Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Possible Malware Infection


  • This topic is locked This topic is locked
14 replies to this topic

#1 yoongoo

yoongoo

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Local time:10:13 PM

Posted 03 January 2012 - 07:59 PM

Hi,

I've had this laptop for about 3 years and recently it has been running very slowly. For instance, booting the computer takes a long time and opening browsers take couple of minutes to open as well as other files. It also freezes occasionally. Is this a possible virus or malware infection?

I have also been trying to update windows, but every time I try to update, an error occurs. I looked it up and its regarding the Microsoft.Net framework 4. I keeps failing to update. I tried fixit and other troubleshooting methods, but the problems persists. I would really appreciate any help to solve this issue. Thank you.

DDS:

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.19170 BrowserJavaVersion: 1.6.0_30
Run by Soo Hun Yoon at 14:47:41 on 2012-01-03
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1252.1.1033.18.1013.243 [GMT -8:00]
.
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\WLTRYSVC.EXE
C:\Windows\System32\bcmwltry.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Dell Network Assistant\hnm_svc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\svchost.exe -k hpdevmgmt
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\taskeng.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\STacSV.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Windows\system32\svchost.exe -k HPService
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\system32\msfeedssync.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://naver.com/
uWindow Title = Internet Explorer provided by Dell
uDefault_Page_URL = hxxp://www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=2070905
mStart Page = about:blank
uInternet Settings,ProxyOverride = <local>
uInternet Settings,ProxyServer = http=127.0.0.1:5555
uURLSearchHooks: H - No File
BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - c:\program files\hp\digital imaging\smart web printing\hpswp_printenhancer.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - c:\program files\divx\divx plus web player\npdivx32.dll
BHO: DivX HiQ: {593ddec6-7468-4cdd-90e1-42dadaa222e9} - c:\program files\divx\divx plus web player\npdivx32.dll
BHO: Java™ Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: CBrowserHelperObject Object: {ca6319c0-31b7-401e-a518-a07c3db8f777} - c:\program files\dell\bae\BAE.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: TBSB05974 Class: {fcbccb87-9224-4b8d-b117-f56d924beb18} - c:\program files\search toolbar\tbcore3.dll
BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
TB: Search Toolbar: {0c8413c1-fad1-446c-8584-be50576f863e} - c:\program files\search toolbar\tbcore3.dll
EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - c:\program files\hp\digital imaging\smart web printing\hpswp_bho.dll
uRun: [Aim6]
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [Apoint] c:\program files\delltpad\Apoint.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [<NO NAME>]
mRun: [DivXUpdate] "c:\program files\divx\divx update\DivXUpdate.exe" /CHECKNOW
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 2 (0x2)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office11\EXCEL.EXE/3000
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office11\REFIEBAR.DLL
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {8DC067B8-911D-473A-90F1-1171B887CDE0} - hxxp://cyimg8.cyworld.com/ImageUpload/CyPictureU1233.cab?20081124
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - hxxp://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{918214C2-95B3-463A-A4C6-E37D85E89C9B} : DhcpNameServer = 192.168.1.254
TCP: Interfaces\{A3ABD1B9-F8F7-47DD-B9AD-713FDB42664E} : DhcpNameServer = 207.17.190.5 4.2.2.2 4.2.2.3 4.2.2.4 8.8.4.4
Notify: igfxcui - igfxdev.dll
Hosts: 67.212.189.115 google.com
Hosts: 67.212.189.115 google.com.au
Hosts: 67.212.189.115 www.google.com.au
Hosts: 67.212.189.115 google.be
Hosts: 67.212.189.115 www.google.be
.
Note: multiple HOSTS entries found. Please refer to Attach.txt
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\soo hun yoon\appdata\roaming\mozilla\firefox\profiles\e74r6qjq.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2856416&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2856416&q=
FF - prefs.js: network.proxy.type - 0
FF - component: c:\programdata\norton\{92622aad-05e8-4459-b256-765ce1e929fb}\nst_1.2.0.7\coffnst\components\coFFNST.dll
FF - component: c:\users\soo hun yoon\appdata\roaming\mozilla\firefox\profiles\e74r6qjq.default\extensions\{f29557fd-78aa-40e6-aba8-9fa219764018}\components\RadioWMPCoreGecko19.dll
FF - component: c:\users\soo hun yoon\appdata\roaming\mozilla\firefox\profiles\e74r6qjq.default\extensions\engine@conduit.com\components\RadioWMPCoreGecko19.dll
FF - plugin: c:\program files\divx\divx ovs helper\npovshelper.dll
FF - plugin: c:\program files\divx\divx plus web player\npdivx32.dll
FF - plugin: c:\program files\google\update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
.
---- FIREFOX POLICIES ----
FF - user.js: google.toolbar.linkdoctor.enabled - false
.
============= SERVICES / DRIVERS ===============
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
R2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-9-23 21504]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2007-9-5 179712]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2011-10-29 135664]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2011-10-29 135664]
S3 MHIKEY10;MHIKEY10;c:\windows\system32\drivers\MHIKEY10.sys [2010-12-2 52096]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2012-01-03 22:36:30 -------- d-----w- C:\3a26e29881a69f04850971
2012-01-02 08:07:19 626688 ----a-w- c:\program files\mozilla firefox\msvcr80.dll
2012-01-02 08:07:19 548864 ----a-w- c:\program files\mozilla firefox\msvcp80.dll
2012-01-02 08:07:19 479232 ----a-w- c:\program files\mozilla firefox\msvcm80.dll
2012-01-02 08:07:19 43992 ----a-w- c:\program files\mozilla firefox\mozutils.dll
2012-01-01 18:44:18 -------- d-----w- C:\02416c69f74a946115e1d2
2011-12-26 07:21:23 -------- d-----w- c:\users\soo hun yoon\appdata\local\ElevatedDiagnostics
2011-12-19 13:36:14 -------- d-----w- C:\2aad4ab7d01659f3c33991
2011-12-19 08:55:24 -------- d-----w- C:\9b457cf94b12f7b1285b550a
2011-12-14 23:05:36 -------- d-----w- c:\users\soo hun yoon\appdata\local\CrashDumps
2011-12-14 22:20:32 49152 ----a-w- c:\windows\system32\csrsrv.dll
2011-12-14 22:20:31 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-12-14 22:20:31 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-12-14 22:20:28 429056 ----a-w- c:\windows\system32\EncDec.dll
2011-12-14 22:20:27 2043904 ----a-w- c:\windows\system32\win32k.sys
2011-12-14 22:20:25 2409784 ----a-w- c:\program files\windows mail\OESpamFilter.dat
2011-12-14 22:20:19 2048 ----a-w- c:\windows\system32\tzres.dll
.
==================== Find3M ====================
.
2011-11-10 13:54:13 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-11-03 06:22:04 916992 ----a-w- c:\windows\system32\wininet.dll
2011-11-03 06:17:38 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-03 06:17:23 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2011-11-03 06:17:08 71680 ----a-w- c:\windows\system32\iesetup.dll
2011-11-03 06:17:08 109056 ----a-w- c:\windows\system32\iesysprep.dll
2011-11-03 05:22:43 385024 ----a-w- c:\windows\system32\html.iec
2011-11-03 04:45:39 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2011-11-03 04:43:59 1638912 ----a-w- c:\windows\system32\mshtml.tlb
.
============= FINISH: 15:05:06.77 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,760 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:11:13 PM

Posted 09 January 2012 - 08:00 PM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

Posted Image In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/436084 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

Posted Image If you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS and GMER log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from one of the following links if you no longer have it available. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE


We also need a new log from the GMER anti-rootkit Scanner.

Please note that if you are running a 64-bit version of Windows you will not be able to run GMER and you may skip this step.

Please first disable any CD emulation programs using the steps found in this topic:

Why we request you disable CD Emulation when receiving Malware Removal Advice


Then create another GMER log and post it as an attachment to the reply where you post your new DDS log. Instructions on how to properly create a GMER log can be found here:

How to create a GMER log


As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 yoongoo

yoongoo
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Local time:10:13 PM

Posted 10 January 2012 - 06:03 PM

Hi,

So I haven't done anything to fix the issue yet. I am still getting an error whenever I try to update windows. The error states that is regarding error code 643. Its trying to update the the Microsoft.Net framework 4. Also, my laptop freezes and shutdowns occasionally and I don't know the reason why. I'm thinking it is due to a virus or malware. I have tried to remedy it weeks ago with fixit program from the microsoft website, but the problem persists. I don't have the original windows CD. Any suggestion is greatly appreciated. Thank you.

DDS:

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.19170 BrowserJavaVersion: 1.6.0_30
Run by Soo Hun Yoon at 13:05:23 on 2012-01-10
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1252.1.1033.18.1013.179 [GMT -8:00]
.
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\WLTRYSVC.EXE
C:\Windows\System32\bcmwltry.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Dell Network Assistant\hnm_svc.exe
C:\Windows\system32\svchost.exe -k hpdevmgmt
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\STacSV.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Windows\system32\svchost.exe -k HPService
C:\Program Files\DellTPad\Apoint.exe
C:\Windows\System32\hkcmd.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Windows\system32\conime.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://naver.com/
uWindow Title = Internet Explorer provided by Dell
uDefault_Page_URL = hxxp://www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=2070905
mStart Page = about:blank
uInternet Settings,ProxyOverride = <local>
uInternet Settings,ProxyServer = http=127.0.0.1:5555
uURLSearchHooks: H - No File
BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - c:\program files\hp\digital imaging\smart web printing\hpswp_printenhancer.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - c:\program files\divx\divx plus web player\npdivx32.dll
BHO: DivX HiQ: {593ddec6-7468-4cdd-90e1-42dadaa222e9} - c:\program files\divx\divx plus web player\npdivx32.dll
BHO: Java™ Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: CBrowserHelperObject Object: {ca6319c0-31b7-401e-a518-a07c3db8f777} - c:\program files\dell\bae\BAE.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: TBSB05974 Class: {fcbccb87-9224-4b8d-b117-f56d924beb18} - c:\program files\search toolbar\tbcore3.dll
BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
TB: Search Toolbar: {0c8413c1-fad1-446c-8584-be50576f863e} - c:\program files\search toolbar\tbcore3.dll
EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - c:\program files\hp\digital imaging\smart web printing\hpswp_bho.dll
uRun: [Aim6]
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [Apoint] c:\program files\delltpad\Apoint.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [<NO NAME>]
mRun: [DivXUpdate] "c:\program files\divx\divx update\DivXUpdate.exe" /CHECKNOW
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 2 (0x2)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office11\EXCEL.EXE/3000
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office11\REFIEBAR.DLL
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {8DC067B8-911D-473A-90F1-1171B887CDE0} - hxxp://cyimg8.cyworld.com/ImageUpload/CyPictureU1233.cab?20081124
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - hxxp://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{918214C2-95B3-463A-A4C6-E37D85E89C9B} : DhcpNameServer = 192.168.1.254
TCP: Interfaces\{A3ABD1B9-F8F7-47DD-B9AD-713FDB42664E} : DhcpNameServer = 207.17.190.5 4.2.2.2 4.2.2.3 4.2.2.4 8.8.4.4
Notify: igfxcui - igfxdev.dll
Hosts: 67.212.189.115 google.com
Hosts: 67.212.189.115 google.com.au
Hosts: 67.212.189.115 www.google.com.au
Hosts: 67.212.189.115 google.be
Hosts: 67.212.189.115 www.google.be
.
Note: multiple HOSTS entries found. Please refer to Attach.txt
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\soo hun yoon\appdata\roaming\mozilla\firefox\profiles\e74r6qjq.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2856416&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: keyword.URL - chrome://browser-region/locale/region.properties
FF - prefs.js: network.proxy.type - 0
FF - component: c:\programdata\norton\{92622aad-05e8-4459-b256-765ce1e929fb}\nst_1.2.0.7\coffnst\components\coFFNST.dll
FF - component: c:\users\soo hun yoon\appdata\roaming\mozilla\firefox\profiles\e74r6qjq.default\extensions\{f29557fd-78aa-40e6-aba8-9fa219764018}\components\RadioWMPCoreGecko19.dll
FF - component: c:\users\soo hun yoon\appdata\roaming\mozilla\firefox\profiles\e74r6qjq.default\extensions\engine@conduit.com\components\RadioWMPCoreGecko19.dll
FF - plugin: c:\program files\divx\divx ovs helper\npovshelper.dll
FF - plugin: c:\program files\divx\divx plus web player\npdivx32.dll
FF - plugin: c:\program files\google\update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
.
---- FIREFOX POLICIES ----
FF - user.js: google.toolbar.linkdoctor.enabled - false
.
============= SERVICES / DRIVERS ===============
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
R2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-9-23 21504]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2007-9-5 179712]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2011-10-29 135664]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2011-10-29 135664]
S3 MHIKEY10;MHIKEY10;c:\windows\system32\drivers\MHIKEY10.sys [2010-12-2 52096]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2012-01-03 22:36:30 -------- d-----w- C:\3a26e29881a69f04850971
2012-01-02 08:07:19 626688 ----a-w- c:\program files\mozilla firefox\msvcr80.dll
2012-01-02 08:07:19 548864 ----a-w- c:\program files\mozilla firefox\msvcp80.dll
2012-01-02 08:07:19 479232 ----a-w- c:\program files\mozilla firefox\msvcm80.dll
2012-01-02 08:07:19 43992 ----a-w- c:\program files\mozilla firefox\mozutils.dll
2012-01-01 18:44:18 -------- d-----w- C:\02416c69f74a946115e1d2
2011-12-26 07:21:23 -------- d-----w- c:\users\soo hun yoon\appdata\local\ElevatedDiagnostics
2011-12-19 13:36:14 -------- d-----w- C:\2aad4ab7d01659f3c33991
2011-12-19 08:55:24 -------- d-----w- C:\9b457cf94b12f7b1285b550a
2011-12-14 23:05:36 -------- d-----w- c:\users\soo hun yoon\appdata\local\CrashDumps
2011-12-14 22:20:32 49152 ----a-w- c:\windows\system32\csrsrv.dll
2011-12-14 22:20:31 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-12-14 22:20:31 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-12-14 22:20:28 429056 ----a-w- c:\windows\system32\EncDec.dll
2011-12-14 22:20:27 2043904 ----a-w- c:\windows\system32\win32k.sys
2011-12-14 22:20:25 2409784 ----a-w- c:\program files\windows mail\OESpamFilter.dat
2011-12-14 22:20:19 2048 ----a-w- c:\windows\system32\tzres.dll
.
==================== Find3M ====================
.
2011-11-10 13:54:13 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-11-03 06:22:04 916992 ----a-w- c:\windows\system32\wininet.dll
2011-11-03 06:17:38 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-03 06:17:23 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2011-11-03 06:17:08 71680 ----a-w- c:\windows\system32\iesetup.dll
2011-11-03 06:17:08 109056 ----a-w- c:\windows\system32\iesysprep.dll
2011-11-03 05:22:43 385024 ----a-w- c:\windows\system32\html.iec
2011-11-03 04:45:39 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2011-11-03 04:43:59 1638912 ----a-w- c:\windows\system32\mshtml.tlb
.
============= FINISH: 13:06:57.97 ===============

Attached Files



#4 m0le

m0le

    Can U Dig It?


  • Malware Response Team
  • 34,527 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:London, UK
  • Local time:03:13 AM

Posted 11 January 2012 - 08:32 PM

Hi,

Welcome to Bleeping Computer. My name is m0le and I will be helping you with your log.
  • Please subscribe to this topic, if you haven't already. Click the Watch This Topic button at the top on the right.

  • Please avoid installing/uninstalling or updating any programs and attempting any unsupervised fixes or scans. This can make helping you impossible.

  • Please reply to this post so I know you are there.
The forum is busy and we need to have replies as soon as possible. If I haven't had a reply after 3 days I will bump the topic and if you do not reply by the following day after that then I will close the topic.

----------------------------------------------

I don't believe there's anything here to indicate malware so let's do a quick scan or two

Please download Posted Image Malwarebytes Anti-Malware and save it to your desktop.
  • Make sure you are connected to the Internet.
  • Double-click on mbam-setup.exe to install the application or, if you are using Vista, right-click and select Run As Administrator on mbam-setup.exe to install the application.
  • When the installation begins, follow the prompts and do not make any changes to default settings.
  • When installation has finished, make sure you leave both of these checked:
    • Update Malwarebytes' Anti-Malware
    • Launch Malwarebytes' Anti-Malware
  • Then click Finish.
  • MBAM will automatically start and you will be asked to update the program before performing a scan. If an update is found, the program will automatically update itself. Press the OK button to close that box and continue.
    If MBAM won't update then download and update MBAM on a clean computer then save the rules.ref folder to a memory stick. This file is found here: 'C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware' then transfer it across to the infected computer.
  • On the Scanner tab:
    • Make sure the "Perform Full Scan" option is selected.
    • Then click on the Scan button.
  • If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button.
  • The scan will begin and "Scan in progress" will show at the top. It may take some time to complete so please be patient.
  • When the scan is finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".
  • Click OK to close the message box and continue with the removal process.
  • Back at the main Scanner screen, click on the Show Results button to see a list of any malware that was found.
  • Make sure that everything is checked, and click Remove Selected.
  • When removal is completed, a log report will open in Notepad.
  • The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the contents of that report in your next reply and exit MBAM.
Note: If MBAM encounters a file that is difficult to remove, you may be asked to reboot your computer so it can proceed with the disinfection process. Regardless if prompted to restart the computer or not, please do so immediately. Failure to reboot normally (not into safe mode) will prevent MBAM from removing all the malware. MBAM may make changes to your registry as part of its disinfection routine. If you're using other security programs that detect registry changes, they may alert you after scanning with MBAM. Please permit the program to allow the changes.


And

Download Superantispyware
  • Load Superantispyware and click the check for updates button.
  • Once the update is finished click the scan your computer button.
  • Check Perform Complete Scan and then next.
  • Superantispyware will now scan your computer and when its finished it will list all the infections it has found.
  • Make sure that they all have a check next to them and press next.
  • Click finish and you will be taken back to the main interface.
  • Click Preferences and then click the statistics/logs tab. Click the dated log and press view log and a text file will appear.
  • Copy and paste the log onto the forum.

Posted Image
m0le is a proud member of UNITE

#5 yoongoo

yoongoo
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Local time:10:13 PM

Posted 12 January 2012 - 04:54 PM

Hi,

This what I got from the Malwarebyte's log:

Malwarebytes Anti-Malware 1.60.0.1800
www.malwarebytes.org

Database version: v2012.01.12.04

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 8.0.6001.19170
Soo Hun Yoon :: ARTECH [administrator]

1/12/2012 10:16:16 AM
mbam-log-2012-01-12 (10-16-16).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 302178
Time elapsed: 1 hour(s), 29 minute(s), 16 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 1
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings|ProxyServer (PUM.Bad.Proxy) -> Data: http=127.0.0.1:5555 -> Quarantined and deleted successfully.

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

And this is from SuperAntiSpyware:

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 01/12/2012 at 01:14 PM

Application Version : 5.0.1142

Core Rules Database Version : 8128
Trace Rules Database Version: 5940

Scan type : Complete Scan
Total Scan Time : 00:57:26

Operating System Information
Windows Vista Home Basic 32-bit, Service Pack 2 (Build 6.00.6002)
UAC On - Limited User (Administrator User)

Memory items scanned : 632
Memory threats detected : 0
Registry items scanned : 36819
Registry threats detected : 3
File items scanned : 40817
File threats detected : 950

Adware.Tracking Cookie
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@247realmedia[1].txt [ /247realmedia ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@a1.interclick[2].txt [ /a1.interclick ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad-indicator[2].txt [ /ad-indicator ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.asiae.co[2].txt [ /ad.asiae.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.citibank.dn2005[2].txt [ /ad.citibank.dn2005 ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.hankooki[1].txt [ /ad.hankooki ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.mediatoday.co[1].txt [ /ad.mediatoday.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.naver[2].txt [ /ad.naver ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.newdaily.co[2].txt [ /ad.newdaily.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.pressian[1].txt [ /ad.pressian ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.sportsseoul[2].txt [ /ad.sportsseoul ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.wsod[1].txt [ /ad.wsod ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad.yieldmanager[1].txt [ /ad.yieldmanager ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad1.sportschosun[1].txt [ /ad1.sportschosun ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ad2.cbs.co[2].txt [ /ad2.cbs.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adbrite[2].txt [ /adbrite ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adcount.ohmynews[2].txt [ /adcount.ohmynews ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ade.realclick.co[2].txt [ /ade.realclick.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adecn[1].txt [ /adecn ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@admarketplace[1].txt [ /admarketplace ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.bcserving[1].txt [ /ads.bcserving ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.luble[2].txt [ /ads.luble ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.myadplatform[2].txt [ /ads.myadplatform ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.pointroll[2].txt [ /ads.pointroll ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.pubmatic[2].txt [ /ads.pubmatic ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.realclick.co[1].txt [ /ads.realclick.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.redorbit[1].txt [ /ads.redorbit ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.smartadx[1].txt [ /ads.smartadx ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.undertone[2].txt [ /ads.undertone ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ads.xapads[1].txt [ /ads.xapads ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adserver.adtechus[1].txt [ /adserver.adtechus ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adserving.contextualmarketplace[2].txt [ /adserving.contextualmarketplace ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adv.etnews.co[2].txt [ /adv.etnews.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adv.realclick.co[2].txt [ /adv.realclick.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adv.segye[2].txt [ /adv.segye ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@advertising[2].txt [ /advertising ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adx.bidsystem[1].txt [ /adx.bidsystem ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@adxpose[1].txt [ /adxpose ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@affiliate.admediatrack[1].txt [ /affiliate.admediatrack ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@apmebf[2].txt [ /apmebf ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ar.atwola[1].txt [ /ar.atwola ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@at.atwola[1].txt [ /at.atwola ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@atwola[1].txt [ /atwola ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@azjmp[1].txt [ /azjmp ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@blue.crossmedia.co[1].txt [ /blue.crossmedia.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@bridge2.admarketplace[1].txt [ /bridge2.admarketplace ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@bs.serving-sys[1].txt [ /bs.serving-sys ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@burstnet[2].txt [ /burstnet ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@cdn.at.atwola[1].txt [ /cdn.at.atwola ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@cdn1.trafficmp[2].txt [ /cdn1.trafficmp ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@click.realclick.co[2].txt [ /click.realclick.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@clicksor[2].txt [ /clicksor ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@collective-media[1].txt [ /collective-media ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@content.yieldmanager[1].txt [ /content.yieldmanager ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@content.yieldmanager[3].txt [ /content.yieldmanager ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@counter.surfcounters[1].txt [ /counter.surfcounters ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@crackle[1].txt [ /crackle ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@d3.zedo[2].txt [ /d3.zedo ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@data.coremetrics[1].txt [ /data.coremetrics ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@dc.tremormedia[1].txt [ /dc.tremormedia ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@doubleclick[1].txt [ /doubleclick ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@fastclick[2].txt [ /fastclick ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@gmap.112.2o7[1].txt [ /gmap.112.2o7 ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@gmgmacmortgage.112.2o7[1].txt [ /gmgmacmortgage.112.2o7 ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@green.crossmedia.co[2].txt [ /green.crossmedia.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@gtp12.acecounter[1].txt [ /gtp12.acecounter ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@homestore.122.2o7[1].txt [ /homestore.122.2o7 ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@hyundaicapital.112.2o7[1].txt [ /hyundaicapital.112.2o7 ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@imrworldwide[2].txt [ /imrworldwide ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@interclick[2].txt [ /interclick ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@interworksmedia.co[2].txt [ /interworksmedia.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@invitemedia[1].txt [ /invitemedia ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@legolas-media[2].txt [ /legolas-media ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@login.tracking101[2].txt [ /login.tracking101 ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@media6degrees[2].txt [ /media6degrees ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@mediaplex[1].txt [ /mediaplex ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@mediatoday.co[1].txt [ /mediatoday.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@myroitracking[1].txt [ /myroitracking ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@naked[1].txt [ /naked ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ngc14.acecounter[1].txt [ /ngc14.acecounter ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ngc18.acecounter[1].txt [ /ngc18.acecounter ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@oasn04.247realmedia[2].txt [ /oasn04.247realmedia ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@orange.crossmedia.co[1].txt [ /orange.crossmedia.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@overture[2].txt [ /overture ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@p1472.superclick[1].txt [ /p1472.superclick ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@pointroll[1].txt [ /pointroll ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@questionmarket[2].txt [ /questionmarket ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@realmedia.co[1].txt [ /realmedia.co ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@realmedia[1].txt [ /realmedia ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@revsci[1].txt [ /revsci ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@richmedia.yahoo[2].txt [ /richmedia.yahoo ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@rotator.adjuggler[2].txt [ /rotator.adjuggler ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@ru4[2].txt [ /ru4 ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@serving-sys[1].txt [ /serving-sys ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@smartadx[1].txt [ /smartadx ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@specificclick[2].txt [ /specificclick ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@statcounter[1].txt [ /statcounter ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@tacoda[2].txt [ /tacoda ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@track.tester-rewards[2].txt [ /track.tester-rewards ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@tracking.realtor[1].txt [ /tracking.realtor ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@trafficmp[2].txt [ /trafficmp ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@tribalfusion[2].txt [ /tribalfusion ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@veohnetwork.122.2o7[1].txt [ /veohnetwork.122.2o7 ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@web.targetbanner[1].txt [ /web.targetbanner ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@www.burstnet[2].txt [ /www.burstnet ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@www.googleadservices[2].txt [ /www.googleadservices ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@www.googleadservices[3].txt [ /www.googleadservices ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@www.googleadservices[5].txt [ /www.googleadservices ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@www.googleadservices[6].txt [ /www.googleadservices ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@www.socialtrack[2].txt [ /www.socialtrack ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@www.tracklead[1].txt [ /www.tracklead ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@xm.xtendmedia[1].txt [ /xm.xtendmedia ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@yieldmanager[2].txt [ /yieldmanager ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@zedo[1].txt [ /zedo ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\soo_hun_yoon@zillow.adbureau[2].txt [ /zillow.adbureau ]
C:\Users\Soo Hun Yoon\AppData\Roaming\Microsoft\Windows\Cookies\LJFGALGA.txt [ /atdmt.com ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adserver.adtechus[2].txt [ Cookie:soo hun yoon@adserver.adtechus.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@statse.webtrendslive[1].txt [ Cookie:soo hun yoon@statse.webtrendslive.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\E1HO8UMD.txt [ Cookie:soo hun yoon@adbrite.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\E3RCT5U2.txt [ Cookie:soo hun yoon@content.yieldmanager.com/ak/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\13HJAP40.txt [ Cookie:soo hun yoon@specificclick.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@orange.crossmedia.co[2].txt [ Cookie:soo hun yoon@orange.crossmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@nads9.nasads[2].txt [ Cookie:soo hun yoon@nads9.nasads.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@buzznet.112.2o7[1].txt [ Cookie:soo hun yoon@buzznet.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\9ELEY6B1.txt [ Cookie:soo hun yoon@www.burstnet.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@levelwing.112.2o7[1].txt [ Cookie:soo hun yoon@levelwing.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@tracking.realtor[1].txt [ Cookie:soo hun yoon@tracking.realtor.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@yieldmanager[1].txt [ Cookie:soo hun yoon@yieldmanager.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\IAQPUE03.txt [ Cookie:soo hun yoon@zedo.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\YCIDWVO8.txt [ Cookie:soo hun yoon@at.atwola.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ticketsnow.112.2o7[1].txt [ Cookie:soo hun yoon@ticketsnow.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@server.iad.liveperson[2].txt [ Cookie:soo hun yoon@server.iad.liveperson.net/hc/17492520 ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@green.crossmedia.co[1].txt [ Cookie:soo hun yoon@green.crossmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\BPB8FC0Y.txt [ Cookie:soo hun yoon@ad.yieldmanager.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\CRPV251U.txt [ Cookie:soo hun yoon@atdmt.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\HG873M1X.txt [ Cookie:soo hun yoon@collective-media.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\2YZSE3BU.txt [ Cookie:soo hun yoon@questionmarket.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@apmebf[1].txt [ Cookie:soo hun yoon@apmebf.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\L5K080AM.txt [ Cookie:soo hun yoon@nextag.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adecn[1].txt [ Cookie:soo hun yoon@adecn.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\CWGNHW4L.txt [ Cookie:soo hun yoon@insightexpressai.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@mediatoday.co[1].txt [ Cookie:soo hun yoon@mediatoday.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@counter.hitslink[1].txt [ Cookie:soo hun yoon@counter.hitslink.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\L7Z61A4R.txt [ Cookie:soo hun yoon@ade.realclick.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\SS1N43XM.txt [ Cookie:soo hun yoon@advertising.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adopt.specificclick[1].txt [ Cookie:soo hun yoon@adopt.specificclick.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@imrworldwide[2].txt [ Cookie:soo hun yoon@imrworldwide.com/cgi-bin ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@roiservice[2].txt [ Cookie:soo hun yoon@roiservice.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@nads1.nasads[2].txt [ Cookie:soo hun yoon@nads1.nasads.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@richmedia.yahoo[1].txt [ Cookie:soo hun yoon@richmedia.yahoo.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@server.iad.liveperson[1].txt [ Cookie:soo hun yoon@server.iad.liveperson.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@precisionclick[1].txt [ Cookie:soo hun yoon@precisionclick.com/ad ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@log356.adcounter.co[1].txt [ Cookie:soo hun yoon@log356.adcounter.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@trafficmp[2].txt [ Cookie:soo hun yoon@trafficmp.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@mylook5.dmcmedia.co[2].txt [ Cookie:soo hun yoon@mylook5.dmcmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@aspc.adclick.co[2].txt [ Cookie:soo hun yoon@aspc.adclick.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\L4U2R7KQ.txt [ Cookie:soo hun yoon@serving-sys.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@realmedia.co[2].txt [ Cookie:soo hun yoon@realmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\7SXQ10YM.txt [ Cookie:soo hun yoon@mediaplex.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@247realmedia.co[1].txt [ Cookie:soo hun yoon@247realmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@hitbox[2].txt [ Cookie:soo hun yoon@hitbox.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adopt.euroclick[1].txt [ Cookie:soo hun yoon@adopt.euroclick.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@data.coremetrics[1].txt [ Cookie:soo hun yoon@data.coremetrics.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@cgm.adbureau[1].txt [ Cookie:soo hun yoon@cgm.adbureau.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@dgc1.acecounter[2].txt [ Cookie:soo hun yoon@dgc1.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@overture[1].txt [ Cookie:soo hun yoon@overture.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\VV4MTSKK.txt [ Cookie:soo hun yoon@fastclick.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@mylook7.dmcmedia.co[1].txt [ Cookie:soo hun yoon@mylook7.dmcmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adlegend[2].txt [ Cookie:soo hun yoon@adlegend.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@2o7[2].txt [ Cookie:soo hun yoon@2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@myroitracking[1].txt [ Cookie:soo hun yoon@myroitracking.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@mylook10.dmcmedia.co[1].txt [ Cookie:soo hun yoon@mylook10.dmcmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@nads8.nasads[2].txt [ Cookie:soo hun yoon@nads8.nasads.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ads.bridgetrack[2].txt [ Cookie:soo hun yoon@ads.bridgetrack.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@homestore.122.2o7[1].txt [ Cookie:soo hun yoon@homestore.122.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@bs.serving-sys[2].txt [ Cookie:soo hun yoon@bs.serving-sys.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\G0GAMCYA.txt [ Cookie:soo hun yoon@burstnet.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adcount.ohmynews[1].txt [ Cookie:soo hun yoon@adcount.ohmynews.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\IQZ6WXRB.txt [ Cookie:soo hun yoon@tribalfusion.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ads.lucidmedia[1].txt [ Cookie:soo hun yoon@ads.lucidmedia.com/clicksense/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\ANKBBP8N.txt [ Cookie:soo hun yoon@doubleclick.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@mylook2.dmcmedia.co[2].txt [ Cookie:soo hun yoon@mylook2.dmcmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ticketsnow[1].txt [ Cookie:soo hun yoon@ticketsnow.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@blue.crossmedia.co[1].txt [ Cookie:soo hun yoon@blue.crossmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\5K6OHT86.txt [ Cookie:soo hun yoon@ads.pointroll.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\6IV5BQB4.txt [ Cookie:soo hun yoon@atwola.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@statcounter[1].txt [ Cookie:soo hun yoon@statcounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\39H8JI2G.txt [ Cookie:soo hun yoon@interclick.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ad3.clickhype[1].txt [ Cookie:soo hun yoon@ad3.clickhype.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@www.ticketsnow[1].txt [ Cookie:soo hun yoon@www.ticketsnow.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@specificmedia[1].txt [ Cookie:soo hun yoon@specificmedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@qksrv[2].txt [ Cookie:soo hun yoon@qksrv.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@247realmedia[1].txt [ Cookie:soo hun yoon@247realmedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@cct.clickable[1].txt [ Cookie:soo hun yoon@cct.clickable.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@nads5.nasads[2].txt [ Cookie:soo hun yoon@nads5.nasads.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\7845T3CV.txt [ Cookie:soo hun yoon@a1.interclick.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@kelleybluebook.112.2o7[1].txt [ Cookie:soo hun yoon@kelleybluebook.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@sales.liveperson[1].txt [ Cookie:soo hun yoon@sales.liveperson.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@indextools[2].txt [ Cookie:soo hun yoon@indextools.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@mmstat[2].txt [ Cookie:soo hun yoon@mmstat.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ad.netinsight.co[1].txt [ Cookie:soo hun yoon@ad.netinsight.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@gtp10.acecounter[1].txt [ Cookie:soo hun yoon@gtp10.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@mgc10.acecounter[2].txt [ Cookie:soo hun yoon@mgc10.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@edge.ru4[2].txt [ Cookie:soo hun yoon@edge.ru4.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@metacafe.122.2o7[1].txt [ Cookie:soo hun yoon@metacafe.122.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@bmwmoter.122.2o7[1].txt [ Cookie:soo hun yoon@bmwmoter.122.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@sextoycloseouts[1].txt [ Cookie:soo hun yoon@sextoycloseouts.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@stats.adbrite[1].txt [ Cookie:soo hun yoon@stats.adbrite.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\F6ZP8813.txt [ Cookie:soo hun yoon@media6degrees.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@valueclick[1].txt [ Cookie:soo hun yoon@valueclick.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@oasn04.247realmedia[1].txt [ Cookie:soo hun yoon@oasn04.247realmedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ehg-realtytrac.hitbox[1].txt [ Cookie:soo hun yoon@ehg-realtytrac.hitbox.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@www.hanafosstat.co[2].txt [ Cookie:soo hun yoon@www.hanafosstat.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@mylook4.dmcmedia.co[1].txt [ Cookie:soo hun yoon@mylook4.dmcmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@zillow.adbureau[1].txt [ Cookie:soo hun yoon@zillow.adbureau.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ngc18.acecounter[1].txt [ Cookie:soo hun yoon@ngc18.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@sec1.liveperson[1].txt [ Cookie:soo hun yoon@sec1.liveperson.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@www.burstbeacon[1].txt [ Cookie:soo hun yoon@www.burstbeacon.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@gtp5.acecounter[1].txt [ Cookie:soo hun yoon@gtp5.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@clickbank[1].txt [ Cookie:soo hun yoon@clickbank.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@log464.adcounter.co[1].txt [ Cookie:soo hun yoon@log464.adcounter.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@extrabanner[1].txt [ Cookie:soo hun yoon@extrabanner.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@openx.realrussianmedia[2].txt [ Cookie:soo hun yoon@openx.realrussianmedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ehg-worldvision.hitbox[2].txt [ Cookie:soo hun yoon@ehg-worldvision.hitbox.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\GY9MJ6JV.txt [ Cookie:soo hun yoon@pointroll.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\7H6X6V1H.txt [ Cookie:soo hun yoon@ads.crossmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@cdn4.specificclick[1].txt [ Cookie:soo hun yoon@cdn4.specificclick.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@server.cpmstar[1].txt [ Cookie:soo hun yoon@server.cpmstar.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@stat.youku[1].txt [ Cookie:soo hun yoon@stat.youku.com/player/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@gtb1.acecounter[1].txt [ Cookie:soo hun yoon@gtb1.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@viaviralvideo.112.2o7[1].txt [ Cookie:soo hun yoon@viaviralvideo.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@qnsr[1].txt [ Cookie:soo hun yoon@qnsr.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@nads3.nasads[2].txt [ Cookie:soo hun yoon@nads3.nasads.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@bluestreak[2].txt [ Cookie:soo hun yoon@bluestreak.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@gtt3.acecounter[2].txt [ Cookie:soo hun yoon@gtt3.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@test.coremetrics[1].txt [ Cookie:soo hun yoon@test.coremetrics.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@log1012.adcounter.co[2].txt [ Cookie:soo hun yoon@log1012.adcounter.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@popularscreensavers[2].txt [ Cookie:soo hun yoon@popularscreensavers.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@dominionenterprises.112.2o7[1].txt [ Cookie:soo hun yoon@dominionenterprises.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@sbsaustralia.112.2o7[1].txt [ Cookie:soo hun yoon@sbsaustralia.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ngc20.acecounter[2].txt [ Cookie:soo hun yoon@ngc20.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@web-stat[1].txt [ Cookie:soo hun yoon@web-stat.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@google[7].txt [ Cookie:soo hun yoon@google.com/accounts/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\KX0M849T.txt [ Cookie:soo hun yoon@tacoda.at.atwola.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@emailfinder[2].txt [ Cookie:soo hun yoon@emailfinder.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@anime-media[1].txt [ Cookie:soo hun yoon@anime-media.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@entrepreneur[2].txt [ Cookie:soo hun yoon@entrepreneur.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ad1.dmcmedia.co[1].txt [ Cookie:soo hun yoon@ad1.dmcmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@gtb2.acecounter[1].txt [ Cookie:soo hun yoon@gtb2.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@trvlnet.adbureau[1].txt [ Cookie:soo hun yoon@trvlnet.adbureau.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@tns-counter[1].txt [ Cookie:soo hun yoon@tns-counter.ru/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\MXLWJDYC.txt [ Cookie:soo hun yoon@invitemedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@sales.liveperson[5].txt [ Cookie:soo hun yoon@sales.liveperson.net/hc/2329305 ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@oasn03.247realmedia[1].txt [ Cookie:soo hun yoon@oasn03.247realmedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@hyundaicapital.112.2o7[1].txt [ Cookie:soo hun yoon@hyundaicapital.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@log819.adcounter.co[2].txt [ Cookie:soo hun yoon@log819.adcounter.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@bussbanner073[1].txt [ Cookie:soo hun yoon@bussbanner073.info/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@nativebanner[1].txt [ Cookie:soo hun yoon@nativebanner.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@flightstats[1].txt [ Cookie:soo hun yoon@flightstats.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@microsoftwga.112.2o7[1].txt [ Cookie:soo hun yoon@microsoftwga.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@intermundomedia[2].txt [ Cookie:soo hun yoon@intermundomedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@traveladvertising[1].txt [ Cookie:soo hun yoon@traveladvertising.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@siemens.112.2o7[1].txt [ Cookie:soo hun yoon@siemens.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adserv.brandaffinity[2].txt [ Cookie:soo hun yoon@adserv.brandaffinity.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@yieldmanager[3].txt [ Cookie:soo hun yoon@yieldmanager.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@gtp15.acecounter[2].txt [ Cookie:soo hun yoon@gtp15.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\1X65FC18.txt [ Cookie:soo hun yoon@click.realclick.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ivmedia.jambocast[1].txt [ Cookie:soo hun yoon@ivmedia.jambocast.com/flash/xml/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@purple.crossmedia.co[2].txt [ Cookie:soo hun yoon@purple.crossmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ads.lucidmedia[2].txt [ Cookie:soo hun yoon@ads.lucidmedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@rotator.adjuggler[1].txt [ Cookie:soo hun yoon@rotator.adjuggler.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@www.google[1].txt [ Cookie:soo hun yoon@www.google.com/accounts ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ehg-bmwna.hitbox[2].txt [ Cookie:soo hun yoon@ehg-bmwna.hitbox.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@click4teetimes[1].txt [ Cookie:soo hun yoon@click4teetimes.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@pixel-sg.pixelinteractivemedia[1].txt [ Cookie:soo hun yoon@pixel-sg.pixelinteractivemedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ehg-viacom.hitbox[1].txt [ Cookie:soo hun yoon@ehg-viacom.hitbox.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@atlas.entrepreneur[1].txt [ Cookie:soo hun yoon@atlas.entrepreneur.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@gtp12.acecounter[1].txt [ Cookie:soo hun yoon@gtp12.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adknowledge[1].txt [ Cookie:soo hun yoon@adknowledge.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@account.alot[1].txt [ Cookie:soo hun yoon@account.alot.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ehg-theactivenetwork.hitbox[2].txt [ Cookie:soo hun yoon@ehg-theactivenetwork.hitbox.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@mgc17.acecounter[2].txt [ Cookie:soo hun yoon@mgc17.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ngc14.acecounter[2].txt [ Cookie:soo hun yoon@ngc14.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adtech[1].txt [ Cookie:soo hun yoon@adtech.de/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\IBU6OUTU.txt [ Cookie:soo hun yoon@ru4.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\0PCJXIA4.txt [ Cookie:soo hun yoon@c.atdmt.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@hotels.112.2o7[1].txt [ Cookie:soo hun yoon@hotels.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@www.tomtracker[2].txt [ Cookie:soo hun yoon@www.tomtracker.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@log412.adcounter.co[2].txt [ Cookie:soo hun yoon@log412.adcounter.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@gmap.112.2o7[1].txt [ Cookie:soo hun yoon@gmap.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@asianmedia[1].txt [ Cookie:soo hun yoon@asianmedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@piousbanner524[1].txt [ Cookie:soo hun yoon@piousbanner524.info/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ngc13.acecounter[1].txt [ Cookie:soo hun yoon@ngc13.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@findarticles[1].txt [ Cookie:soo hun yoon@findarticles.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\HBN7DJSI.txt [ Cookie:soo hun yoon@pro-market.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adbureau.traffic[1].txt [ Cookie:soo hun yoon@adbureau.traffic.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\X4OXFZXD.txt [ Cookie:soo hun yoon@ar.atwola.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\S66CAB37.txt [ Cookie:soo hun yoon@lucidmedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ev.ads.pointroll[1].txt [ Cookie:soo hun yoon@ev.ads.pointroll.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@hotelscom.122.2o7[1].txt [ Cookie:soo hun yoon@hotelscom.122.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\6K8X2RZ1.txt [ Cookie:soo hun yoon@www.googleadservices.com/pagead/conversion/1071150482/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\I7XQQUGY.txt [ Cookie:soo hun yoon@r1-ads.ace.advertising.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@lstat.youku[1].txt [ Cookie:soo hun yoon@lstat.youku.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@eyewonder[1].txt [ Cookie:soo hun yoon@eyewonder.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@ads.dmcmedia.co[1].txt [ Cookie:soo hun yoon@ads.dmcmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@network.realmedia[2].txt [ Cookie:soo hun yoon@network.realmedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@entrepreneur.122.2o7[1].txt [ Cookie:soo hun yoon@entrepreneur.122.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@msnportal.112.2o7[1].txt [ Cookie:soo hun yoon@msnportal.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@revenue[2].txt [ Cookie:soo hun yoon@revenue.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@kango.112.2o7[1].txt [ Cookie:soo hun yoon@kango.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@dreamsinc.112.2o7[1].txt [ Cookie:soo hun yoon@dreamsinc.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adserver.aol[1].txt [ Cookie:soo hun yoon@adserver.aol.fr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@passfinders[1].txt [ Cookie:soo hun yoon@passfinders.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@marriottinternational.122.2o7[1].txt [ Cookie:soo hun yoon@marriottinternational.122.2o7.net/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@elitemeetings[2].txt [ Cookie:soo hun yoon@elitemeetings.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@media.expedia[2].txt [ Cookie:soo hun yoon@media.expedia.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@log2034.adcounter.co[1].txt [ Cookie:soo hun yoon@log2034.adcounter.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@click.newsad.co[1].txt [ Cookie:soo hun yoon@click.newsad.co.kr/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\soo_hun_yoon@adxpose[1].txt [ Cookie:soo hun yoon@adxpose.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\M0OGC564.txt [ Cookie:soo hun yoon@h.atdmt.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\EXBVCG3O.txt [ Cookie:soo hun yoon@gtc3.acecounter.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\84P6RMJO.txt [ Cookie:soo hun yoon@accounts.google.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\TAQGG2N5.txt [ Cookie:soo hun yoon@bigentertainmentfinder.com/ ]
C:\USERS\SOO HUN YOON\AppData\Roaming\Microsoft\Windows\Cookies\Low\G7PV80X7.txt [ Cookie:soo hun yoon@media.joinsmsn.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@adserver.adtechus[1].txt [ Cookie:soo hun yoon@adserver.adtechus.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@adbrite[2].txt [ Cookie:soo hun yoon@adbrite.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@content.yieldmanager[3].txt [ Cookie:soo hun yoon@content.yieldmanager.com/ak/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@veohnetwork.122.2o7[1].txt [ Cookie:soo hun yoon@veohnetwork.122.2o7.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@specificclick[2].txt [ Cookie:soo hun yoon@specificclick.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@a1.interclick[2].txt [ Cookie:soo hun yoon@a1.interclick.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@orange.crossmedia.co[1].txt [ Cookie:soo hun yoon@orange.crossmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@ngc14.acecounter[1].txt [ Cookie:soo hun yoon@ngc14.acecounter.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@ru4[2].txt [ Cookie:soo hun yoon@ru4.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@www.burstnet[2].txt [ Cookie:soo hun yoon@www.burstnet.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@tracking.realtor[1].txt [ Cookie:soo hun yoon@tracking.realtor.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@zedo[1].txt [ Cookie:soo hun yoon@zedo.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@www.googleadservices[5].txt [ Cookie:soo hun yoon@www.googleadservices.com/pagead/conversion/1057062368/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@at.atwola[1].txt [ Cookie:soo hun yoon@at.atwola.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@green.crossmedia.co[2].txt [ Cookie:soo hun yoon@green.crossmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@ad.yieldmanager[1].txt [ Cookie:soo hun yoon@ad.yieldmanager.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@media6degrees[2].txt [ Cookie:soo hun yoon@media6degrees.com/ ]
C:\USERS\SOO HUN YOON\Cookies\LJFGALGA.txt [ Cookie:soo hun yoon@atdmt.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@oasn04.247realmedia[2].txt [ Cookie:soo hun yoon@oasn04.247realmedia.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@gmap.112.2o7[1].txt [ Cookie:soo hun yoon@gmap.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@collective-media[1].txt [ Cookie:soo hun yoon@collective-media.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@ar.atwola[1].txt [ Cookie:soo hun yoon@ar.atwola.com/html ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@questionmarket[2].txt [ Cookie:soo hun yoon@questionmarket.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@adecn[1].txt [ Cookie:soo hun yoon@adecn.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@apmebf[2].txt [ Cookie:soo hun yoon@apmebf.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@mediatoday.co[1].txt [ Cookie:soo hun yoon@mediatoday.co.kr/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@ade.realclick.co[2].txt [ Cookie:soo hun yoon@ade.realclick.co.kr/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@smartadx[1].txt [ Cookie:soo hun yoon@smartadx.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@zillow.adbureau[2].txt [ Cookie:soo hun yoon@zillow.adbureau.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@ngc18.acecounter[1].txt [ Cookie:soo hun yoon@ngc18.acecounter.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@advertising[2].txt [ Cookie:soo hun yoon@advertising.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@affiliate.admediatrack[1].txt [ Cookie:soo hun yoon@affiliate.admediatrack.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@clicksor[2].txt [ Cookie:soo hun yoon@clicksor.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@invitemedia[1].txt [ Cookie:soo hun yoon@invitemedia.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@adx.bidsystem[1].txt [ Cookie:soo hun yoon@adx.bidsystem.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@richmedia.yahoo[2].txt [ Cookie:soo hun yoon@richmedia.yahoo.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@trafficmp[2].txt [ Cookie:soo hun yoon@trafficmp.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@serving-sys[1].txt [ Cookie:soo hun yoon@serving-sys.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@realmedia.co[1].txt [ Cookie:soo hun yoon@realmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@pointroll[1].txt [ Cookie:soo hun yoon@pointroll.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@mediaplex[1].txt [ Cookie:soo hun yoon@mediaplex.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@ads.smartadx[1].txt [ Cookie:soo hun yoon@ads.smartadx.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@data.coremetrics[1].txt [ Cookie:soo hun yoon@data.coremetrics.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@yieldmanager[2].txt [ Cookie:soo hun yoon@yieldmanager.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@overture[2].txt [ Cookie:soo hun yoon@overture.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@click.realclick.co[2].txt [ Cookie:soo hun yoon@click.realclick.co.kr/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@myroitracking[1].txt [ Cookie:soo hun yoon@myroitracking.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@homestore.122.2o7[1].txt [ Cookie:soo hun yoon@homestore.122.2o7.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@bs.serving-sys[1].txt [ Cookie:soo hun yoon@bs.serving-sys.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@burstnet[2].txt [ Cookie:soo hun yoon@burstnet.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@adcount.ohmynews[2].txt [ Cookie:soo hun yoon@adcount.ohmynews.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@tribalfusion[2].txt [ Cookie:soo hun yoon@tribalfusion.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@doubleclick[1].txt [ Cookie:soo hun yoon@doubleclick.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@rotator.adjuggler[2].txt [ Cookie:soo hun yoon@rotator.adjuggler.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@blue.crossmedia.co[1].txt [ Cookie:soo hun yoon@blue.crossmedia.co.kr/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@ads.pointroll[2].txt [ Cookie:soo hun yoon@ads.pointroll.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@atwola[1].txt [ Cookie:soo hun yoon@atwola.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@statcounter[1].txt [ Cookie:soo hun yoon@statcounter.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@admarketplace[1].txt [ Cookie:soo hun yoon@admarketplace.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@interclick[2].txt [ Cookie:soo hun yoon@interclick.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@www.googleadservices[3].txt [ Cookie:soo hun yoon@www.googleadservices.com/pagead/conversion/1022657667/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@247realmedia[1].txt [ Cookie:soo hun yoon@247realmedia.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@xm.xtendmedia[1].txt [ Cookie:soo hun yoon@xm.xtendmedia.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@gmgmacmortgage.112.2o7[1].txt [ Cookie:soo hun yoon@gmgmacmortgage.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@bridge2.admarketplace[1].txt [ Cookie:soo hun yoon@bridge2.admarketplace.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@tacoda[2].txt [ Cookie:soo hun yoon@tacoda.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@www.tracklead[1].txt [ Cookie:soo hun yoon@www.tracklead.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@hyundaicapital.112.2o7[1].txt [ Cookie:soo hun yoon@hyundaicapital.112.2o7.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@imrworldwide[2].txt [ Cookie:soo hun yoon@imrworldwide.com/cgi-bin ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@naked[1].txt [ Cookie:soo hun yoon@naked.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@fastclick[2].txt [ Cookie:soo hun yoon@fastclick.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@www.socialtrack[2].txt [ Cookie:soo hun yoon@www.socialtrack.net/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@adxpose[1].txt [ Cookie:soo hun yoon@adxpose.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@p1472.superclick[1].txt [ Cookie:soo hun yoon@p1472.superclick.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@track.tester-rewards[2].txt [ Cookie:soo hun yoon@track.tester-rewards.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@www.googleadservices[6].txt [ Cookie:soo hun yoon@www.googleadservices.com/pagead/conversion/1068536067/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@gtp12.acecounter[1].txt [ Cookie:soo hun yoon@gtp12.acecounter.com/ ]
C:\USERS\SOO HUN YOON\Cookies\soo_hun_yoon@login.tracking101[2].txt [ Cookie:soo hun yoon@login.tracking101.com/ ]
.doubleclick.net [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.divx.112.2o7.net [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.interworksmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
googleads.g.doubleclick.net [ C:\USERS\SOO HUN YOON\APPDATA\LOCAL\MICROSOFT\WINDOWS\TEMPORARY INTERNET FILES\VIRTUALIZED\C\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
a.ads2.msads.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
ad.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
ads2.msads.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
b.ads2.msads.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
bannerfarm.ace.advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
broadcast.piximedia.fr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
cdn4.specificclick.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
content.oddcast.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
core.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
crackle.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
dmc.dmcmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
dmc2.dmcmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
files.youporn.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
googleads.g.doubleclick.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
ia.media-imdb.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
m1.2mdn.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
media.scanscout.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
media.tattomedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
media.wilson.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
media.z2.zoopy.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
media1.shufuni.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
nasimg.nasmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
objects.tremormedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
oddcast.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
s0.2mdn.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
secure-uk.imrworldwide.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
secure-us.imrworldwide.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
sexlovecall.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
sexycall69.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
spe.atdmt.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
static.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
udn.specificclick.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
video.redorbit.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
www.naiadsystems.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
www.pornhub.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
wwwstatic.megaporn.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QRBR6ER7 ]
C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\SOO_HUN_YOON@AD.PANDORA[1].TXT [ /AD.PANDORA ]
.adultfriendfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.redorbit.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.redorbit.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.redorbit.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.redorbit.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.redorbit.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.redorbit.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
gtp2.acecounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
gtp2.acecounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
gtp2.acecounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
gtp14.acecounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
gtp14.acecounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
gtp14.acecounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
gtp5.acecounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
gtp5.acecounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.girlsteachsex.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.girlsteachsex.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.girlsteachsex.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.getclicky.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.static.getclicky.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
in.getclicky.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hentaicounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.hornymatches.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.interworksmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.xxxmatch.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
wt.xxxmatch.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.xxxmatch.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.xxxmatch.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
eas21.emediate.eu [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
eas21.emediate.eu [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adweb.onmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adweb.onmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adweb.onmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
dc.tremormedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crossmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.kontera.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.pennyfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.pennyfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
openx.sexsearchcom.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.realmedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.realmedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
network.realmedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.xxxcupid.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.xxxcupid.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.xxxcupid.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
wt.xxxcupid.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.pornhub.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhub.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.pornhub.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhub.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhub.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhub.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhub.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhub.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.bs.serving-sys.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.content.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.content.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ad.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.mediatoday.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhubpremium.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhubpremium.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhubpremium.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhubpremium.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhubpremium.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhubpremium.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhubpremium.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
wstat.wibiya.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.syndication.traffichaus.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.syndication.traffichaus.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.syndication.traffichaus.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.realmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ma.realmedia.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.c.atdmt.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.c.atdmt.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.c.atdmt.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.mediabrandsww.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.histats.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.histats.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.freecamsexposed.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
xxx-animatrix.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.yieldmanager.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.enoratraffic.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
adv.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
adv.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
adv.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
adv.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
adv.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
adv.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
adv.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
adv.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ade.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
click.realclick.co.kr [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.statcounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.statcounter.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.youporn.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.youporn.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.youporn.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.youporn.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.youporn.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.exoclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.velmedia.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.eyewonder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.eyewonder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.trafficjunky.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
pt.trafficjunky.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
pt.trafficjunky.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.lucidmedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ero-advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ero-advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ero-advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.steelhousemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.steelhousemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.steelhousemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.hentaicrack.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.hentaicrack.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adxpansion.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adxpansion.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.bridgetrack.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.bridgetrack.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.bridgetrack.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornstargals.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornstargals.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornstargals.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.myroitracking.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
track.prd1.netshelter.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.r1-ads.ace.advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
a-serv2.conlanmediagroup.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adxpose.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.saymedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.sexad.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
sales.liveperson.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
sales.liveperson.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.akamai.interclickproxy.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.yadro.ru [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adserver.adtechus.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.overture.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.overture.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.sexycall69.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.zeusclicks.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads2.zeusclicks.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.pornhublive.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhublive.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhublive.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhublive.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhublive.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pornhublive.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.technoratimedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.fastclick.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.www.burstnet.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.burstnet.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.tribalfusion.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.lucidmedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
www.burstnet.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crakmedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ads.crakmedia.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\SOO HUN YOON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\E74R6QJQ.DEFAULT\COOKIES.SQLITE ]

Adware.HBHelper
HKU\S-1-5-21-3116971143-1968895632-2929390525-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
HKU\S-1-5-21-3116971143-1968895632-2929390525-1000\Software\Microsoft\Internet Explorer\URLSearchHooks#{CA3EB689-8F09-4026-AA10-B9534C691CE0}
HKCR\CLSID\{CA3EB689-8F09-4026-AA10-B9534C691CE0}

Trojan.Agent/Gen-Bifrose
C:\USERS\SOO HUN YOON\APPDATA\LOCAL\TEMP\HPUPDATE\9762\MODELUPDATE.EXE
C:\USERS\SOO HUN YOON\APPDATA\LOCAL\TEMP\HPUPDATE\9763\MODELUPDATE.EXE
C:\USERS\SOO HUN YOON\APPDATA\LOCAL\TEMP\HPUPDATE\9764\MODELUPDATE.EXE

#6 m0le

m0le

    Can U Dig It?


  • Malware Response Team
  • 34,527 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:London, UK
  • Local time:03:13 AM

Posted 12 January 2012 - 05:57 PM

I was wrong, there are traces of malware but they look like your security system had dealt with the majority of what arrived.

Please run ESET and scan online

I'd like us to scan your machine with ESET OnlineScan
  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.
    ESET OnlineScan
  • Click the Posted Image button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on Posted Image to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the Posted Image icon on your desktop.
  • Check Posted Image
  • Click the Posted Image button.
  • Accept any security warnings from your browser.
  • Under scan settings, check Posted Image and check Remove found threats
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • Copy and paste the resulting log in your next reply
If no log is generated that means nothing was found. Please let me know if this happens.
Posted Image
m0le is a proud member of UNITE

#7 yoongoo

yoongoo
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Local time:10:13 PM

Posted 13 January 2012 - 05:55 PM

Hi,

I ran the scan. Here's what I got:

C:\Users\Soo Hun Yoon\Videos\Veoh\1_VeohWebPlayerSetup_eng.exe Win32/OpenCandy application deleted - quarantined
C:\Users\Soo Hun Yoon\Videos\Veoh\VeohWebPlayerSetup_eng.exe Win32/OpenCandy application deleted - quarantined
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\TfsStore\Tfs_DAV\C00.php a variant of Java/TrojanDownloader.OpenStream.NAZ trojan deleted - quarantined

#8 m0le

m0le

    Can U Dig It?


  • Malware Response Team
  • 34,527 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:London, UK
  • Local time:03:13 AM

Posted 13 January 2012 - 08:53 PM

That looks like it. Can you run OTL for me to just do a final check.

  • Download OTL to your desktop.
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • When the window appears, underneath Output at the top change it to Minimal Output.
  • Under the Standard Registry box change it to All.
  • Check the boxes beside LOP Check and Purity Check.
  • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply.

Posted Image
m0le is a proud member of UNITE

#9 yoongoo

yoongoo
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Local time:10:13 PM

Posted 14 January 2012 - 03:16 PM

Hi,

I ran OTL.

OTL.txt:

OTL logfile created on: 1/14/2012 12:05:55 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Soo Hun Yoon\Desktop
Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19170)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1013.45 Mb Total Physical Memory | 317.03 Mb Available Physical Memory | 31.28% Memory free
2.24 Gb Paging File | 1.21 Gb Available in Paging File | 54.03% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 69.95 Gb Total Space | 25.80 Gb Free Space | 36.88% Space Free | Partition Type: NTFS
Drive D: | 2.00 Gb Total Space | 1.40 Gb Free Space | 69.96% Space Free | Partition Type: NTFS

Computer Name: ARTECH | User Name: Soo Hun Yoon | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Soo Hun Yoon\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
PRC - C:\Program Files\SUPERAntiSpyware\SASCore.exe (SUPERAntiSpyware.com)
PRC - C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Windows\System32\stacsv.exe (SigmaTel, Inc.)
PRC - C:\Program Files\Dell Network Assistant\hnm_svc.exe (SingleClick Systems)
PRC - C:\Program Files\DellTPad\hidfind.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\DellTPad\ApMsgFwd.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\DellTPad\ApntEx.exe (Alps Electric Co., Ltd.)


========== Modules (No Company Name) ==========

MOD - C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll ()
MOD - C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll ()
MOD - C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL ()
MOD - C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll ()
MOD - C:\Program Files\Mozilla Firefox\mozjs.dll ()
MOD - C:\Users\Soo Hun Yoon\AppData\Roaming\Mozilla\Firefox\Profiles\e74r6qjq.default\extensions\{f29557fd-78aa-40e6-aba8-9fa219764018}\components\RadioWMPCoreGecko9.dll ()
MOD - C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll ()
MOD - C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
MOD - C:\Windows\System32\igfxTMM.dll ()


========== Win32 Services (SafeList) ==========

SRV - (CLTNetCnService) -- File not found
SRV - (!SASCORE) -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
SRV - (getPlusHelper) getPlus® -- C:\Program Files\NOS\bin\getPlus_Helper.dll (NOS Microsystems Ltd.)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (STacSV) -- C:\Windows\System32\stacsv.exe (SigmaTel, Inc.)
SRV - (hnmsvc) -- C:\Program Files\Dell Network Assistant\hnm_svc.exe (SingleClick Systems)


========== Driver Services (SafeList) ==========

DRV - (SASDIFSV) -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL) -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (MHIKEY10) -- C:\Windows\System32\drivers\MHIKEY10.sys (Generic USB smartcard reader)
DRV - (STHDA) -- C:\Windows\System32\drivers\stwrt.sys (SigmaTel, Inc.)
DRV - (ApfiltrService) -- C:\Windows\System32\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV - (rismxdp) -- C:\Windows\System32\drivers\rixdptsk.sys (REDC)
DRV - (rimsptsk) -- C:\Windows\System32\drivers\rimsptsk.sys (REDC)
DRV - (rimmptsk) -- C:\Windows\System32\drivers\rimmptsk.sys (REDC)
DRV - (XAudio) -- C:\Windows\System32\drivers\XAudio.sys (Conexant Systems, Inc.)
DRV - (Packet) -- C:\Windows\System32\drivers\packet.sys (SingleClick Systems)
DRV - (R300) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (e1express) Intel® -- C:\Windows\System32\drivers\e1e6032.sys (Intel Corporation)


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=2070905
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://naver.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=2070905
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.defaultthis.engineName: "Radio TV 1 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2856416&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.startup.homepage: "http://www.google.com/"
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.2.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.1.94
FF - prefs.js..extensions.enabledItems: {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.1.94
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
FF - prefs.js..extensions.enabledItems: {f29557fd-78aa-40e6-aba8-9fa219764018}:3.3.3.2
FF - prefs.js..extensions.enabledItems: {203FB6B2-2E1E-4474-863B-4C483ECCE78E}:1.2.0
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17
FF - prefs.js..keyword.URL: "chrome://browser-region/locale/region.properties"
FF - prefs.js..network.proxy.type: 0


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/08/11 08:31:14 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/10/11 18:22:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2011/04/13 19:53:06 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2011/04/13 19:53:07 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/01/02 00:07:19 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/09/13 18:24:08 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/10/11 18:22:40 | 000,000,000 | ---D | M]

[2010/06/13 20:09:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Soo Hun Yoon\AppData\Roaming\Mozilla\Extensions
[2010/06/13 20:09:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Soo Hun Yoon\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2012/01/13 14:59:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Soo Hun Yoon\AppData\Roaming\Mozilla\Firefox\Profiles\e74r6qjq.default\extensions
[2010/06/22 09:33:45 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Soo Hun Yoon\AppData\Roaming\Mozilla\Firefox\Profiles\e74r6qjq.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2012/01/13 14:59:33 | 000,000,000 | ---D | M] (Radio TV 1 Community Toolbar) -- C:\Users\Soo Hun Yoon\AppData\Roaming\Mozilla\Firefox\Profiles\e74r6qjq.default\extensions\{f29557fd-78aa-40e6-aba8-9fa219764018}
[2011/01/17 10:46:18 | 000,000,923 | ---- | M] () -- C:\Users\Soo Hun Yoon\AppData\Roaming\Mozilla\Firefox\Profiles\e74r6qjq.default\searchplugins\conduit.xml
[2012/01/02 00:07:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012/01/02 00:07:19 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2012/01/02 00:07:19 | 000,121,816 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2007/04/10 16:21:08 | 000,163,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\np-mswmp.dll
[2011/11/10 05:54:13 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2007/12/19 04:57:38 | 000,310,272 | ---- | M] () -- C:\Program Files\mozilla firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
[2003/07/14 21:56:52 | 000,013,888 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL
[2006/12/18 03:18:30 | 000,077,824 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll
[2011/10/06 20:23:28 | 000,001,394 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom.xml
[2011/03/10 08:11:03 | 000,002,193 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\answers.xml
[2011/10/06 20:23:28 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/03/10 08:11:03 | 000,001,534 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml
[2011/10/06 20:23:28 | 000,001,131 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay.xml
[2011/10/06 20:23:28 | 000,002,364 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2011/11/12 08:46:50 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
[2011/10/06 20:23:28 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml
[2011/10/06 20:23:27 | 000,001,096 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\16.0.912.75\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\16.0.912.75\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\16.0.912.75\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Acrobat 7.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.300.12 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U30 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: Google Gadget Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
CHR - plugin: Microsoft Office 2003 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: DivX Web Player (Enabled) = C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: DivX HiQ = C:\Users\Soo Hun Yoon\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.1.94_0\

O1 HOSTS File: ([2010/05/26 09:08:06 | 000,002,138 | R--- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O1 - Hosts: 67.212.189.115 google.com
O1 - Hosts: 67.212.189.115 google.com.au
O1 - Hosts: 67.212.189.115 www.google.com.au
O1 - Hosts: 67.212.189.115 google.be
O1 - Hosts: 67.212.189.115 www.google.be
O1 - Hosts: 67.212.189.115 google.com.br
O1 - Hosts: 67.212.189.115 www.google.com.br
O1 - Hosts: 67.212.189.115 google.ca
O1 - Hosts: 67.212.189.115 www.google.ca
O1 - Hosts: 67.212.189.115 google.ch
O1 - Hosts: 67.212.189.115 www.google.ch
O1 - Hosts: 67.212.189.115 google.de
O1 - Hosts: 67.212.189.115 www.google.de
O1 - Hosts: 67.212.189.115 google.dk
O1 - Hosts: 67.212.189.115 www.google.dk
O1 - Hosts: 67.212.189.115 google.fr
O1 - Hosts: 67.212.189.115 www.google.fr
O1 - Hosts: 67.212.189.115 google.ie
O1 - Hosts: 67.212.189.115 www.google.ie
O1 - Hosts: 67.212.189.115 google.it
O1 - Hosts: 67.212.189.115 www.google.it
O1 - Hosts: 67.212.189.115 google.co.jp
O1 - Hosts: 67.212.189.115 www.google.co.jp
O1 - Hosts: 23 more lines...
O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll (Dell Inc.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (TBSB05974 Class) - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\Search Toolbar\tbcore3.dll ()
O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O3 - HKLM\..\Toolbar: (Search Toolbar) - {0C8413C1-FAD1-446C-8584-BE50576F863E} - C:\Program Files\Search Toolbar\tbcore3.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Search Toolbar) - {0C8413C1-FAD1-446C-8584-BE50576F863E} - C:\Program Files\Search Toolbar\tbcore3.dll ()
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
O4 - HKCU..\Run: [Aim6] File not found
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O4 - HKCU..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: BindDirectlyToPropertySetStorage = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {8DC067B8-911D-473A-90F1-1171B887CDE0} http://cyimg8.cyworld.com/ImageUpload/CyPictureU1233.cab?20081124 (CyImage Class)
O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{918214C2-95B3-463A-A4C6-E37D85E89C9B}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A3ABD1B9-F8F7-47DD-B9AD-713FDB42664E}: DhcpNameServer = 207.17.190.5 4.2.2.2 4.2.2.3 4.2.2.4 8.8.4.4
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\microsoft shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\microsoft shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) -C:\Windows\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") -C:\Windows\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\System32\igfxdev.dll (Intel Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\Windows\System32\browseui.dll (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O29 - HKLM SecurityProviders - (credssp.dll) -C:\Windows\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) -C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) -C:\Windows\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) -C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) -C:\Windows\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) -C:\Windows\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) -C:\Windows\System32\tspkg.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 13:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2012/01/14 12:03:39 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\Soo Hun Yoon\Desktop\OTL.exe
[2012/01/13 14:57:03 | 000,414,368 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2012/01/13 13:06:30 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2012/01/13 13:05:52 | 002,322,184 | ---- | C] (ESET) -- C:\Users\Soo Hun Yoon\Desktop\esetsmartinstaller_enu.exe
[2012/01/12 12:14:58 | 000,000,000 | ---D | C] -- C:\Users\Soo Hun Yoon\AppData\Roaming\SUPERAntiSpyware.com
[2012/01/12 12:14:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2012/01/12 12:14:25 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2012/01/12 12:14:25 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2012/01/12 12:13:36 | 013,996,360 | ---- | C] (SUPERAntiSpyware.com) -- C:\Users\Soo Hun Yoon\Desktop\SUPERAntiSpyware.exe
[2012/01/11 11:25:11 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciseq.dll
[2012/01/11 11:25:06 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\packager.dll
[2012/01/11 11:25:03 | 000,376,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll
[2012/01/11 11:24:23 | 001,314,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2012/01/11 11:24:23 | 000,497,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qdvd.dll
[2012/01/03 14:46:37 | 000,607,260 | R--- | C] (Swearware) -- C:\Users\Soo Hun Yoon\Desktop\dds.scr
[2012/01/03 14:36:30 | 000,000,000 | ---D | C] -- C:\3a26e29881a69f04850971
[2012/01/01 10:44:18 | 000,000,000 | ---D | C] -- C:\02416c69f74a946115e1d2
[2011/12/25 23:21:23 | 000,000,000 | ---D | C] -- C:\Users\Soo Hun Yoon\AppData\Local\ElevatedDiagnostics
[2011/12/25 18:19:53 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe
[2011/12/25 18:19:53 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe
[2011/12/25 18:19:53 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe
[2011/12/19 05:36:14 | 000,000,000 | ---D | C] -- C:\2aad4ab7d01659f3c33991
[2011/12/19 00:55:24 | 000,000,000 | ---D | C] -- C:\9b457cf94b12f7b1285b550a
[2011/12/15 15:17:28 | 000,000,000 | ---D | C] -- C:\Users\Soo Hun Yoon\Desktop\Descano Garden - Copy
[7 C:\Users\Soo Hun Yoon\Documents\*.tmp files -> C:\Users\Soo Hun Yoon\Documents\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012/01/14 12:07:07 | 000,000,432 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{AAD57BD6-A1BB-4E24-A694-E166C9994163}.job
[2012/01/14 12:04:52 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Soo Hun Yoon\Desktop\OTL.exe
[2012/01/14 12:02:03 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/01/14 12:01:56 | 000,003,552 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/01/14 12:01:56 | 000,003,552 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/01/14 12:01:47 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/01/14 12:01:42 | 1063,452,672 | -HS- | M] () -- C:\hiberfil.sys
[2012/01/14 09:59:00 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/01/13 14:57:03 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2012/01/13 13:06:02 | 002,322,184 | ---- | M] (ESET) -- C:\Users\Soo Hun Yoon\Desktop\esetsmartinstaller_enu.exe
[2012/01/12 12:14:30 | 000,001,802 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2012/01/12 12:13:50 | 013,996,360 | ---- | M] (SUPERAntiSpyware.com) -- C:\Users\Soo Hun Yoon\Desktop\SUPERAntiSpyware.exe
[2012/01/10 12:24:20 | 161,623,133 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2012/01/08 10:00:36 | 000,001,973 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2012/01/03 17:30:19 | 000,603,264 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/01/03 17:30:18 | 000,103,070 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/01/03 15:12:27 | 000,302,592 | ---- | M] () -- C:\Users\Soo Hun Yoon\Desktop\u2zontyt.exe
[2012/01/03 14:46:48 | 000,607,260 | R--- | M] (Swearware) -- C:\Users\Soo Hun Yoon\Desktop\dds.scr
[2012/01/01 16:45:25 | 000,035,328 | ---- | M] () -- C:\Users\Soo Hun Yoon\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[7 C:\Users\Soo Hun Yoon\Documents\*.tmp files -> C:\Users\Soo Hun Yoon\Documents\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2099/01/01 12:00:00 | 000,006,456 | -H-- | C] () -- C:\ProgramData\nutesaja
[2012/01/12 12:14:30 | 000,001,802 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2012/01/03 15:12:16 | 000,302,592 | ---- | C] () -- C:\Users\Soo Hun Yoon\Desktop\u2zontyt.exe
[2010/10/11 18:12:59 | 000,208,095 | ---- | C] () -- C:\Windows\hpoins43.dat
[2010/07/10 10:31:13 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010/07/10 10:31:12 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2010/07/10 09:45:19 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2010/04/23 02:09:18 | 000,000,127 | ---- | C] () -- C:\Windows\System32\MRT.INI
[2010/04/22 11:19:27 | 000,000,009 | ---- | C] () -- C:\Users\Soo Hun Yoon\AppData\Roaming\nuar.old
[2010/04/22 11:19:21 | 000,000,077 | ---- | C] () -- C:\Users\Soo Hun Yoon\AppData\Roaming\wp4.dat
[2010/04/22 11:19:21 | 000,000,003 | ---- | C] () -- C:\Users\Soo Hun Yoon\AppData\Roaming\wp3.dat
[2010/04/22 11:19:17 | 000,000,036 | ---- | C] () -- C:\Users\Soo Hun Yoon\AppData\Roaming\skynet.dat
[2010/03/29 08:12:02 | 000,008,298 | -HS- | C] () -- C:\Users\Soo Hun Yoon\AppData\Local\cJAKX65roVxQl
[2010/03/29 08:12:02 | 000,008,298 | -HS- | C] () -- C:\ProgramData\cJAKX65roVxQl
[2010/01/29 13:11:51 | 000,000,601 | ---- | C] () -- C:\Windows\hpomdl43.dat
[2009/08/03 14:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/08/03 14:07:42 | 000,230,768 | ---- | C] () -- C:\Windows\System32\OGAEXEC.exe
[2009/03/10 09:50:28 | 000,004,096 | -H-- | C] () -- C:\Users\Soo Hun Yoon\AppData\Local\keyfile3.drm
[2008/10/26 19:00:55 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2007/10/04 16:30:49 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2007/10/03 09:34:03 | 000,000,000 | ---- | C] () -- C:\Users\Soo Hun Yoon\AppData\Roaming\wklnhst.dat
[2007/09/30 21:32:45 | 000,000,335 | ---- | C] () -- C:\Windows\nsreg.dat
[2007/09/22 20:33:22 | 000,006,324 | ---- | C] () -- C:\Users\Soo Hun Yoon\AppData\Local\d3d9caps.dat
[2007/09/11 19:51:51 | 000,035,328 | ---- | C] () -- C:\Users\Soo Hun Yoon\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/09/05 06:36:31 | 000,910,304 | ---- | C] () -- C:\Windows\System32\igmedkrn.dll
[2007/09/05 06:36:31 | 000,249,856 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2007/09/05 06:36:31 | 000,204,800 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1272.dll
[2007/09/05 06:36:24 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[2007/09/04 22:50:33 | 000,065,536 | ---- | C] () -- C:\Windows\System32\bcmwlrmt.dll
[2007/09/04 22:50:32 | 000,024,064 | ---- | C] () -- C:\Windows\System32\WLTRYSVC.EXE
[2006/11/10 14:02:53 | 000,000,000 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2006/11/02 04:53:49 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 04:44:53 | 000,333,016 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 02:33:01 | 000,603,264 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 02:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 02:33:01 | 000,103,070 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 02:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 02:25:44 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2006/11/02 02:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 00:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 00:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/01 23:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/01 23:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2003/01/07 14:05:08 | 000,002,695 | ---- | C] () -- C:\Windows\System32\OUTLPERF.INI

========== LOP Check ==========

[2007/09/30 21:34:38 | 000,000,000 | ---D | M] -- C:\Users\Soo Hun Yoon\AppData\Roaming\acccore
[2011/09/17 15:07:54 | 000,000,000 | ---D | M] -- C:\Users\Soo Hun Yoon\AppData\Roaming\FixCleaner
[2010/09/10 17:01:12 | 000,000,000 | ---D | M] -- C:\Users\Soo Hun Yoon\AppData\Roaming\scdata
[2007/10/03 09:34:05 | 000,000,000 | ---D | M] -- C:\Users\Soo Hun Yoon\AppData\Roaming\Template
[2010/04/22 11:38:45 | 000,000,000 | ---D | M] -- C:\Users\Soo Hun Yoon\AppData\Roaming\Your PC Protector
[2012/01/14 10:27:48 | 000,032,610 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012/01/14 12:07:07 | 000,000,432 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{AAD57BD6-A1BB-4E24-A694-E166C9994163}.job

========== Purity Check ==========



========== Files - Unicode (All) ==========
[2011/12/21 12:03:51 | 000,000,000 | ---D | M](C:\Users\Soo Hun Yoon\Desktop\???(2)) -- C:\Users\Soo Hun Yoon\Desktop\멕시코(2)
[2011/12/19 06:17:36 | 000,000,000 | ---D | C](C:\Users\Soo Hun Yoon\Desktop\???(2)) -- C:\Users\Soo Hun Yoon\Desktop\멕시코(2)
[2011/12/18 23:46:36 | 000,000,000 | ---D | C](C:\Users\Soo Hun Yoon\Documents\???) -- C:\Users\Soo Hun Yoon\Documents\멕시코
[2011/12/18 23:11:38 | 000,000,000 | ---D | M](C:\Users\Soo Hun Yoon\Documents\???) -- C:\Users\Soo Hun Yoon\Documents\멕시코
[2011/12/15 14:15:36 | 000,000,000 | ---D | M](C:\Users\Soo Hun Yoon\Documents\??) -- C:\Users\Soo Hun Yoon\Documents\산책
[2011/12/15 14:15:30 | 000,000,000 | ---D | C](C:\Users\Soo Hun Yoon\Documents\??) -- C:\Users\Soo Hun Yoon\Documents\산책
(C:\ProgramData\Microsoft\Windows\Start Menu\Programs\??????) -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\이스트소프트

========== Alternate Data Streams ==========

@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:62E2D794

< End of report >

Extras.txt:

OTL Extras logfile created on: 1/14/2012 12:05:55 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Soo Hun Yoon\Desktop
Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19170)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1013.45 Mb Total Physical Memory | 317.03 Mb Available Physical Memory | 31.28% Memory free
2.24 Gb Paging File | 1.21 Gb Available in Paging File | 54.03% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 69.95 Gb Total Space | 25.80 Gb Free Space | 36.88% Space Free | Partition Type: NTFS
Drive D: | 2.00 Gb Total Space | 1.40 Gb Free Space | 69.96% Space Free | Partition Type: NTFS

Computer Name: ARTECH | User Name: Soo Hun Yoon | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"UacDisableNotify" = 0
"InternetSettingsDisableNotify" = 0
"AutoUpdateDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 1
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{1BF87D3D-E9A0-44EF-8E12-79C343378FEC}" = lport=139 | protocol=6 | dir=in | name=netbios file/printer sharing |
"{2560EB64-0D60-4AC7-BF20-7C33614AEDF5}" = lport=10426 | protocol=17 | dir=in | name=singleclick icc |
"{30DDF1E2-7417-4F75-A2FD-7D544272520A}" = lport=10426 | protocol=17 | dir=in | name=singleclick icc |
"{A240E681-F344-48C7-B774-0CD10009AF81}" = lport=10421 | protocol=17 | dir=in | name=singleclick discovery protocol |
"{A8231110-B134-45CE-A9A6-9A2C9106D276}" = lport=138 | protocol=17 | dir=in | name=netbios datagram service |
"{B9501966-9686-4335-AE4A-5C185C7F75EE}" = lport=10421 | protocol=17 | dir=in | name=singleclick discovery protocol |
"{BC3E5C80-830B-4946-BDA9-D6EE41BD8C1E}" = lport=445 | protocol=6 | dir=in | name=microsoft directory services |
"{ECCA7F30-9923-4539-98AE-7546B1D95C89}" = lport=137 | protocol=17 | dir=in | name=netbios name service |
"{FA7CA7A5-55A2-4828-8B62-71ACF68E7CB7}" = rport=427 | protocol=17 | dir=in | svc=hpslpsvc | app=c:\windows\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02EBC317-7AD1-4406-A2AE-855711E2C764}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqtra08.exe |
"{13438C9C-81F1-45F7-A53E-AB86BA36E9EF}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqgpc01.exe |
"{1A0D7C27-6F8E-4B87-A3DA-79B12EEB2665}" = protocol=6 | dir=in | app=c:\program files\dell network assistant\ezi_hnm2.exe |
"{1ACCF819-7ED4-471E-8A3D-200AC29BD6E3}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpiscnapp.exe |
"{23542733-4CC8-4EDF-A013-1A4E29F08394}" = protocol=17 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe |
"{2D487DFB-4DBC-4890-98BA-931DB5A6417B}" = dir=in | app=c:\program files\dell\mediadirect\powercinema.exe |
"{35902470-C545-4D32-98D9-F36A07D350EA}" = protocol=17 | dir=in | app=c:\program files\dell network assistant\ezi_hnm2.exe |
"{3667D004-323D-4DCE-8DCF-BD1EEE364DC0}" = protocol=17 | dir=in | app=c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe |
"{52473EFB-9AD6-46C7-9CF0-2A452831E079}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqkygrp.exe |
"{5E4FE2A2-86D3-4E16-BC79-4C1A4F37AEB1}" = dir=in | app=c:\program files\hp\digital imaging\bin\hposid01.exe |
"{67F898FF-8096-4633-94A4-9AEF94ACE8F5}" = dir=in | app=e:\setup\hpznui01.exe |
"{7260320B-E625-4DC9-BA9B-EF80A9AF924A}" = protocol=17 | dir=in | app=c:\program files\dell network assistant\ezi_hnm2.exe |
"{75B77F71-01C9-4159-B349-D7B77A2F364D}" = dir=in | app=c:\program files\dell\mediadirect\kernel\dms\clmsservice.exe |
"{878F4FF9-E7D5-492F-A557-9D6C43F2D502}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqusgm.exe |
"{8C14A2D9-F365-4B01-9FDA-DF5E9F7AA777}" = protocol=6 | dir=in | app=c:\program files\aim6\aim6.exe |
"{8E010AC0-5FD0-4627-B883-38A477047F5D}" = protocol=17 | dir=in | app=c:\program files\aim6\aim6.exe |
"{91BF8197-D531-4CA5-81EB-F556ABE1E825}" = dir=in | app=c:\program files\hp\digital imaging\smart web printing\smartwebprintexe.exe |
"{9251B40C-FC5C-4C6A-A8E7-C76034C978ED}" = dir=in | app=c:\program files\dell\mediadirect\kernel\dmp\clbrowserengine.exe |
"{992A0F01-5931-44F9-8556-1EA9D90675FC}" = protocol=6 | dir=in | app=c:\program files\common files\aol\loader\aolload.exe |
"{9BFE4BDA-679B-4087-82DE-938D9B5FD826}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqgplgtupl.exe |
"{BE08854F-E08C-4C1A-9325-B25C6F5105AC}" = protocol=6 | dir=in | app=c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe |
"{C7C4FE02-07ED-4E61-9FD1-90EDA9073D5C}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqusgh.exe |
"{CE8F8037-C524-422C-A31D-DCC8D3A1292A}" = dir=in | app=c:\program files\dell\mediadirect\pcmservice.exe |
"{D2F36218-D5C9-4397-AC89-9B346AB97F45}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqste08.exe |
"{D6ACE734-F18D-444C-BAE0-00B9E7758A66}" = dir=in | app=c:\program files\hp\hp software update\hpwucli.exe |
"{DA3CA44B-60B0-4270-AF71-C4AD02F69FA0}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpfccopy.exe |
"{ECB857E2-419A-4A83-B7AF-A5949A492B63}" = protocol=6 | dir=in | app=c:\program files\dell network assistant\ezi_hnm2.exe |
"{F78C6DF8-09D3-4AC6-8465-1884ABE70B15}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpoews01.exe |
"TCP Query User{23742E32-70F7-4690-992F-DBB36A1981D0}C:\program files\veoh networks\veohwebplayer\veohwebplayer.exe" = protocol=6 | dir=in | app=c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe |
"TCP Query User{9490F3C2-32F3-40C1-81BD-0393A7A1CBBC}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
"TCP Query User{B39FBB61-2265-4C7C-AEEE-5F8D79242B7A}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
"TCP Query User{B6F6888C-3556-4946-B790-6159E8DB951A}C:\program files\aim6\aim6.exe" = protocol=6 | dir=in | app=c:\program files\aim6\aim6.exe |
"TCP Query User{BC80B386-2EE3-4452-86CA-80CF0DFDFA9C}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{C0D32409-74A0-43DD-8697-8AFE36501309}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"TCP Query User{CD27F0DC-898A-4EE1-B677-EBF0F97D83D9}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{25A9F5BD-EA1C-4A4B-9D45-32EA85223341}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{3DB165AE-D35B-4153-9291-B57CD80B2CEC}C:\program files\veoh networks\veohwebplayer\veohwebplayer.exe" = protocol=17 | dir=in | app=c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe |
"UDP Query User{882CC95D-54FE-461F-90CC-26A0D592DD6A}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
"UDP Query User{9A212B96-A356-470B-BD55-68B1F4293906}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{ABF3306D-2C31-4018-B826-98F4A830372A}C:\program files\aim6\aim6.exe" = protocol=17 | dir=in | app=c:\program files\aim6\aim6.exe |
"UDP Query User{B52513BF-4BBC-4576-9C37-3DB396549040}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
"UDP Query User{BCA965BB-171C-4F1C-B258-712BB4322A51}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{0240BDFB-2995-4A3F-8C96-18D41282B716}" = Dell Network Assistant
"{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan
"{097CDB1E-07C9-40F1-9972-F0F9F3A287E4}" = Network
"{0A80329D-1B59-4F10-8D1D-924C59B2840B}" = ShufflePlusVLOI
"{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery
"{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83216015FF}" = Java™ 6 Update 30
"{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox
"{2C6C74C2-042F-4D36-B7B0-0C538FCF01AB}" = Dell DataSafe Online
"{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}" = HP Update
"{2FB9EA69-51D4-4913-9AD5-762C034DE811}" = Status
"{3248F0A8-6813-11D6-A77B-00B0D0160000}" = Java™ SE Runtime Environment 6
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{537DB9D6-1AB1-4CE9-8DE7-312256B49A98}" = PS_AIO_06_C4700_SW_Min
"{5CD29180-A95E-11D3-A4EB-00C04F7BDB2C}" = User's Guides
"{5DCF0E4B-F8EA-4229-A0BD-5CA6D4AFB749}" = SolutionCenter
"{62230596-37E5-4618-A329-0D21F529A86F}" = Browser Address Error Redirector
"{68550918-63B5-4762-85CB-3C160AA4B213}" = HP Photosmart C4700 All-in-One Driver Software 14.0 Rel. 6
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6D52C408-B09A-4520-9B18-475B81D393F1}" = Microsoft Works
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7F0C4457-8E64-491B-8D7B-991504365D1E}" = QuickSet
"{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}" = HPDiagnosticAlert
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg
"{8FF6F5CA-4E30-4E3B-B951-204CAAA2716A}" = SmartWebPrinting
"{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{9BDEF074-020E-458D-ADC5-8FF68E0C9B56}" = OutlookAddinSetup
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745}" = MediaDirect
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = Dell Touchpad
"{A80FA752-C491-4ED9-ABF0-4278563160B2}" = 32 Bit HP CIO Components Installer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}" = HPSSupply
"{AC76BA86-7AD7-1033-7B44-A71000000002}" = Adobe Reader 7.1.0
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B5978DF3-8A04-4F22-AF67-8CCE52E04B13}" = C4700
"{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2
"{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations
"{C4124E95-5061-4776-8D5D-E3D931C778E1}" = Microsoft VC9 runtime libraries
"{C99C0593-3B48-41D9-B42F-6E035B320449}" = Broadcom Management Programs
"{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget
"{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7}" = getPlus® for Adobe
"{D360FA88-17C8-4F14-B67F-13AAF9607B12}" = MarketResearch
"{E517094C-06B6-419F-8FFD-EF4F57972130}" = QuickTransfer
"{E646DCF0-5A68-11D5-B229-002078017FBF}" = Digital Line Detect
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F63A3748-B93D-4360-9AD4-B064481A5C7B}" = Modem Diagnostic Tool
"{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"AIM_6" = AIM 6
"AT&T Yahoo! Activation" = AT&T Yahoo! Activation
"Broadcom 802.11b Network Adapter" = Dell Wireless WLAN Card
"CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2C06&SUBSYS_14F1000F" = Conexant HDA D330 MDC V.92 Modem
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2010-10-10
"DivX Setup" = DivX Setup
"ESET Online Scanner" = ESET Online Scanner v3
"Google Chrome" = Google Chrome
"HP Imaging Device Functions" = HP Imaging Device Functions 14.0
"HP Photo Creations" = HP Photo Creations
"HP Smart Web Printing" = HP Smart Web Printing 4.60
"HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0
"HPExtendedCapabilities" = HP Customer Participation Program 14.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.60.0.1800
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Mozilla Firefox 9.0.1 (x86 en-US)" = Mozilla Firefox 9.0.1 (x86 en-US)
"Shop for HP Supplies" = Shop for HP Supplies

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 6/14/2010 7:04:04 PM | Computer Name = Artech | Source = EventSystem | ID = 4621
Description =

Error - 6/14/2010 11:55:21 PM | Computer Name = Artech | Source = WerSvc | ID = 5007
Description =

Error - 6/15/2010 4:33:47 PM | Computer Name = Artech | Source = WerSvc | ID = 5007
Description =

Error - 6/15/2010 8:38:17 PM | Computer Name = Artech | Source = WerSvc | ID = 5007
Description =

Error - 6/16/2010 5:44:34 AM | Computer Name = Artech | Source = WerSvc | ID = 5007
Description =

Error - 6/16/2010 12:13:55 PM | Computer Name = Artech | Source = WerSvc | ID = 5007
Description =

Error - 6/16/2010 6:01:07 PM | Computer Name = Artech | Source = WerSvc | ID = 5007
Description =

Error - 6/18/2010 12:43:39 AM | Computer Name = Artech | Source = WerSvc | ID = 5007
Description =

Error - 6/18/2010 12:55:40 AM | Computer Name = Artech | Source = WerSvc | ID = 5007
Description =

Error - 6/18/2010 12:57:00 PM | Computer Name = Artech | Source = WerSvc | ID = 5007
Description =

[ Broadcom Wireless LAN Events ]
Error - 5/29/2011 1:36:05 AM | Computer Name = Artech | Source = WLAN-Tray | ID = 0
Description = 22:36:05, Sat, May 28, 11 Error - Unable to decrypt string

Error - 5/29/2011 11:46:00 AM | Computer Name = Artech | Source = WLAN-Tray | ID = 0
Description = 08:46:00, Sun, May 29, 11 Error - Unable to decrypt string

Error - 5/31/2011 8:38:06 PM | Computer Name = Artech | Source = WLAN-Tray | ID = 0
Description = 17:38:00, Tue, May 31, 11 Error - Unable to gain access to user store


Error - 9/13/2011 10:20:07 PM | Computer Name = Artech | Source = WLAN-Tray | ID = 0
Description = 19:20:07, Tue, Sep 13, 11 Error - Unable to decrypt string

Error - 9/14/2011 2:36:11 AM | Computer Name = Artech | Source = WLAN-Tray | ID = 0
Description = 23:36:06, Tue, Sep 13, 11 Error - Unable to gain access to user store


Error - 9/25/2011 12:17:09 AM | Computer Name = Artech | Source = WLAN-Tray | ID = 0
Description = 21:17:07, Sat, Sep 24, 11 Error - Unable to gain access to user store


Error - 9/25/2011 2:48:08 PM | Computer Name = Artech | Source = WLAN-Tray | ID = 0
Description = 11:48:06, Sun, Sep 25, 11 Error - Unable to gain access to user store


Error - 12/1/2011 3:24:00 PM | Computer Name = Artech | Source = WLAN-Tray | ID = 0
Description = Error - Error in creating key container - -2146893809 (Broadcom Wireless
Adapter Manager Container)

Error - 1/10/2012 3:29:47 PM | Computer Name = Artech | Source = WLAN-Tray | ID = 0
Description = 11:29:42, Tue, Jan 10, 12 Error - Unable to gain access to user store


[ System Events ]
Error - 1/12/2012 7:05:24 AM | Computer Name = Artech | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description =

Error - 1/12/2012 5:45:51 PM | Computer Name = Artech | Source = DCOM | ID = 10010
Description =

Error - 1/12/2012 6:10:05 PM | Computer Name = Artech | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description =

Error - 1/13/2012 7:08:36 AM | Computer Name = Artech | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description =

Error - 1/13/2012 10:17:49 AM | Computer Name = Artech | Source = DCOM | ID = 10010
Description =

Error - 1/13/2012 9:22:58 PM | Computer Name = Artech | Source = DCOM | ID = 10010
Description =

Error - 1/13/2012 9:24:13 PM | Computer Name = Artech | Source = DCOM | ID = 10010
Description =

Error - 1/13/2012 9:29:41 PM | Computer Name = Artech | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description =

Error - 1/13/2012 11:34:53 PM | Computer Name = Artech | Source = DCOM | ID = 10010
Description =

Error - 1/14/2012 12:19:27 PM | Computer Name = Artech | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description =


< End of report >

#10 m0le

m0le

    Can U Dig It?


  • Malware Response Team
  • 34,527 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:London, UK
  • Local time:03:13 AM

Posted 14 January 2012 - 06:08 PM

Rerun OTL so we can remove these last remnants

Open OTL

Under the Custom Scans/Fixes box at the bottom, paste in the following

:OTL
[2012/01/03 14:36:30 | 000,000,000 | ---D | C] -- C:\3a26e29881a69f04850971
[2012/01/01 10:44:18 | 000,000,000 | ---D | C] -- C:\02416c69f74a946115e1d2
[2011/12/19 05:36:14 | 000,000,000 | ---D | C] -- C:\2aad4ab7d01659f3c33991
[2011/12/19 00:55:24 | 000,000,000 | ---D | C] -- C:\9b457cf94b12f7b1285b550a
[2010/03/29 08:12:02 | 000,008,298 | -HS- | C] () -- C:\Users\Soo Hun Yoon\AppData\Local\cJAKX65roVxQl
[2010/03/29 08:12:02 | 000,008,298 | -HS- | C] () -- C:\ProgramData\cJAKX65roVxQl
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:62E2D794
:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command]
""=""%1" %*"
:commands
[EmptyTemp]

Then click the Run Fix button at the top

Let the program run unhindered.

When done it will say "Fix Complete press ok to open the log"
Please post that log in your next reply. Note: If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes. In this case, after the reboot, open Notepad (Start->All Programs->Accessories->Notepad), click File->Open, in the File Name box enter *.log and press the Enter key, navigate to the C:\_OTL\MovedFiles folder, and open the newest .log file present, and copy/paste the contents of that document back here in your next post.
Posted Image
m0le is a proud member of UNITE

#11 yoongoo

yoongoo
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Local time:10:13 PM

Posted 14 January 2012 - 07:13 PM

Hi,

Here's what I got:

All processes killed
========== OTL ==========
C:\3a26e29881a69f04850971\Graphics folder moved successfully.
C:\3a26e29881a69f04850971\3082 folder moved successfully.
C:\3a26e29881a69f04850971\3076 folder moved successfully.
C:\3a26e29881a69f04850971\2070 folder moved successfully.
C:\3a26e29881a69f04850971\2052 folder moved successfully.
C:\3a26e29881a69f04850971\1055 folder moved successfully.
C:\3a26e29881a69f04850971\1053 folder moved successfully.
C:\3a26e29881a69f04850971\1049 folder moved successfully.
C:\3a26e29881a69f04850971\1046 folder moved successfully.
C:\3a26e29881a69f04850971\1045 folder moved successfully.
C:\3a26e29881a69f04850971\1044 folder moved successfully.
C:\3a26e29881a69f04850971\1043 folder moved successfully.
C:\3a26e29881a69f04850971\1042 folder moved successfully.
C:\3a26e29881a69f04850971\1041 folder moved successfully.
C:\3a26e29881a69f04850971\1040 folder moved successfully.
C:\3a26e29881a69f04850971\1038 folder moved successfully.
C:\3a26e29881a69f04850971\1037 folder moved successfully.
C:\3a26e29881a69f04850971\1036 folder moved successfully.
C:\3a26e29881a69f04850971\1035 folder moved successfully.
C:\3a26e29881a69f04850971\1033 folder moved successfully.
C:\3a26e29881a69f04850971\1032 folder moved successfully.
C:\3a26e29881a69f04850971\1031 folder moved successfully.
C:\3a26e29881a69f04850971\1030 folder moved successfully.
C:\3a26e29881a69f04850971\1029 folder moved successfully.
C:\3a26e29881a69f04850971\1028 folder moved successfully.
C:\3a26e29881a69f04850971\1025 folder moved successfully.
C:\3a26e29881a69f04850971 folder moved successfully.
C:\02416c69f74a946115e1d2\Graphics folder moved successfully.
C:\02416c69f74a946115e1d2\3082 folder moved successfully.
C:\02416c69f74a946115e1d2\3076 folder moved successfully.
C:\02416c69f74a946115e1d2\2070 folder moved successfully.
C:\02416c69f74a946115e1d2\2052 folder moved successfully.
C:\02416c69f74a946115e1d2\1055 folder moved successfully.
C:\02416c69f74a946115e1d2\1053 folder moved successfully.
C:\02416c69f74a946115e1d2\1049 folder moved successfully.
C:\02416c69f74a946115e1d2\1046 folder moved successfully.
C:\02416c69f74a946115e1d2\1045 folder moved successfully.
C:\02416c69f74a946115e1d2\1044 folder moved successfully.
C:\02416c69f74a946115e1d2\1043 folder moved successfully.
C:\02416c69f74a946115e1d2\1042 folder moved successfully.
C:\02416c69f74a946115e1d2\1041 folder moved successfully.
C:\02416c69f74a946115e1d2\1040 folder moved successfully.
C:\02416c69f74a946115e1d2\1038 folder moved successfully.
C:\02416c69f74a946115e1d2\1037 folder moved successfully.
C:\02416c69f74a946115e1d2\1036 folder moved successfully.
C:\02416c69f74a946115e1d2\1035 folder moved successfully.
C:\02416c69f74a946115e1d2\1033 folder moved successfully.
C:\02416c69f74a946115e1d2\1032 folder moved successfully.
C:\02416c69f74a946115e1d2\1031 folder moved successfully.
C:\02416c69f74a946115e1d2\1030 folder moved successfully.
C:\02416c69f74a946115e1d2\1029 folder moved successfully.
C:\02416c69f74a946115e1d2\1028 folder moved successfully.
C:\02416c69f74a946115e1d2\1025 folder moved successfully.
C:\02416c69f74a946115e1d2 folder moved successfully.
C:\2aad4ab7d01659f3c33991\1025 folder moved successfully.
C:\2aad4ab7d01659f3c33991 folder moved successfully.
C:\9b457cf94b12f7b1285b550a\ar-sa folder moved successfully.
C:\9b457cf94b12f7b1285b550a folder moved successfully.
C:\Users\Soo Hun Yoon\AppData\Local\cJAKX65roVxQl moved successfully.
C:\ProgramData\cJAKX65roVxQl moved successfully.
ADS C:\ProgramData\TEMP:62E2D794 deleted successfully.
========== REGISTRY ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command\\""|""%1" %*" /E : value set successfully!
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

User: Soo Hun Yoon
->Temp folder emptied: 1194593956 bytes
->Temporary Internet Files folder emptied: 432456090 bytes
->Java cache emptied: 38655707 bytes
->FireFox cache emptied: 55300881 bytes
->Google Chrome cache emptied: 10282608 bytes
->Flash cache emptied: 129130 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 968793067 bytes
RecycleBin emptied: 168137118 bytes

Total Files Cleaned = 2,736.00 mb


OTL by OldTimer - Version 3.2.31.0 log created on 01142012_154649

Files\Folders moved on Reboot...
File\Folder C:\Users\Soo Hun Yoon\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\3SSXMK40\%E7%C5%BE_%C7%CF%B3%AA%C5%F5%BE%EE_%BD%BA%C6%BC%C4%BF_%C0%AF%B7%B4%C0%DA%C0%AF%B9%E8%B3%B6%BF%A9%C7%E0%2C_2039_%C0%FE%C0%BA%BF%A9%C7%E0_%C5%B8%BA%F1%BF%C0_Tabio_19[1].jpg not found!
File\Folder C:\Windows\temp\TMP00000023C960DF1FAB76D7B3 not found!

Registry entries deleted on Reboot...

#12 m0le

m0le

    Can U Dig It?


  • Malware Response Team
  • 34,527 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:London, UK
  • Local time:03:13 AM

Posted 14 January 2012 - 08:26 PM

That all looks fine now. How is the PC running?
Posted Image
m0le is a proud member of UNITE

#13 yoongoo

yoongoo
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Local time:10:13 PM

Posted 16 January 2012 - 06:11 PM

Hi,

The laptop is running a lot faster now. I was also able to update windows. Thank you so much for your help. I greatly appreciate the time you spent to resolve the issues I had with my laptop. You're the best!

#14 m0le

m0le

    Can U Dig It?


  • Malware Response Team
  • 34,527 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:London, UK
  • Local time:03:13 AM

Posted 16 January 2012 - 06:24 PM

Thanks, just the clear up to go

You're clean. Good stuff! :thumbup2:

Let's do some clearing up

If you used DeFogger now is the time to enable your CD emulation software again.

We Need to Clean Up our Mess
Our work on your machine has left considerable leftovers on your box. Let's clean those up real quick:
  • Reopen Posted Image on your desktop.
  • Click on Posted Image
  • You will be prompted to reboot your system. Please do so.

If you still have any tools or logs leftover on your computer you can go ahead and delete those off of your computer now.

You should now set a new Restore Point to prevent infection from any previous Restore Points. The easiest and safest way to do this is:
  • Go to Start > All Programs > Accessories > System Tools and click "System Restore".
  • Choose the radio button marked "Create a Restore Point" on the first screen then click "Next". Give the Restore Point a name then click "Create". The new Restore Point will be stamped with the current date and time. Keep a log of this so you can find it easily should you need to use System Restore.
  • Go to "Disk Cleanup" which can be found by going to Start > All Programs > Accessories > System Tools.
  • Click "OK" to select the partition or drive you desire.
  • Click the "More Options" Tab.
  • Click "Clean Up" in the System Restore section to remove all previous Restore Points except the newly created one. More details and screenshots for Disk Cleanup in Windows Vista can be found here.
------------------------------------------------------------------------------------------------------------------------

Here's some advice on how you can keep your PC clean


Use and update your AntiVirus Software

You must have a good antivirus. There are plenty to choose from but I personally recommend the free options of Avast and Avira Antivir - though if you choose Avira you should make sure that you uncheck the box offering to install the Ask toolbar. If you want to purchase a security program then I recommend any of the following: AVG, Norton, McAfee, Kaspersky and ESET Nod32.

It is imperative that you update your Antivirus software at least once a week (Even more if you wish). If you do not update your antivirus software then it will not be able to catch any of the new variants that may come out. If you use a commercial antivirus program you must make sure you keep renewing your subscription. Otherwise, once your subscription runs out, you may not be able to update the programs virus definitions.


Make sure your applications have all of their updates

Use this next program to check for updates for programs already on your system. Download Security Check by screen317 from here or here.

  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically, make sure that updates on any that are flagged are carried out as soon as possible

It is also possible for other programs on your computer to have security vulnerability that can allow malware to infect you. Therefore, it is also a good idea to check for the latest versions of commonly installed applications that are regularly patched to fix vulnerabilities. You can check these by visiting Secunia Software Inspector and Calendar of Updates.


Install an AntiSpyware Program

A highly recommended AntiSpyware program is SuperAntiSpyware. You can download the free Home Version. or the Pro version for a 15 day trial period.

Installing this or another recommended program will provide spyware & hijacker protection on your computer alongside your virus protection. You should scan your computer with an AntiSpyware program on a regular basis just as you would an antivirus software.


Finally, here's a treasure trove of antivirus, antimalware and antispyware resources


That's it, happy surfing!

Cheers.

m0le
Posted Image
m0le is a proud member of UNITE

#15 m0le

m0le

    Can U Dig It?


  • Malware Response Team
  • 34,527 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:London, UK
  • Local time:03:13 AM

Posted 21 January 2012 - 09:22 PM

It appears that this issue is resolved, therefore I am closing the topic. If that is not the case and you need or wish to continue with this topic, please send me or any Moderator a Personal Message (PM) that you would like this topic re-opened.
Posted Image
m0le is a proud member of UNITE




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users