Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Services.exe malware?


  • Please log in to reply
8 replies to this topic

#1 orapaho

orapaho

  • Members
  • 160 posts
  • OFFLINE
  •  
  • Local time:11:47 AM

Posted 27 February 2012 - 10:54 AM

While surfing the web, I will get a warning from AVAST to "open in the sandbox" a file it says that I am about to open. The only trouble is I am not opening a file nor am I going to a new website. The message says that the application google.update.exe is unsafe and is being opened by services.exe or taskeng.exe. At the time of this avast message, I am usually on a safe site. I think this started when after I downloaded Ilivid from graboid.com. Cant be sure. Please help.

BC AdBot (Login to Remove)

 


#2 TheShooter93

TheShooter93

    Cody


  • Malware Response Team
  • 4,792 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Orlando, Florida
  • Local time:02:47 PM

Posted 27 February 2012 - 02:03 PM

Hi,

After performing these scans, enter the results in your next post and also update me on the status of the PC.

Note: You may have to perform some or all of the following in Safe Mode With Networking, depending on if you have internet access while in the normal Windows environment.

================================================================================

Download Security Check by screen317 from here or here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

================================================================================

Please download and scan with SUPERAntiSpyware Free
  • Double-click SUPERAntiSypware.exe and use the default settings for installation.
  • An icon will be created on your desktop. Double-click that icon to launch the program.
  • If it will not start, go to Start > All Prgrams > SUPERAntiSpyware and click on Alternate Start.
  • If asked to update the program definitions, click "Yes". If not, update the definitions before scanning by selecting "Check for Updates". (If you encounter any problems while downloading the updates, manually download them from here. Double-click on the hyperlink for Download Installer and save SASDEFINITIONS.EXE to your desktop. Then double-click on SASDEFINITIONS.EXE to install the definitions.)
  • In the Main Menu, click the Preferences... button.
  • Click the "General and Startup" tab, and under Start-up Options, make sure "Start SUPERAntiSpyware when Windows starts" box is unchecked.
  • Click the "Scanning Control" tab, and under Scanner Options, make sure the following are checked (leave all others unchecked):
    • Close browsers before scanning.
    • Scan for tracking cookies.
    • Terminate memory threats before quarantining.
  • Click the "Close" button to leave the control center screen and exit the program.
  • Do not run a scan just yet.
Reboot your computer in "Safe Mode" using the F8 method. To do this, restart your computer and after hearing your computer beep once during startup (but before the Windows icon appears) press the F8 key repeatedly. A menu will appear with several options. Use the arrow keys to navigate and select the option to run Windows in "Safe Mode".

Scan with SUPERAntiSpyware as follows:
  • Launch the program and back on the main screen, under "Scan for Harmful Software" click Scan your computer.
  • On the left, make sure you check C:\Fixed Drive.
  • On the right, under "Complete Scan", choose Perform Complete Scan and click "Next".
  • After the scan is complete, a Scan Summary box will appear with potentially harmful items that were detected. Click "OK".
  • Make sure everything has a checkmark next to it and click "Next".
  • A notification will appear that "Quarantine and Removal is Complete". Click "OK" and then click the "Finish" button to return to the main menu.
  • If asked if you want to reboot, click "Yes" and reboot normally.
  • To retrieve the removal information after reboot, launch SUPERAntispyware again.
    • Click Preferences, then click the Statistics/Logs tab.
    • Under Scanner Logs, double-click SUPERAntiSpyware Scan Log.
    • If there are several logs, click the current dated log and press View log. A text file will open in your default text editor.
    • Please copy and paste the Scan Log results in your next reply.
  • Click Close to exit the program.
If you have a problem downloading, installing or getting SAS to run, try downloading and using the SUPERAntiSpyware Portable Scanner instead. Save the randomly named file (i.e. SAS_1710895.COM) to a usb drive or CD and transfer to the infected computer. Then double-click on it to launch and scan. The file is randomly named to help keep malware from blocking the scanner.

================================================================================

Please download Malwarebytes Anti-Malware and save it to your desktop.
  • Important!! When you save the mbam-setup file, rename it to something random (such as 123abc.exe) before beginning the download.
Malwarebytes may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.

  • Make sure you are connected to the Internet and double-click on the renamed file to install the application.
    For instructions with screenshots, please refer to this Guide.
  • When the installation begins, follow the prompts and do not make any changes to default settings.
  • Malwarebytes will automatically start and you will be asked to update the program before performing a scan.
  • If an update is found, the program will automatically update itself. Press the OK button and continue.
  • If you encounter any problems while downloading the definition updates, manually download them from here and just double-click on mbam-rules.exe to install.
  • Under the Scanner tab, make sure the "Perform Quick Scan" option is selected.
  • Click on the Scan button.
  • When finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".
  • Click OK to close the message box, then click the Show Results button to see a list of any malware that was found.
  • Make sure that everything is checked and then click Remove Selected.
  • When removal is completed, a log report will open in Notepad.
  • The log is automatically saved and can be viewed by clicking the Logs tab.
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows the database version and your operating system.
  • Exit Malwarebytes when done.
Note: If Malwarebytes encounters a file that is difficult to remove, you will be asked to reboot your computer so it can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally will prevent Malwarebytes from removing all the malware.

================================================================================

Please download GMER from one of the following locations and save it to your desktop:
  • Main Mirror
    This version will download a randomly named file (Recommended)
  • Zipped Mirror
    This version will download a zip file you will need to extract first. If you use this mirror, please extract the zip file to your desktop.
  • Disconnect from the Internet and close all running programs.
  • Temporarily disable any real-time active protection so your security programs will not conflict with gmer's driver.
  • Double-click on the randomly named GMER file (i.e. n7gmo46c.exe) and allow the gmer.sys driver to load if asked.
  • Note: If you downloaded the zipped version, extract the file to its own folder such as C:\gmer and then double-click on gmer.exe.

    Posted Image
  • GMER will open to the Rootkit/Malware tab and perform an automatic quick scan when first run. (do not use the computer while the scan is in progress)
  • If you receive a WARNING!!! about rootkit activity and are asked to fully scan your system...click NO.
  • Now click the Scan button. If you see a rootkit warning window, click OK.
  • When the scan is finished, click the Save... button to save the scan results to your Desktop. Save the file as gmer.log.
  • Click the Copy button and paste the results into your next reply.
  • Exit GMER and be sure to re-enable your anti-virus, Firewall and any other security programs you had disabled.
-- If you encounter any problems, try running GMER in safe mode.
-- If GMER crashes or keeps resulting in a BSODs, uncheck Devices on the right side before scanning
.

CCNA R&SCCNA Security | Network+  |  B.S. - Information Technology | Cyber Security Engineer

If I am helping you and have not replied within 48 hours, please send me a private message.

 

 


#3 orapaho

orapaho
  • Topic Starter

  • Members
  • 160 posts
  • OFFLINE
  •  
  • Local time:11:47 AM

Posted 27 February 2012 - 11:34 PM

Ok did the Scans requested. It seems the SuperAntispyware found alot of tracking adware and some trojans which were removed. However after rebooting, I had a google.update.exe message again. I was not connected to the internet at this time either. I ran the malware bytes and then GMER and, as I type this to you, I have not run across the AVAST alert yet. Crossing fingers.

Here are the logs and scan results.

Results of screen317's Security Check version 0.99.31
Windows 7 Service Pack 1 x86 (UAC is enabled)
Internet Explorer 9
``````````````````````````````
Antivirus/Firewall Check:

Windows Firewall Enabled!
avast! Free Antivirus
ESET Online Scanner v3
WMI entry may not exist for antivirus; attempting automatic update.
```````````````````````````````
Anti-malware/Other Utilities Check:

SpywareBlaster 4.5
Java™ 6 Update 30
Adobe Flash Player 11.1.102.55
Adobe Reader X (10.1.1)
Mozilla Firefox (10.0.2)
````````````````````````````````
Process Check:
objlist.exe by Laurent

WinPatrol winpatrol.exe
AVAST Software Avast AvastSvc.exe
AVAST Software Avast AvastUI.exe
BillP Studios WinPatrol WinPatrol.exe
``````````End of Log````````````


SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 02/27/2012 at 03:22 PM

Application Version : 5.0.1144

Core Rules Database Version : 8282
Trace Rules Database Version: 6094

Scan type : Complete Scan
Total Scan Time : 01:22:50

Operating System Information
Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601)
UAC Off - Administrator

Memory items scanned : 417
Memory threats detected : 0
Registry items scanned : 34423
Registry threats detected : 0
File items scanned : 174724
File threats detected : 1025

Adware.Tracking Cookie
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@ad.yieldmanager[2].txt [ /ad.yieldmanager ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@atdmt[2].txt [ /atdmt ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@atdmt[3].txt [ /atdmt ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@atdmt[4].txt [ /atdmt ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@atdmt[5].txt [ /atdmt ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@atdmt[6].txt [ /atdmt ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@atdmt[7].txt [ /atdmt ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@atdmt[8].txt [ /atdmt ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@citi.bridgetrack[1].txt [ /citi.bridgetrack ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@doubleclick[2].txt [ /doubleclick ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@educationcom.112.2o7[1].txt [ /educationcom.112.2o7 ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@imrworldwide[2].txt [ /imrworldwide ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@invitemedia[2].txt [ /invitemedia ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@media6degrees[2].txt [ /media6degrees ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@network.realmedia[1].txt [ /network.realmedia ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@realmedia[1].txt [ /realmedia ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@revsci[1].txt [ /revsci ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@tribalfusion[2].txt [ /tribalfusion ]
C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Cookies\daniel@yieldmanager[1].txt [ /yieldmanager ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\fixme@bizzclick[1].txt [ Cookie:fixme@bizzclick.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\fixme@ad.yieldmanager[1].txt [ Cookie:fixme@ad.yieldmanager.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\fixme@imrworldwide[2].txt [ Cookie:fixme@imrworldwide.com/cgi-bin ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\fixme@tribalfusion[1].txt [ Cookie:fixme@tribalfusion.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\fixme@network.realmedia[2].txt [ Cookie:fixme@network.realmedia.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\fixme@homestore.122.2o7[1].txt [ Cookie:fixme@homestore.122.2o7.net/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\fixme@advertising[2].txt [ Cookie:fixme@advertising.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\fixme@search.findsmy[1].txt [ Cookie:fixme@search.findsmy.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\fixme@yieldmanager[1].txt [ Cookie:fixme@yieldmanager.net/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\Low\fixme@stopzilla[2].txt [ Cookie:fixme@stopzilla.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\Low\fixme@counter.surfcounters[1].txt [ Cookie:fixme@counter.surfcounters.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\Low\fixme@atdmt[2].txt [ Cookie:fixme@atdmt.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\Low\fixme@www.find-fast-answers[1].txt [ Cookie:fixme@www.find-fast-answers.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\Low\fixme@adtech[1].txt [ Cookie:fixme@adtech.de/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\Low\fixme@www.stopzilla[1].txt [ Cookie:fixme@www.stopzilla.com/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\Low\fixme@www.googleadservices[2].txt [ Cookie:fixme@www.googleadservices.com/pagead/conversion/993343727/ ]
C:\USERS\FIXME\AppData\Roaming\Microsoft\Windows\Cookies\Low\fixme@doubleclick[1].txt [ Cookie:fixme@doubleclick.net/ ]
C:\USERS\FIXME\Cookies\fixme@bizzclick[1].txt [ Cookie:fixme@bizzclick.com/ ]
C:\USERS\FIXME\Cookies\fixme@ad.yieldmanager[1].txt [ Cookie:fixme@ad.yieldmanager.com/ ]
C:\USERS\FIXME\Cookies\fixme@imrworldwide[2].txt [ Cookie:fixme@imrworldwide.com/cgi-bin ]
C:\USERS\FIXME\Cookies\fixme@tribalfusion[1].txt [ Cookie:fixme@tribalfusion.com/ ]
C:\USERS\FIXME\Cookies\fixme@network.realmedia[2].txt [ Cookie:fixme@network.realmedia.com/ ]
C:\USERS\FIXME\Cookies\fixme@homestore.122.2o7[1].txt [ Cookie:fixme@homestore.122.2o7.net/ ]
C:\USERS\FIXME\Cookies\fixme@advertising[2].txt [ Cookie:fixme@advertising.com/ ]
C:\USERS\FIXME\Cookies\fixme@search.findsmy[1].txt [ Cookie:fixme@search.findsmy.com/ ]
C:\USERS\FIXME\Cookies\fixme@yieldmanager[1].txt [ Cookie:fixme@yieldmanager.net/ ]
.eyewonder.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.imrworldwide.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.imrworldwide.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.habbo.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.edgeadx.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ox-d.w00tmedia.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.widget.publisheradnetwork.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adxpose.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.discountsupplements.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.discountsupplements.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.discountsupplements.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.discountsupplements.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.discountsupplements.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.discountsupplements.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.discountsupplements.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clickfuse.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
gotacha.rotator.hadj7.adjuggler.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
gotacha.rotator.hadj7.adjuggler.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
gotacha.rotator.hadj7.adjuggler.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clickfuse.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clickfuse.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clickfuse.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediabrandsww.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stat.onestat.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stat.onestat.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api18.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api18.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api16.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api16.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.at.atwola.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.at.atwola.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ar.atwola.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api10.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api10.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.bizrate.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
server.iad.liveperson.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api22.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api22.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api22.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api19.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api19.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api19.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api15.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api15.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api15.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api6.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api6.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api6.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api21.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api21.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api21.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.youtube.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api20.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api20.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.api20.thetrafficstat.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.googleads.g.doubleclick.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bs.serving-sys.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zgstats.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ads.pointroll.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pointroll.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.googleadservices.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.apmebf.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.realmedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.realmedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.legolas-media.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.r1-ads.ace.advertising.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.at.atwola.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.yieldmanager.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.technoratimedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.interclick.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.interclick.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.akamai.interclickproxy.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.interclick.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adserver.adtechus.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
dc.tremormedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.www.burstnet.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.apmebf.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaplex.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
eas.apm.emediate.eu [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
eas.apm.emediate.eu [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adserver.leanmarket.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.jeetyetmedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediadakine.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
pfa.rotator.hadj7.adjuggler.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
pfa.rotator.hadj7.adjuggler.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adserver.valwa.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
pfa.rotator.hadj7.adjuggler.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.intermundomedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.intermundomedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.burstbeacon.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstbeacon.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaplex.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ads.saymedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ C:\USERS\DANIEL\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
cdn.media.abc.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
ds.serving-sys.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
ia.media-imdb.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
media-vimg-net.vimg.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
media.mtvnservices.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
media.nbcchicago.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
media.nbclosangeles.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
media10.washingtonpost.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
msnbcmedia.msn.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
richmedia247.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
s0.2mdn.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
secure-us.imrworldwide.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
speed.pointroll.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
videos.mediaite.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
www.wazillomedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\UH5S5ZZG ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.mediafire.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.adserver.adtechus.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.clickfuse.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.realmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.adxpose.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.kontera.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.adtechus.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.mediafire.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.adjuggler.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.getclicky.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.static.getclicky.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
in.getclicky.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.histats.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.dmtracker.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
wstat.wibiya.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.c.gigcount.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.eyewonder.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.histats.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.histats.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.lfstmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.mediafire.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.network.realmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.adserver.adtechus.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.mediafire.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.mediafire.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.yieldmanager.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.lfstmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.eyewonder.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.remedia.at [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.remedia.at [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.realmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.ar.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
tracking.hostgator.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.vortexmediagroup.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.wazillomedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.wazillomedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.bizrate.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.martiniadnetwork.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.martiniadnetwork.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.martiniadnetwork.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
z.blogads.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.pixeltrack66.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.pixeltrack66.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.remedia.at [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
csm.rotator.hadj7.adjuggler.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
csm.rotator.hadj7.adjuggler.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.tuneupmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.tuneupmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.www.tuneupmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.akamai.interclickproxy.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.s.clickability.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.s.clickability.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
media.mercola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
media.mercola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
media.mercola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
media.mercola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.realmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.remedia.at [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.remedia.at [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.remedia.at [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.remedia.at [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
ads.saymedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
ads.saymedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
adserver.adreactor.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.myroitracking.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.pennyfinder.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.pennyfinder.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
dc.tremormedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.adserver.adtechus.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.weborama.fr [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.boursoramabanque.solution.weborama.fr [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.boursoramabanque.solution.weborama.fr [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.boursoramabanque.solution.weborama.fr [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.boursoramabanque.solution.weborama.fr [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.xiti.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.web-stat.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
discounttires.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.traveladvertising.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.traveladvertising.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.traveladvertising.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.traveladvertising.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.mediafire.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.mediafire.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.web-stat.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.web-stat.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.realmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.bs.serving-sys.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
cdn.uc.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.statcounter.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.citygridmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.solvemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.solvemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.dealtime.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.dealtime.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.dealtime.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
stat.dealtime.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www2.dealtime.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
stats.clicktracks.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
stats.clicktracks.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
stats.clicktracks.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
stats.clicktracks.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.mm.chitika.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.lucidmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
ad2.adfarm1.adition.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
mediaservices-d.openxenterprise.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.realmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
network.realmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
network.realmedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.andomedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.ar.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.ar.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\XDCV2WUB.DEFAULT\COOKIES.SQLITE ]
C:\USERS\FIXME\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\FIXME@CITI.BRIDGETRACK[2].TXT [ /CITI.BRIDGETRACK ]
C:\USERS\FIXME\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\FIXME@REALMEDIA[1].TXT [ /REALMEDIA ]
C:\USERS\FIXME\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\FIXME@AD.WSOD[1].TXT [ /AD.WSOD ]
C:\USERS\FIXME\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\FIXME@ADVERTISE[2].TXT [ /ADVERTISE ]
.www.find-fast-answers.com [ C:\USERS\FIXME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6KVPVE4S.DEFAULT\COOKIES.SQLITE ]
.stopzilla.com [ C:\USERS\FIXME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6KVPVE4S.DEFAULT\COOKIES.SQLITE ]
.stopzilla.com [ C:\USERS\FIXME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6KVPVE4S.DEFAULT\COOKIES.SQLITE ]
.stopzilla.com [ C:\USERS\FIXME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6KVPVE4S.DEFAULT\COOKIES.SQLITE ]
.stopzilla.com [ C:\USERS\FIXME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6KVPVE4S.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\FIXME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6KVPVE4S.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\FIXME\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6KVPVE4S.DEFAULT\COOKIES.SQLITE ]
crackle.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
i.adultswim.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
media.kyte.tv [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
media.mtvnservices.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
media.scanscout.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
media1.break.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
objects.tremormedia.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
s0.2mdn.net [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
secure-us.imrworldwide.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
sftrack.searchforce.net [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VEPS7ZHY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@247REALMEDIA[1].TXT [ /247REALMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@247REALMEDIA[3].TXT [ /247REALMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@2O7[1].TXT [ /2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@2O7[3].TXT [ /2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@A1.INTERCLICK[1].TXT [ /A1.INTERCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@A1.INTERCLICK[2].TXT [ /A1.INTERCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ABOVETRACKING[2].TXT [ /ABOVETRACKING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.360YIELD[1].TXT [ /AD.360YIELD ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.360YIELD[3].TXT [ /AD.360YIELD ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.WSOD[1].TXT [ /AD.WSOD ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.WSOD[2].TXT [ /AD.WSOD ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[3].TXT [ /AD.YIELDMANAGER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD1.ADFARM1.ADITION[1].TXT [ /AD1.ADFARM1.ADITION ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD1.ADTITAN[1].TXT [ /AD1.ADTITAN ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[1].TXT [ /ADBRITE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[2].TXT [ /ADBRITE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADCLICKWEB[1].TXT [ /ADCLICKWEB ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADFARM1.ADITION[2].TXT [ /ADFARM1.ADITION ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADINTERAX[1].TXT [ /ADINTERAX ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADKNOWLEDGE[1].TXT [ /ADKNOWLEDGE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADLEGEND[2].TXT [ /ADLEGEND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS-SVX.ADBRITE[1].TXT [ /ADS-SVX.ADBRITE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.10CLICK[2].TXT [ /ADS.10CLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.ADDYNAMIX[2].TXT [ /ADS.ADDYNAMIX ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.ADK2[2].TXT [ /ADS.ADK2 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.ADK2[3].TXT [ /ADS.ADK2 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.ADVANCEDMN[1].TXT [ /ADS.ADVANCEDMN ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.ADVANCEDMN[3].TXT [ /ADS.ADVANCEDMN ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.BIGHEALTHTREE[2].TXT [ /ADS.BIGHEALTHTREE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.BLOGTALKRADIO[2].TXT [ /ADS.BLOGTALKRADIO ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.CNN[2].TXT [ /ADS.CNN ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.CPXADROIT[2].TXT [ /ADS.CPXADROIT ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.CPXCENTER[2].TXT [ /ADS.CPXCENTER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.CREAFI[2].TXT [ /ADS.CREAFI ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.E-PLANNING[1].TXT [ /ADS.E-PLANNING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.EQADS[2].TXT [ /ADS.EQADS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.GAMERSMEDIA[1].TXT [ /ADS.GAMERSMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.GAMERSMEDIA[3].TXT [ /ADS.GAMERSMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LYCOS[1].TXT [ /ADS.LYCOS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LYCOS[2].TXT [ /ADS.LYCOS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LYCOS[3].TXT [ /ADS.LYCOS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LZJL[1].TXT [ /ADS.LZJL ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LZJL[2].TXT [ /ADS.LZJL ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[1].TXT [ /ADS.POINTROLL ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[2].TXT [ /ADS.POINTROLL ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PUBMATIC[1].TXT [ /ADS.PUBMATIC ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PUBMATIC[2].TXT [ /ADS.PUBMATIC ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.REACT2MEDIA[1].TXT [ /ADS.REACT2MEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.REACT2MEDIA[2].TXT [ /ADS.REACT2MEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.SHORTTAIL[1].TXT [ /ADS.SHORTTAIL ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[2].TXT [ /ADS.UNDERTONE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[3].TXT [ /ADS.UNDERTONE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[1].TXT [ /ADSERVER.ADTECHUS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[2].TXT [ /ADSERVER.ADTECHUS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVING.LOCALPAGES[2].TXT [ /ADSERVING.LOCALPAGES ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVING.VERSANEEDS[1].TXT [ /ADSERVING.VERSANEEDS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVING.VERSANEEDS[2].TXT [ /ADSERVING.VERSANEEDS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[1].TXT [ /ADTECH ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[2].TXT [ /ADTECH ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADULTSWIM[1].TXT [ /ADULTSWIM ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADULTSWIM[2].TXT [ /ADULTSWIM ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISE[1].TXT [ /ADVERTISE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISE[2].TXT [ /ADVERTISE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISE[3].TXT [ /ADVERTISE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[1].TXT [ /ADVERTISING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[2].TXT [ /ADVERTISING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[4].TXT [ /ADVERTISING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[1].TXT [ /ADXPOSE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[2].TXT [ /ADXPOSE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AIM4MEDIA[1].TXT [ /AIM4MEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ALURETRACKS[2].TXT [ /ALURETRACKS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AMZNSHOPBOP.122.2O7[1].TXT [ /AMZNSHOPBOP.122.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ANRTX.TACODA[1].TXT [ /ANRTX.TACODA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ANRTX.TACODA[3].TXT [ /ANRTX.TACODA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@APMEBF[2].TXT [ /APMEBF ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@APMEBF[3].TXT [ /APMEBF ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AR.ATWOLA[2].TXT [ /AR.ATWOLA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AR.ATWOLA[3].TXT [ /AR.ATWOLA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AT.ATWOLA[1].TXT [ /AT.ATWOLA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AT.ATWOLA[2].TXT [ /AT.ATWOLA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ATDMT[1].TXT [ /ATDMT ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ATDMT[2].TXT [ /ATDMT ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ATWOLA[1].TXT [ /ATWOLA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AZJMP[1].TXT [ /AZJMP ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BEACON.DMSINSIGHTS[2].TXT [ /BEACON.DMSINSIGHTS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BIGEGGMEDIA[1].TXT [ /BIGEGGMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BIGREDSKYMEDIA[1].TXT [ /BIGREDSKYMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BIGREDSKYMEDIA[3].TXT [ /BIGREDSKYMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BIZZCLICK[1].TXT [ /BIZZCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BS.SERVING-SYS[1].TXT [ /BS.SERVING-SYS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BS.SERVING-SYS[2].TXT [ /BS.SERVING-SYS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BURSTBEACON[1].TXT [ /BURSTBEACON ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BURSTNET[1].TXT [ /BURSTNET ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BURSTNET[2].TXT [ /BURSTNET ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BUYDIG.122.2O7[1].TXT [ /BUYDIG.122.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CASALEMEDIA[2].TXT [ /CASALEMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CDN.JEMAMEDIA[1].TXT [ /CDN.JEMAMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CDN.JEMAMEDIA[3].TXT [ /CDN.JEMAMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CDN1.TRAFFICMP[1].TXT [ /CDN1.TRAFFICMP ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CDN1.TRAFFICMP[3].TXT [ /CDN1.TRAFFICMP ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CITI.BRIDGETRACK[2].TXT [ /CITI.BRIDGETRACK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CITI.BRIDGETRACK[3].TXT [ /CITI.BRIDGETRACK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.EFACTS[1].TXT [ /CLICK.EFACTS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.NEWSKYDAWN[1].TXT [ /CLICK.NEWSKYDAWN ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.SCOUR[1].TXT [ /CLICK.SCOUR ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.SCOUR[2].TXT [ /CLICK.SCOUR ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKBANK[1].TXT [ /CLICKBANK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKS.FREESEARCHBUDDY[1].TXT [ /CLICKS.FREESEARCHBUDDY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKS.SEARCH312[1].TXT [ /CLICKS.SEARCH312 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKS.THESPECIALSEARCH[1].TXT [ /CLICKS.THESPECIALSEARCH ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKS.THESPECIALSEARCH[2].TXT [ /CLICKS.THESPECIALSEARCH ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKSOR[1].TXT [ /CLICKSOR ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKSOR[3].TXT [ /CLICKSOR ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKTHROUGH.KANOODLE[2].TXT [ /CLICKTHROUGH.KANOODLE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CMP.112.2O7[1].TXT [ /CMP.112.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@COLLECTIVE-MEDIA[1].TXT [ /COLLECTIVE-MEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@COLLECTIVE-MEDIA[3].TXT [ /COLLECTIVE-MEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CONTENT.YIELDMANAGER[1].TXT [ /CONTENT.YIELDMANAGER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CONTENT.YIELDMANAGER[3].TXT [ /CONTENT.YIELDMANAGER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CONTENT.YIELDMANAGER[4].TXT [ /CONTENT.YIELDMANAGER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CONTENT.YIELDMANAGER[5].TXT [ /CONTENT.YIELDMANAGER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@COUNTER.SURFCOUNTERS[1].TXT [ /COUNTER.SURFCOUNTERS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CRACKLE[1].TXT [ /CRACKLE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DA-TRACKING[1].TXT [ /DA-TRACKING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DC.TREMORMEDIA[1].TXT [ /DC.TREMORMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DC.TREMORMEDIA[2].TXT [ /DC.TREMORMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DMTRACKER[1].TXT [ /DMTRACKER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DMTRACKER[2].TXT [ /DMTRACKER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DOMINIONENTERPRISES.112.2O7[1].TXT [ /DOMINIONENTERPRISES.112.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DOUBLECLICK[1].TXT [ /DOUBLECLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DOUBLECLICK[3].TXT [ /DOUBLECLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@EAS.APM.EMEDIATE[2].TXT [ /EAS.APM.EMEDIATE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@EAS.APM.EMEDIATE[3].TXT [ /EAS.APM.EMEDIATE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ECLICKZ[2].TXT [ /ECLICKZ ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@EHG-WSS.HITBOX[1].TXT [ /EHG-WSS.HITBOX ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ENHANCE[1].TXT [ /ENHANCE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ENHANCE[2].TXT [ /ENHANCE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ENTREPRENEUR[1].TXT [ /ENTREPRENEUR ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@EYEWONDER[2].TXT [ /EYEWONDER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@EYEWONDER[3].TXT [ /EYEWONDER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FASTCLICK[1].TXT [ /FASTCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FASTCLICK[2].TXT [ /FASTCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FEED.ADDTRACKS[1].TXT [ /FEED.ADDTRACKS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FEED.VALIDCLICK[1].TXT [ /FEED.VALIDCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FIDELITY.ROTATOR.HADJ7.ADJUGGLER[2].TXT [ /FIDELITY.ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FIDELITY.ROTATOR.HADJ7.ADJUGGLER[3].TXT [ /FIDELITY.ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FIND.10TOPSEARCHES[1].TXT [ /FIND.10TOPSEARCHES ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FINDMYDEGREE[2].TXT [ /FINDMYDEGREE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FINDOLOGY[1].TXT [ /FINDOLOGY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FINDOLOGY[2].TXT [ /FINDOLOGY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GETCLICKY[1].TXT [ /GETCLICKY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GLAMMEDIA[2].TXT [ /GLAMMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GOODCHOLESTEROLCOUNT[2].TXT [ /GOODCHOLESTEROLCOUNT ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GOTACHA.ROTATOR.HADJ7.ADJUGGLER[1].TXT [ /GOTACHA.ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GOTACHA.ROTATOR.HADJ7.ADJUGGLER[2].TXT [ /GOTACHA.ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GOTCLICKY[2].TXT [ /GOTCLICKY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HARRENMEDIANETWORK[1].TXT [ /HARRENMEDIANETWORK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HARRENMEDIANETWORK[2].TXT [ /HARRENMEDIANETWORK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HITBOX[1].TXT [ /HITBOX ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HOMESTORE.122.2O7[1].TXT [ /HOMESTORE.122.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HORNYMATCHES[1].TXT [ /HORNYMATCHES ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HPI.ROTATOR.HADJ7.ADJUGGLER[1].TXT [ /HPI.ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HPI.ROTATOR.HADJ7.ADJUGGLER[2].TXT [ /HPI.ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@IMRWORLDWIDE[2].TXT [ /IMRWORLDWIDE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@IMRWORLDWIDE[3].TXT [ /IMRWORLDWIDE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@IN.GETCLICKY[1].TXT [ /IN.GETCLICKY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INSIGHTEXPRESSAI[1].TXT [ /INSIGHTEXPRESSAI ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INSIGHTEXPRESSAI[3].TXT [ /INSIGHTEXPRESSAI ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERCHANGECORPORATION.122.2O7[1].TXT [ /INTERCHANGECORPORATION.122.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERCHANGECORPORATION.122.2O7[2].TXT [ /INTERCHANGECORPORATION.122.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERCLICK[1].TXT [ /INTERCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERCLICK[2].TXT [ /INTERCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTOUCHSOLUTIONS.112.2O7[1].TXT [ /INTOUCHSOLUTIONS.112.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INVITEMEDIA[1].TXT [ /INVITEMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INVITEMEDIA[2].TXT [ /INVITEMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@KITARAMEDIA.122.2O7[1].TXT [ /KITARAMEDIA.122.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@KONTERA[1].TXT [ /KONTERA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LEGOLAS-MEDIA[1].TXT [ /LEGOLAS-MEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LEGOLAS-MEDIA[3].TXT [ /LEGOLAS-MEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LIVEPERSON[1].TXT [ /LIVEPERSON ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LIVEPERSON[3].TXT [ /LIVEPERSON ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LOCALDISCOUNTS411[1].TXT [ /LOCALDISCOUNTS411 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LUCIDMEDIA[1].TXT [ /LUCIDMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LUCIDMEDIA[2].TXT [ /LUCIDMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@M1.MEDIASRV[1].TXT [ /M1.MEDIASRV ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@M1.MEDIASRV[2].TXT [ /M1.MEDIASRV ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MARCHEX.BAFIND[1].TXT [ /MARCHEX.BAFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MARCHEX.BAFIND[3].TXT [ /MARCHEX.BAFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA.ADFRONTIERS[1].TXT [ /MEDIA.ADFRONTIERS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA.CONTEXTWEB[1].TXT [ /MEDIA.CONTEXTWEB ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA.CONTEXTWEB[2].TXT [ /MEDIA.CONTEXTWEB ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA.CONTEXTWEB[3].TXT [ /MEDIA.CONTEXTWEB ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA.CONTEXTWEB[4].TXT [ /MEDIA.CONTEXTWEB ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA6DEGREES[1].TXT [ /MEDIA6DEGREES ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA6DEGREES[2].TXT [ /MEDIA6DEGREES ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIABRANDSWW[1].TXT [ /MEDIABRANDSWW ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIABRANDSWW[2].TXT [ /MEDIABRANDSWW ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIAPLEX[1].TXT [ /MEDIAPLEX ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIAPLEX[3].TXT [ /MEDIAPLEX ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIASRV[1].TXT [ /MEDIASRV ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIASRV[2].TXT [ /MEDIASRV ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIATRAFFIC[1].TXT [ /MEDIATRAFFIC ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIATRAFFIC[2].TXT [ /MEDIATRAFFIC ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MICROSOFTSTO.112.2O7[2].TXT [ /MICROSOFTSTO.112.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MIDNIGHTTRAFFIC[1].TXT [ /MIDNIGHTTRAFFIC ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MIVA.CINOMEDIA[1].TXT [ /MIVA.CINOMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MM.CHITIKA[1].TXT [ /MM.CHITIKA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MM.CHITIKA[3].TXT [ /MM.CHITIKA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MYROITRACKING[2].TXT [ /MYROITRACKING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MYROITRACKING[3].TXT [ /MYROITRACKING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@NETWORK.REALMEDIA[2].TXT [ /NETWORK.REALMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@NEWMUSICCOUNTDOWN.MEVIO[1].TXT [ /NEWMUSICCOUNTDOWN.MEVIO ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@NEWMUSICCOUNTDOWN.MEVIO[3].TXT [ /NEWMUSICCOUNTDOWN.MEVIO ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P141T1S1648504.KRONOS.BRAVENETMEDIA[1].TXT [ /P141T1S1648504.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P142T1S3898816.KRONOS.BRAVENETMEDIA[1].TXT [ /P142T1S3898816.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P169T1S5349880.KRONOS.BRAVENETMEDIA[1].TXT [ /P169T1S5349880.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P220T1S4937009.KRONOS.BRAVENETMEDIA[1].TXT [ /P220T1S4937009.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P221T1S1846949.KRONOS.BRAVENETMEDIA[1].TXT [ /P221T1S1846949.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P267T1S4365130.KRONOS.BRAVENETMEDIA[1].TXT [ /P267T1S4365130.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P268T1S2329513.KRONOS.BRAVENETMEDIA[1].TXT [ /P268T1S2329513.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P268T1S2329513.KRONOS.BRAVENETMEDIA[2].TXT [ /P268T1S2329513.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P281T1S5370901.KRONOS.BRAVENETMEDIA[1].TXT [ /P281T1S5370901.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P304T1S5339929.KRONOS.BRAVENETMEDIA[1].TXT [ /P304T1S5339929.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P371T1S4556570.KRONOS.BRAVENETMEDIA[1].TXT [ /P371T1S4556570.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P381T1S2921474.KRONOS.BRAVENETMEDIA[1].TXT [ /P381T1S2921474.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P386T1S5325709.KRONOS.BRAVENETMEDIA[1].TXT [ /P386T1S5325709.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P401T1S3907861.KRONOS.BRAVENETMEDIA[1].TXT [ /P401T1S3907861.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P418T1S4361799.KRONOS.BRAVENETMEDIA[1].TXT [ /P418T1S4361799.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P421T1S4921773.KRONOS.BRAVENETMEDIA[1].TXT [ /P421T1S4921773.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@P457T1S5313677.KRONOS.BRAVENETMEDIA[1].TXT [ /P457T1S5313677.KRONOS.BRAVENETMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PIXEL.INVITEMEDIA[1].TXT [ /PIXEL.INVITEMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PLATFORM.REVENUESTREET[2].TXT [ /PLATFORM.REVENUESTREET ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PLUCKIT.DEMANDMEDIA[2].TXT [ /PLUCKIT.DEMANDMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PLUCKIT.DEMANDMEDIA[3].TXT [ /PLUCKIT.DEMANDMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POINTROLL[1].TXT [ /POINTROLL ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POINTROLL[2].TXT [ /POINTROLL ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.BLUE-FIND[1].TXT [ /POPS.BLUE-FIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.BLUEFINDONLINE[1].TXT [ /POPS.BLUEFINDONLINE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.GREEN-FIND[1].TXT [ /POPS.GREEN-FIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.GREENFINDONLINE[1].TXT [ /POPS.GREENFINDONLINE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.GREENFINDONLINE[2].TXT [ /POPS.GREENFINDONLINE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.LIGHTNING-FIND[1].TXT [ /POPS.LIGHTNING-FIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.MYBLUEFIND[1].TXT [ /POPS.MYBLUEFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.MYBLUEFIND[2].TXT [ /POPS.MYBLUEFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.MYGREENFIND[1].TXT [ /POPS.MYGREENFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.MYLIGHTNINGFIND[1].TXT [ /POPS.MYLIGHTNINGFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.MYLIGHTNINGFIND[2].TXT [ /POPS.MYLIGHTNINGFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.MYPURPLEFIND[2].TXT [ /POPS.MYPURPLEFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.MYRAINBOWFIND[1].TXT [ /POPS.MYRAINBOWFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.MYRAINBOWFIND[2].TXT [ /POPS.MYRAINBOWFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.PURPLE-FIND[1].TXT [ /POPS.PURPLE-FIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.PURPLEFINDONLINE[1].TXT [ /POPS.PURPLEFINDONLINE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.PURPLEFINDONLINE[2].TXT [ /POPS.PURPLEFINDONLINE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.PURPLEFINDS[1].TXT [ /POPS.PURPLEFINDS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.RAINBOW-FIND[1].TXT [ /POPS.RAINBOW-FIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.RAINBOWFINDONLINE[1].TXT [ /POPS.RAINBOWFINDONLINE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.THEBLUEFIND[2].TXT [ /POPS.THEBLUEFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.THEPURPLEFIND[1].TXT [ /POPS.THEPURPLEFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.THERAINBOWFIND[1].TXT [ /POPS.THERAINBOWFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POPS.THERAINBOWFIND[2].TXT [ /POPS.THERAINBOWFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PRO-MARKET[1].TXT [ /PRO-MARKET ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PRO-MARKET[3].TXT [ /PRO-MARKET ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@QUESTIONMARKET[1].TXT [ /QUESTIONMARKET ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@QUESTIONMARKET[3].TXT [ /QUESTIONMARKET ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@R1-ADS.ACE.ADVERTISING[1].TXT [ /R1-ADS.ACE.ADVERTISING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@R1-ADS.ACE.ADVERTISING[3].TXT [ /R1-ADS.ACE.ADVERTISING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REALMEDIA[1].TXT [ /REALMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REALMEDIA[2].TXT [ /REALMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REVENUE[1].TXT [ /REVENUE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REVENUE[2].TXT [ /REVENUE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REVSCI[1].TXT [ /REVSCI ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REVSCI[3].TXT [ /REVSCI ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ROTATOR.ADJUGGLER[1].TXT [ /ROTATOR.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ROTATOR.HADJ7.ADJUGGLER[1].TXT [ /ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ROTATOR.HADJ7.ADJUGGLER[2].TXT [ /ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@RU4[1].TXT [ /RU4 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@RU4[3].TXT [ /RU4 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SALES.LIVEPERSON[1].TXT [ /SALES.LIVEPERSON ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.321FINDIT[1].TXT [ /SEARCH.321FINDIT ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.AMAZECLICK[1].TXT [ /SEARCH.AMAZECLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.CLICKBOWL[1].TXT [ /SEARCH.CLICKBOWL ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.CLICKCHEER[1].TXT [ /SEARCH.CLICKCHEER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.CLICKSARE[1].TXT [ /SEARCH.CLICKSARE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.CLICKSFIND[2].TXT [ /SEARCH.CLICKSFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.CLICKSTHE[1].TXT [ /SEARCH.CLICKSTHE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.CLICKWHALE[2].TXT [ /SEARCH.CLICKWHALE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.FINDSMY[1].TXT [ /SEARCH.FINDSMY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.FINDXML[1].TXT [ /SEARCH.FINDXML ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.HIPPOFIND[1].TXT [ /SEARCH.HIPPOFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.SEEKFINDS[1].TXT [ /SEARCH.SEEKFINDS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVEDBY.ADXPOWER[2].TXT [ /SERVEDBY.ADXPOWER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVEDBY.ADXPOWER[3].TXT [ /SERVEDBY.ADXPOWER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVER.CPMSTAR[1].TXT [ /SERVER.CPMSTAR ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVER.CPMSTAR[2].TXT [ /SERVER.CPMSTAR ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVING-SYS[1].TXT [ /SERVING-SYS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVING-SYS[2].TXT [ /SERVING-SYS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SMARTADSERVER[1].TXT [ /SMARTADSERVER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SMARTFINDONLINE[1].TXT [ /SMARTFINDONLINE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SNAP9.ADVERTSERVE[1].TXT [ /SNAP9.ADVERTSERVE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SNAP9.ADVERTSERVE[2].TXT [ /SNAP9.ADVERTSERVE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SPECIFICCLICK[1].TXT [ /SPECIFICCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SPECIFICCLICK[2].TXT [ /SPECIFICCLICK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STAT.ONESTAT[2].TXT [ /STAT.ONESTAT ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATCOUNTER[1].TXT [ /STATCOUNTER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATCOUNTER[3].TXT [ /STATCOUNTER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATIC.GETCLICKY[1].TXT [ /STATIC.GETCLICKY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATSE.WEBTRENDSLIVE[2].TXT [ /STATSE.WEBTRENDSLIVE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SURFACCURACY[1].TXT [ /SURFACCURACY ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SURVEYMONKEY.122.2O7[1].TXT [ /SURVEYMONKEY.122.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TACODA.AT.ATWOLA[1].TXT [ /TACODA.AT.ATWOLA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TACODA.AT.ATWOLA[2].TXT [ /TACODA.AT.ATWOLA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TACODA[1].TXT [ /TACODA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TECHNORATIMEDIA[1].TXT [ /TECHNORATIMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TECHNORATIMEDIA[2].TXT [ /TECHNORATIMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@THECLICKCHECK[2].TXT [ /THECLICKCHECK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TOTALBEAUTY.112.2O7[1].TXT [ /TOTALBEAUTY.112.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TOTALBEAUTY.112.2O7[2].TXT [ /TOTALBEAUTY.112.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRACK.CLICKPAYZ[1].TXT [ /TRACK.CLICKPAYZ ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAFFICENGINE[2].TXT [ /TRAFFICENGINE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAFFICKING.NABBR[2].TXT [ /TRAFFICKING.NABBR ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAFFICMP[1].TXT [ /TRAFFICMP ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAFFICMP[3].TXT [ /TRAFFICMP ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAVELADVERTISING[1].TXT [ /TRAVELADVERTISING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAVELADVERTISING[2].TXT [ /TRAVELADVERTISING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRIBALFUSION[1].TXT [ /TRIBALFUSION ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRIBALFUSION[2].TXT [ /TRIBALFUSION ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@UIADSERVER[1].TXT [ /UIADSERVER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@UIADSERVER[2].TXT [ /UIADSERVER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@VIACOM.ADBUREAU[1].TXT [ /VIACOM.ADBUREAU ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@VIDASCO.ROTATOR.HADJ7.ADJUGGLER[1].TXT [ /VIDASCO.ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@VIDASCO.ROTATOR.HADJ7.ADJUGGLER[2].TXT [ /VIDASCO.ROTATOR.HADJ7.ADJUGGLER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@VIEW.ATDMT[1].TXT [ /VIEW.ATDMT ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@VIEW.ATDMT[2].TXT [ /VIEW.ATDMT ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WARNERBROS.112.2O7[1].TXT [ /WARNERBROS.112.2O7 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WEB4.REALTRACKER[1].TXT [ /WEB4.REALTRACKER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.BURSTBEACON[1].TXT [ /WWW.BURSTBEACON ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.BURSTNET[1].TXT [ /WWW.BURSTNET ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.BURSTNET[2].TXT [ /WWW.BURSTNET ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.CFTRACK[1].TXT [ /WWW.CFTRACK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.CRACKLE[2].TXT [ /WWW.CRACKLE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.EPITRACK[1].TXT [ /WWW.EPITRACK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.FIND-FAST-ANSWERS[1].TXT [ /WWW.FIND-FAST-ANSWERS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.FIND-FAST-ANSWERS[2].TXT [ /WWW.FIND-FAST-ANSWERS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.FINDMYDEGREE[2].TXT [ /WWW.FINDMYDEGREE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.GLAMMEDIA[1].TXT [ /WWW.GLAMMEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.HBATRACK[1].TXT [ /WWW.HBATRACK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.MATRIX-MEDIA[1].TXT [ /WWW.MATRIX-MEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.MATRIX-MEDIA[2].TXT [ /WWW.MATRIX-MEDIA ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.MEDIAQUANTICS[2].TXT [ /WWW.MEDIAQUANTICS ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.MEDIATRAFFIC[1].TXT [ /WWW.MEDIATRAFFIC ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.NETWORKADVERTISING[2].TXT [ /WWW.NETWORKADVERTISING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.OMGTRACKING[2].TXT [ /WWW.OMGTRACKING ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.PIXELTRACK66[2].TXT [ /WWW.PIXELTRACK66 ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.TRACKING.CALLMEASUREMENT[1].TXT [ /WWW.TRACKING.CALLMEASUREMENT ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.X3TRACK[1].TXT [ /WWW.X3TRACK ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW1.123FINDACAR[1].TXT [ /WWW1.123FINDACAR ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW1.AUTO-PRICE-FINDER[1].TXT [ /WWW1.AUTO-PRICE-FINDER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW1.AUTO-PRICE-FINDER[2].TXT [ /WWW1.AUTO-PRICE-FINDER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@XML.HAPPYTOFIND[1].TXT [ /XML.HAPPYTOFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@XML.TRAFFICENGINE[1].TXT [ /XML.TRAFFICENGINE ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@YELFIND[2].TXT [ /YELFIND ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@YIELDMANAGER[1].TXT [ /YIELDMANAGER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@YIELDMANAGER[2].TXT [ /YIELDMANAGER ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ZEDO[1].TXT [ /ZEDO ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ZEDO[2].TXT [ /ZEDO ]

Trojan.Agent/Gen-Sefnit
C:\PROGRAMDATA\INSTALLMATE\{D7503769-32EE-F287-9E01-FBC449BF48DB}\_SETUP.DLL

Trojan.Agent/Gen-Autorun[Swisyn]
ZIP ARCHIVE( C:\USERS\DANIEL\DOWNLOADS\ADOBE.AUDITION.CS5.5.V4.0.MULTILINGUAL.INCL.KEYMAKER-CORE\ADOBE.AUDITION.CS5.5.V4.0.MULTILINGUAL.INCL.KEYMAKER-CORE\CR-9ZW01.ZIP )/KEYGEN.EXE
C:\USERS\DANIEL\DOWNLOADS\ADOBE.AUDITION.CS5.5.V4.0.MULTILINGUAL.INCL.KEYMAKER-CORE\ADOBE.AUDITION.CS5.5.V4.0.MULTILINGUAL.INCL.KEYMAKER-CORE\CR-9ZW01.ZIP

Trace.Known Threat Sources
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\LOCAL\MICROSOFT\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\OODEBOMR\get[8].xml [ cache:wista ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\LOCAL\MICROSOFT\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\JYVI3FOG\get[1].xml [ cache:wista ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\LOCAL\MICROSOFT\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\JYVI3FOG\crossdomain[2].xml [ cache:wista ]
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\LOCAL\MICROSOFT\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\FPU3OCV2\get[6].xml [ cache:wista ]


Malwarebytes Anti-Malware 1.60.1.1000
www.malwarebytes.org

Database version: v2012.02.28.01

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Daniel :: DANIEL-MSI [administrator]

2/27/2012 6:00:45 PM
mbam-log-2012-02-27 (18-00-45).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 228285
Time elapsed: 10 minute(s), 46 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

#4 orapaho

orapaho
  • Topic Starter

  • Members
  • 160 posts
  • OFFLINE
  •  
  • Local time:11:47 AM

Posted 27 February 2012 - 11:36 PM

Here is the GMER scan: (The site would not let me post something so long)

GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2012-02-27 20:24:57
Windows 6.1.7601 Service Pack 1 Harddisk0\DR0 -> \Device\0000006f TOSHIBA_ rev.GJ00
Running: dl3u10oz.exe; Driver: C:\Users\Daniel\AppData\Local\Temp\uxrcrpob.sys


---- System - GMER 1.0.15 ----

SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwAddBootEntry [0x8FC9EFC4]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ZwAllocateVirtualMemory [0x91247510]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwCreateEvent [0x8FCA1456]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwCreateEventPair [0x8FCA14AE]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwCreateIoCompletion [0x8FCA15C4]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwCreateMutant [0x8FCA13AC]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwCreateSection [0x8FCA14FE]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwCreateSemaphore [0x8FCA1400]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwCreateTimer [0x8FCA1572]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwDeleteBootEntry [0x8FC9EFE8]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ZwFreeVirtualMemory [0x912475C0]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwLoadDriver [0x8FC9EDB2]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwModifyBootEntry [0x8FC9F00C]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwNotifyChangeKey [0x8FCA19BC]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwNotifyChangeMultipleKeys [0x8FC9FAA4]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwOpenEvent [0x8FCA1486]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwOpenEventPair [0x8FCA14D6]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwOpenIoCompletion [0x8FCA15EE]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwOpenMutant [0x8FCA13D8]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwOpenSection [0x8FCA153E]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwOpenSemaphore [0x8FCA142E]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwOpenTimer [0x8FCA159C]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ZwProtectVirtualMemory [0x91247658]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwQueryObject [0x8FC9F96A]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwSetBootEntryOrder [0x8FC9F030]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwSetBootOptions [0x8FC9F054]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwSetSystemInformation [0x8FC9EE0C]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwSetSystemPowerState [0x8FC9EF48]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwShutdownSystem [0x8FC9EF24]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwSystemDebugControl [0x8FC9EF6C]
SSDT \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software) ZwVdmControl [0x8FC9F078]

Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ZwCreateProcessEx [0x9125B7A2]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ObMakeTemporaryObject

---- Kernel code sections - GMER 1.0.15 ----

.text ntkrnlpa.exe!ZwSaveKey + 13D1 82E8F369 1 Byte [06]
.text ntkrnlpa.exe!KiDispatchInterrupt + 5A2 82EC8D52 19 Bytes [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3}
.text ntkrnlpa.exe!KeRemoveQueueEx + 10CB 82ECFD80 4 Bytes [C4, EF, C9, 8F]
.text ntkrnlpa.exe!KeRemoveQueueEx + 10F3 82ECFDA8 4 Bytes [10, 75, 24, 91] {ADC [EBP+0x24], DH; XCHG ECX, EAX}
.text ntkrnlpa.exe!KeRemoveQueueEx + 11A7 82ECFE5C 8 Bytes [56, 14, CA, 8F, AE, 14, CA, ...]
.text ntkrnlpa.exe!KeRemoveQueueEx + 11B3 82ECFE68 4 Bytes [C4, 15, CA, 8F]
.text ntkrnlpa.exe!KeRemoveQueueEx + 11CF 82ECFE84 4 Bytes [AC, 13, CA, 8F]
.text ...
PAGE ntkrnlpa.exe!ObMakeTemporaryObject 8305CBE8 5 Bytes JMP 9125869C \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software)
PAGE ntkrnlpa.exe!ObInsertObject + 27 830751D0 5 Bytes JMP 9125A174 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software)
PAGE ntkrnlpa.exe!ZwReplyWaitReceivePortEx + 108 8308A317 4 Bytes CALL 8FCA0025 \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software)
PAGE ntkrnlpa.exe!ZwAlpcSendWaitReceivePort + 122 830A40E9 4 Bytes CALL 8FCA003B \SystemRoot\System32\Drivers\aswSnx.SYS (avast! Virtualization Driver/AVAST Software)
PAGE ntkrnlpa.exe!ZwCreateProcessEx 8312DF30 7 Bytes JMP 9125B7A6 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software)
.text kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]

---- User code sections - GMER 1.0.15 ----

.text C:\windows\system32\csrss.exe[448] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\SUPERAntiSpyware\SASCORE.EXE[492] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\SUPERAntiSpyware\SASCORE.EXE[492] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\SUPERAntiSpyware\SASCORE.EXE[492] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\SUPERAntiSpyware\SASCORE.EXE[492] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00080A08
.text C:\Program Files\SUPERAntiSpyware\SASCORE.EXE[492] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 000803FC
.text C:\Program Files\SUPERAntiSpyware\SASCORE.EXE[492] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00080804
.text C:\Program Files\SUPERAntiSpyware\SASCORE.EXE[492] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 000801F8
.text C:\Program Files\SUPERAntiSpyware\SASCORE.EXE[492] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00080600
.text C:\windows\system32\wininit.exe[496] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000303FC
.text C:\windows\system32\wininit.exe[496] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000301F8
.text C:\windows\system32\wininit.exe[496] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\wininit.exe[496] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 000C0A08
.text C:\windows\system32\wininit.exe[496] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 000C03FC
.text C:\windows\system32\wininit.exe[496] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 000C0804
.text C:\windows\system32\wininit.exe[496] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 000C01F8
.text C:\windows\system32\wininit.exe[496] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 000C0600
.text C:\windows\system32\csrss.exe[508] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\services.exe[544] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000A03FC
.text C:\windows\system32\services.exe[544] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000A01F8
.text C:\windows\system32\services.exe[544] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\lsass.exe[556] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\lsass.exe[556] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\lsass.exe[556] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\lsm.exe[564] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\lsm.exe[564] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\lsm.exe[564] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\svchost.exe[668] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\svchost.exe[668] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\svchost.exe[668] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\svchost.exe[780] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\svchost.exe[780] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\svchost.exe[780] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\svchost.exe[780] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 002B0A08
.text C:\windows\system32\svchost.exe[780] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002B03FC
.text C:\windows\system32\svchost.exe[780] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 002B0804
.text C:\windows\system32\svchost.exe[780] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002B01F8
.text C:\windows\system32\svchost.exe[780] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 002B0600
.text C:\windows\system32\winlogon.exe[844] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000303FC
.text C:\windows\system32\winlogon.exe[844] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000301F8
.text C:\windows\system32\winlogon.exe[844] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\winlogon.exe[844] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 000C0A08
.text C:\windows\system32\winlogon.exe[844] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 000C03FC
.text C:\windows\system32\winlogon.exe[844] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 000C0804
.text C:\windows\system32\winlogon.exe[844] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 000C01F8
.text C:\windows\system32\winlogon.exe[844] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 000C0600
.text C:\windows\System32\svchost.exe[872] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\System32\svchost.exe[872] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\System32\svchost.exe[872] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\System32\svchost.exe[872] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 003C0A08
.text C:\windows\System32\svchost.exe[872] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 003C03FC
.text C:\windows\System32\svchost.exe[872] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 003C0804
.text C:\windows\System32\svchost.exe[872] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 003C01F8
.text C:\windows\System32\svchost.exe[872] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 003C0600
.text C:\windows\System32\svchost.exe[916] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000A03FC
.text C:\windows\System32\svchost.exe[916] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000A01F8
.text C:\windows\System32\svchost.exe[916] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\System32\svchost.exe[916] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00550A08
.text C:\windows\System32\svchost.exe[916] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 005503FC
.text C:\windows\System32\svchost.exe[916] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00550804
.text C:\windows\System32\svchost.exe[916] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 005501F8
.text C:\windows\System32\svchost.exe[916] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00550600
.text C:\windows\system32\svchost.exe[944] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\svchost.exe[944] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\svchost.exe[944] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\svchost.exe[944] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00E40A08
.text C:\windows\system32\svchost.exe[944] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 00E403FC
.text C:\windows\system32\svchost.exe[944] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00E40804
.text C:\windows\system32\svchost.exe[944] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 00E401F8
.text C:\windows\system32\svchost.exe[944] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00E40600
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[1024] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[1024] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[1024] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[1024] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00100A08
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[1024] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001003FC
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[1024] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00100804
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[1024] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001001F8
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[1024] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00100600
.text C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe[1032] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe[1032] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe[1032] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe[1032] user32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00200A08
.text C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe[1032] user32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002003FC
.text C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe[1032] user32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00200804
.text C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe[1032] user32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002001F8
.text C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe[1032] user32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00200600
.text C:\windows\system32\svchost.exe[1056] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\svchost.exe[1056] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\svchost.exe[1056] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\svchost.exe[1056] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00540A08
.text C:\windows\system32\svchost.exe[1056] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 005403FC
.text C:\windows\system32\svchost.exe[1056] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00540804
.text C:\windows\system32\svchost.exe[1056] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 005401F8
.text C:\windows\system32\svchost.exe[1056] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00540600
.text C:\windows\system32\svchost.exe[1148] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\svchost.exe[1148] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\svchost.exe[1148] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\svchost.exe[1148] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00540A08
.text C:\windows\system32\svchost.exe[1148] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 005403FC
.text C:\windows\system32\svchost.exe[1148] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00540804
.text C:\windows\system32\svchost.exe[1148] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 005401F8
.text C:\windows\system32\svchost.exe[1148] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00540600
.text C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe[1172] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe[1172] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe[1172] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe[1172] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 002F0A08
.text C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe[1172] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002F03FC
.text C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe[1172] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 002F0804
.text C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe[1172] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002F01F8
.text C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe[1172] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 002F0600
.text C:\Program Files\AVAST Software\Avast\AvastSvc.exe[1232] kernel32.dll!SetUnhandledExceptionFilter 7760F4FB 4 Bytes [C2, 04, 00, 90] {RET 0x4; NOP }
.text C:\Program Files\AVAST Software\Avast\AvastSvc.exe[1232] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\ctfmon.exe[1288] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe[1300] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000703FC
.text C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe[1300] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000701F8
.text C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe[1300] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe[1300] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00100A08
.text C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe[1300] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001003FC
.text C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe[1300] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00100804
.text C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe[1300] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001001F8
.text C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe[1300] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00100600
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe[1460] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe[1460] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe[1460] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe[1460] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00200A08
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe[1460] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002003FC
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe[1460] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00200804
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe[1460] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002001F8
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\MovielinkCore.exe[1460] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00200600
.text C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe[1744] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe[1744] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe[1744] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe[1744] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00090A08
.text C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe[1744] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 000903FC
.text C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe[1744] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00090804
.text C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe[1744] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 000901F8
.text C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe[1744] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00090600
.text C:\Program Files\Bonjour\mDNSResponder.exe[1748] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\Bonjour\mDNSResponder.exe[1748] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\Bonjour\mDNSResponder.exe[1748] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Bonjour\mDNSResponder.exe[1748] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00100A08
.text C:\Program Files\Bonjour\mDNSResponder.exe[1748] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001003FC
.text C:\Program Files\Bonjour\mDNSResponder.exe[1748] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00100804
.text C:\Program Files\Bonjour\mDNSResponder.exe[1748] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001001F8
.text C:\Program Files\Bonjour\mDNSResponder.exe[1748] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00100600
.text C:\windows\System32\spoolsv.exe[1864] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\System32\spoolsv.exe[1864] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\System32\spoolsv.exe[1864] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\System32\spoolsv.exe[1864] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00200A08
.text C:\windows\System32\spoolsv.exe[1864] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002003FC
.text C:\windows\System32\spoolsv.exe[1864] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00200804
.text C:\windows\System32\spoolsv.exe[1864] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002001F8
.text C:\windows\System32\spoolsv.exe[1864] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00200600
.text C:\windows\system32\svchost.exe[1920] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\svchost.exe[1920] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\svchost.exe[1920] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\svchost.exe[1920] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00540A08
.text C:\windows\system32\svchost.exe[1920] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 005403FC
.text C:\windows\system32\svchost.exe[1920] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00540804
.text C:\windows\system32\svchost.exe[1920] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 005401F8
.text C:\windows\system32\svchost.exe[1920] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00540600
.text C:\windows\system32\taskhost.exe[1940] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000503FC
.text C:\windows\system32\taskhost.exe[1940] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000501F8
.text C:\windows\system32\taskhost.exe[1940] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\taskhost.exe[1940] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00120A08
.text C:\windows\system32\taskhost.exe[1940] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001203FC
.text C:\windows\system32\taskhost.exe[1940] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00120804
.text C:\windows\system32\taskhost.exe[1940] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001201F8
.text C:\windows\system32\taskhost.exe[1940] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00120600
.text C:\Program Files\iPod\bin\iPodService.exe[2112] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\iPod\bin\iPodService.exe[2112] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\iPod\bin\iPodService.exe[2112] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\iPod\bin\iPodService.exe[2112] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00110A08
.text C:\Program Files\iPod\bin\iPodService.exe[2112] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001103FC
.text C:\Program Files\iPod\bin\iPodService.exe[2112] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00110804
.text C:\Program Files\iPod\bin\iPodService.exe[2112] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001101F8
.text C:\Program Files\iPod\bin\iPodService.exe[2112] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00110600
.text C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe[2128] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe[2128] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe[2128] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe[2128] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00180A08
.text C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe[2128] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001803FC
.text C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe[2128] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00180804
.text C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe[2128] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001801F8
.text C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe[2128] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00180600
.text C:\windows\system32\svchost.exe[2184] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\svchost.exe[2184] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\svchost.exe[2184] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001703FC
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001701F8
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] kernel32.dll!SetUnhandledExceptionFilter 7760F4FB 5 Bytes JMP 65F850B8 C:\Program Files\Common Files\Microsoft Shared\office12\mso.dll (2007 Microsoft Office component/Microsoft Corporation)
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00210A08
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002103FC
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00210804
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002101F8
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00210600
.text C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] ole32.dll!OleLoadFromStream 76226143 5 Bytes JMP 66A4EAC8 C:\Program Files\Common Files\Microsoft Shared\office12\mso.dll (2007 Microsoft Office component/Microsoft Corporation)
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2480] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2480] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2480] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2480] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00390A08
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2480] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 003903FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2480] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00390804
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2480] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 003901F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2480] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00390600
.text C:\windows\system32\conhost.exe[2488] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000303FC
.text C:\windows\system32\conhost.exe[2488] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000301F8
.text C:\windows\system32\conhost.exe[2488] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\conhost.exe[2488] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 000C0A08
.text C:\windows\system32\conhost.exe[2488] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 000C03FC
.text C:\windows\system32\conhost.exe[2488] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 000C0804
.text C:\windows\system32\conhost.exe[2488] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 000C01F8
.text C:\windows\system32\conhost.exe[2488] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 000C0600
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2588] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2588] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2588] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2588] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00390A08
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2588] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 003903FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2588] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00390804
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2588] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 003901F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2588] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00390600
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2664] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2664] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2664] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2664] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00390A08
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2664] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 003903FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2664] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00390804
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2664] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 003901F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2664] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00390600
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2672] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2672] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2672] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2672] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00390A08
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2672] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 003903FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2672] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00390804
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2672] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 003901F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2672] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00390600
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2680] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2680] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2680] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2680] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00390A08
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2680] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 003903FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2680] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00390804
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2680] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 003901F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2680] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00390600
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2688] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2688] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2688] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2688] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00390A08
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2688] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 003903FC
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2688] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00390804
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2688] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 003901F8
.text C:\Program Files\PostgreSQL\8.3\bin\postgres.exe[2688] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00390600
.text C:\windows\system32\Dwm.exe[2816] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\Dwm.exe[2816] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\Dwm.exe[2816] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\Dwm.exe[2816] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 000F0A08
.text C:\windows\system32\Dwm.exe[2816] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 000F03FC
.text C:\windows\system32\Dwm.exe[2816] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 000F0804
.text C:\windows\system32\Dwm.exe[2816] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 000F01F8
.text C:\windows\system32\Dwm.exe[2816] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 000F0600
.text C:\windows\Explorer.EXE[2840] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\Explorer.EXE[2840] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\Explorer.EXE[2840] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\Explorer.EXE[2840] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00150A08
.text C:\windows\Explorer.EXE[2840] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001503FC
.text C:\windows\Explorer.EXE[2840] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00150804
.text C:\windows\Explorer.EXE[2840] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001501F8
.text C:\windows\Explorer.EXE[2840] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00150600
.text C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe[2976] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe[2976] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe[2976] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe[2976] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00200A08
.text C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe[2976] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002003FC
.text C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe[2976] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00200804
.text C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe[2976] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002001F8
.text C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe[2976] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00200600
.text C:\Windows\system32\WUDFHost.exe[3128] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Windows\system32\WUDFHost.exe[3128] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Windows\system32\WUDFHost.exe[3128] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Windows\system32\WUDFHost.exe[3128] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00090A08
.text C:\Windows\system32\WUDFHost.exe[3128] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 000903FC
.text C:\Windows\system32\WUDFHost.exe[3128] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00090804
.text C:\Windows\system32\WUDFHost.exe[3128] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 000901F8
.text C:\Windows\system32\WUDFHost.exe[3128] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00090600
.text C:\windows\system32\svchost.exe[3152] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\svchost.exe[3152] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\svchost.exe[3152] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\svchost.exe[3152] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00570A08
.text C:\windows\system32\svchost.exe[3152] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 005703FC
.text C:\windows\system32\svchost.exe[3152] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00570804
.text C:\windows\system32\svchost.exe[3152] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 005701F8
.text C:\windows\system32\svchost.exe[3152] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00570600
.text C:\Program Files\FSP\FspUip.exe[3176] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\FSP\FspUip.exe[3176] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\FSP\FspUip.exe[3176] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\FSP\FspUip.exe[3176] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00290A08
.text C:\Program Files\FSP\FspUip.exe[3176] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002903FC
.text C:\Program Files\FSP\FspUip.exe[3176] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00290804
.text C:\Program Files\FSP\FspUip.exe[3176] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002901F8
.text C:\Program Files\FSP\FspUip.exe[3176] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00290600
.text C:\Program Files\System Control Manager\MGSysCtrl.exe[3196] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\System Control Manager\MGSysCtrl.exe[3196] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\System Control Manager\MGSysCtrl.exe[3196] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\System Control Manager\MGSysCtrl.exe[3196] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00210A08
.text C:\Program Files\System Control Manager\MGSysCtrl.exe[3196] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002103FC
.text C:\Program Files\System Control Manager\MGSysCtrl.exe[3196] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00210804
.text C:\Program Files\System Control Manager\MGSysCtrl.exe[3196] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002101F8
.text C:\Program Files\System Control Manager\MGSysCtrl.exe[3196] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00210600
.text C:\windows\system32\wbem\unsecapp.exe[3236] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\windows\system32\wbem\unsecapp.exe[3236] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\windows\system32\wbem\unsecapp.exe[3236] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\wbem\unsecapp.exe[3236] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 001F0A08
.text C:\windows\system32\wbem\unsecapp.exe[3236] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001F03FC
.text C:\windows\system32\wbem\unsecapp.exe[3236] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 001F0804
.text C:\windows\system32\wbem\unsecapp.exe[3236] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001F01F8
.text C:\windows\system32\wbem\unsecapp.exe[3236] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 001F0600
.text C:\windows\system32\wbem\wmiprvse.exe[3332] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\wbem\wmiprvse.exe[3332] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\wbem\wmiprvse.exe[3332] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\wbem\wmiprvse.exe[3332] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00100A08
.text C:\windows\system32\wbem\wmiprvse.exe[3332] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001003FC
.text C:\windows\system32\wbem\wmiprvse.exe[3332] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00100804
.text C:\windows\system32\wbem\wmiprvse.exe[3332] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001001F8
.text C:\windows\system32\wbem\wmiprvse.exe[3332] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00100600
.text C:\Program Files\Real\RealPlayer\Update\realsched.exe[3412] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001503FC
.text C:\Program Files\Real\RealPlayer\Update\realsched.exe[3412] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001501F8
.text C:\Program Files\Real\RealPlayer\Update\realsched.exe[3412] kernel32.dll!SetUnhandledExceptionFilter 7760F4FB 5 Bytes [33, C0, C2, 04, 00] {XOR EAX, EAX; RET 0x4}
.text C:\Program Files\Real\RealPlayer\Update\realsched.exe[3412] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Real\RealPlayer\Update\realsched.exe[3412] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 001E0A08
.text C:\Program Files\Real\RealPlayer\Update\realsched.exe[3412] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001E03FC
.text C:\Program Files\Real\RealPlayer\Update\realsched.exe[3412] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 001E0804
.text C:\Program Files\Real\RealPlayer\Update\realsched.exe[3412] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001E01F8
.text C:\Program Files\Real\RealPlayer\Update\realsched.exe[3412] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 001E0600
.text C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe[3468] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe[3468] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe[3468] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe[3468] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 000F0A08
.text C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe[3468] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 000F03FC
.text C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe[3468] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 000F0804
.text C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe[3468] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 000F01F8
.text C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe[3468] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 000F0600
.text C:\Program Files\AVAST Software\Avast\AvastUI.exe[3476] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3484] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3484] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3484] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3484] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00090A08
.text C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3484] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 000903FC
.text C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3484] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00090804
.text C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3484] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 000901F8
.text C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3484] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00090600
.text C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE[3540] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE[3540] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE[3540] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE[3540] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 002F0A08
.text C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE[3540] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002F03FC
.text C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE[3540] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 002F0804
.text C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE[3540] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002F01F8
.text C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE[3540] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 002F0600
.text C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE[3592] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE[3592] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE[3592] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE[3592] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 001F0A08
.text C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE[3592] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001F03FC
.text C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE[3592] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 001F0804
.text C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE[3592] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001F01F8
.text C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE[3592] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 001F0600
.text C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe[3652] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe[3652] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe[3652] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe[3652] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 001F0A08
.text C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe[3652] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001F03FC
.text C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe[3652] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 001F0804
.text C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe[3652] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001F01F8
.text C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe[3652] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 001F0600
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\Movielink User.exe[3732] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 001603FC
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\Movielink User.exe[3732] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 001601F8
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\Movielink User.exe[3732] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\Movielink User.exe[3732] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 001F0A08
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\Movielink User.exe[3732] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 001F03FC
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\Movielink User.exe[3732] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 001F0804
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\Movielink User.exe[3732] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 001F01F8
.text C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\Movielink User.exe[3732] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 001F0600
.text C:\Program Files\iTunes\iTunesHelper.exe[3740] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\Program Files\iTunes\iTunesHelper.exe[3740] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\Program Files\iTunes\iTunesHelper.exe[3740] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Program Files\iTunes\iTunesHelper.exe[3740] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00200A08
.text C:\Program Files\iTunes\iTunesHelper.exe[3740] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002003FC
.text C:\Program Files\iTunes\iTunesHelper.exe[3740] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00200804
.text C:\Program Files\iTunes\iTunesHelper.exe[3740] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002001F8
.text C:\Program Files\iTunes\iTunesHelper.exe[3740] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00200600
.text C:\windows\system32\SearchIndexer.exe[4076] ntdll.dll!LdrUnloadDll 7797C86E 5 Bytes JMP 000603FC
.text C:\windows\system32\SearchIndexer.exe[4076] ntdll.dll!LdrLoadDll 7798223E 5 Bytes JMP 000601F8
.text C:\windows\system32\SearchIndexer.exe[4076] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\SearchIndexer.exe[4076] USER32.dll!UnhookWindowsHookEx 75DBADF9 5 Bytes JMP 00200A08
.text C:\windows\system32\SearchIndexer.exe[4076] USER32.dll!UnhookWinEvent 75DBB750 5 Bytes JMP 002003FC
.text C:\windows\system32\SearchIndexer.exe[4076] USER32.dll!SetWindowsHookExW 75DBE30C 5 Bytes JMP 00200804
.text C:\windows\system32\SearchIndexer.exe[4076] USER32.dll!SetWinEventHook 75DC24DC 5 Bytes JMP 002001F8
.text C:\windows\system32\SearchIndexer.exe[4076] USER32.dll!SetWindowsHookExA 75DE6D0C 5 Bytes JMP 00200600
.text C:\windows\System32\svchost.exe[4656] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\windows\system32\AUDIODG.EXE[5580] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]
.text C:\Users\Daniel\Downloads\dl3u10oz.exe[5768] kernel32.dll!GetBinaryTypeW + 70 776269F4 1 Byte [62]

---- User IAT/EAT - GMER 1.0.15 ----

IAT C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] @ C:\windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [759AFFF6] C:\windows\system32\apphelp.dll (Application Compatibility Client Library/Microsoft Corporation)
IAT C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] @ C:\windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [759AFFF6] C:\windows\system32\apphelp.dll (Application Compatibility Client Library/Microsoft Corporation)
IAT C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] @ C:\windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [759AFFF6] C:\windows\system32\apphelp.dll (Application Compatibility Client Library/Microsoft Corporation)
IAT C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] @ C:\windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [759AFFF6] C:\windows\system32\apphelp.dll (Application Compatibility Client Library/Microsoft Corporation)
IAT C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] @ C:\windows\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] [759AFFF6] C:\windows\system32\apphelp.dll (Application Compatibility Client Library/Microsoft Corporation)
IAT C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] @ C:\windows\system32\WININET.dll [KERNEL32.dll!GetProcAddress] [759AFFF6] C:\windows\system32\apphelp.dll (Application Compatibility Client Library/Microsoft Corporation)
IAT C:\Program Files\Microsoft Office\Office12\WINWORD.EXE[2444] @ C:\windows\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] [759AFFF6] C:\windows\system32\apphelp.dll (Application Compatibility Client Library/Microsoft Corporation)

---- Devices - GMER 1.0.15 ----

Device \FileSystem\Ntfs \Ntfs aswSP.SYS (avast! self protection module/AVAST Software)
Device \Driver\ACPI_HAL \Device\00000054 halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation)

AttachedDevice \Driver\tdx \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume1 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume2 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume3 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume4 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume5 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\tdx \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)

---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{6B683E0E-1505-488C-8053-3C1301924246}\Linkage@Bind \Device\{DC3F5E2F-6366-47F6-828A-436FA49F45CA}?\Device\{D3D2114E-E7F2-47B1-82C0-68BDC2EE3DBA}?\Device\{D9A745FB-E9C5-42FD-85D6-21BF405A24DC}?\Device\{3E8E30CE-5FD5-42A7-BFE2-9272D8444BCF}?
Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{6B683E0E-1505-488C-8053-3C1301924246}\Linkage@Route "{DC3F5E2F-6366-47F6-828A-436FA49F45CA}"?"{D3D2114E-E7F2-47B1-82C0-68BDC2EE3DBA}"?"{D9A745FB-E9C5-42FD-85D6-21BF405A24DC}"?"{3E8E30CE-5FD5-42A7-BFE2-9272D8444BCF}"?
Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{6B683E0E-1505-488C-8053-3C1301924246}\Linkage@Export \Device\TCPIP6TUNNEL_{DC3F5E2F-6366-47F6-828A-436FA49F45CA}?\Device\TCPIP6TUNNEL_{D3D2114E-E7F2-47B1-82C0-68BDC2EE3DBA}?\Device\TCPIP6TUNNEL_{D9A745FB-E9C5-42FD-85D6-21BF405A24DC}?\Device\TCPIP6TUNNEL_{3E8E30CE-5FD5-42A7-BFE2-9272D8444BCF}?
Reg HKLM\SYSTEM\CurrentControlSet\services\iphlpsvc\Parameters\Isatap\{D9A745FB-E9C5-42FD-85D6-21BF405A24DC}@InterfaceName isatap.{9B7CF4C4-16E8-4C66-95C7-1AA0079EC05D}
Reg HKLM\SYSTEM\CurrentControlSet\services\iphlpsvc\Parameters\Isatap\{D9A745FB-E9C5-42FD-85D6-21BF405A24DC}@ReusableType 0

---- Files - GMER 1.0.15 ----

File C:\## aswSnx private storage 0 bytes
File C:\## aswSnx private storage\r189 0 bytes
File C:\## aswSnx private storage\r189\TFC(1).exe_{cc2c4dbe-5104-11e1-a140-e5d9e1211794} 0 bytes
File C:\## aswSnx private storage\r189\TFC(1).exe_{cc2c4dbe-5104-11e1-a140-e5d9e1211794}\image 0 bytes
File C:\## aswSnx private storage\r189\TFC(1).exe_{cc2c4dbe-5104-11e1-a140-e5d9e1211794}\image\Windows 0 bytes
File C:\## aswSnx private storage\r189\TFC(1).exe_{cc2c4dbe-5104-11e1-a140-e5d9e1211794}\image\Windows\temp 0 bytes
File C:\## aswSnx private storage\r189\TFC(1).exe_{cc2c4dbe-5104-11e1-a140-e5d9e1211794}\image\Windows\temp\._msigeplugin61 0 bytes
File C:\## aswSnx private storage\r189\TFC(1).exe_{cc2c4dbe-5104-11e1-a140-e5d9e1211794}\image\Windows\temp\._msigeplugin61\program files 0 bytes
File C:\## aswSnx private storage\r189\TFC(1).exe_{cc2c4dbe-5104-11e1-a140-e5d9e1211794}\image\Windows\temp\._msigeplugin61\program files\Google 0 bytes
File C:\## aswSnx private storage\r189\TFC(1).exe_{cc2c4dbe-5104-11e1-a140-e5d9e1211794}\image\Windows\temp\._msigeplugin61\program files\Google\Google Earth 0 bytes
File C:\## aswSnx private storage\r189\TFC(1).exe_{cc2c4dbe-5104-11e1-a140-e5d9e1211794}\image\Windows\temp\._msigeplugin61\program files\Google\Google Earth\plugin 0 bytes
File C:\## aswSnx private storage\r218 0 bytes
File C:\## aswSnx private storage\snx_rhive 262144 bytes
File C:\## aswSnx private storage\snx_rhive.LOG1 5120 bytes
File C:\## aswSnx private storage\snx_rhive.LOG2 0 bytes
File C:\## aswSnx private storage\snx_rhive{87994c83-61ae-11e1-bf0f-406186187210}.TM.blf 65536 bytes
File C:\## aswSnx private storage\snx_rhive{87994c83-61ae-11e1-bf0f-406186187210}.TMContainer00000000000000000001.regtrans-ms 524288 bytes
File C:\## aswSnx private storage\snx_rhive{87994c83-61ae-11e1-bf0f-406186187210}.TMContainer00000000000000000002.regtrans-ms 524288 bytes

---- EOF - GMER 1.0.15 ----

#5 TheShooter93

TheShooter93

    Cody


  • Malware Response Team
  • 4,792 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Orlando, Florida
  • Local time:02:47 PM

Posted 28 February 2012 - 09:31 AM

How is the computer now?

CCNA R&SCCNA Security | Network+  |  B.S. - Information Technology | Cyber Security Engineer

If I am helping you and have not replied within 48 hours, please send me a private message.

 

 


#6 orapaho

orapaho
  • Topic Starter

  • Members
  • 160 posts
  • OFFLINE
  •  
  • Local time:11:47 AM

Posted 28 February 2012 - 02:21 PM

Works Great!! No problems this morning. So SAS got rid of some bad juju, but was it the GMER that finally fixed it? Just curious.

Thank you. Thank you. Thank you. Surprised I got this problem considering I have AVAST running and WOT configured!

#7 TheShooter93

TheShooter93

    Cody


  • Malware Response Team
  • 4,792 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Orlando, Florida
  • Local time:02:47 PM

Posted 28 February 2012 - 06:00 PM

GMER has some fixing capabilities, but in the context that we use it, it was just a log for me to examine.

SAS is probably the program to thank.

Anyway, you're welcome. :thumbup2:

CCNA R&SCCNA Security | Network+  |  B.S. - Information Technology | Cyber Security Engineer

If I am helping you and have not replied within 48 hours, please send me a private message.

 

 


#8 orapaho

orapaho
  • Topic Starter

  • Members
  • 160 posts
  • OFFLINE
  •  
  • Local time:11:47 AM

Posted 29 February 2012 - 02:50 PM

Oh oh. I just had that googleupdate.exe message pop up. I am gong to run SAS just in case. I guess I was a bit premature in thinking the issue was solved.

#9 TheShooter93

TheShooter93

    Cody


  • Malware Response Team
  • 4,792 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Orlando, Florida
  • Local time:02:47 PM

Posted 29 February 2012 - 03:50 PM

Please follow the instructions in ==>This Guide<== starting at Step 6. If you cannot complete a step, skip it and continue.

Once the proper logs are created, then make a NEW TOPIC and post it ==>HERE<== Please include a description of your computer issues, what you have done to resolve them, and a link to this topic.

If you can produce at least some of the logs, then please create the new topic and explain what happens when you try to create the log(s) that you couldn't get. If you cannot produce any of the logs, then still post the topic and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happens when you try to create the logs.

It would be helpful if you post a note here once you have completed the steps in the guide and have started your topic in malware removal. Good luck and be patient.

If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.

CCNA R&SCCNA Security | Network+  |  B.S. - Information Technology | Cyber Security Engineer

If I am helping you and have not replied within 48 hours, please send me a private message.

 

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users