Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Google Redirect in Firefox


  • This topic is locked This topic is locked
12 replies to this topic

#1 mdjohn

mdjohn

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:09:06 AM

Posted 09 July 2011 - 01:13 PM

Hello all, first time poster. I am thankful for this site because I saved myself $250 by foregoing the Best Buy geek squad. I was afraid I had lost all of my photos, docs, etc due to the "Critical Hard Drive Error Virus". I ran Malwarebytes twice and it seemed to remove the "Critical Hard Drive Error" virus.

Now it seems when I type something into Google using Firefox it redirects to another page. So I'm hoping to follow all the instructions here and get things resolved. Thank you kindly!!

DDS LOG

DDS (Ver_2011-06-23.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_26
Run by Melinda at 15:03:45 on 2011-07-08
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1015.373 [GMT -7:00]
.
AV: AntiVir Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Ahead\InCD\InCDsrv.exe
svchost.exe
svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
svchost.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\VERIZONDM\bin\sprtsvc.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\VERIZONDM\bin\tgsrvc.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\wltray.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\VERIZONDM\bin\sprtcmd.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\Real\RealPlayer\update\realsched.exe
C:\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Dynex G Notebook Card Adapter\DynexWCUI.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
uInternet Connection Wizard,ShellNext = iexplore
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: MSN Toolbar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn\toolbar\3.0.1125.0\msneshellx.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: MSN Toolbar: {1e61ed7c-7cb8-49d6-b9e9-ab4c880c8414} - c:\program files\msn\toolbar\3.0.1125.0\msneshellx.dll
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
uRun: [PhotoShow Deluxe Media Manager] c:\progra~1\ahead\neroph~1\data\xtras\mssysmgr.exe
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
mRun: [SoundMAXPnP] c:\program files\analog devices\soundmax\SMax4PNP.exe
mRun: [SoundMAX] c:\program files\analog devices\soundmax\Smax4.exe /tray
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [Broadcom Wireless Manager] c:\windows\system32\wltray.exe
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [SynTPLpr] c:\program files\synaptics\syntp\SynTPLpr.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [MSSE] "c:\program files\microsoft security essentials\msseces.exe" -hide -runkey
mRun: [VERIZONDM] "c:\program files\verizondm\bin\sprtcmd.exe" /P VERIZONDM
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [CanonMyPrinter] c:\program files\canon\myprinter\BJMyPrt.exe /logon
mRun: [CanonSolutionMenu] c:\program files\canon\solutionmenu\CNSLMAIN.exe /logon
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
mRun: [Malwarebytes' Anti-Malware] "c:\malwarebytes' anti-malware\mbamgui.exe" /starttray
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
dRunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
dRunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\dynexw~1.lnk - c:\program files\dynex g notebook card adapter\DynexWCUI.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
Trusted Zone: chase.com
DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase8942.cab
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - hxxp://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {A4110378-789B-455F-AE86-3A1BFC402853} - hxxp://zone.msn.com/bingame/zpagames/zpa_shvl.cab55579.cab
DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} - hxxp://cdn2.zone.msn.com/binFramework/v10/ZPAFramework.cab102118.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} - hxxps://bdsmarketing.webex.com/client/T27L/webex/ieatgpc.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} - hxxps://secure.logmein.com/activex/ractrl.cab?lmi=100
TCP: DhcpNameServer = 192.168.1.1 68.238.64.12
TCP: Interfaces\{AD1107F7-796E-41E4-8161-D104E3B469CD} : DhcpNameServer = 192.168.1.1 68.238.64.12
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: cryptnet32 - cryptnet32.dll
Notify: igfxcui - igfxdev.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\melinda\application data\mozilla\firefox\profiles\wnk433zx.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
FF - plugin: c:\program files\canon\easy-photoprint ex\NPEZFFPI.DLL
FF - plugin: c:\program files\divx\divx plus web player\npdivx32.dll
FF - plugin: c:\program files\google\update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
.
============= SERVICES / DRIVERS ===============
.
R1 avgio;avgio;c:\program files\avira\antivir desktop\avgio.sys [2011-7-8 11608]
R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2009-6-18 151216]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67656]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\avira\antivir desktop\sched.exe [2011-7-8 136360]
R2 AntiVirService;Avira AntiVir Guard;c:\program files\avira\antivir desktop\avguard.exe [2011-7-8 269480]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2011-7-8 61960]
R2 MBAMService;MBAMService;c:\malwarebytes' anti-malware\mbamservice.exe [2011-7-7 366640]
R2 sprtsvc_verizondm;SupportSoft Sprocket Service (verizondm);c:\program files\verizondm\bin\sprtsvc.exe [2010-9-29 206120]
R2 tgsrvc_verizondm;SupportSoft Repair Service (verizondm);c:\program files\verizondm\bin\tgsrvc.exe [2010-9-29 185640]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2010-11-14 22712]
S0 tnrnmxa;tnrnmxa;c:\windows\system32\drivers\ycbea.sys --> c:\windows\system32\drivers\ycbea.sys [?]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-1-30 135664]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2010-1-30 135664]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2010-11-14 39984]
.
=============== Created Last 30 ================
.
2011-07-08 21:55:34 476904 ----a-w- c:\program files\mozilla firefox\plugins\npdeployJava1.dll
2011-07-08 21:55:32 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-07-08 18:36:35 -------- d-----w- c:\documents and settings\melinda\application data\SUPERAntiSpyware.com
2011-07-08 18:36:35 -------- d-----w- c:\documents and settings\all users\application data\SUPERAntiSpyware.com
2011-07-08 18:34:13 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-07-08 16:45:46 -------- d-----w- c:\documents and settings\melinda\application data\Avira
2011-07-08 16:38:20 61960 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-07-08 16:36:53 -------- d-----w- c:\program files\Avira
2011-07-08 16:36:53 -------- d-----w- c:\documents and settings\all users\application data\Avira
2011-07-08 16:01:10 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2011-07-08 15:59:38 13683064 ----a-w- c:\program files\Firefox Setup 5.0.exe
2011-07-08 06:02:52 7074640 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{a77bf265-d084-4f68-906a-8a74a573306f}\mpengine.dll
2011-07-08 01:43:27 -------- d-----w- C:\Malwarebytes' Anti-Malware
2011-07-06 17:39:45 11776 ----a-w- c:\program files\mozilla firefox\plugins\nprjplug.dll
2011-07-06 17:38:52 -------- d-----w- c:\program files\common files\xing shared
2011-07-06 17:38:17 150712 ----a-w- c:\program files\mozilla firefox\plugins\nppl3260.dll
2011-07-06 17:38:04 105472 ----a-w- c:\program files\mozilla firefox\plugins\nprpjplug.dll
2011-07-04 04:27:17 -------- d-----w- c:\documents and settings\all users\application data\CanonIJEGV
2011-07-02 02:01:09 -------- d-----w- c:\program files\common files\CANON
2011-07-02 01:53:24 3072 ----a-w- c:\windows\system32\CNCFLmUS.DLL
2011-07-02 01:53:24 2560 ----a-w- c:\windows\system32\CNCFLmJP.DLL
2011-07-02 01:53:24 168448 ----a-w- c:\windows\system32\CNCFMSm.EXE
2011-07-02 01:53:23 296960 ----a-w- c:\windows\system32\CNCF2Lm.DLL
2011-07-02 01:52:56 70656 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\CNMPPA7.DLL
2011-07-02 01:52:56 276992 ----a-w- c:\windows\system32\CNMLMA7.DLL
2011-07-02 01:52:56 27136 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\CNMPDA7.DLL
2011-07-02 01:52:37 179200 ----a-w- c:\windows\system32\CNMIUA7.DLL
2011-07-02 01:51:55 137216 ----a-w- c:\windows\system32\CNMNPUI.DLL
2011-07-02 01:51:55 -------- d-----w- c:\windows\system32\STRING
2011-07-02 01:51:54 354816 ----a-w- c:\windows\system32\CNMNPPM.DLL
2011-07-02 01:51:54 -------- d-----w- c:\windows\system32\CHM
2011-07-02 01:45:06 -------- d-----w- c:\program files\Canon
.
==================== Find3M ====================
.
2011-05-29 16:11:30 39984 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-05-29 16:11:20 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-05-04 09:25:49 73728 ----a-w- c:\windows\system32\javacpl.cpl
.
============= FINISH: 15:11:45.34 ===============


Did I do something wrong in these logs? I got kicked to the 8th page of the site without a reply. Please let me know if I made a mistake.

Attached Files


Edited by mdjohn, 10 July 2011 - 11:10 AM.


BC AdBot (Login to Remove)

 


#2 mdjohn

mdjohn
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:09:06 AM

Posted 11 July 2011 - 02:14 PM

Bump, will there be one to help? I can send a token of thanks via Paypal.

#3 mdjohn

mdjohn
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:09:06 AM

Posted 11 July 2011 - 05:36 PM

Attach.txt

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-06-23.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 3/26/2009 4:29:05 AM
System Uptime: 7/8/2011 11:05:05 AM (4 hours ago)
.
Motherboard: Hewlett-Packard | | 099C
Processor: Intel® Pentium® M processor 2.00GHz | JP12 | 1994/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 56 GiB total, 30.053 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID:
Description: HP integrated Bluetooth module
Device ID: USB\VID_03F0&PID_011D\5&7C80B78&0&2
Manufacturer:
Name: HP integrated Bluetooth module
PNP Device ID: USB\VID_03F0&PID_011D\5&7C80B78&0&2
Service:
.
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Mass Storage Controller
Device ID: PCI\VEN_104C&DEV_8033&SUBSYS_099C103C&REV_00\4&AD1B67F&0&33F0
Manufacturer:
Name: Mass Storage Controller
PNP Device ID: PCI\VEN_104C&DEV_8033&SUBSYS_099C103C&REV_00\4&AD1B67F&0&33F0
Service:
.
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: PCI Simple Communications Controller
Device ID: PCI\VEN_104C&DEV_8035&SUBSYS_099C103C&REV_00\4&AD1B67F&0&35F0
Manufacturer:
Name: PCI Simple Communications Controller
PNP Device ID: PCI\VEN_104C&DEV_8035&SUBSYS_099C103C&REV_00\4&AD1B67F&0&35F0
Service:
.
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: PCI Modem
Device ID: PCI\VEN_8086&DEV_266D&SUBSYS_099C103C&REV_03\3&B1BFB68&0&F3
Manufacturer:
Name: PCI Modem
PNP Device ID: PCI\VEN_8086&DEV_266D&SUBSYS_099C103C&REV_03\3&B1BFB68&0&F3
Service:
.
==== System Restore Points ===================
.
RP170: 5/4/2011 8:26:29 AM - System Checkpoint
RP171: 5/5/2011 1:32:48 AM - Software Distribution Service 3.0
RP172: 5/6/2011 1:34:10 AM - Software Distribution Service 3.0
RP173: 5/7/2011 1:30:47 AM - Software Distribution Service 3.0
RP174: 5/8/2011 1:30:17 AM - Software Distribution Service 3.0
RP175: 5/9/2011 1:31:40 AM - Software Distribution Service 3.0
RP176: 5/10/2011 1:27:38 AM - Software Distribution Service 3.0
RP177: 5/11/2011 1:31:54 AM - Software Distribution Service 3.0
RP178: 5/12/2011 1:52:59 AM - System Checkpoint
RP179: 5/12/2011 9:02:40 AM - Software Distribution Service 3.0
RP180: 5/13/2011 9:00:55 AM - Software Distribution Service 3.0
RP181: 5/14/2011 9:52:52 AM - System Checkpoint
RP182: 5/15/2011 10:52:52 AM - System Checkpoint
RP183: 5/16/2011 9:05:35 AM - Software Distribution Service 3.0
RP184: 5/17/2011 9:02:52 AM - Software Distribution Service 3.0
RP185: 5/18/2011 9:01:46 AM - Software Distribution Service 3.0
RP186: 5/19/2011 9:01:54 AM - Software Distribution Service 3.0
RP187: 5/20/2011 9:04:37 AM - Software Distribution Service 3.0
RP188: 5/21/2011 9:01:37 AM - Software Distribution Service 3.0
RP189: 5/22/2011 9:01:40 AM - Software Distribution Service 3.0
RP190: 5/23/2011 9:00:15 AM - Software Distribution Service 3.0
RP191: 5/24/2011 9:01:41 AM - Software Distribution Service 3.0
RP192: 5/25/2011 9:01:50 AM - Software Distribution Service 3.0
RP193: 5/26/2011 9:02:04 AM - Software Distribution Service 3.0
RP194: 5/27/2011 9:01:52 AM - Software Distribution Service 3.0
RP195: 5/28/2011 9:07:25 AM - Software Distribution Service 3.0
RP196: 5/29/2011 9:01:46 AM - Software Distribution Service 3.0
RP197: 5/30/2011 9:00:56 AM - Software Distribution Service 3.0
RP198: 5/31/2011 9:53:07 AM - System Checkpoint
RP199: 6/1/2011 9:01:52 AM - Software Distribution Service 3.0
RP200: 6/2/2011 9:04:01 AM - Software Distribution Service 3.0
RP201: 6/3/2011 9:03:14 AM - Software Distribution Service 3.0
RP202: 6/4/2011 9:00:31 AM - Software Distribution Service 3.0
RP203: 6/5/2011 9:00:30 AM - Software Distribution Service 3.0
RP204: 6/6/2011 9:02:31 AM - Software Distribution Service 3.0
RP205: 6/7/2011 9:04:55 AM - Software Distribution Service 3.0
RP206: 6/8/2011 9:06:36 AM - Software Distribution Service 3.0
RP207: 6/8/2011 9:47:51 AM - Software Distribution Service 3.0
RP208: 6/9/2011 10:32:05 AM - System Checkpoint
RP209: 6/9/2011 12:39:53 PM - Software Distribution Service 3.0
RP210: 6/10/2011 12:39:17 PM - Software Distribution Service 3.0
RP211: 6/11/2011 12:39:01 PM - Software Distribution Service 3.0
RP212: 6/12/2011 12:36:22 PM - Software Distribution Service 3.0
RP213: 6/13/2011 12:36:23 PM - Software Distribution Service 3.0
RP214: 6/14/2011 12:40:08 PM - Software Distribution Service 3.0
RP215: 6/15/2011 12:40:39 PM - Software Distribution Service 3.0
RP216: 6/16/2011 12:36:40 PM - Software Distribution Service 3.0
RP217: 6/17/2011 12:41:09 PM - Software Distribution Service 3.0
RP218: 6/18/2011 12:40:21 PM - Software Distribution Service 3.0
RP219: 6/19/2011 12:40:42 PM - Software Distribution Service 3.0
RP220: 6/20/2011 12:36:42 PM - Software Distribution Service 3.0
RP221: 6/21/2011 12:39:29 PM - Software Distribution Service 3.0
RP222: 6/22/2011 12:39:47 PM - Software Distribution Service 3.0
RP223: 6/23/2011 12:40:31 PM - Software Distribution Service 3.0
RP224: 6/24/2011 12:41:11 PM - Software Distribution Service 3.0
RP225: 6/25/2011 12:36:52 PM - Software Distribution Service 3.0
RP226: 6/26/2011 12:39:34 PM - Software Distribution Service 3.0
RP227: 6/27/2011 12:39:36 PM - Software Distribution Service 3.0
RP228: 6/28/2011 12:42:13 PM - Software Distribution Service 3.0
RP229: 6/29/2011 12:37:08 PM - Software Distribution Service 3.0
RP230: 6/30/2011 12:37:12 PM - Software Distribution Service 3.0
RP231: 7/1/2011 12:39:51 PM - Software Distribution Service 3.0
RP232: 7/2/2011 12:40:33 PM - Software Distribution Service 3.0
RP233: 7/3/2011 12:41:03 PM - Software Distribution Service 3.0
RP234: 7/3/2011 9:39:42 PM - Installed Bonjour Print Services
RP235: 7/4/2011 12:41:05 PM - Software Distribution Service 3.0
RP236: 7/5/2011 12:37:20 PM - Software Distribution Service 3.0
RP237: 7/7/2011 11:01:49 PM - Software Distribution Service 3.0
RP238: 7/8/2011 9:36:53 AM - Avira AntiVir Personal - 7/8/2011 9:35
RP239: 7/8/2011 2:48:11 PM - Installed Java™ 6 Update 26
RP240: 7/8/2011 2:59:53 PM - Removed Bonjour
RP241: 7/8/2011 3:00:55 PM - Removed Bonjour Print Services
.
==== Installed Programs ======================
.
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.1
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Avira AntiVir Personal - Free Antivirus
Big Fish Games: Game Manager
Broadcom NetXtreme Ethernet Controller
Canon MP Navigator EX 3.1
Canon MX870 series MP Drivers
Canon MX870 series User Registration
Canon Utilities Easy-PhotoPrint EX
Canon Utilities My Printer
Canon Utilities Solution Menu
CutePDF Writer 2.8
Diner Dash
DivX Plus Web Player
Dynex G Wireless Notebook Card Setup
FLV Player 2.0 (build 25)
Google Update Helper
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB2158563)
Hotfix for Windows XP (KB2443685)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB970653-v3)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
HP Product Detection
InstallMgr
Intel® Graphics Media Accelerator Driver for Mobile
iTunes
Java Auto Updater
Java™ 6 Update 26
LiveReg (Symantec Corporation)
LiveUpdate 1.6 (Symantec Corporation)
Malwarebytes' Anti-Malware version 1.51.0.1200
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Antimalware
Microsoft Application Error Reporting
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Default Manager
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Communicator 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Project Professional 2003
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Search Enhancement Pack
Microsoft Security Essentials
Microsoft Software Update for Web Folders (English) 12
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox 5.0 (x86 en-US)
MSN Toolbar
Nero Suite
Octoshape add-in for Adobe Flash Player
OGA Notifier 2.0.0048.0
PeaZip 2.6.3
QuickTime
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
RealUpgrade 1.1
Security Update for 2007 Microsoft Office System (KB2288621)
Security Update for 2007 Microsoft Office System (KB2288931)
Security Update for 2007 Microsoft Office System (KB2345043)
Security Update for 2007 Microsoft Office System (KB2466156)
Security Update for 2007 Microsoft Office System (KB2509488)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft Office Access 2007 (KB979440)
Security Update for Microsoft Office Excel 2007 (KB2464583)
Security Update for Microsoft Office Groove 2007 (KB2494047)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
Security Update for Microsoft Office Publisher 2007 (KB2284697)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB2344993)
Security Update for Windows Internet Explorer 8 (KB2360131)
Security Update for Windows Internet Explorer 8 (KB2416400)
Security Update for Windows Internet Explorer 8 (KB2497640)
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB969897)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Media Player (KB2378111)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB975558)
Security Update for Windows Media Player (KB978695)
Security Update for Windows Media Player (KB979402)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows XP (KB2079403)
Security Update for Windows XP (KB2115168)
Security Update for Windows XP (KB2121546)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB2259922)
Security Update for Windows XP (KB2279986)
Security Update for Windows XP (KB2286198)
Security Update for Windows XP (KB2296011)
Security Update for Windows XP (KB2296199)
Security Update for Windows XP (KB2347290)
Security Update for Windows XP (KB2360937)
Security Update for Windows XP (KB2387149)
Security Update for Windows XP (KB2393802)
Security Update for Windows XP (KB2412687)
Security Update for Windows XP (KB2419632)
Security Update for Windows XP (KB2423089)
Security Update for Windows XP (KB2436673)
Security Update for Windows XP (KB2440591)
Security Update for Windows XP (KB2443105)
Security Update for Windows XP (KB2476687)
Security Update for Windows XP (KB2478960)
Security Update for Windows XP (KB2478971)
Security Update for Windows XP (KB2479943)
Security Update for Windows XP (KB2481109)
Security Update for Windows XP (KB2483185)
Security Update for Windows XP (KB2485663)
Security Update for Windows XP (KB2503658)
Security Update for Windows XP (KB2506212)
Security Update for Windows XP (KB2506223)
Security Update for Windows XP (KB2507618)
Security Update for Windows XP (KB2508272)
Security Update for Windows XP (KB2508429)
Security Update for Windows XP (KB2509553)
Security Update for Windows XP (KB2511455)
Security Update for Windows XP (KB2524375)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB979687)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB980436)
Security Update for Windows XP (KB981322)
Security Update for Windows XP (KB981852)
Security Update for Windows XP (KB981957)
Security Update for Windows XP (KB981997)
Security Update for Windows XP (KB982132)
Security Update for Windows XP (KB982214)
Security Update for Windows XP (KB982665)
SopCast 3.2.4
SoundMAX
SUPERAntiSpyware
Synaptics Pointing Device Driver
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office Outlook 2007 (KB2509470)
Update for Outlook 2007 Junk Email Filter (KB2536413)
Update for Windows Internet Explorer 8 (KB971180)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB976749)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB2141007)
Update for Windows XP (KB2345886)
Update for Windows XP (KB2467659)
Update for Windows XP (KB898461)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971029)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
VC80CRTRedist - 8.0.50727.4053
Verizon Download Manager
VoiceOver Kit
WebEx
WebFldrs XP
Windows Internet Explorer 8
Windows Live OneCare safety scanner
Windows Media Format 11 runtime
Windows Media Player 11
Xvid Video Codec
.
==== Event Viewer Messages From Past Week ========
.
7/8/2011 9:34:33 AM, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC90.MFC. Reference error message: The referenced assembly is not installed on your system. .
7/8/2011 9:34:33 AM, error: SideBySide [59] - Generate Activation Context failed for C:\DOCUME~1\Melinda\LOCALS~1\Temp\RarSFX2\redist.dll. Reference error message: The operation completed successfully. .
7/8/2011 9:34:33 AM, error: SideBySide [32] - Dependent Assembly Microsoft.VC90.MFC could not be found and Last Error was The referenced assembly is not installed on your system.
7/8/2011 7:59:09 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the IMAPI CD-Burning COM Service service to connect.
7/8/2011 7:59:09 AM, error: Service Control Manager [7000] - The IMAPI CD-Burning COM Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
7/8/2011 7:58:12 AM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: PCIIde
7/8/2011 11:33:53 AM, error: BROWSER [8020] - The browser was unable to promote itself to master browser. The computer that currently believes it is the master browser is unknown.
7/8/2011 10:33:17 AM, error: NetBT [4321] - The name "WORKGROUP :1d" could not be registered on the Interface with IP address 192.168.1.5. The machine with the IP address 192.168.1.6 did not allow the name to be claimed by this machine.
7/8/2011 10:31:36 AM, error: Service Control Manager [7022] - The Avira AntiVir Guard service hung on starting.
7/8/2011 10:07:33 AM, error: Service Control Manager [7034] - The MBAMService service terminated unexpectedly. It has done this 1 time(s).
7/8/2011 10:07:30 AM, error: Service Control Manager [7034] - The Java Quick Starter service terminated unexpectedly. It has done this 1 time(s).
7/8/2011 10:07:29 AM, error: Service Control Manager [7034] - The InCD Helper (read only) service terminated unexpectedly. It has done this 1 time(s).
7/8/2011 10:07:29 AM, error: Service Control Manager [7034] - The Broadcom Wireless LAN Tray Service service terminated unexpectedly. It has done this 1 time(s).
7/8/2011 10:07:29 AM, error: Service Control Manager [7034] - The Bonjour Service service terminated unexpectedly. It has done this 1 time(s).
7/8/2011 10:07:29 AM, error: Service Control Manager [7031] - The Microsoft Antimalware Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 15000 milliseconds: Restart the service.
7/8/2011 10:07:29 AM, error: Service Control Manager [7031] - The Apple Mobile Device service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
7/7/2011 6:44:58 PM, error: Ntfs [55] - The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume C:.
7/6/2011 12:48:31 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the SupportSoft Repair Service (verizondm) service to connect.
7/6/2011 12:48:31 PM, error: Service Control Manager [7000] - The SupportSoft Repair Service (verizondm) service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
7/6/2011 1:15:46 PM, error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.107.1062.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.7000.0 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
7/6/2011 1:07:41 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Apple Mobile Device service to connect.
7/6/2011 1:07:41 PM, error: Service Control Manager [7000] - The Apple Mobile Device service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
7/3/2011 9:21:43 PM, error: Print [6161] - The document Test Page owned by Melinda failed to print on printer Canon MX870 series Printer. Data type: NT EMF 1.008. Size of the spool file in bytes: 80688. Number of bytes printed: 0. Total number of pages in the document: 1. Number of pages printed: 0. Client machine: \\USER-6B88EA4D9E. Win32 error code returned by the print processor: 6 (0x6).
7/3/2011 8:46:09 PM, error: Print [6161] - The document Microsoft Word - phase1groceryList owned by Melinda failed to print on printer Canon MX870 series Printer. Data type: NT EMF 1.008. Size of the spool file in bytes: 196608. Number of bytes printed: 87220. Total number of pages in the document: 2. Number of pages printed: 0. Client machine: \\USER-6B88EA4D9E. Win32 error code returned by the print processor: 13 (0xd).
.
==== End Of File ===========================



Malwarebytes Log

Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org

Database version: 7045

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

7/8/2011 7:49:38 AM
mbam-log-2011-07-08 (07-49-38).txt

Scan type: Full scan (C:\|)
Objects scanned: 218046
Time elapsed: 3 hour(s), 23 minute(s), 38 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 4

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\dxYoRnHAtJN (Trojan.FakeAlert) -> Value: dxYoRnHAtJN -> Quarantined and deleted successfully.

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
c:\documents and settings\all users\application data\dxyornhatjn.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\16375588.exe (Trojan.Fraudpack) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\0.23465465123155693.exe (Exploit.Dropper) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\0.7817929317654833.exe (Exploit.Dropper) -> Quarantined and deleted successfully.


SAS Log

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 07/08/2011 at 02:11 PM

Application Version : 4.55.1000

Core Rules Database Version : 7387
Trace Rules Database Version: 5199

Scan type : Complete Scan
Total Scan Time : 02:29:47

Memory items scanned : 583
Memory threats detected : 0
Registry items scanned : 7814
Registry threats detected : 0
File items scanned : 17135
File threats detected : 977

Adware.Tracking Cookie
a.ads2.msads.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
ads2.msads.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
adsatt.espn.go.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
b.ads2.msads.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
cdn.insights.gravity.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
cdn4.specificclick.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
cloudfront.mediamatters.org [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
core.insightexpressai.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
crackle.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
ds.serving-sys.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
files.mediandb.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
googleads.g.doubleclick.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
ia.media-imdb.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
images.indieclick.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
indieclick.3janecdn.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
interclick.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
m1.2mdn.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media-macys1.pictela.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media-vs.pictela.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.expedia.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.homegrownfreaks.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.ign.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.khou.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.kyte.tv [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.monster.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.mtvnservices.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.mtvu.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.nbcphiladelphia.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.nbcwashington.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.onsugar.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.scanscout.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.socialvibe.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.thewb.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media.vmixcore.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media01.kyte.tv [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media1.break.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
media10.washingtonpost.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
mediaext.djnetworks.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
mediaforgews.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
msnbcmedia.msn.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
msntest.serving-sys.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
naiadsystems.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
objects.tremormedia.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
s0.2mdn.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
secure-us.imrworldwide.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
static.2mdn.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
udn.specificclick.net [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
uk.mediapark.filmtrailer.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
video.redorbit.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
vidii.hardsextube.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
www.adultswim.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
www.dancetracksdigital.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
www.omarion-media.org [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
www.soundclick.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
www.three21media.com [ C:\Documents and Settings\Melinda\Application Data\Macromedia\Flash Player\#SharedObjects\37QY2ZE4 ]
C:\Documents and Settings\Melinda\Cookies\melinda@ads.adap[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.dancetracksdigital[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@myroitracking[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@poweredbanner[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@usnews.122.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zillow.adbureau[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@network.realmedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@network.realmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@stampscom.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@northwestairlines.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediafire[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trackalyzer[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zillow.adbureau[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@myroitracking[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@myroitracking[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@poweredbanner[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@indieclick[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@network.realmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@login.tracking101[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.interaktmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@112.2o7[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zillow.adbureau[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@myroitracking[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statse.webtrendslive[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statse.webtrendslive[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statse.webtrendslive[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statse.webtrendslive[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statse.webtrendslive[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statse.webtrendslive[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@imrworldwide[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@network.realmedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cdn4.specificclick[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cdn4.specificclick[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cdn4.specificclick[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cdn4.specificclick[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cdn4.specificclick[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cdn4.specificclick[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cdn4.specificclick[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@iacas.adbureau[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@iacas.adbureau[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@iacas.adbureau[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@iacas.adbureau[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@msnportal.112.2o7[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ru4[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mkt10.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.xapads[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserve.mizzenmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@2o7[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@z.blogads[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@2o7[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@rm.yieldmanager[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ru4[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mkt10.122.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@megaporn[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@linksynergy[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@2o7[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@z.blogads[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.soundtrackcollector[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@rainbowmedia.122.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@rainbowmedia.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@megaporn[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@msnportal.112.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ehg-hollywood.hitbox[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ru4[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mkt10.122.2o7[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@linksynergy[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.uproxx[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@2o7[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@2o7[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@z.blogads[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@msnbc.112.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dimemag.advertserve[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@msnportal.112.2o7[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statse.webtrendslive[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ru4[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@linksynergy[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.lucidmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.uproxx[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@2o7[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cdn4.specificclick[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@z.blogads[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@z.blogads[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@msnbc.112.2o7[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@triumphmedia.jambocast[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@associatedcontent.112.2o7[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pointroll[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pointroll[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ice.112.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a.websponsors[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bossip[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bossip[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@intermundomedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@enhance[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pointroll[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ice.112.2o7[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@intermundomedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pussbanner769[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trvlnet.adbureau[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@associatedcontent.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pointroll[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a.websponsors[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@intermundomedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@enhance[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.agentscoreboard[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dc.tremormedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dc.tremormedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@associatedcontent.112.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dc.tremormedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pointroll[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ice.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bannertgt[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@d.mediaforceads[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@intermundomedia[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@virginmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@novell.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.wsod[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.wsod[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@chitika[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adinterax[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bigtedsxxx.blogspot[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adxpose[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.undertone[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@serving-sys[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trendbanner[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@nextag[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@nextag[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@nextag[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.wsod[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificclick[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@chitika[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@chitika[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adinterax[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adxpose[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.undertone[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediaplex[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.wsod[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pub3.bravenet[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstbeacon[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@chitika[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@chitika[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adinterax[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.ireel[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adxpose[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.undertone[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@specificmedia[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@insightexpressai[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.wsod[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.wsod[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@interclick[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bluestreak[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bluestreak[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bluestreak[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bluestreak[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bluestreak[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@chitika[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@chitika[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adinterax[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adinterax[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adxpose[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.undertone[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.raasnet[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cbrichardellis.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@eyewonder[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@perf.overture[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediamatters[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cb.adbureau[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@snagajob.122.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@snagajob.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@nextag[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@nextag[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@nextag[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@eyewonder[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www5.addfreestats[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@doubleclick[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revsci[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cb.adbureau[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@247realmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www7.addfreestats[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@snap9.advertserve[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@247realmedia[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@247realmedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@247realmedia[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@247realmedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@247realmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@lucidmedia[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@247realmedia[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tradedoubler[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ordie.adbureau[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ordie.adbureau[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@lucidmedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@lucidmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@lucidmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@lucidmedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cb.adbureau[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@eyewonder[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adlegend[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@interclick[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@interclick[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@interclick[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@interclick[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@interclick[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@caloriecount.about[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@snap9.advertserve[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tacoda[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adlegend[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adlegend[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.ihiphop[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@hg1.hitbox[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bigtedxxx3.blogspot[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bangogolufsen.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@qnsr[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@qnsr[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@qnsr[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@qnsr[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbureau[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.adrevolver[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.adrevolver[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@foundbanner[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.brisbanetimes.com[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@teenbanner312[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.hbcuconnect[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.googleadservices[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.googleadservices[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.googleadservices[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.googleadservices[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.x17online[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@247realmedia[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@247realmedia[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@marketlive.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@lucidmedia[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dardenrestaurants.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.hbcuconnect[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.burstnet[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adlegend[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@foxinteractivemedia.122.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@uac.advertising[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@steelhousemedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.mlsfinder[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@superstats[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adecn[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@warnerbros.112.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@warnerbros.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@collective-media[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbureau[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbureau[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.adrevolver[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.cpmstar[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@collective-media[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@collective-media[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@collective-media[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@collective-media[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@collective-media[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@collective-media[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@collective-media[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@beacon.dmsinsights[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@beacon.dmsinsights[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@gearslutz.advertserve[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@counter.hitslink[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@twctsg.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adecn[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.googleadservices[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.googleadservices[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.googleadservices[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@electronicarts.112.2o7[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@electronicarts.112.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@electronicarts.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad2.doublepimp[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad2.doublepimp[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.egotastic[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@allegis.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ehg-totalsystemsservices.hitbox[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@google.lucidmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.salesgravyadservice[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@usatoday1.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adecn[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.mlsfinder[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@foxinteractivemedia.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@banners.sys-con[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@thefind[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.salesgravyadservice[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adecn[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revenue[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@richmedia.yahoo[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.egotastic[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ontarget.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dominionenterprises.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@collective-media[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revenue[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@richmedia.yahoo[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@qksrv[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revenue[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@richmedia.yahoo[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atwola[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@e-2dj6wfloujczseq.stats.esomniture[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@newsday.122.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atwola[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atwola[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atwola[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserve.chickadvisor[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@revenue[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@x.clickbooth[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@statcounter[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@server.iad.liveperson[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@iacadvertising[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adprotraffic[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@at.atwola[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.ad4game[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.cnn[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.cnn[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@at.atwola[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.nba[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@googleads.g.doubleclick[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adultadworld[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adultadworld[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adultadworld[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adultadworld[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adultadworld[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.keypromedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.cnn[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.cnn[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@at.atwola[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@at.atwola[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.ad4game[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.monster[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.adzuki[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@azjmp[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.ad4game[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.cnn[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@at.atwola[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@at.atwola[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@at.atwola[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.ad4game[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@lopezbanner328[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.nba[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@simg.zedo[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.monster[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@apmebf[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@googleads.g.doubleclick[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@yieldmanager[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@microsoftwlcashback.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@gettyimages.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.cnn[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cbs.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.cnn[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.cnn[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@at.atwola[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.worldstarhiphop[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.monster[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.ad4game[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.nba[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@simg.zedo[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@c7.zedo[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad1.clickhype[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@c5.zedo[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.122.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.btracker[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@websponsors[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@c7.zedo[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad1.clickhype[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adultadworld[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adultadworld[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adultadworld[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bs.serving-sys[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@c7.zedo[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad1.clickhype[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tribalfusion[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@soundtrackcollector[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@microsoftwindows.112.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@yieldmanager[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad1.clickhype[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ehg-mh.hitbox[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@yieldmanager[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@yieldmanager[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@yieldmanager[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@yieldmanager[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@yieldmanager[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@yieldmanager[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@yieldmanager[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bet.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstnet[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@slidbanner322[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dancetracksdigital[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adrevolver[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adrevolver[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@wendybanner888[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.mediafire[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.seedpeer[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.redorbit[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.footballmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.medbanner[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@chicagosuntimes.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.niden[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.nybits[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@stats.adbrite[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a1.interclick[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad2.clickhype[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.niden[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@stats.adbrite[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@trafficmp[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@nitropayouts.directtrack[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.niden[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kronosevents.bravenet[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@invitemedia[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@paypal.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tracking.realtor[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tracking.realtor[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@icebanner[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bridgetrack[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cgm.adbureau[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@stats.paypal[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.associatedcontent[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.warezhit[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bridgetrack[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bridgetrack[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.associatedcontent[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.addynamix[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@icebanner[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@harpo.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bridgetrack[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bridgetrack[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.associatedcontent[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ehg-findlaw.hitbox[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bridgetrack[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bridgetrack[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@advertising[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kontera[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a1.interclick[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bravenet[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bravenet[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bravenet[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bravenet[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cgm.adbureau[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@cgm.adbureau[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn04.247realmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn03.247realmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn04.247realmedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a1.interclick[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a1.interclick[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.gamersmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn04.247realmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn03.247realmedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@rotator.adjuggler[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@xiti[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@sportingnews.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.photobucket[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.photobucket[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@findyourfix[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a1.interclick[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@web4.realtracker[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@eas.apm.emediate[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.ihispano[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.ihispano[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a1.interclick[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.clickmanage[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@affiliates.commissionaccount[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.mtvnservices[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn04.247realmedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn03.247realmedia[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn04.247realmedia[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@rotator.adjuggler[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.photobucket[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a1.interclick[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@korhotelgroup.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@a1.interclick[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@r1-ads.ace.advertising[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn03.247realmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@hitbox[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn04.247realmedia[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@hitbox[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn03.247realmedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@hitbox[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@hitbox[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediatakeout[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediatakeout[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@oasn04.247realmedia[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediatakeout[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediatakeout[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mediatakeout[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@mlsfinder[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@e-2dj6wdkykmajsgp.stats.esomniture[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@rotator.adjuggler[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media.photobucket[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@burstbeacon[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adbrite[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@d3.zedo[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dmtracker[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dmtracker[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.bskytracking[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@CADXGIBI.txt
C:\Documents and Settings\Melinda\Cookies\melinda@pro-market[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pro-market[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pro-market[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pro-market[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@pro-market[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@videoegg.adbureau[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@sixapart.adbureau[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@s.clickability[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@s.clickability[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@timeinc.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.fatvine[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.fatvine[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@bevybanner237[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@d3.zedo[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dmtracker[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@videoegg.adbureau[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@videoegg.adbureau[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.slashgear[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@timeinc.122.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@optimize.indieclick[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.fatvine[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@questionmarket[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zedo[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dmtracker[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@overture[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@overture[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@overture[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@overture[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@eas.apm.emediate[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@videoegg.adbureau[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ehg-regus.hitbox[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.fatvine[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.fatvine[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@dmtracker[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@videoegg.adbureau[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fastclick[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pointroll[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.yieldmanager[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.fatvine[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.fatvine[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@legolas-media[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@chengbanner952[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@clicksor[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@clicksor[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@clicksor[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@casalemedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@casalemedia[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@content.yieldmanager[9].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.bootcampmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ggrind.adbureau[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@realmedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@casalemedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@casalemedia[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@atdmt[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.hoodtrackz[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ggrind.adbureau[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@casalemedia[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@realmedia[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@edge.ru4[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@onlinerewardcenter[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ehg.hitbox[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@overture[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@casalemedia[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@kronos.bravenet[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ggrind.adbureau[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@tunebanner352[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@realmedia[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@realmedia[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@e-2dj6wjk4ugazgfp.stats.esomniture[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.pastemagazine[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ad.zanox[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@casalemedia[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@casalemedia[8].txt
C:\Documents and Settings\Melinda\Cookies\melinda@realmedia[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adtech[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@calvebanner991[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@usnews.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@lilalxxx.blogspot[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.adtechus[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.adtechus[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adjuggler[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.julesjordanvideo[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.etracker[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@zanox[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.adtechus[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@homestore.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@citi.bridgetrack[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[11].txt
C:\Documents and Settings\Melinda\Cookies\melinda@media6degrees[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@servedby.adxpower[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.cnn[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@e-2dj6wjmyuhdpofo.stats.esomniture[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.adtechus[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@ads.us.e-planning[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.adtechus[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@stryker.112.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@homestore.122.2o7[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@imrworldwide[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@imrworldwide[5].txt
C:\Documents and Settings\Melinda\Cookies\melinda@imrworldwide[4].txt
C:\Documents and Settings\Melinda\Cookies\melinda@imrworldwide[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@imrworldwide[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@imrworldwide[7].txt
C:\Documents and Settings\Melinda\Cookies\melinda@webads.hookedmediagroup[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@fim.122.2o7[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@servedby.adxpower[3].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.adtechus[2].txt
C:\Documents and Settings\Melinda\Cookies\melinda@adserver.adtechus[6].txt
C:\Documents and Settings\Melinda\Cookies\melinda@data.coremetrics[1].txt
C:\Documents and Settings\Melinda\Cookies\melinda@www.burstnet[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@at.atwola[10].txt
C:\Documents and Settings\Melinda\Cookies\melinda@msnportal.112.2o7[1].txt

Trojan.Agent/Gen-Nullo[Short]
C:\SYSTEM VOLUME INFORMATION\_RESTORE{E89EB1E9-6025-4BEC-84FB-8A03C8DE8698}\RP236\A0022723.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{E89EB1E9-6025-4BEC-84FB-8A03C8DE8698}\RP236\A0022724.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{E89EB1E9-6025-4BEC-84FB-8A03C8DE8698}\RP236\A0022725.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{E89EB1E9-6025-4BEC-84FB-8A03C8DE8698}\RP237\A0023741.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{E89EB1E9-6025-4BEC-84FB-8A03C8DE8698}\RP237\A0023742.EXE

Trojan.Agent/Gen-Frauder
C:\WINDOWS\INSTALLER\MSI122.TMP
C:\WINDOWS\INSTALLER\MSI64.TMP

#4 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,970 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:06 AM

Posted 12 July 2011 - 09:31 PM

Hello and welcome. Please follow these guidelines while we work on your PC:
  • Malware removal is a sometimes lengthy and tedious process. Please stick with the thread until I’ve given you the “All clear.” Absence of symptoms does not mean your machine is clean!
  • Please do not run any scans or install/uninstall any applications without being directed to do so.
  • Please note that the forum is very busy and if I don't hear from you within five days this thread will be closed.
Posted Image You have more than one antivirus (AV) program running. Your logs show both Avira and Microsoft Security Essentials running. Running more than one AV program does not offer any more protection and often causes conflicts and slow downs with your computer. Please uninstall either Avira or MSSE via Control Panel > Add/Remove Programs. Run the removal tool (links below) for whichever app you uninstall also:

Microsoft Security Essentials Removal Tool
Avira Removal Tool

Posted Image Download ComboFix from one of the following locations:
Link 1
Link 2

VERY IMPORTANT !!! Save ComboFix.exe to your Desktop

* IMPORTANT - Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link
  • Double click on ComboFix.exe & follow the prompts.
As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.

  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.
**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

Posted Image

  • Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

Posted Image

  • Click on Yes, to continue scanning for malware.
When finished, it shall produce a log for you. Please include the C:\ComboFix.txt in your next reply.
Notes:
1. Do not mouse-click Combofix's window while it is running. That may cause it to stall.
2. Do not "re-run" Combofix. If you have a problem, reply back for further instructions.


Please include the following in your next post:
  • ComboFix log

Edited by RPMcMurphy, 12 July 2011 - 09:32 PM.
Spelling error

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#5 mdjohn

mdjohn
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:09:06 AM

Posted 13 July 2011 - 11:30 PM

I appreciate your help!!


ComboFix Log


ComboFix 11-07-13.03 - Melinda 07/13/2011 17:58:22.1.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1015.396 [GMT -7:00]
Running from: c:\documents and settings\Melinda\Desktop\ComboFix.exe
AV: AntiVir Desktop *Disabled/Outdated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\Melinda\Start Menu\Programs\Windows XP Repair
c:\documents and settings\Melinda\Start Menu\Programs\Windows XP Repair\Uninstall Windows XP Repair.lnk
c:\documents and settings\Melinda\Start Menu\Programs\Windows XP Repair\Windows XP Repair.lnk
c:\documents and settings\Melinda\WINDOWS
c:\windows\system32\drivers\ybvrgbw.sys
c:\windows\system32\shimg.dll
.
.
((((((((((((((((((((((((( Files Created from 2011-06-14 to 2011-07-14 )))))))))))))))))))))))))))))))
.
.
2011-07-14 00:16 . 2011-07-14 00:18 -------- d-----w- C:\WINSSLog
2011-07-08 21:57 . 2011-07-08 21:57 -------- d-----w- c:\program files\Common Files\Java
2011-07-08 21:55 . 2011-05-04 11:52 476904 ----a-w- c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
2011-07-08 21:55 . 2011-05-04 11:52 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-07-08 18:36 . 2011-07-08 18:36 -------- d-----w- c:\documents and settings\Melinda\Application Data\SUPERAntiSpyware.com
2011-07-08 18:36 . 2011-07-08 18:36 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2011-07-08 18:34 . 2011-07-08 18:39 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-07-08 16:45 . 2011-07-08 16:45 -------- d-----w- c:\documents and settings\Melinda\Application Data\Avira
2011-07-08 16:38 . 2011-07-10 18:09 138192 ----a-w- c:\windows\system32\drivers\avipbb.sys
2011-07-08 16:38 . 2011-07-10 18:09 66616 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-07-08 16:38 . 2010-06-17 22:27 45416 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2011-07-08 16:38 . 2010-06-17 22:27 22360 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2011-07-08 16:36 . 2011-07-08 16:36 -------- d-----w- c:\program files\Avira
2011-07-08 16:36 . 2011-07-08 16:36 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2011-07-08 16:01 . 2011-06-16 04:17 142296 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll
2011-07-08 15:59 . 2011-07-08 15:59 13683064 ----a-w- c:\program files\Firefox Setup 5.0.exe
2011-07-08 01:43 . 2011-07-08 01:45 -------- d-----w- C:\Malwarebytes' Anti-Malware
2011-07-06 17:39 . 2011-07-06 17:39 11776 ----a-w- c:\program files\Mozilla Firefox\plugins\nprjplug.dll
2011-07-06 17:38 . 2011-07-06 17:38 -------- d-----w- c:\program files\Common Files\xing shared
2011-07-06 17:38 . 2011-07-06 17:38 150712 ----a-w- c:\program files\Mozilla Firefox\plugins\nppl3260.dll
2011-07-06 17:38 . 2011-07-06 17:38 105472 ----a-w- c:\program files\Mozilla Firefox\plugins\nprpjplug.dll
2011-07-06 17:37 . 2011-07-06 17:39 -------- d-----w- c:\program files\Real
2011-07-04 04:27 . 2011-07-04 04:27 -------- d-----w- c:\documents and settings\All Users\Application Data\CanonIJEGV
2011-07-02 02:01 . 2011-07-02 02:01 -------- d-----w- c:\program files\Common Files\CANON
2011-07-02 01:53 . 2009-10-22 18:24 168448 ----a-w- c:\windows\system32\CNCFMSm.EXE
2011-07-02 01:53 . 2009-10-22 18:24 3072 ----a-w- c:\windows\system32\CNCFLmUS.DLL
2011-07-02 01:53 . 2009-10-22 18:24 2560 ----a-w- c:\windows\system32\CNCFLmJP.DLL
2011-07-02 01:53 . 2009-10-22 18:30 296960 ----a-w- c:\windows\system32\CNCF2Lm.DLL
2011-07-02 01:53 . 2011-07-02 01:53 -------- d-----w- c:\documents and settings\All Users\Application Data\CanonBJ
2011-07-02 01:52 . 2009-10-26 12:00 70656 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPPA7.DLL
2011-07-02 01:52 . 2009-10-26 12:00 276992 ----a-w- c:\windows\system32\CNMLMA7.DLL
2011-07-02 01:52 . 2009-10-26 12:00 27136 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPDA7.DLL
2011-07-02 01:52 . 2011-07-02 01:52 -------- d-----w- c:\windows\system32\CanonIJ Uninstaller Information
2011-07-02 01:52 . 2009-09-10 09:00 179200 ----a-w- c:\windows\system32\CNMIUA7.DLL
2011-07-02 01:51 . 2011-07-02 01:51 -------- d-----w- c:\windows\system32\STRING
2011-07-02 01:51 . 2009-10-09 15:01 137216 ----a-w- c:\windows\system32\CNMNPUI.DLL
2011-07-02 01:51 . 2011-07-02 01:51 -------- d-----w- c:\windows\system32\CHM
2011-07-02 01:51 . 2009-10-09 15:01 354816 ----a-w- c:\windows\system32\CNMNPPM.DLL
2011-07-02 01:45 . 2011-07-04 04:26 -------- d-----w- c:\program files\Canon
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-29 16:11 . 2010-11-15 05:28 39984 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-05-29 16:11 . 2010-11-15 05:28 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-05-04 09:25 . 2009-06-23 18:33 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-06-16 04:17 . 2011-07-08 16:01 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2008-10-26 . 362BC5AF8EAF712832C58CC13AE05750 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-06-30 2424192]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="c:\program files\Analog Devices\SoundMAX\SMax4PNP.exe" [2004-10-14 1388544]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2007-06-20 101144]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2007-06-20 84760]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2007-06-20 125720]
"Broadcom Wireless Manager"="c:\windows\system32\wltray.exe" [2007-03-02 1282048]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-28 35696]
"Microsoft Default Manager"="c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2009-02-03 233304]
"SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2004-11-05 98394]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2004-11-05 688218]
"VERIZONDM"="c:\program files\VERIZONDM\bin\sprtcmd.exe" [2010-09-29 206120]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-11-30 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-03-07 421160]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2009-11-02 2508104]
"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2009-09-04 767312]
"TkBellExe"="c:\program files\Real\RealPlayer\update\realsched.exe" [2011-07-06 273544]
"Malwarebytes' Anti-Malware"="c:\malwarebytes' anti-malware\mbamgui.exe" [2011-05-29 449584]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-04-21 281768]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2008-11-04 435096]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_3"="advpack.dll" [2009-03-08 128512]
"_nltide_3"="advpack.dll" [2009-03-08 128512]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Dynex Wireless Networking Utility.lnk - c:\program files\Dynex G Notebook Card Adapter\DynexWCUI.exe [2009-3-26 1462272]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2011-03-07 23:33 421160 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 18:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"DisableUnicastResponsesToMulticastBroadcast"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office Communicator\\communicator.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Documents and Settings\\Melinda\\Application Data\\Macromedia\\Flash Player\\www.macromedia.com\\bin\\octoshape\\octoshape.exe"=
"c:\\Program Files\\SopCast\\adv\\SopAdver.exe"=
"c:\\Program Files\\SopCast\\SopCast.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
.
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [2/17/2010 11:25 AM 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [5/10/2010 11:41 AM 67656]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [7/8/2011 9:38 AM 136360]
R2 MBAMService;MBAMService;c:\malwarebytes' anti-malware\mbamservice.exe [7/7/2011 6:43 PM 366640]
R2 sprtsvc_verizondm;SupportSoft Sprocket Service (verizondm);c:\program files\VERIZONDM\bin\sprtsvc.exe [9/29/2010 7:00 AM 206120]
R2 tgsrvc_verizondm;SupportSoft Repair Service (verizondm);c:\program files\VERIZONDM\bin\tgsrvc.exe [9/29/2010 7:00 AM 185640]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [11/14/2010 10:28 PM 22712]
S0 tnrnmxa;tnrnmxa;c:\windows\system32\drivers\ycbea.sys --> c:\windows\system32\drivers\ycbea.sys [?]
S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [1/30/2010 9:45 AM 135664]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [1/30/2010 9:45 AM 135664]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [11/14/2010 10:28 PM 39984]
.
Contents of the 'Scheduled Tasks' folder
.
2011-06-30 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 19:34]
.
2011-07-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-30 16:45]
.
2011-07-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-30 16:45]
.
2011-07-14 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-515967899-1177238915-941676509-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2011-03-29 17:47]
.
2011-07-13 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-515967899-1177238915-941676509-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2011-03-29 17:47]
.
2010-01-22 c:\windows\Tasks\Symantec NetDetect.job
- c:\program files\Symantec\LiveUpdate\NDETECT.EXE [2009-03-26 20:23]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
uInternet Connection Wizard,ShellNext = iexplore
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
Trusted Zone: chase.com
FF - ProfilePath - c:\documents and settings\Melinda\Application Data\Mozilla\Firefox\Profiles\wnk433zx.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: network.proxy.type - 0
.
- - - - ORPHANS REMOVED - - - -
.
WebBrowser-{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - (no file)
HKCU-Run-PhotoShow Deluxe Media Manager - c:\progra~1\Ahead\NEROPH~1\data\Xtras\mssysmgr.exe
MSConfigStartUp-MSSE - c:\program files\Microsoft Security Essentials\msseces.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-13 21:08
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'winlogon.exe'(948)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
c:\windows\system32\WININET.dll
c:\windows\System32\BCMLogon.dll
.
Completion time: 2011-07-13 21:26:45
ComboFix-quarantined-files.txt 2011-07-14 04:26
.
Pre-Run: 32,115,273,728 bytes free
Post-Run: 33,645,682,688 bytes free
.
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - 3610EBDAF27247406578E70B5CB00004

#6 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,970 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:06 AM

Posted 14 July 2011 - 04:34 PM

mdjohn:

Are your searches still being redirected? Please do this next:

Posted Image You have this program installed, Malwarebytes' Anti-Malware (MBAM). Please update it and run a scan.

Open MBAM
  • Click the Update tab
  • Click Check for Updates
  • If an update is found, it will download and install the latest version.
  • The program will close to update and reopen.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Uncheck any entries from C:\System Volume Information or C:\Qoobox
  • Make sure that everything else is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.
Extra Note:
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediately.

Posted Image Please run ESET Online Scanner
  • Place a check mark in the box YES, I accept the Terms Of Use
  • Click the Start button.
  • Now click the Install button.
  • Click Start. The scanner engine will initialize and update.
  • Do Not place a check mark in the box beside Remove found threats.
  • Click the Scan button. The scan will now run, please be patient.
  • When the scan finishes copy and paste the results into your next reply.
Please include the following in your next post:
  • MBAM log
  • ESET log
  • How is the computer running now?

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#7 mdjohn

mdjohn
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:09:06 AM

Posted 14 July 2011 - 09:59 PM

I still have the redirect problem. See logs below...

Malware Log after Quick Scan

Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org

Database version: 7142

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

7/14/2011 5:22:10 PM
mbam-log-2011-07-14 (17-22-10).txt

Scan type: Quick scan
Objects scanned: 164536
Time elapsed: 25 minute(s), 20 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)


Eset Log

C:\Documents and Settings\Melinda\Application Data\Sun\Java\Deployment\cache\6.0\50\38104072-6dfac284 probably a variant of Java/TrojanDownloader.Agent.AB trojan

#8 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,970 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:06 AM

Posted 14 July 2011 - 10:05 PM

mdjohn:

Please do this next:

Posted Image Download TDSSKiller.zip and extract TDSSKiller.exe to your desktop
  • Execute TDSSKiller.exe by doubleclicking on it.
  • Press Start Scan
  • If Malicious objects are found then ensure Cure is selected. Important - If there is no option to "Cure" it is critical that you select "Skip"
  • Then click Continue > Reboot now
  • Once complete, a log will be produced in c:\. It will be named for example, TDSSKiller.2.4.0.0_24.07.2010_13.10.52_log.txt
  • Post that log, please.
Please include the following in your next post:
  • TDSSKiller log

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#9 mdjohn

mdjohn
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:09:06 AM

Posted 14 July 2011 - 10:31 PM

Seems that my redirect issue has been resolved! See log below..Do you find it necessary to run SuperantiSpyware and Avira and Malwarebytes? I would like to remove Superantispyware because it runs a little slow.

TDSS Log

2011/07/14 20:06:45.0312 5216 TDSS rootkit removing tool 2.5.11.0 Jul 11 2011 16:56:56
2011/07/14 20:06:45.0921 5216 ================================================================================
2011/07/14 20:06:45.0921 5216 SystemInfo:
2011/07/14 20:06:45.0921 5216
2011/07/14 20:06:45.0921 5216 OS Version: 5.1.2600 ServicePack: 3.0
2011/07/14 20:06:45.0921 5216 Product type: Workstation
2011/07/14 20:06:45.0921 5216 ComputerName: USER-6B88EA4D9E
2011/07/14 20:06:45.0921 5216 UserName: Melinda
2011/07/14 20:06:45.0921 5216 Windows directory: C:\WINDOWS
2011/07/14 20:06:45.0921 5216 System windows directory: C:\WINDOWS
2011/07/14 20:06:45.0921 5216 Processor architecture: Intel x86
2011/07/14 20:06:45.0921 5216 Number of processors: 1
2011/07/14 20:06:45.0921 5216 Page size: 0x1000
2011/07/14 20:06:45.0921 5216 Boot type: Normal boot
2011/07/14 20:06:45.0921 5216 ================================================================================
2011/07/14 20:06:48.0234 5216 Initialize success
2011/07/14 20:07:11.0421 2676 ================================================================================
2011/07/14 20:07:11.0421 2676 Scan started
2011/07/14 20:07:11.0421 2676 Mode: Manual;
2011/07/14 20:07:11.0421 2676 ================================================================================
2011/07/14 20:07:18.0171 2676 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
2011/07/14 20:07:19.0921 2676 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
2011/07/14 20:07:23.0218 2676 aeaudio (ad707942e4ccb28d77cee5ed989c9e55) C:\WINDOWS\system32\drivers\aeaudio.sys
2011/07/14 20:07:25.0078 2676 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
2011/07/14 20:07:26.0859 2676 AFD (7618d5218f2a614672ec61a80d854a37) C:\WINDOWS\System32\drivers\afd.sys
2011/07/14 20:07:37.0375 2676 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
2011/07/14 20:07:43.0984 2676 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
2011/07/14 20:07:45.0671 2676 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
2011/07/14 20:07:49.0078 2676 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
2011/07/14 20:07:50.0734 2676 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
2011/07/14 20:07:51.0015 2676 avgio (0b497c79824f8e1bf22fa6aacd3de3a0) C:\Program Files\Avira\AntiVir Desktop\avgio.sys
2011/07/14 20:07:52.0671 2676 avgntflt (1e4114685de1ffa9675e09c6a1fb3f4b) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
2011/07/14 20:07:54.0515 2676 avipbb (0f78d3dae6dedd99ae54c9491c62adf2) C:\WINDOWS\system32\DRIVERS\avipbb.sys
2011/07/14 20:07:56.0328 2676 b57w2k (2dc524a5d9c4879e7a7cb7100a2d36b4) C:\WINDOWS\system32\DRIVERS\b57xp32.sys
2011/07/14 20:07:58.0062 2676 BCM42RLY (438179abe9b7a922a21b8d6369ff52ff) C:\WINDOWS\System32\drivers\BCM42RLY.SYS
2011/07/14 20:08:00.0109 2676 BCM43XX (e679fe7890c366f3418963e289d273cf) C:\WINDOWS\system32\DRIVERS\bcmwl5.sys
2011/07/14 20:08:02.0078 2676 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
2011/07/14 20:08:03.0796 2676 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
2011/07/14 20:08:07.0140 2676 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
2011/07/14 20:08:08.0843 2676 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
2011/07/14 20:08:10.0578 2676 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
2011/07/14 20:08:13.0859 2676 CmBatt (0f6c187d38d98f8df904589a5f94d411) C:\WINDOWS\system32\DRIVERS\CmBatt.sys
2011/07/14 20:08:17.0140 2676 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
2011/07/14 20:08:23.0640 2676 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
2011/07/14 20:08:25.0828 2676 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
2011/07/14 20:08:28.0000 2676 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
2011/07/14 20:08:29.0984 2676 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
2011/07/14 20:08:31.0656 2676 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
2011/07/14 20:08:34.0906 2676 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
2011/07/14 20:08:36.0718 2676 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
2011/07/14 20:08:38.0453 2676 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\drivers\Fdc.sys
2011/07/14 20:08:40.0140 2676 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
2011/07/14 20:08:41.0796 2676 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\drivers\Flpydisk.sys
2011/07/14 20:08:43.0546 2676 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\DRIVERS\fltMgr.sys
2011/07/14 20:08:45.0312 2676 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
2011/07/14 20:08:47.0015 2676 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
2011/07/14 20:08:48.0718 2676 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
2011/07/14 20:08:50.0375 2676 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
2011/07/14 20:08:53.0546 2676 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
2011/07/14 20:08:56.0984 2676 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
2011/07/14 20:09:01.0984 2676 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
2011/07/14 20:09:04.0328 2676 ialm (9e52a1c2e2d7660612c52bc282259852) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
2011/07/14 20:09:06.0703 2676 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
2011/07/14 20:09:08.0406 2676 InCDfs (2276401a0f013fc902a79b471572217a) C:\WINDOWS\system32\drivers\InCDfs.sys
2011/07/14 20:09:10.0156 2676 InCDPass (dc898826d8b1bacce60a8f7ab491a0b0) C:\WINDOWS\system32\DRIVERS\InCDPass.sys
2011/07/14 20:09:11.0796 2676 InCDrec (5fa708ada99d9f7b0af68698b0faff48) C:\WINDOWS\system32\drivers\InCDrec.sys
2011/07/14 20:09:13.0562 2676 incdrm (a2f61a1ccafee540aa74f2c2cf8d63c2) C:\WINDOWS\system32\drivers\incdrm.sys
2011/07/14 20:09:16.0906 2676 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
2011/07/14 20:09:18.0578 2676 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
2011/07/14 20:09:20.0343 2676 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
2011/07/14 20:09:21.0984 2676 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
2011/07/14 20:09:23.0687 2676 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
2011/07/14 20:09:25.0484 2676 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
2011/07/14 20:09:27.0281 2676 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
2011/07/14 20:09:29.0000 2676 irda (aca5e7b54409f9cb5eed97ed0c81120e) C:\WINDOWS\system32\DRIVERS\irda.sys
2011/07/14 20:09:30.0953 2676 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
2011/07/14 20:09:32.0625 2676 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
2011/07/14 20:09:34.0312 2676 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
2011/07/14 20:09:36.0109 2676 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
2011/07/14 20:09:37.0875 2676 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
2011/07/14 20:09:41.0343 2676 MBAMProtector (eca00eed9ab95489007b0ef84c7149de) C:\WINDOWS\system32\drivers\mbam.sys
2011/07/14 20:09:43.0031 2676 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
2011/07/14 20:09:44.0718 2676 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
2011/07/14 20:09:46.0515 2676 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
2011/07/14 20:09:48.0203 2676 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
2011/07/14 20:09:49.0843 2676 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
2011/07/14 20:09:53.0468 2676 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
2011/07/14 20:09:55.0500 2676 MRxSmb (0ea4d8ed179b75f8afa7998ba22285ca) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
2011/07/14 20:09:57.0390 2676 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
2011/07/14 20:09:59.0000 2676 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
2011/07/14 20:10:00.0687 2676 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2011/07/14 20:10:02.0343 2676 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
2011/07/14 20:10:04.0000 2676 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
2011/07/14 20:10:05.0734 2676 Mup (2f625d11385b1a94360bfc70aaefdee1) C:\WINDOWS\system32\drivers\Mup.sys
2011/07/14 20:10:07.0515 2676 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
2011/07/14 20:10:09.0250 2676 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
2011/07/14 20:10:10.0921 2676 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
2011/07/14 20:10:12.0640 2676 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
2011/07/14 20:10:14.0328 2676 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
2011/07/14 20:10:16.0046 2676 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
2011/07/14 20:10:17.0796 2676 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
2011/07/14 20:10:19.0609 2676 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
2011/07/14 20:10:21.0359 2676 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
2011/07/14 20:10:23.0437 2676 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
2011/07/14 20:10:25.0468 2676 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
2011/07/14 20:10:27.0093 2676 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
2011/07/14 20:10:28.0734 2676 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
2011/07/14 20:10:30.0812 2676 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
2011/07/14 20:10:32.0546 2676 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
2011/07/14 20:10:34.0234 2676 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
2011/07/14 20:10:35.0875 2676 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
2011/07/14 20:10:37.0531 2676 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
2011/07/14 20:10:40.0875 2676 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\drivers\PCIIde.sys
2011/07/14 20:10:42.0625 2676 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\DRIVERS\pcmcia.sys
2011/07/14 20:10:54.0078 2676 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
2011/07/14 20:10:55.0812 2676 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
2011/07/14 20:10:57.0531 2676 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
2011/07/14 20:11:07.0093 2676 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
2011/07/14 20:11:08.0734 2676 Rasirda (0207d26ddf796a193ccd9f83047bb5fc) C:\WINDOWS\system32\DRIVERS\rasirda.sys
2011/07/14 20:11:10.0406 2676 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
2011/07/14 20:11:12.0156 2676 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
2011/07/14 20:11:13.0812 2676 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
2011/07/14 20:11:15.0625 2676 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
2011/07/14 20:11:17.0375 2676 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
2011/07/14 20:11:19.0125 2676 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
2011/07/14 20:11:21.0031 2676 RDPWD (6728e45b66f93c08f11de2e316fc70dd) C:\WINDOWS\system32\drivers\RDPWD.sys
2011/07/14 20:11:22.0781 2676 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
2011/07/14 20:11:23.0000 2676 SASDIFSV (a3281aec37e0720a2bc28034c2df2a56) C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
2011/07/14 20:11:23.0109 2676 SASKUTIL (61db0d0756a99506207fd724e3692b25) C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
2011/07/14 20:11:24.0843 2676 sdbus (8d04819a3ce51b9eb47e5689b44d43c4) C:\WINDOWS\system32\DRIVERS\sdbus.sys
2011/07/14 20:11:26.0609 2676 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
2011/07/14 20:11:28.0265 2676 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
2011/07/14 20:11:30.0265 2676 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
2011/07/14 20:11:32.0062 2676 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
2011/07/14 20:11:35.0281 2676 SMCIRDA (707647a1aa0edb6cbef61b0c75c28ed3) C:\WINDOWS\system32\DRIVERS\smcirda.sys
2011/07/14 20:11:37.0125 2676 smwdm (858934c454bdc6664c752bf0cd3eaeae) C:\WINDOWS\system32\drivers\smwdm.sys
2011/07/14 20:11:40.0484 2676 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
2011/07/14 20:11:42.0203 2676 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
2011/07/14 20:11:44.0125 2676 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
2011/07/14 20:11:46.0171 2676 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
2011/07/14 20:11:47.0906 2676 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
2011/07/14 20:11:49.0718 2676 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
2011/07/14 20:11:58.0031 2676 SynTP (23fe1f173996b8bad4b9ed74003676d8) C:\WINDOWS\system32\DRIVERS\SynTP.sys
2011/07/14 20:11:59.0765 2676 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
2011/07/14 20:12:01.0671 2676 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
2011/07/14 20:12:03.0500 2676 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
2011/07/14 20:12:05.0125 2676 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
2011/07/14 20:12:06.0812 2676 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
2011/07/14 20:12:11.0796 2676 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
2011/07/14 20:12:15.0312 2676 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
2011/07/14 20:12:17.0281 2676 USBAAPL (1df89c499bf45d878b87ebd4421d462d) C:\WINDOWS\system32\Drivers\usbaapl.sys
2011/07/14 20:12:18.0953 2676 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
2011/07/14 20:12:20.0593 2676 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
2011/07/14 20:12:22.0343 2676 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
2011/07/14 20:12:24.0078 2676 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
2011/07/14 20:12:25.0765 2676 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
2011/07/14 20:12:27.0500 2676 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
2011/07/14 20:12:29.0375 2676 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
2011/07/14 20:12:32.0671 2676 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
2011/07/14 20:12:35.0609 2676 w29n51 (d6006de6a6ed423d8016a03bc50cbe6b) C:\WINDOWS\system32\DRIVERS\w29n51.sys
2011/07/14 20:12:38.0593 2676 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
2011/07/14 20:12:41.0937 2676 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
2011/07/14 20:12:43.0656 2676 WmiAcpi (c42584fd66ce9e17403aebca199f7bdb) C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
2011/07/14 20:12:45.0390 2676 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
2011/07/14 20:12:47.0125 2676 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
2011/07/14 20:12:47.0312 2676 MBR (0x1B8) (6f9a1d528242bc09104b85e0becf5554) \Device\Harddisk0\DR0
2011/07/14 20:12:47.0328 2676 \Device\Harddisk0\DR0 - detected Rootkit.Boot.SST.a (0)
2011/07/14 20:12:47.0328 2676 Boot (0x1200) (341ba50a2673da2cd54770acef3c7966) \Device\Harddisk0\DR0\Partition0
2011/07/14 20:12:47.0343 2676 ================================================================================
2011/07/14 20:12:47.0343 2676 Scan finished
2011/07/14 20:12:47.0343 2676 ================================================================================
2011/07/14 20:12:47.0343 0132 Detected object count: 1
2011/07/14 20:12:47.0343 0132 Actual detected object count: 1
2011/07/14 20:13:16.0546 0132 \Device\Harddisk0\DR0 (Rootkit.Boot.SST.a) - will be cured after reboot
2011/07/14 20:13:16.0546 0132 \Device\Harddisk0\DR0 - ok
2011/07/14 20:13:16.0546 0132 Rootkit.Boot.SST.a(\Device\Harddisk0\DR0) - User select action: Cure
2011/07/14 20:13:32.0906 5112 Deinitialize success

#10 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,970 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:06 AM

Posted 15 July 2011 - 06:36 AM

mdjohn:

My personal preference with those programs would be to run Avira and MBAM. Your logs look good now (these next steps will remove that ESET detection). All I have left for you is an update and some very important cleanup:

Posted Image Your Adobe reader needs to be updated. Please visit Adobe's site and grab the newest version. Be sure to watch for and uncheck any boxes offering to install other software.

Posted Image Uninstall ComboFix
  • Press the Windows key + R on your keyboard or click Start -> Run. Copy and past the following text into the run box that opens and press OK:
    Combofix /Uninstall
Posted Image

Posted Image Delete the following tools along with any other logs you saved from our work:
  • DDS
  • GMER
  • TDSSKiller
Posted Image Download TFC to your desktop
  • Close any open windows.
  • Double click the TFC icon to run the program
  • TFC will close all open programs itself in order to run,
  • Click the Start button to begin the process.
  • Allow TFC to run uninterrupted.
  • The program should not take long to finish it's job
  • Once its finished it should automatically reboot your machine,
  • if it doesn't, manually reboot to ensure a complete clean
Posted Image Finally, I'd like to make a couple of suggestions to help you stay clean in the future:
  • Restart any anti-malware programs that we disabled while we were cleaning your machine.
  • Keep your antivirus application and MBAM current and updated. Scan with them at least weekly.
  • Please read this post for some helpful information.
Please post once more so I know you are all set and I can mark this thread resolved. Good luck and stay safe!

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#11 mdjohn

mdjohn
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:09:06 AM

Posted 15 July 2011 - 10:54 AM

All set!! Appreciate all of your help. I made a small donation last night to help you continue in your efforts.

#12 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,970 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:06 AM

Posted 15 July 2011 - 10:19 PM

Thanks very much, mdjohn. Take care.

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif


#13 RPMcMurphy

RPMcMurphy

    Bleeping *^#@%~


  • Malware Response Team
  • 3,970 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:06 AM

Posted 15 July 2011 - 10:22 PM

It appears that this issue is resolved, therefore I am closing the topic. If that is not the case and you need or wish to continue with this topic, please send me or any Moderator a Personal Message (PM) that you would like this topic re-opened.

Threads are closed after 5 days of inactivity.

ASAP & UNITE Member


The help you receive here is free. If you wish to show your appreciation, then you may btn_donate_SM.gif





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users