:\Documents and Settings\Windows\Cookies\windows@fastclick[5].txt
C:\Documents and Settings\Windows\Cookies\windows@fastclick[6].txt
C:\Documents and Settings\Windows\Cookies\windows@fastclick[7].txt
C:\Documents and Settings\Windows\Cookies\windows@fastclick[9].txt
C:\Documents and Settings\Windows\Cookies\windows@fim.122.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@fim.122.2o7[2].txt
C:\Documents and Settings\Windows\Cookies\windows@fim.122.2o7[3].txt
C:\Documents and Settings\Windows\Cookies\windows@g-pixel.invitemedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@imrworldwide[2].txt
C:\Documents and Settings\Windows\Cookies\windows@imrworldwide[3].txt
C:\Documents and Settings\Windows\Cookies\windows@imrworldwide[4].txt
C:\Documents and Settings\Windows\Cookies\windows@in.getclicky[1].txt
C:\Documents and Settings\Windows\Cookies\windows@in.getclicky[2].txt
C:\Documents and Settings\Windows\Cookies\windows@indieclick[1].txt
C:\Documents and Settings\Windows\Cookies\windows@insightexpressai[1].txt
C:\Documents and Settings\Windows\Cookies\windows@insightexpressai[2].txt
C:\Documents and Settings\Windows\Cookies\windows@insightexpressai[3].txt
C:\Documents and Settings\Windows\Cookies\windows@insightexpressai[4].txt
C:\Documents and Settings\Windows\Cookies\windows@insightexpressai[6].txt
C:\Documents and Settings\Windows\Cookies\windows@interclick[1].txt
C:\Documents and Settings\Windows\Cookies\windows@interclick[2].txt
C:\Documents and Settings\Windows\Cookies\windows@interclick[3].txt
C:\Documents and Settings\Windows\Cookies\windows@interclick[4].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[10].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[11].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[3].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[4].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[5].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[6].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[7].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[8].txt
C:\Documents and Settings\Windows\Cookies\windows@invitemedia[9].txt
C:\Documents and Settings\Windows\Cookies\windows@jmp.clickbooth[1].txt
C:\Documents and Settings\Windows\Cookies\windows@legolas-media[1].txt
C:\Documents and Settings\Windows\Cookies\windows@lfstmedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@lfstmedia[3].txt
C:\Documents and Settings\Windows\Cookies\windows@liveperson[1].txt
C:\Documents and Settings\Windows\Cookies\windows@liveperson[2].txt
C:\Documents and Settings\Windows\Cookies\windows@liveperson[6].txt
C:\Documents and Settings\Windows\Cookies\windows@lucidmedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@lucidmedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@lucidmedia[3].txt
C:\Documents and Settings\Windows\Cookies\windows@lucidmedia[7].txt
C:\Documents and Settings\Windows\Cookies\windows@lucidmedia[8].txt
C:\Documents and Settings\Windows\Cookies\windows@lucidmedia[9].txt
C:\Documents and Settings\Windows\Cookies\windows@media.adfrontiers[1].txt
C:\Documents and Settings\Windows\Cookies\windows@media.adfrontiers[3].txt
C:\Documents and Settings\Windows\Cookies\windows@media2.legacy[1].txt
C:\Documents and Settings\Windows\Cookies\windows@media2.legacy[2].txt
C:\Documents and Settings\Windows\Cookies\windows@media6degrees[1].txt
C:\Documents and Settings\Windows\Cookies\windows@media6degrees[2].txt
C:\Documents and Settings\Windows\Cookies\windows@media6degrees[3].txt
C:\Documents and Settings\Windows\Cookies\windows@media6degrees[4].txt
C:\Documents and Settings\Windows\Cookies\windows@media6degrees[5].txt
C:\Documents and Settings\Windows\Cookies\windows@media6degrees[6].txt
C:\Documents and Settings\Windows\Cookies\windows@media6degrees[7].txt
C:\Documents and Settings\Windows\Cookies\windows@media6degrees[8].txt
C:\Documents and Settings\Windows\Cookies\windows@mediabrandsww[1].txt
C:\Documents and Settings\Windows\Cookies\windows@mediabrandsww[2].txt
C:\Documents and Settings\Windows\Cookies\windows@mediabrandsww[3].txt
C:\Documents and Settings\Windows\Cookies\windows@mediabrandsww[4].txt
C:\Documents and Settings\Windows\Cookies\windows@mediabrandsww[6].txt
C:\Documents and Settings\Windows\Cookies\windows@mediabrandsww[7].txt
C:\Documents and Settings\Windows\Cookies\windows@mediabrandsww[8].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[10].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[11].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[1].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[2].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[3].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[4].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[5].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[6].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[7].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[8].txt
C:\Documents and Settings\Windows\Cookies\windows@mediaplex[9].txt
C:\Documents and Settings\Windows\Cookies\windows@microsoftmachinetranslation.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@mm.chitika[1].txt
C:\Documents and Settings\Windows\Cookies\windows@mm.chitika[2].txt
C:\Documents and Settings\Windows\Cookies\windows@mm.chitika[3].txt
C:\Documents and Settings\Windows\Cookies\windows@movieticketscom.122.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@msnbc.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@myweather.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@myxer.adbureau[1].txt
C:\Documents and Settings\Windows\Cookies\windows@network.realmedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@network.realmedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@optimize.indieclick[1].txt
C:\Documents and Settings\Windows\Cookies\windows@overture[2].txt
C:\Documents and Settings\Windows\Cookies\windows@overture[3].txt
C:\Documents and Settings\Windows\Cookies\windows@overture[4].txt
C:\Documents and Settings\Windows\Cookies\windows@overture[5].txt
C:\Documents and Settings\Windows\Cookies\windows@overture[6].txt
C:\Documents and Settings\Windows\Cookies\windows@overture[7].txt
C:\Documents and Settings\Windows\Cookies\windows@paypal.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@paypal.112.2o7[2].txt
C:\Documents and Settings\Windows\Cookies\windows@paypal.112.2o7[3].txt
C:\Documents and Settings\Windows\Cookies\windows@pointroll[1].txt
C:\Documents and Settings\Windows\Cookies\windows@pointroll[2].txt
C:\Documents and Settings\Windows\Cookies\windows@pointroll[3].txt
C:\Documents and Settings\Windows\Cookies\windows@pointroll[4].txt
C:\Documents and Settings\Windows\Cookies\windows@pointroll[5].txt
C:\Documents and Settings\Windows\Cookies\windows@pointroll[6].txt
C:\Documents and Settings\Windows\Cookies\windows@pointroll[8].txt
C:\Documents and Settings\Windows\Cookies\windows@pointroll[9].txt
C:\Documents and Settings\Windows\Cookies\windows@pro-market[2].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[10].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[11].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[1].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[2].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[3].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[4].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[5].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[6].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[7].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[8].txt
C:\Documents and Settings\Windows\Cookies\windows@questionmarket[9].txt
C:\Documents and Settings\Windows\Cookies\windows@realmedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@realmedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@realmedia[3].txt
C:\Documents and Settings\Windows\Cookies\windows@realmedia[4].txt
C:\Documents and Settings\Windows\Cookies\windows@realmedia[5].txt
C:\Documents and Settings\Windows\Cookies\windows@realmedia[6].txt
C:\Documents and Settings\Windows\Cookies\windows@realmedia[7].txt
C:\Documents and Settings\Windows\Cookies\windows@revsci[1].txt
C:\Documents and Settings\Windows\Cookies\windows@revsci[2].txt
C:\Documents and Settings\Windows\Cookies\windows@revsci[4].txt
C:\Documents and Settings\Windows\Cookies\windows@revsci[5].txt
C:\Documents and Settings\Windows\Cookies\windows@revsci[6].txt
C:\Documents and Settings\Windows\Cookies\windows@revsci[8].txt
C:\Documents and Settings\Windows\Cookies\windows@richmedia.yahoo[1].txt
C:\Documents and Settings\Windows\Cookies\windows@richmedia.yahoo[2].txt
C:\Documents and Settings\Windows\Cookies\windows@richmedia.yahoo[3].txt
C:\Documents and Settings\Windows\Cookies\windows@ru4[1].txt
C:\Documents and Settings\Windows\Cookies\windows@ru4[2].txt
C:\Documents and Settings\Windows\Cookies\windows@ru4[3].txt
C:\Documents and Settings\Windows\Cookies\windows@segment-pixel.invitemedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@server.iad.liveperson[1].txt
C:\Documents and Settings\Windows\Cookies\windows@server.iad.liveperson[2].txt
C:\Documents and Settings\Windows\Cookies\windows@serving-sys[1].txt
C:\Documents and Settings\Windows\Cookies\windows@serving-sys[2].txt
C:\Documents and Settings\Windows\Cookies\windows@serving-sys[3].txt
C:\Documents and Settings\Windows\Cookies\windows@serving-sys[5].txt
C:\Documents and Settings\Windows\Cookies\windows@serving-sys[6].txt
C:\Documents and Settings\Windows\Cookies\windows@serving-sys[7].txt
C:\Documents and Settings\Windows\Cookies\windows@serving-sys[8].txt
C:\Documents and Settings\Windows\Cookies\windows@specificclick[2].txt
C:\Documents and Settings\Windows\Cookies\windows@specificmedia[1].txt
C:\Documents and Settings\Windows\Cookies\windows@specificmedia[2].txt
C:\Documents and Settings\Windows\Cookies\windows@specificmedia[3].txt
C:\Documents and Settings\Windows\Cookies\windows@statcounter[1].txt
C:\Documents and Settings\Windows\Cookies\windows@statcounter[2].txt
C:\Documents and Settings\Windows\Cookies\windows@stats.paypal[1].txt
C:\Documents and Settings\Windows\Cookies\windows@stats.paypal[3].txt
C:\Documents and Settings\Windows\Cookies\windows@statse.webtrendslive[2].txt
C:\Documents and Settings\Windows\Cookies\windows@statse.webtrendslive[3].txt
C:\Documents and Settings\Windows\Cookies\windows@statse.webtrendslive[4].txt
C:\Documents and Settings\Windows\Cookies\windows@statse.webtrendslive[5].txt
C:\Documents and Settings\Windows\Cookies\windows@statse.webtrendslive[6].txt
C:\Documents and Settings\Windows\Cookies\windows@superpages.122.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[10].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[11].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[1].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[2].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[3].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[4].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[5].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[6].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[7].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[8].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda.at.atwola[9].txt
C:\Documents and Settings\Windows\Cookies\windows@tacoda[1].txt
C:\Documents and Settings\Windows\Cookies\windows@target.db.advertising[1].txt
C:\Documents and Settings\Windows\Cookies\windows@trafficmp[1].txt
C:\Documents and Settings\Windows\Cookies\windows@trafficmp[2].txt
C:\Documents and Settings\Windows\Cookies\windows@trafficmp[3].txt
C:\Documents and Settings\Windows\Cookies\windows@trafficmp[5].txt
C:\Documents and Settings\Windows\Cookies\windows@trafficmp[6].txt
C:\Documents and Settings\Windows\Cookies\windows@traveladvertising[2].txt
C:\Documents and Settings\Windows\Cookies\windows@tribalfusion[1].txt
C:\Documents and Settings\Windows\Cookies\windows@tribalfusion[2].txt
C:\Documents and Settings\Windows\Cookies\windows@tribalfusion[3].txt
C:\Documents and Settings\Windows\Cookies\windows@tribalfusion[4].txt
C:\Documents and Settings\Windows\Cookies\windows@tribalfusion[5].txt
C:\Documents and Settings\Windows\Cookies\windows@tribalfusion[6].txt
C:\Documents and Settings\Windows\Cookies\windows@tribalfusion[8].txt
C:\Documents and Settings\Windows\Cookies\windows@walmart.112.2o7[1].txt
C:\Documents and Settings\Windows\Cookies\windows@www.burstbeacon[1].txt
C:\Documents and Settings\Windows\Cookies\windows@www.burstbeacon[2].txt
C:\Documents and Settings\Windows\Cookies\windows@www.burstnet[2].txt
C:\Documents and Settings\Windows\Cookies\windows@www.googleadservices[1].txt
C:\Documents and Settings\Windows\Cookies\windows@yieldmanager[1].txt
C:\Documents and Settings\Windows\Cookies\windows@yieldmanager[2].txt
C:\Documents and Settings\Windows\Cookies\windows@yieldmanager[3].txt
C:\Documents and Settings\Windows\Cookies\windows@yieldmanager[4].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[1].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[2].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[3].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[4].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[5].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[6].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[7].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[8].txt
C:\Documents and Settings\Windows\Cookies\windows@zedo[9].txt

Browser Hijacker.Tubby
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar#NoModify
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar#NoRepair
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar#UninstallString
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar#DisplayIcon
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar#DisplayVersion
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar#URLInfoAbout
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar#Publisher
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar#EstimatedSize

Browser Hijacker.Deskbar
HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\ProxyStubClsid
HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\ProxyStubClsid32
HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\TypeLib
HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\TypeLib#Version

Trojan.Agent/Gen-IExplorer[Fake]
C:\DOCUMENTS AND SETTINGS\WINDOWS\LOCAL SETTINGS\TEMP\RARSFX0\NIRD\IEXPLORE.EXE
C:\DOCUMENTS AND SETTINGS\WINDOWS\LOCAL SETTINGS\TEMP\RARSFX2\NIRD\IEXPLORE.EXE

Trojan.Agent/Gen-PEC
C:\DOCUMENTS AND SETTINGS\WINDOWS\LOCAL SETTINGS\TEMP\RARSFX0\PROCS\EXPLORER.EXE

Adware.HBHelper
C:\DOCUMENTS AND SETTINGS\WINDOWS\LOCAL SETTINGS\TEMP\SVCINST\TBHELPER.DLL




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users