Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

page redirects and ad popups


  • Please log in to reply
8 replies to this topic

#1 albatross_hunter

albatross_hunter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:38 AM

Posted 27 November 2012 - 09:50 AM

It would seem that my laptop has a virus that I can't get rid of. I often get page redirects when clicking on links and get ad pop ups in the bottom of both corners of my browser. I am running windows XP and have tried using Kaspersky, Malwarebytes and AVG to get rid of it with no luck.

any help would be appreciated!

BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,035 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:11:38 AM

Posted 27 November 2012 - 11:51 AM

Hello and welcome..Please run these now and let me know.

Please download MiniToolBox, save it to your desktop and run it.Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.

Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run. Note: When using "Reset FF Proxy Settings" option Firefox should be closed.



Please Download TDSSkiller
Launch it.
Click on change parameters-Select TDLFS file system
Click on "Scan".
Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results.


Posted Image Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.



Please download aswMBR ( 4.5MB ) to your desktop.
  • Double click the aswMBR.exe icon, and click Run.
  • When asked if you'd like to "download the latest Avast! virus definitions", click Yes.
  • Click the Scan button to start the scan.
  • On completion of the scan, click the save log button, save it to your desktop, then copy and paste it in your next reply.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 albatross_hunter

albatross_hunter
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:38 AM

Posted 27 November 2012 - 03:02 PM

First off, thanks very much for your response and in helping me out!

here are the results of my scans...



MiniToolBox by Farbar Version: 25-11-2012
Ran by Erik-PC (administrator) on 27-11-2012 at 13:14:27
Running from "C:\Documents and Settings\Erik-PC\My Documents\Downloads"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================


Windows IP Configuration



Successfully flushed the DNS Resolver Cache.


========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"network.proxy.no_proxies_on", "*.local"
"network.proxy.type", 0

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

::1 localhost








































































































































































































149.5.18.172 www.google-analytics.com.
149.5.18.172 ad-emea.doubleclick.net.
149.5.18.172 www.statcounter.com.
108.163.215.51 www.google-analytics.com.
108.163.215.51 ad-emea.doubleclick.net.
108.163.215.51 www.statcounter.com.

127.0.0.1 localhost

========================= IP Configuration: ================================

802.11bgn 1T1R Mini Card Wireless Adapter = Wireless Network Connection (Connected)
Realtek RTL8168D(P)/8111D(P) PCI-E Gigabit Ethernet NIC = Local Area Connection (Media disconnected)


# ----------------------------------
# Interface IP Configuration
# ----------------------------------
pushd interface ip


# Interface IP Configuration for "Local Area Connection"

set address name="Local Area Connection" source=dhcp
set dns name="Local Area Connection" source=dhcp register=PRIMARY
set wins name="Local Area Connection" source=dhcp

# Interface IP Configuration for "Wireless Network Connection"

set address name="Wireless Network Connection" source=dhcp
set dns name="Wireless Network Connection" source=dhcp register=PRIMARY
set wins name="Wireless Network Connection" source=dhcp


popd
# End of interface IP configuration




Windows IP Configuration



Host Name . . . . . . . . . . . . : Erik

Primary Dns Suffix . . . . . . . :

Node Type . . . . . . . . . . . . : Unknown

IP Routing Enabled. . . . . . . . : No

WINS Proxy Enabled. . . . . . . . : No



Ethernet adapter Local Area Connection:



Media State . . . . . . . . . . . : Media disconnected

Description . . . . . . . . . . . : Realtek RTL8168D(P)/8111D(P) PCI-E Gigabit Ethernet NIC

Physical Address. . . . . . . . . : 00-24-21-6F-FA-13



Ethernet adapter Wireless Network Connection:



Connection-specific DNS Suffix . :

Description . . . . . . . . . . . : 802.11bgn 1T1R Mini Card Wireless Adapter

Physical Address. . . . . . . . . : 00-24-21-CB-23-ED

Dhcp Enabled. . . . . . . . . . . : Yes

Autoconfiguration Enabled . . . . : Yes

IP Address. . . . . . . . . . . . : 192.168.10.103

Subnet Mask . . . . . . . . . . . : 255.255.255.0

Default Gateway . . . . . . . . . : 192.168.10.1

DHCP Server . . . . . . . . . . . : 192.168.10.1

DNS Servers . . . . . . . . . . . : 192.168.10.1

Lease Obtained. . . . . . . . . . : November 27, 2012 9:02:58 AM

Lease Expires . . . . . . . . . . : November 28, 2012 9:02:58 AM

DNS request timed out.
timeout was 2 seconds.
Server: UnKnown
Address: 192.168.10.1

DNS request timed out.
timeout was 2 seconds.
DNS request timed out.
timeout was 2 seconds.


Pinging google.com [74.125.226.38] with 32 bytes of data:



Request timed out.

Reply from 74.125.226.38: bytes=32 time=32ms TTL=56



Ping statistics for 74.125.226.38:

Packets: Sent = 2, Received = 1, Lost = 1 (50% loss),

Approximate round trip times in milli-seconds:

Minimum = 32ms, Maximum = 32ms, Average = 32ms

Server: TEW-639GR
Address: 192.168.10.1

Name: yahoo.com
Addresses: 98.139.183.24, 72.30.38.140, 98.138.253.109



Pinging yahoo.com [98.138.253.109] with 32 bytes of data:



Reply from 98.138.253.109: bytes=32 time=74ms TTL=51

Request timed out.



Ping statistics for 98.138.253.109:

Packets: Sent = 2, Received = 1, Lost = 1 (50% loss),

Approximate round trip times in milli-seconds:

Minimum = 74ms, Maximum = 74ms, Average = 74ms



Pinging 127.0.0.1 with 32 bytes of data:



Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



Ping statistics for 127.0.0.1:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 24 21 6f fa 13 ...... Realtek RTL8168D(P)/8111D(P) PCI-E Gigabit Ethernet NIC - Packet Scheduler Miniport
0x20003 ...00 24 21 cb 23 ed ...... 802.11bgn 1T1R Mini Card Wireless Adapter - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.10.1 192.168.10.103 25
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
169.254.0.0 255.255.0.0 192.168.10.103 192.168.10.103 20
192.168.10.0 255.255.255.0 192.168.10.103 192.168.10.103 25
192.168.10.103 255.255.255.255 127.0.0.1 127.0.0.1 25
192.168.10.255 255.255.255.255 192.168.10.103 192.168.10.103 25
224.0.0.0 240.0.0.0 192.168.10.103 192.168.10.103 25
255.255.255.255 255.255.255.255 192.168.10.103 2 1
255.255.255.255 255.255.255.255 192.168.10.103 192.168.10.103 1
Default Gateway: 192.168.10.1
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [152864] (Apple Inc.)
Catalog9 01 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (11/25/2012 09:41:16 AM) (Source: crypt32) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The specified server cannot perform the requested operation.

Error: (11/25/2012 09:41:16 AM) (Source: crypt32) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The specified server cannot perform the requested operation.

Error: (11/25/2012 09:41:16 AM) (Source: crypt32) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The specified server cannot perform the requested operation.

Error: (11/25/2012 09:41:16 AM) (Source: crypt32) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This operation returned because the timeout period expired.

Error: (11/25/2012 09:41:16 AM) (Source: crypt32) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The specified server cannot perform the requested operation.

Error: (11/25/2012 09:41:16 AM) (Source: crypt32) (User: )
Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This operation returned because the timeout period expired.

Error: (11/23/2012 03:45:30 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2250

Error: (11/23/2012 03:45:30 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2250

Error: (11/23/2012 03:45:30 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/23/2012 03:45:26 PM) (Source: Application Hang) (User: )
Description: Hanging application calibre.exe, version 0.8.54.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.


System errors:
=============
Error: (11/25/2012 11:56:20 AM) (Source: 0) (User: )
Description: {C2E0FE50-B919-423C-B78E-F92D325E3BC6}

Error: (11/24/2012 04:27:46 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1060

Error: (11/24/2012 04:27:46 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5

Error: (11/24/2012 04:27:46 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5

Error: (11/23/2012 08:29:53 AM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1060

Error: (11/23/2012 08:29:53 AM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5

Error: (11/23/2012 08:29:52 AM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5

Error: (11/22/2012 09:28:48 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1060

Error: (11/22/2012 09:28:48 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5

Error: (11/22/2012 09:28:48 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5


Microsoft Office Sessions:
=========================
Error: (03/25/2012 04:10:34 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 41 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/15/2010 10:06:58 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/15/2010 10:06:53 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/15/2010 10:06:46 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/15/2010 10:06:39 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 3 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/15/2010 10:06:32 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 3 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/15/2010 10:06:25 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 4 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/15/2010 10:06:17 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2 seconds with 0 seconds of active time. This session ended with a crash.

Error: (04/15/2010 10:06:08 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 36 seconds with 0 seconds of active time. This session ended with a crash.


=========================== Installed Programs ============================

2007 Microsoft Office system (Version: 12.0.4518.1014)
Acrobat.com (Version: 1.6.65)
Adobe AIR (Version: 1.5.0.7220)
Adobe Digital Editions
Adobe Flash Player 10 ActiveX (Version: 10.0.45.2)
Adobe Flash Player 11 Plugin (Version: 11.4.402.287)
Adobe Flash Player 9 ActiveX (Version: 9)
Adobe Reader X (10.1.4) (Version: 10.1.4)
Adobe Shockwave Player 11.5 (Version: 11.5.8.612)
Apple Application Support (Version: 1.3.1)
Apple Mobile Device Support (Version: 3.1.0.62)
Apple Software Update (Version: 2.1.2.120)
ArcSoft Magic-i Visual Effects 2 (Version: 2.0.10.65)
ArcSoft Print Creations - Album Page
ArcSoft Print Creations - Brochures & Flyers
ArcSoft Print Creations - Funhouse II
ArcSoft Print Creations - Greeting Card
ArcSoft Print Creations - Photo Book
ArcSoft Print Creations - Photo Calendar
ArcSoft Print Creations - Photo Prints
ArcSoft Print Creations - Poster Creator
ArcSoft Print Creations - Scrapbook
ArcSoft Print Creations - Slimline Card
ArcSoft Print Creations (Version: 3.0.255.331)
ArcSoft WebCam Companion 3 (Version: 3.0.32.134)
ATI Catalyst Control Center (Version: 2.009.0312.2222)
ATI Display Driver (Version: 8.593-090312a-081343C)
AVG 2013 (Version: 13.0.2629)
AVG 2013 (Version: 13.0.2793)
AVG 2013 (Version: 2013.0.2793)
AVG Security Toolbar
Babylon toolbar on IE
BlackBerry App World Browser Plugin (Version: 3.0.2.3)
BlackBerry Desktop Software 6.1 (Version: 6.1.0.36)
BlackBerry Device Manager 7.0 (Version: 7.0.0.40)
Bluetooth Stack for Windows by Toshiba (Version: v6.40.01)
Bonjour (Version: 2.0.2.0)
BurnRecovery (Version: 1.0.0.1125)
calibre (Version: 0.8.54)
Catalyst Control Center Core Implementation (Version: 2009.0312.2223.38381)
Catalyst Control Center Graphics Full Existing (Version: 2009.0312.2223.38381)
Catalyst Control Center Graphics Full New (Version: 2009.0312.2223.38381)
Catalyst Control Center Graphics Light (Version: 2009.0312.2223.38381)
Catalyst Control Center Graphics Previews Common (Version: 2009.0312.2223.38381)
Catalyst Control Center Localization All (Version: 2009.0312.2223.38381)
ccc-core-preinstall (Version: 2009.0312.2223.38381)
ccc-core-static (Version: 2009.0312.2223.38381)
ccc-utility (Version: 2009.0312.2223.38381)
CCC Help Chinese Standard (Version: 2009.0312.2222.38381)
CCC Help Chinese Traditional (Version: 2009.0312.2222.38381)
CCC Help Czech (Version: 2009.0312.2222.38381)
CCC Help Danish (Version: 2009.0312.2222.38381)
CCC Help Dutch (Version: 2009.0312.2222.38381)
CCC Help English (Version: 2009.0312.2222.38381)
CCC Help Finnish (Version: 2009.0312.2222.38381)
CCC Help French (Version: 2009.0312.2222.38381)
CCC Help German (Version: 2009.0312.2222.38381)
CCC Help Greek (Version: 2009.0312.2222.38381)
CCC Help Hungarian (Version: 2009.0312.2222.38381)
CCC Help Italian (Version: 2009.0312.2222.38381)
CCC Help Japanese (Version: 2009.0312.2222.38381)
CCC Help Korean (Version: 2009.0312.2222.38381)
CCC Help Norwegian (Version: 2009.0312.2222.38381)
CCC Help Polish (Version: 2009.0312.2222.38381)
CCC Help Portuguese (Version: 2009.0312.2222.38381)
CCC Help Russian (Version: 2009.0312.2222.38381)
CCC Help Spanish (Version: 2009.0312.2222.38381)
CCC Help Swedish (Version: 2009.0312.2222.38381)
CCC Help Thai (Version: 2009.0312.2222.38381)
CCC Help Turkish (Version: 2009.0312.2222.38381)
CCleaner (Version: 3.23)
Choice Guard (Version: 1.2.87.0)
Citrix Presentation Server Client - Web Only (Version: 10.150.58643)
DivX Setup (Version: 2.6.0.34)
DriverTuner 3.1.0.0 (Version: 3.1.0.0)
Dropbox (Version: 1.4.17)
EasyFace Logon (Version: 1.1.0.16)
Google Chrome (Version: 23.0.1271.64)
Google Update Helper (Version: 1.3.21.123)
iTunes (Version: 9.2.1.5)
Java 7 Update 9 (Version: 7.0.90)
Java Auto Updater (Version: 2.1.9.0)
Java™ 6 Update 29 (Version: 6.0.290)
Junk Mail filter update (Version: 14.0.8050.1202)
Kobo (Version: 2.1.7)
Malwarebytes Anti-Malware version 1.65.1.1000 (Version: 1.65.1.1000)
McAfee Security Scan Plus (Version: 3.0.207.4)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1)
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft Office Access MUI (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Live Add-in 1.3 (Version: 2.0.2313.0)
Microsoft Office Outlook Connector (Version: 12.0.6414.1000)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Professional Hybrid 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Standard Edition 2003 (Version: 11.0.7969.0)
Microsoft Office Suite Activation Assistant (Version: 2.9)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.4518.1014)
Microsoft Search Enhancement Pack (Version: 1.2.121.0)
Microsoft Silverlight (Version: 5.1.10411.0)
Microsoft Software Update for Web Folders (English) 12 (Version: 12.0.4518.1014)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Sync Framework Runtime Native v1.0 (x86) (Version: 1.0.1215.0)
Microsoft Sync Framework Services Native v1.0 (x86) (Version: 1.0.1215.0)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
MobileMe Control Panel (Version: 3.1.1.0)
Mozilla Firefox 16.0.2 (x86 en-US) (Version: 16.0.2)
Mozilla Maintenance Service (Version: 16.0.2)
msi_screensaver_1366
MSVCRT (Version: 14.0.1468.721)
Norton Security Scan (Version: 3.6.1.11)
PerfectDisk 10 Professional (Version: 10.0.110)
Print To Go 1.0 (Version: 1.0.143.0)
QuickTime (Version: 7.66.73.0)
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0)
RealPlayer (Version: 15.0.5)
REALTEK GbE & FE Ethernet PCI-E NIC Driver (Version: 1.23.0000)
Realtek High Definition Audio Driver (Version: 5.10.0.5892)
RealUpgrade 1.1 (Version: 1.1.0)
Rogers Online Protection (Version: 9.0.49)
Rogers Servicepoint Agent 3.7.44 (Version: 3.7.44)
RPS CRT (Version: 8.0.32)
RPS CRT (Version: 9.0.49)
RPS PerfectDiskStub (Version: 9.0.49)
RPS RpsCore (Version: 9.0.49)
Safari (Version: 5.33.17.8)
Segoe UI (Version: 14.0.4327.805)
Skype Toolbars (Version: 1.0.4051)
Skype™ 5.10 (Version: 5.10.116)
Splash Lite (Version: 1.4.2)
System Control Manager (Version: 2.209.0626.004.06)
Ulead Burn.Now 4.5 (Version: 4.5.0)
Ulead Burn.Now 4.5 SE (Version: 4.5.0)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Office 2007 (KB934528)
Update for Office System 2007 Setup (KB929722)
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
Update for Windows Internet Explorer 8 (KB980182) (Version: 1)
Update for Windows XP (KB2141007) (Version: 1)
Update for Windows XP (KB2345886) (Version: 1)
Update for Windows XP (KB2467659) (Version: 1)
Update for Windows XP (KB2541763) (Version: 1)
Update for Windows XP (KB2607712) (Version: 1)
Update for Windows XP (KB2616676) (Version: 1)
Update for Windows XP (KB2641690) (Version: 1)
Update for Windows XP (KB2718704) (Version: 1)
Update for Windows XP (KB898461) (Version: 1)
Update for Windows XP (KB951978) (Version: 1)
Update for Windows XP (KB955759) (Version: 1)
Update for Windows XP (KB967715) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
Update for Windows XP (KB971737) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
USB2.0 Card Reader Software (Version: 6.0.6000.81)
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0)
WebFldrs XP (Version: 9.50.7523)
Windows Driver Package - Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0) (Version: 05/27/2006 1.3.2.0)
Windows Driver Package - Ralink Technology, Corp. (RT80x86) Net (07/10/2009 1.04.05.0000) (Version: 07/10/2009 1.04.05.0000)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Live Communications Platform (Version: 14.0.8050.1202)
Windows Live Essentials (Version: 14.0.8050.1202)
Windows Live Family Safety (Version: 14.0.8052.1208)
Windows Live Mail (Version: 14.0.8050.1202)
Windows Live Photo Gallery (Version: 14.0.8051.1204)
Windows Live Sign-in Assistant (Version: 5.000.817.1)
Windows Live Sync (Version: 14.0.8050.1202)
Windows Live Toolbar (Version: 14.0.8052.1208)
Windows Live Upload Tool (Version: 14.0.8014.1029)
Windows Live Writer (Version: 14.0.8050.1202)
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
WinRAR archiver
Xvid 1.2.2 final uninstall (Version: 1.2)

========================= Memory info: ===================================

Percentage of memory in use: 44%
Total physical RAM: 1919.23 MB
Available physical RAM: 1066.11 MB
Total Pagefile: 3812.69 MB
Available Pagefile: 2742.13 MB
Total Virtual: 2047.88 MB
Available Virtual: 1970.56 MB

========================= Partitions: =====================================

1 Drive c: (OS_Install) (Fixed) (Total:61.65 GB) (Free:8.81 GB) NTFS
2 Drive d: () (Fixed) (Total:167.32 GB) (Free:112.89 GB) NTFS

========================= Users: ========================================

User accounts for \\ERIK

Administrator Erik-PC Guest
HelpAssistant SUPPORT_388945a0


**** End of log ****
********************
********************

13:30:43.0859 1412 TDSS rootkit removing tool 2.8.7.0 Aug 20 2012 17:30:03
13:30:45.0859 1412 ============================================================
13:30:45.0859 1412 Current date / time: 2012/11/27 13:30:45.0859
13:30:45.0859 1412 SystemInfo:
13:30:45.0859 1412
13:30:45.0859 1412 OS Version: 5.1.2600 ServicePack: 3.0
13:30:45.0859 1412 Product type: Workstation
13:30:45.0859 1412 ComputerName: ERIK
13:30:45.0859 1412 UserName: Erik-PC
13:30:45.0859 1412 Windows directory: C:\WINDOWS
13:30:45.0859 1412 System windows directory: C:\WINDOWS
13:30:45.0859 1412 Processor architecture: Intel x86
13:30:45.0859 1412 Number of processors: 1
13:30:45.0859 1412 Page size: 0x1000
13:30:45.0859 1412 Boot type: Normal boot
13:30:45.0859 1412 ============================================================
13:30:47.0328 1412 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
13:30:47.0343 1412 ============================================================
13:30:47.0343 1412 \Device\Harddisk0\DR0:
13:30:47.0343 1412 MBR partitions:
13:30:47.0343 1412 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x7D433F, BlocksNum 0x7B4D370
13:30:47.0343 1412 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x83216AF, BlocksNum 0x14EA2ED2
13:30:47.0343 1412 ============================================================
13:30:47.0375 1412 C: <-> \Device\Harddisk0\DR0\Partition1
13:30:47.0453 1412 D: <-> \Device\Harddisk0\DR0\Partition2
13:30:47.0453 1412 ============================================================
13:30:47.0453 1412 Initialize success
13:30:47.0453 1412 ============================================================
13:32:53.0453 5308 ============================================================
13:32:53.0453 5308 Scan started
13:32:53.0453 5308 Mode: Manual; TDLFS;
13:32:53.0453 5308 ============================================================
13:32:53.0843 5308 ================ Scan system memory ========================
13:32:53.0843 5308 System memory - ok
13:32:53.0859 5308 ================ Scan services =============================
13:32:53.0968 5308 30078396 - ok
13:32:53.0968 5308 Abiosdsk - ok
13:32:53.0984 5308 abp480n5 - ok
13:32:54.0078 5308 [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
13:32:54.0109 5308 ACDaemon - ok
13:32:54.0156 5308 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
13:32:54.0156 5308 ACPI - ok
13:32:54.0171 5308 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
13:32:54.0171 5308 ACPIEC - ok
13:32:54.0250 5308 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
13:32:54.0312 5308 AdobeFlashPlayerUpdateSvc - ok
13:32:54.0328 5308 adpu160m - ok
13:32:54.0359 5308 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
13:32:54.0375 5308 aec - ok
13:32:54.0421 5308 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
13:32:54.0453 5308 AFD - ok
13:32:54.0468 5308 Aha154x - ok
13:32:54.0484 5308 aic78u2 - ok
13:32:54.0484 5308 aic78xx - ok
13:32:54.0531 5308 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
13:32:54.0531 5308 Alerter - ok
13:32:54.0562 5308 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
13:32:54.0562 5308 ALG - ok
13:32:54.0578 5308 AliIde - ok
13:32:54.0640 5308 [ F6AF59D6EEE5E1C304F7F73706AD11D8 ] Ambfilt C:\WINDOWS\system32\drivers\Ambfilt.sys
13:32:54.0703 5308 Ambfilt - ok
13:32:54.0734 5308 [ 0A4D13B388C814560BD69C3A496ECFA8 ] AmdK8 C:\WINDOWS\system32\DRIVERS\AmdK8.sys
13:32:54.0750 5308 AmdK8 - ok
13:32:54.0750 5308 amsint - ok
13:32:54.0812 5308 [ 2E3E53A6AEF23E24F402C7855B9B1542 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
13:32:54.0859 5308 Apple Mobile Device - ok
13:32:54.0875 5308 AppMgmt - ok
13:32:54.0906 5308 [ 35A6A419D7526F5CF824AFB23AFA08D6 ] ArcSoftKsUFilter C:\WINDOWS\system32\DRIVERS\ArcSoftKsUFilter.sys
13:32:54.0921 5308 ArcSoftKsUFilter - ok
13:32:54.0937 5308 asc - ok
13:32:54.0953 5308 asc3350p - ok
13:32:54.0968 5308 asc3550 - ok
13:32:55.0031 5308 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
13:32:55.0062 5308 aspnet_state - ok
13:32:55.0109 5308 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
13:32:55.0109 5308 AsyncMac - ok
13:32:55.0140 5308 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
13:32:55.0140 5308 atapi - ok
13:32:55.0140 5308 Atdisk - ok
13:32:55.0203 5308 [ 1635A809B90EAC3C0A844249E9A35856 ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
13:32:55.0250 5308 Ati HotKey Poller - ok
13:32:55.0343 5308 [ 7452AB1A89F43785D20A10066BC3B73A ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
13:32:55.0468 5308 ati2mtag - ok
13:32:55.0531 5308 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
13:32:55.0531 5308 Atmarpc - ok
13:32:55.0578 5308 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
13:32:55.0578 5308 AudioSrv - ok
13:32:55.0609 5308 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
13:32:55.0609 5308 audstub - ok
13:32:55.0875 5308 [ 56C73C5BC1656656CAC38A23B4310466 ] AVGIDSAgent C:\Program Files\AVG\AVG2013\avgidsagent.exe
13:32:55.0937 5308 AVGIDSAgent - ok
13:32:55.0984 5308 [ 7BB2C605094DBCA536D127B434214862 ] AVGIDSDriver C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys
13:32:56.0000 5308 AVGIDSDriver - ok
13:32:56.0015 5308 [ 8F50F98686C9A397A19FCBAE284DB1C5 ] AVGIDSHX C:\WINDOWS\system32\DRIVERS\avgidshx.sys
13:32:56.0046 5308 AVGIDSHX - ok
13:32:56.0062 5308 [ A8DE230CC8536790CA07D37FBCD87A74 ] AVGIDSShim C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys
13:32:56.0078 5308 AVGIDSShim - ok
13:32:56.0125 5308 [ D53D35031365A0ECCB1DC1BC1B15B18E ] Avgldx86 C:\WINDOWS\system32\DRIVERS\avgldx86.sys
13:32:56.0140 5308 Avgldx86 - ok
13:32:56.0171 5308 [ 95889A9D23F3133250FA8AD13C982D58 ] Avglogx C:\WINDOWS\system32\DRIVERS\avglogx.sys
13:32:56.0187 5308 Avglogx - ok
13:32:56.0234 5308 [ 6C7C00B8DD22B4343B47FED148387057 ] Avgmfx86 C:\WINDOWS\system32\DRIVERS\avgmfx86.sys
13:32:56.0250 5308 Avgmfx86 - ok
13:32:56.0281 5308 [ F3D57358DE0B8B3491013C615754A7C7 ] Avgrkx86 C:\WINDOWS\system32\DRIVERS\avgrkx86.sys
13:32:56.0296 5308 Avgrkx86 - ok
13:32:56.0328 5308 [ BA73B38E9033FC6018DB736B635706AE ] Avgtdix C:\WINDOWS\system32\DRIVERS\avgtdix.sys
13:32:56.0359 5308 Avgtdix - ok
13:32:56.0375 5308 [ 57D83B82117C2DDB9D7E9AEA691CEDFC ] avgtp C:\WINDOWS\system32\drivers\avgtpx86.sys
13:32:56.0390 5308 avgtp - ok
13:32:56.0421 5308 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files\AVG\AVG2013\avgwdsvc.exe
13:32:56.0453 5308 avgwd - ok
13:32:56.0515 5308 [ 9B281F5F673CBC5B9EC886D59E0B4F26 ] bdfsfltr C:\WINDOWS\system32\drivers\bdfsfltr.sys
13:32:56.0546 5308 bdfsfltr - ok
13:32:56.0578 5308 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
13:32:56.0578 5308 Beep - ok
13:32:56.0656 5308 [ 5AB58C337AC65837FE404462AD6265AB ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
13:32:56.0671 5308 Bonjour Service - ok
13:32:56.0703 5308 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll
13:32:56.0734 5308 Browser - ok
13:32:56.0750 5308 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
13:32:56.0765 5308 cbidf2k - ok
13:32:56.0796 5308 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
13:32:56.0796 5308 CCDECODE - ok
13:32:56.0812 5308 cd20xrnt - ok
13:32:56.0859 5308 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
13:32:56.0859 5308 Cdaudio - ok
13:32:56.0906 5308 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
13:32:56.0906 5308 Cdfs - ok
13:32:56.0921 5308 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
13:32:56.0921 5308 Cdrom - ok
13:32:56.0937 5308 Changer - ok
13:32:56.0968 5308 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
13:32:56.0968 5308 CiSvc - ok
13:32:56.0984 5308 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
13:32:56.0984 5308 ClipSrv - ok
13:32:57.0031 5308 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:32:57.0109 5308 clr_optimization_v2.0.50727_32 - ok
13:32:57.0140 5308 [ 0F6C187D38D98F8DF904589A5F94D411 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys
13:32:57.0140 5308 CmBatt - ok
13:32:57.0140 5308 CmdIde - ok
13:32:57.0187 5308 [ 6E4C9F21F0FAE8940661144F41B13203 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys
13:32:57.0187 5308 Compbatt - ok
13:32:57.0203 5308 COMSysApp - ok
13:32:57.0234 5308 Cpqarray - ok
13:32:57.0265 5308 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
13:32:57.0265 5308 CryptSvc - ok
13:32:57.0281 5308 dac2w2k - ok
13:32:57.0296 5308 dac960nt - ok
13:32:57.0343 5308 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
13:32:57.0375 5308 DcomLaunch - ok
13:32:57.0437 5308 [ 65C7122D1115A4E1DB3E8C11DF919A40 ] DefragFS C:\WINDOWS\system32\drivers\DefragFS.sys
13:32:57.0453 5308 DefragFS - ok
13:32:57.0500 5308 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
13:32:57.0500 5308 Dhcp - ok
13:32:57.0515 5308 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
13:32:57.0515 5308 Disk - ok
13:32:57.0531 5308 dmadmin - ok
13:32:57.0593 5308 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
13:32:57.0609 5308 dmboot - ok
13:32:57.0625 5308 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
13:32:57.0625 5308 dmio - ok
13:32:57.0656 5308 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
13:32:57.0656 5308 dmload - ok
13:32:57.0687 5308 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
13:32:57.0687 5308 dmserver - ok
13:32:57.0718 5308 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
13:32:57.0718 5308 DMusic - ok
13:32:57.0750 5308 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
13:32:57.0765 5308 Dnscache - ok
13:32:57.0796 5308 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
13:32:57.0812 5308 Dot3svc - ok
13:32:57.0812 5308 dpti2o - ok
13:32:57.0843 5308 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
13:32:57.0843 5308 drmkaud - ok
13:32:57.0875 5308 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
13:32:57.0875 5308 EapHost - ok
13:32:57.0921 5308 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
13:32:57.0921 5308 ERSvc - ok
13:32:57.0968 5308 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
13:32:58.0015 5308 Eventlog - ok
13:32:58.0046 5308 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\system32\es.dll
13:32:58.0062 5308 EventSystem - ok
13:32:58.0093 5308 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
13:32:58.0109 5308 Fastfat - ok
13:32:58.0140 5308 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
13:32:58.0156 5308 FastUserSwitchingCompatibility - ok
13:32:58.0203 5308 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
13:32:58.0203 5308 Fdc - ok
13:32:58.0250 5308 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
13:32:58.0250 5308 Fips - ok
13:32:58.0265 5308 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
13:32:58.0265 5308 Flpydisk - ok
13:32:58.0281 5308 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys
13:32:58.0296 5308 FltMgr - ok
13:32:58.0343 5308 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
13:32:58.0359 5308 FontCache3.0.0.0 - ok
13:32:58.0437 5308 [ EDA991753AF03E5B06935BE114BA9640 ] fssfltr C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
13:32:58.0437 5308 fssfltr - ok
13:32:58.0531 5308 [ F6717211C1EC2CDDAA81B97B0727C2E9 ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe
13:32:58.0562 5308 fsssvc - ok
13:32:58.0609 5308 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
13:32:58.0609 5308 Fs_Rec - ok
13:32:58.0640 5308 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
13:32:58.0640 5308 Ftdisk - ok
13:32:58.0687 5308 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
13:32:58.0703 5308 GEARAspiWDM - ok
13:32:58.0750 5308 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
13:32:58.0750 5308 Gpc - ok
13:32:58.0859 5308 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
13:32:58.0890 5308 gupdate - ok
13:32:58.0906 5308 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
13:32:58.0906 5308 gupdatem - ok
13:32:58.0921 5308 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
13:32:58.0921 5308 HDAudBus - ok
13:32:59.0000 5308 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
13:32:59.0000 5308 helpsvc - ok
13:32:59.0015 5308 HidServ - ok
13:32:59.0046 5308 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
13:32:59.0062 5308 HidUsb - ok
13:32:59.0093 5308 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
13:32:59.0093 5308 hkmsvc - ok
13:32:59.0109 5308 hpn - ok
13:32:59.0156 5308 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
13:32:59.0156 5308 HTTP - ok
13:32:59.0187 5308 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
13:32:59.0203 5308 HTTPFilter - ok
13:32:59.0218 5308 i2omgmt - ok
13:32:59.0234 5308 i2omp - ok
13:32:59.0265 5308 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
13:32:59.0265 5308 i8042prt - ok
13:32:59.0328 5308 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:32:59.0359 5308 idsvc - ok
13:32:59.0390 5308 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
13:32:59.0390 5308 Imapi - ok
13:32:59.0437 5308 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\system32\imapi.exe
13:32:59.0437 5308 ImapiService - ok
13:32:59.0453 5308 ini910u - ok
13:32:59.0656 5308 [ 3EC118D7615D1CE90D0808B4B478378B ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
13:32:59.0968 5308 IntcAzAudAddService - ok
13:32:59.0984 5308 IntelIde - ok
13:33:00.0015 5308 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
13:33:00.0015 5308 Ip6Fw - ok
13:33:00.0062 5308 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
13:33:00.0062 5308 IpFilterDriver - ok
13:33:00.0078 5308 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
13:33:00.0078 5308 IpInIp - ok
13:33:00.0093 5308 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
13:33:00.0109 5308 IpNat - ok
13:33:00.0156 5308 [ 630D74599070824AF3DC63A894ADCDFC ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
13:33:00.0187 5308 iPod Service - ok
13:33:00.0234 5308 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
13:33:00.0234 5308 IPSec - ok
13:33:00.0250 5308 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
13:33:00.0250 5308 IRENUM - ok
13:33:00.0296 5308 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
13:33:00.0296 5308 isapnp - ok
13:33:00.0406 5308 [ B591E761161D1EF547D76EF236EAA6A5 ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
13:33:00.0406 5308 JavaQuickStarterService - ok
13:33:00.0437 5308 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
13:33:00.0453 5308 Kbdclass - ok
13:33:00.0484 5308 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
13:33:00.0500 5308 kmixer - ok
13:33:00.0546 5308 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
13:33:00.0562 5308 KSecDD - ok
13:33:00.0609 5308 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] LanmanServer C:\WINDOWS\System32\srvsvc.dll
13:33:00.0625 5308 LanmanServer - ok
13:33:00.0671 5308 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
13:33:00.0687 5308 lanmanworkstation - ok
13:33:00.0703 5308 lbrtfdc - ok
13:33:00.0765 5308 [ B280C4608AC389DA9515A35AC4CAB0FD ] libusb0 C:\WINDOWS\system32\drivers\libusb0.sys
13:33:00.0781 5308 libusb0 - ok
13:33:00.0812 5308 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
13:33:00.0812 5308 LmHosts - ok
13:33:00.0921 5308 [ 22A7776C5D8EB5930EDF9C8DD0884259 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.0.207\McCHSvc.exe
13:33:00.0968 5308 McComponentHostService - ok
13:33:01.0015 5308 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
13:33:01.0015 5308 Messenger - ok
13:33:01.0078 5308 [ 0A01A354F95AF7226610C2936F9F314F ] Micro Star SCM C:\Program Files\System Control Manager\MSIService.exe
13:33:01.0109 5308 Micro Star SCM - ok
13:33:01.0156 5308 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
13:33:01.0156 5308 mnmdd - ok
13:33:01.0187 5308 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
13:33:01.0187 5308 mnmsrvc - ok
13:33:01.0234 5308 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
13:33:01.0234 5308 Modem - ok
13:33:01.0296 5308 [ 9FA7207D1B1ADEAD88AE8EED9CDBBAA5 ] Monfilt C:\WINDOWS\system32\drivers\Monfilt.sys
13:33:01.0343 5308 Monfilt - ok
13:33:01.0375 5308 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
13:33:01.0375 5308 Mouclass - ok
13:33:01.0437 5308 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
13:33:01.0453 5308 mouhid - ok
13:33:01.0468 5308 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
13:33:01.0484 5308 MountMgr - ok
13:33:01.0531 5308 [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
13:33:01.0546 5308 MozillaMaintenance - ok
13:33:01.0562 5308 mraid35x - ok
13:33:01.0578 5308 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
13:33:01.0593 5308 MRxDAV - ok
13:33:01.0640 5308 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
13:33:01.0671 5308 MRxSmb - ok
13:33:01.0703 5308 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
13:33:01.0718 5308 MSDTC - ok
13:33:01.0750 5308 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
13:33:01.0750 5308 Msfs - ok
13:33:01.0765 5308 MSIServer - ok
13:33:01.0781 5308 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
13:33:01.0781 5308 MSKSSRV - ok
13:33:01.0796 5308 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
13:33:01.0796 5308 MSPCLOCK - ok
13:33:01.0812 5308 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
13:33:01.0812 5308 MSPQM - ok
13:33:01.0843 5308 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
13:33:01.0843 5308 mssmbios - ok
13:33:01.0875 5308 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
13:33:01.0875 5308 MSTEE - ok
13:33:01.0921 5308 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
13:33:01.0937 5308 Mup - ok
13:33:01.0984 5308 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
13:33:02.0000 5308 NABTSFEC - ok
13:33:02.0046 5308 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
13:33:02.0078 5308 napagent - ok
13:33:02.0109 5308 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
13:33:02.0125 5308 NDIS - ok
13:33:02.0140 5308 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
13:33:02.0156 5308 NdisIP - ok
13:33:02.0187 5308 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
13:33:02.0203 5308 NdisTapi - ok
13:33:02.0234 5308 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
13:33:02.0234 5308 Ndisuio - ok
13:33:02.0265 5308 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
13:33:02.0265 5308 NdisWan - ok
13:33:02.0281 5308 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
13:33:02.0296 5308 NDProxy - ok
13:33:02.0328 5308 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
13:33:02.0328 5308 NetBIOS - ok
13:33:02.0343 5308 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
13:33:02.0343 5308 NetBT - ok
13:33:02.0390 5308 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
13:33:02.0390 5308 NetDDE - ok
13:33:02.0406 5308 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
13:33:02.0406 5308 NetDDEdsdm - ok
13:33:02.0453 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\system32\lsass.exe
13:33:02.0453 5308 Netlogon - ok
13:33:02.0484 5308 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
13:33:02.0500 5308 Netman - ok
13:33:02.0546 5308 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
13:33:02.0546 5308 NetTcpPortSharing - ok
13:33:02.0609 5308 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
13:33:02.0609 5308 Nla - ok
13:33:02.0656 5308 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
13:33:02.0656 5308 Npfs - ok
13:33:02.0703 5308 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
13:33:02.0718 5308 Ntfs - ok
13:33:02.0750 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
13:33:02.0750 5308 NtLmSsp - ok
13:33:02.0796 5308 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
13:33:02.0812 5308 NtmsSvc - ok
13:33:02.0843 5308 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
13:33:02.0843 5308 Null - ok
13:33:02.0875 5308 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
13:33:02.0890 5308 NwlnkFlt - ok
13:33:02.0890 5308 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
13:33:02.0890 5308 NwlnkFwd - ok
13:33:02.0984 5308 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
13:33:03.0000 5308 odserv - ok
13:33:03.0031 5308 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:33:03.0031 5308 ose - ok
13:33:03.0078 5308 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\drivers\Parport.sys
13:33:03.0078 5308 Parport - ok
13:33:03.0140 5308 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
13:33:03.0140 5308 PartMgr - ok
13:33:03.0171 5308 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
13:33:03.0171 5308 ParVdm - ok
13:33:03.0187 5308 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
13:33:03.0187 5308 PCI - ok
13:33:03.0203 5308 PCIDump - ok
13:33:03.0218 5308 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
13:33:03.0218 5308 PCIIde - ok
13:33:03.0250 5308 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
13:33:03.0265 5308 Pcmcia - ok
13:33:03.0328 5308 [ 82D8354DB7CE7131FB939E8482DDF511 ] PDAgent C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe
13:33:03.0343 5308 PDAgent - ok
13:33:03.0343 5308 PDCOMP - ok
13:33:03.0375 5308 [ 3719DE4180E251AB91D8C183F2D949BF ] PDEngine C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe
13:33:03.0390 5308 PDEngine - ok
13:33:03.0406 5308 PDFRAME - ok
13:33:03.0406 5308 PDRELI - ok
13:33:03.0421 5308 PDRFRAME - ok
13:33:03.0437 5308 perc2 - ok
13:33:03.0453 5308 perc2hib - ok
13:33:03.0500 5308 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
13:33:03.0500 5308 PlugPlay - ok
13:33:03.0515 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
13:33:03.0515 5308 PolicyAgent - ok
13:33:03.0562 5308 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
13:33:03.0562 5308 PptpMiniport - ok
13:33:03.0609 5308 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
13:33:03.0609 5308 Processor - ok
13:33:03.0734 5308 [ D90A33660D328A9F587580F0B38C85DE ] Profos C:\Program Files\Rogers Online Protection\Rogers Online Protection\BitDefender\profos.sys
13:33:03.0750 5308 Profos - ok
13:33:03.0765 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
13:33:03.0765 5308 ProtectedStorage - ok
13:33:03.0812 5308 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
13:33:03.0812 5308 PSched - ok
13:33:03.0828 5308 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
13:33:03.0828 5308 Ptilink - ok
13:33:03.0875 5308 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
13:33:03.0890 5308 PxHelp20 - ok
13:33:03.0890 5308 ql1080 - ok
13:33:03.0906 5308 Ql10wnt - ok
13:33:03.0921 5308 ql12160 - ok
13:33:03.0937 5308 ql1240 - ok
13:33:03.0953 5308 ql1280 - ok
13:33:03.0984 5308 [ 6DCEFFAD9F0A9AB4FBFEFC044C2EA0ED ] Radialpoint Security Services C:\Program Files\Rogers Online Protection\Rogers Online Protection\RpsSecurityAwareR.exe
13:33:04.0015 5308 Radialpoint Security Services - ok
13:33:04.0203 5308 [ C4890ACE6384522E9B678F403AB5A145 ] RadialpointIDSAgent C:\Program Files\Rogers Online Protection\Rogers Online Protection\AVG\Identity Protection\agent\Bin\AVGIDSAgent.exe
13:33:04.0265 5308 RadialpointIDSAgent - ok
13:33:04.0328 5308 [ 9DC4B985729C8AE26B0FD607D2081048 ] RadialpointIDSDriver C:\Program Files\Rogers Online Protection\Rogers Online Protection\AVG\Identity Protection\agent\drivers\AVGIDSDriver.sys
13:33:04.0343 5308 RadialpointIDSDriver - ok
13:33:04.0375 5308 [ 2457250CA176E7FDE9C3D3B2C94341F0 ] RadialpointIDSEH C:\WINDOWS\system32\drivers\AVGIDSEH.sys
13:33:04.0390 5308 RadialpointIDSEH - ok
13:33:04.0406 5308 [ 0871AAD56C4960E311150FD724E106AE ] RadialpointIDSFilter C:\Program Files\Rogers Online Protection\Rogers Online Protection\AVG\Identity Protection\agent\drivers\AVGIDSFilter.sys
13:33:04.0437 5308 RadialpointIDSFilter - ok
13:33:04.0468 5308 [ 2B949205F1C53B6E4002A3C38327C9A2 ] RadialpointIDSShim C:\Program Files\Rogers Online Protection\Rogers Online Protection\AVG\Identity Protection\agent\drivers\AVGIDSShim.sys
13:33:04.0484 5308 RadialpointIDSShim - ok
13:33:04.0515 5308 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
13:33:04.0515 5308 RasAcd - ok
13:33:04.0562 5308 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
13:33:04.0578 5308 RasAuto - ok
13:33:04.0609 5308 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
13:33:04.0609 5308 Rasl2tp - ok
13:33:04.0625 5308 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
13:33:04.0640 5308 RasMan - ok
13:33:04.0640 5308 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
13:33:04.0656 5308 RasPppoe - ok
13:33:04.0656 5308 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
13:33:04.0671 5308 Raspti - ok
13:33:04.0718 5308 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
13:33:04.0718 5308 Rdbss - ok
13:33:04.0734 5308 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
13:33:04.0734 5308 RDPCDD - ok
13:33:04.0781 5308 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
13:33:04.0812 5308 RDPWD - ok
13:33:04.0843 5308 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
13:33:04.0843 5308 RDSessMgr - ok
13:33:04.0875 5308 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
13:33:04.0875 5308 redbook - ok
13:33:04.0921 5308 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
13:33:04.0921 5308 RemoteAccess - ok
13:33:04.0953 5308 [ 4F4A4C09CC5BE58A76CAC1C337E004E6 ] RimUsb C:\WINDOWS\system32\Drivers\RimUsb.sys
13:33:04.0968 5308 RimUsb - ok
13:33:05.0015 5308 [ 3A5633AD615E2B15291BD0B1B97CCD8A ] RimVSerPort C:\WINDOWS\system32\DRIVERS\RimSerial.sys
13:33:05.0031 5308 RimVSerPort - ok
13:33:05.0078 5308 [ D8B0B4ADE32574B2D9C5CC34DC0DBBE7 ] ROOTMODEM C:\WINDOWS\system32\Drivers\RootMdm.sys
13:33:05.0078 5308 ROOTMODEM - ok
13:33:05.0109 5308 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\system32\locator.exe
13:33:05.0125 5308 RpcLocator - ok
13:33:05.0156 5308 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll
13:33:05.0156 5308 RpcSs - ok
13:33:05.0187 5308 [ B7E136986BB3DAC249A00E760281F0A9 ] RPPKT C:\WINDOWS\system32\DRIVERS\rp_pkt32.sys
13:33:05.0203 5308 RPPKT - ok
13:33:05.0234 5308 [ 750D83C39D60964B6BC2B8A75ED7A165 ] RPSKT C:\WINDOWS\system32\DRIVERS\rp_skt32.sys
13:33:05.0250 5308 RPSKT - ok
13:33:05.0296 5308 [ 3FC8401DF4EE3C257569CD50F2FF2F0D ] RP_FWS C:\Program Files\Rogers Online Protection\Rogers Online Protection\Fws.exe
13:33:05.0328 5308 RP_FWS - ok
13:33:05.0359 5308 [ 743D7D59767073A617B1DCC6C546F234 ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
13:33:05.0375 5308 rspndr - ok
13:33:05.0437 5308 [ 7FFA9821B1C5E0E0667E0A2685CFB89F ] RSUSBSTOR C:\WINDOWS\system32\Drivers\RtsUStor.sys
13:33:05.0437 5308 RSUSBSTOR - ok
13:33:05.0484 5308 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
13:33:05.0484 5308 RSVP - ok
13:33:05.0562 5308 [ B84D2FB05142F17BD6AD3AD9DFC42750 ] RT80x86 C:\WINDOWS\system32\DRIVERS\RT2860.sys
13:33:05.0578 5308 RT80x86 - ok
13:33:05.0703 5308 [ 3CF6631543C743C29A369287EA67FFE6 ] RTHDMIAzAudService C:\WINDOWS\system32\drivers\RtKHDMI.sys
13:33:05.0828 5308 RTHDMIAzAudService - ok
13:33:05.0859 5308 [ 6E7470477D08F6E47E91016D6A1C5A5F ] RTLE8023xp C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
13:33:05.0875 5308 RTLE8023xp - ok
13:33:05.0890 5308 Rts516xIR - ok
13:33:05.0906 5308 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
13:33:05.0921 5308 SamSs - ok
13:33:05.0968 5308 [ 4BEA90F7D79143CC2135E2C5E85C9EB0 ] scan C:\Program Files\Rogers Online Protection\Rogers Online Protection\BitDefender\scan.dll
13:33:06.0000 5308 scan - ok
13:33:06.0046 5308 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
13:33:06.0046 5308 SCardSvr - ok
13:33:06.0078 5308 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
13:33:06.0093 5308 Schedule - ok
13:33:06.0156 5308 [ 58DC20EB15F071804C56FCCC796417A2 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
13:33:06.0156 5308 SeaPort - ok
13:33:06.0203 5308 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
13:33:06.0203 5308 Secdrv - ok
13:33:06.0234 5308 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
13:33:06.0234 5308 seclogon - ok
13:33:06.0250 5308 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
13:33:06.0250 5308 SENS - ok
13:33:06.0281 5308 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\drivers\Serial.sys
13:33:06.0281 5308 Serial - ok
13:33:06.0390 5308 [ 47C274B918DFA3DE8E25E902568CBEA6 ] ServicepointService C:\Program Files\Rogers Online Protection\Rogers Servicepoint Agent\ServicepointService.exe
13:33:06.0390 5308 ServicepointService - ok
13:33:06.0437 5308 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
13:33:06.0437 5308 Sfloppy - ok
13:33:06.0468 5308 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
13:33:06.0468 5308 ShellHWDetection - ok
13:33:06.0484 5308 Simbad - ok
13:33:06.0562 5308 [ EA396139541706B4B433641D62EA53CE ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
13:33:06.0625 5308 SkypeUpdate - ok
13:33:06.0671 5308 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
13:33:06.0687 5308 SLIP - ok
13:33:06.0703 5308 Sparrow - ok
13:33:06.0734 5308 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
13:33:06.0750 5308 splitter - ok
13:33:06.0781 5308 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
13:33:06.0796 5308 Spooler - ok
13:33:06.0812 5308 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
13:33:06.0812 5308 sr - ok
13:33:06.0875 5308 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\system32\srsvc.dll
13:33:06.0875 5308 srservice - ok
13:33:06.0906 5308 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
13:33:06.0937 5308 Srv - ok
13:33:06.0968 5308 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
13:33:06.0968 5308 SSDPSRV - ok
13:33:06.0984 5308 StarOpen - ok
13:33:07.0015 5308 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
13:33:07.0031 5308 stisvc - ok
13:33:07.0046 5308 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
13:33:07.0062 5308 streamip - ok
13:33:07.0093 5308 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
13:33:07.0093 5308 swenum - ok
13:33:07.0109 5308 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
13:33:07.0109 5308 swmidi - ok
13:33:07.0125 5308 SwPrv - ok
13:33:07.0140 5308 symc810 - ok
13:33:07.0156 5308 symc8xx - ok
13:33:07.0156 5308 sym_hi - ok
13:33:07.0171 5308 sym_u3 - ok
13:33:07.0203 5308 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
13:33:07.0218 5308 sysaudio - ok
13:33:07.0250 5308 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
13:33:07.0265 5308 SysmonLog - ok
13:33:07.0312 5308 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
13:33:07.0328 5308 TapiSrv - ok
13:33:07.0375 5308 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
13:33:07.0390 5308 Tcpip - ok
13:33:07.0437 5308 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
13:33:07.0437 5308 TDPIPE - ok
13:33:07.0453 5308 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
13:33:07.0453 5308 TDTCP - ok
13:33:07.0500 5308 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
13:33:07.0500 5308 TermDD - ok
13:33:07.0546 5308 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
13:33:07.0562 5308 TermService - ok
13:33:07.0578 5308 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
13:33:07.0593 5308 Themes - ok
13:33:07.0671 5308 [ E44759CB4AC9F43464D8780501CC0470 ] TOSHIBA Bluetooth Service C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
13:33:07.0703 5308 TOSHIBA Bluetooth Service - ok
13:33:07.0703 5308 TosIde - ok
13:33:07.0734 5308 [ 2C15B4856F929AC7DD144044D8334B54 ] tosporte C:\WINDOWS\system32\DRIVERS\tosporte.sys
13:33:07.0750 5308 tosporte - ok
13:33:07.0781 5308 [ 6750328AB04AE5FAF01403A575D66978 ] tosrfbd C:\WINDOWS\system32\DRIVERS\tosrfbd.sys
13:33:07.0812 5308 tosrfbd - ok
13:33:07.0812 5308 [ E5E34CD8848742CDC946F589F802630F ] tosrfbnp C:\WINDOWS\system32\Drivers\tosrfbnp.sys
13:33:07.0828 5308 tosrfbnp - ok
13:33:07.0859 5308 [ C281D231BA7BC7955D39EA9E21374EFF ] Tosrfcom C:\WINDOWS\system32\Drivers\tosrfcom.sys
13:33:07.0875 5308 Tosrfcom - ok
13:33:07.0890 5308 [ 592CD9C8AB08EF02EA53905D30FB157E ] Tosrfhid C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys
13:33:07.0906 5308 Tosrfhid - ok
13:33:07.0921 5308 [ 0F3FD4F55175CAEDDCE9EFD6C5CA45D3 ] tosrfnds C:\WINDOWS\system32\DRIVERS\tosrfnds.sys
13:33:07.0937 5308 tosrfnds - ok
13:33:07.0953 5308 [ F21031C35FE340A948FFDCA6DE74D333 ] TosRfSnd C:\WINDOWS\system32\drivers\tosrfsnd.sys
13:33:07.0968 5308 TosRfSnd - ok
13:33:08.0000 5308 [ C4245835D4FAC0494ED616F3BFE9EE0A ] Tosrfusb C:\WINDOWS\system32\DRIVERS\tosrfusb.sys
13:33:08.0015 5308 Tosrfusb - ok
13:33:08.0046 5308 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
13:33:08.0046 5308 TrkWks - ok
13:33:08.0093 5308 [ B16D66A71DE03285E14E9F165B59EDA4 ] Trufos C:\Program Files\Rogers Online Protection\Rogers Online Protection\BitDefender\trufos.sys
13:33:08.0109 5308 Trufos - ok
13:33:08.0156 5308 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
13:33:08.0156 5308 Udfs - ok
13:33:08.0187 5308 [ A4E07DA3AE2078BD96E84D4BAA07B71D ] ULCDRHlp C:\WINDOWS\system32\Drivers\ULCDRHlp.sys
13:33:08.0203 5308 ULCDRHlp - ok
13:33:08.0218 5308 ultra - ok
13:33:08.0250 5308 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
13:33:08.0250 5308 Update - ok
13:33:08.0296 5308 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
13:33:08.0296 5308 upnphost - ok
13:33:08.0328 5308 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
13:33:08.0343 5308 UPS - ok
13:33:08.0390 5308 [ 4B8A9C16B6D9258ED99C512AECB8C555 ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
13:33:08.0406 5308 USBAAPL - ok
13:33:08.0437 5308 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
13:33:08.0453 5308 usbccgp - ok
13:33:08.0453 5308 USBCCID - ok
13:33:08.0500 5308 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
13:33:08.0500 5308 usbehci - ok
13:33:08.0531 5308 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
13:33:08.0531 5308 usbhub - ok
13:33:08.0546 5308 [ 0DAECCE65366EA32B162F85F07C6753B ] usbohci C:\WINDOWS\system32\DRIVERS\usbohci.sys
13:33:08.0546 5308 usbohci - ok
13:33:08.0593 5308 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
13:33:08.0609 5308 usbscan - ok
13:33:08.0640 5308 [ A32426D9B14A089EAA1D922E0C5801A9 ] usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
13:33:08.0640 5308 usbstor - ok
13:33:08.0687 5308 [ 63BBFCA7F390F4C49ED4B96BFB1633E0 ] usbvideo C:\WINDOWS\system32\Drivers\usbvideo.sys
13:33:08.0703 5308 usbvideo - ok
13:33:08.0734 5308 [ B6CC50279D6CD28E090A5D33244ADC9A ] usb_rndisx C:\WINDOWS\system32\DRIVERS\usb8023x.sys
13:33:08.0750 5308 usb_rndisx - ok
13:33:08.0843 5308 [ F56F0E24E35FD91F74A5319E7081A0DB ] VaultClientSRV C:\Program Files\Rogers Backup Manager\VaultClientSRV.exe
13:33:08.0859 5308 VaultClientSRV - ok
13:33:08.0875 5308 [ CF3B0AD3091B2997A1E5D4B6BE87EC07 ] VaultClientUpgrade C:\Program Files\Rogers Backup Manager\VaultClientUpgrade.exe
13:33:08.0906 5308 VaultClientUpgrade - ok
13:33:08.0953 5308 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
13:33:08.0968 5308 VgaSave - ok
13:33:08.0984 5308 ViaIde - ok
13:33:09.0015 5308 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
13:33:09.0015 5308 VolSnap - ok
13:33:09.0062 5308 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
13:33:09.0062 5308 VSS - ok
13:33:09.0156 5308 [ 7D110D645030C05A06C3CD08D1E47D0A ] vToolbarUpdater13.2.0 C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe
13:33:09.0203 5308 vToolbarUpdater13.2.0 - ok
13:33:09.0250 5308 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\system32\w32time.dll
13:33:09.0250 5308 W32Time - ok
13:33:09.0281 5308 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
13:33:09.0281 5308 Wanarp - ok
13:33:09.0328 5308 [ D918617B46457B9AC28027722E30F647 ] Wdf01000 C:\WINDOWS\system32\Drivers\wdf01000.sys
13:33:09.0359 5308 Wdf01000 - ok
13:33:09.0375 5308 WDICA - ok
13:33:09.0437 5308 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
13:33:09.0437 5308 wdmaud - ok
13:33:09.0468 5308 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
13:33:09.0484 5308 WebClient - ok
13:33:09.0531 5308 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
13:33:09.0546 5308 winmgmt - ok
13:33:09.0609 5308 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
13:33:09.0625 5308 WmdmPmSN - ok
13:33:09.0640 5308 [ C42584FD66CE9E17403AEBCA199F7BDB ] WmiAcpi C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
13:33:09.0656 5308 WmiAcpi - ok
13:33:09.0718 5308 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
13:33:09.0718 5308 WmiApSrv - ok
13:33:09.0812 5308 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
13:33:09.0828 5308 WMPNetworkSvc - ok
13:33:09.0843 5308 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
13:33:09.0859 5308 WSTCODEC - ok
13:33:09.0906 5308 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
13:33:09.0921 5308 WudfPf - ok
13:33:09.0937 5308 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
13:33:09.0953 5308 WudfRd - ok
13:33:09.0984 5308 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
13:33:10.0015 5308 WudfSvc - ok
13:33:10.0062 5308 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
13:33:10.0078 5308 WZCSVC - ok
13:33:10.0093 5308 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
13:33:10.0109 5308 xmlprov - ok
13:33:10.0156 5308 ================ Scan global ===============================
13:33:10.0187 5308 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
13:33:10.0218 5308 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
13:33:10.0250 5308 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
13:33:10.0281 5308 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
13:33:10.0281 5308 [Global] - ok
13:33:10.0281 5308 ================ Scan MBR ==================================
13:33:10.0312 5308 [ 8819727BF7611558384A82FF02C2B141 ] \Device\Harddisk0\DR0
13:33:10.0640 5308 \Device\Harddisk0\DR0 - ok
13:33:10.0640 5308 ================ Scan VBR ==================================
13:33:10.0671 5308 [ E204D1DADB4593D3C3114ECB0A539A74 ] \Device\Harddisk0\DR0\Partition1
13:33:10.0671 5308 \Device\Harddisk0\DR0\Partition1 - ok
13:33:10.0687 5308 [ BF3BFD62FAF150072D267B9F4E764498 ] \Device\Harddisk0\DR0\Partition2
13:33:10.0687 5308 \Device\Harddisk0\DR0\Partition2 - ok
13:33:10.0687 5308 ============================================================
13:33:10.0703 5308 Scan finished
13:33:10.0703 5308 ============================================================
13:33:10.0718 5296 Detected object count: 0
13:33:10.0718 5296 Actual detected object count: 0
13:33:33.0203 5256 Deinitialize success


*****************************
*****************************
*****************************

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 3.5.6 (11.27.2012:3)
OS: Microsoft Windows XP x86
Ran by Erik-PC on 27/11/2012 at 13:38:41.01
Blog: http://thisisudax.blogspot.com
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] hkey_local_machine\software\microsoft\windows\currentversion\run\\vProt
Successfully deleted: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{98889811-442d-49dd-99d7-dc866be87dbc}
Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\abouturls\\Tabs
Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\main\\Search Page
Successfully repaired: [Registry Value] hkey_users\S-1-5-21-3494569918-1635938240-374730608-1005\software\microsoft\internet explorer\main\\Search Page



~~~ Registry Keys

Successfully deleted: [Registry Key] "hkey_classes_root\escort.escortiepane"
Successfully deleted: [Registry Key] "hkey_classes_root\escort.escortiepane.1"
Successfully deleted: [Registry Key] "hkey_classes_root\esrv.babylonesrvc"
Successfully deleted: [Registry Key] "hkey_classes_root\esrv.babylonesrvc.1"
Successfully deleted: [Registry Key] "hkey_current_user\software\babylontoolbar"
Successfully deleted: [Registry Key] "hkey_current_user\software\conduit"
Successfully deleted: [Registry Key] "hkey_local_machine\software\babylon"
Successfully deleted: [Registry Key] "hkey_local_machine\software\babylontoolbar"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\appid\escort.dll"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\appid\escortapp.dll"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\appid\escorteng.dll"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\appid\escortlbr.dll"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\appid\esrv.exe"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\b"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\babylon.dskbnd"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\babylon.dskbnd.1"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\bbylnapp.appcore"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\bbylnapp.appcore.1"
Successfully deleted: [Registry Key] hkey_current_user\software\microsoft\internet explorer\searchscopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{291bccc1-6890-484a-89d3-318c928dac1b}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{2eecd738-5844-4a99-b4b6-146bf802613b}
Successfully deleted: [Registry Key] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{2eecd738-5844-4a99-b4b6-146bf802613b}
Successfully deleted: [Registry Key] hkey_current_user\software\microsoft\internet explorer\searchscopes\{35e9438f-19d4-4516-b2ac-59ba9241de4d}
Successfully deleted: [Registry Key] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{35e9438f-19d4-4516-b2ac-59ba9241de4d}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{97f2ff5b-260c-4ccf-834a-2dda4e29e39e}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{98889811-442d-49dd-99d7-dc866be87dbc}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{b8276a94-891d-453c-9ff3-715c042a2575}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{e46c8196-b634-44a1-af6e-957c64278ab1}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{ffb9adcb-8c79-4c29-81d3-74d46a93d370}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Documents and Settings\All Users\application data\babylon"
Successfully deleted: [Folder] "C:\Documents and Settings\Erik-PC\Application Data\babylon"
Successfully deleted: [Folder] "C:\Documents and Settings\Erik-PC\Application Data\babylontoolbar"
Successfully deleted: [Folder] "C:\Program Files\babylontoolbar"



~~~ FireFox

Successfully deleted: [File] C:\user.js
Successfully deleted: [File] C:\Documents and Settings\Erik-PC\Application Data\mozilla\firefox\profiles\4a0j6r86.default\user.js
Successfully deleted: [File] C:\Documents and Settings\Erik-PC\Application Data\mozilla\firefox\profiles\4a0j6r86.default\searchplugins\my-web-search.xml
Successfully deleted: [Folder] C:\Documents and Settings\Erik-PC\Application Data\mozilla\firefox\profiles\4a0j6r86.default\extensions\ffxtlbr@babylon.com
Successfully deleted the following from C:\Documents and Settings\Erik-PC\Application Data\mozilla\firefox\profiles\4a0j6r86.default\prefs.js

user_pref("extensions.BabylonToolbar_i.aflt", "babsst");
user_pref("extensions.BabylonToolbar_i.babExt", "");
user_pref("extensions.BabylonToolbar_i.babTrack", "affID=113480");
user_pref("extensions.BabylonToolbar_i.hardId", "240fc260000000000000002421cb23ed");
user_pref("extensions.BabylonToolbar_i.id", "240fc260000000000000002421cb23ed");
user_pref("extensions.BabylonToolbar_i.instlDay", "15536");
user_pref("extensions.BabylonToolbar_i.instlRef", "sst");
user_pref("extensions.BabylonToolbar_i.newTab", false);
user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar");
user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon");
user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
user_pref("extensions.BabylonToolbar_i.tlbrId", "tb9");
user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17");
user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1715:59:06");
user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17");
user_pref("extensions.mywebsearch.prevDefaultEngine", "Google");
user_pref("extensions.mywebsearch.prevKwdEnabled", true);
user_pref("extensions.mywebsearch.prevKwdURL", "http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?st=kwd&ptb=4BD4079F-96AF-4B1B-8BEE-81B3478E80B2&n=77edeb77&ind=2012081015&id=9Nxdm005YYca&ptnrS=9Nxdm005YYca&si=CO2f0pTY3bECFcXBKgodRjAAbQ&searchfor=");
user_pref("extensions.mywebsearch.prevSelectedEngine", "Google");
user_pref("extensions.toolbar.mindspark._12Members_.homepage", "http://home.mywebsearch.com/index.jhtml?ptb=4BD4079F-96AF-4B1B-8BEE-81B3478E80B2&n=77edeb77&ptnrS=9Nxdm005YYca&si=CO2f0pTY3bECFcXBKgodRjAAbQ");
user_pref("extensions.toolbar.mindspark._12Members_.hp.enabled", false);
user_pref("extensions.toolbar.mindspark._12Members_.hp.user.defined", true);
user_pref("extensions.toolbar.mindspark._12Members_.initialized", true);
user_pref("extensions.toolbar.mindspark._12Members_.installation.contextKey", "");
user_pref("extensions.toolbar.mindspark._12Members_.installation.installDate", "2012081015");
user_pref("extensions.toolbar.mindspark._12Members_.installation.partnerId", "9Nxdm005YYca");
user_pref("extensions.toolbar.mindspark._12Members_.installation.partnerSubId", "CO2f0pTY3bECFcXBKgodRjAAbQ");
user_pref("extensions.toolbar.mindspark._12Members_.installation.success", true);
user_pref("extensions.toolbar.mindspark._12Members_.installation.toolbarId", "4BD4079F-96AF-4B1B-8BEE-81B3478E80B2");
user_pref("extensions.toolbar.mindspark._12Members_.lastActivePing", "1353332526736");
user_pref("extensions.toolbar.mindspark._12Members_.options.defaultSearch", true);
user_pref("extensions.toolbar.mindspark._12Members_.options.homePageEnabled", true);
user_pref("extensions.toolbar.mindspark._12Members_.options.keywordEnabled", true);
user_pref("extensions.toolbar.mindspark._12Members_.options.tabEnabled", true);
user_pref("extensions.toolbar.mindspark._12Members_.weather.location", "M3H+M");
user_pref("extensions.toolbar.mindspark.hp.enabled", false);
user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "");
user_pref("extensions.toolbar.mindspark.lastInstalled", "myscrapnook@mindspark.com");
user_pref("keyword.URL", "http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?st=kwd&ptb=4BD4079F-96AF-4B1B-8BEE-81B3478E80B2&n=77edeb77&ind=2012081015&id=9Nxdm005YYca&ptnrS=9Nxdm005YYca&si=CO2f0pTY3bECFcXBKgodRjAAbQ&searchfor=");
user_pref("weboftrust.search.ask.display", "Ask.com Web Search");
user_pref("weboftrust.search.google.urlign", "^http(s)?\\:\\/\\/((www|encrypted)\\.)?google\\.(com?\\.[a-z]{2}|[a-z]{2,})\\/(\\+|a\\/|accounts|ad(s|manager|planner|sense|words)|alerts|analytics|apps|appserve|base|calendar|chrome(frame)?|codesearch|comparisonads|corporate|crisisresponse|datacenter|dfp|dictionary|doodle|educators|enterprise|events|experimental|familysafety|finance|flutrends|friendconnect|goog411|googlebooks|googlenotebook|googlevoice|gwt|help|history|hostednews|images|imgres|ime|insights|landing|local|logos|mapmaker|maps|mobile|moon|music|newproducts|news|notebook|patents|phone|postini|powermeter|press|profiles|publicdata|puzzles|onlinechallenge|racing|reader|recaptcha|relief|services|s2|sitesearch|sky|smallbusinessnetwork|squared|submit|support|sync|talk|toolbar|ventures|voice|wallet|web(masters|elements)|intl\\/[^\\/]+\\/.+|search\\\\?.*tbm=isch)");





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 27/11/2012 at 14:37:15.60
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


****************************
****************************
****************************

aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2012-11-27 14:43:01
-----------------------------
14:43:01.593 OS Version: Windows 5.1.2600 Service Pack 3
14:43:01.593 Number of processors: 1 586 0x7F02
14:43:01.593 ComputerName: ERIK UserName:
14:43:02.234 Initialize success
14:46:22.890 AVAST engine defs: 12112701
14:46:35.343 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T1L0-3
14:46:35.343 Disk 0 Vendor: TOSHIBA_MK2555GSX FG001A Size: 238475MB BusType: 3
14:46:35.359 Disk 0 MBR read successfully
14:46:35.359 Disk 0 MBR scan
14:46:35.390 Disk 0 unknown MBR code
14:46:35.390 Disk 0 Partition 1 00 12 Compaq diag MSDOS5.0 4008 MB offset 63
14:46:35.421 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 63130 MB offset 8209215
14:46:35.437 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 171333 MB offset 137500335
14:46:35.437 Disk 0 scanning sectors +488392065
14:46:35.515 Disk 0 scanning C:\WINDOWS\system32\drivers
14:46:49.953 Service scanning
14:47:23.140 Modules scanning
14:47:31.671 Disk 0 trace - called modules:
14:47:32.171 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
14:47:32.171 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a61aab8]
14:47:32.171 3 CLASSPNP.SYS[ba0e8fd7] -> nt!IofCallDriver -> \Device\0000007a[0x8a67fc80]
14:47:32.187 5 ACPI.sys[b9f7f620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T1L0-3[0x8a5e2940]
14:47:32.578 AVAST engine scan C:\WINDOWS
14:47:38.281 AVAST engine scan C:\WINDOWS\system32
14:55:04.484 AVAST engine scan C:\WINDOWS\system32\drivers
14:55:28.375 AVAST engine scan C:\Documents and Settings\Erik-PC
14:56:24.765 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Erik-PC\My Documents\Downloads\MBR.dat"
14:56:24.765 The log file has been saved successfully to "C:\Documents and Settings\Erik-PC\My Documents\Downloads\aswMBR.txt"

#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,035 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:11:38 AM

Posted 27 November 2012 - 03:27 PM

You're welcome!
Your HOSTS file may be infected.
Reset the HOSTS file
As this infection also changes your Windows HOSTS file, we want to replace this file with the default version for your operating system.
Some types of malware will alter the HOSTS file as part of its infection. Please follow the instructions provided in How do I reset the hosts file back to the default?

To reset the hosts file automatically,go HERE click the Posted Image button. Then just follow the prompts in the Fix it wizard.


OR
Click Run in the File Download dialog box or save MicrosoftFixit50267.msi to your Desktop and double-click on it to run. Then just follow the prompts in the Fix it wizard.



Uninstall this thru the Control Pal Add/Remove... Java™ 6 Update 29 (Version: 6.0.290)
Reboot the machine.

>>>
Lets check for and confirm the MBR (Master Boot Record) rootkit.


Please download mbr.exe and save it to the root directory, usually C:\ <- (Important!).
  • Go to Start > Run and type: cmd.exe
  • press Ok.
  • At the command prompt type: c:\mbr.exe >>"C:\mbr.log"
  • press Enter.
  • The process is automatic...a black DOS window will open and quickly disappear. This is normal.
  • A log file named mbr.log will be created and saved to the root of the system drive (usually C:\).
  • Copy and paste the results of the mbr.log in your next reply.
If you have a problem using the command prompt, you can just double-click on mbr.exe to run the tool.

>>>>>>


Now I'd like us to scan your machine with ESET OnlineScan
  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the Posted Image button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the Posted Image
      icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.

How is it runmning now?
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 albatross_hunter

albatross_hunter
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:38 AM

Posted 27 November 2012 - 11:21 PM

wow, thanks very much! everything seems to be operating properly now. I really appreciate your help!

here are the results of the scans you suggested...

Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Windows 5.1.2600 Disk: TOSHIBA_MK2555GSX rev.FG001A -> Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T1L0-3

device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user & kernel MBR OK


***************
***************
***************

C:\Documents and Settings\Erik-PC\Local Settings\Temp\342125D5-BAB0-7891-82D5-2361041C645E\Latest\MyBabylonTB.exe Win32/Toolbar.Babylon application cleaned by deleting - quarantined
C:\Documents and Settings\Erik-PC\Local Settings\Temp\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbar4ie.exe Win32/Toolbar.Babylon application cleaned by deleting - quarantined
C:\Documents and Settings\Erik-PC\Local Settings\Temp\is754907076\ezLooker-S-Setup_Suite1.exe Win32/Adware.Yontoo application cleaned by deleting - quarantined
C:\Documents and Settings\Erik-PC\Local Settings\Temp\is754907076\MyBabylonTB.exe Win32/Toolbar.Babylon application cleaned by deleting - quarantined

#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,035 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:11:38 AM

Posted 28 November 2012 - 11:45 AM

OK, great lets get any other stuff off while you are here.

Please download and scan with SUPERAntiSpyware Free
  • Double-click SUPERAntiSypware.exe and use the default settings for installation.
    For instructions with screenshots, please refer to the How to use SUPERAntiSpyware to scan and remove malware from your computer Guide.
  • An icon will be created on your desktop. Double-click that icon to launch the program.
  • If it will not start, go to Start > All Prgrams > SUPERAntiSpyware and click on Alternate Start.
  • If asked to update the program definitions, click "Yes". If not, update the definitions before scanning by selecting "Check for Updates". (If you encounter any problems while downloading the updates, manually download them from here. Double-click on the hyperlink for Download Installer and save SASDEFINITIONS.EXE to your desktop. Then double-click on SASDEFINITIONS.EXE to install the definitions.)
  • In the Main Menu, click the Preferences... button.
  • Click the "General and Startup" tab, and under Start-up Options, make sure "Start SUPERAntiSpyware when Windows starts" box is unchecked.
  • Click the "Scanning Control" tab, and under Scanner Options, make sure the following are checked (leave all other options as they are set):
    • Close browsers before scanning.
    • Scan for tracking cookies.
    • Terminate memory threats before quarantining.
  • Click the "Close" button to leave the Control Center screen.
  • Back on the main screen, under "Select Scan Type" check the box for Complete Scan.
  • If your computer is badly infected, be sure to check the box next to Enable Rescue Scan (Highly Infected Systems ONLY).
  • Click the Scan your computer... button.
  • After the scan is complete, a Scan Summary box will appear with potentially harmful items that were detected. Click "OK".
  • Make sure everything has a checkmark next to it and click "Next".
  • A notification will appear that "Quarantine and Removal is Complete". Click "OK" and then click the "Finish" button to return to the main menu.
  • If asked if you want to reboot, click "Yes" and reboot normally.

To retrieve the scan log after reboot, launch SUPERAntiSpyware again.
  • Click the View Scan Logs button at the bottom.
  • This will open the Scanner Logs Window.
  • Click on the log to highlight it and then click on View Selected Log to open it.
  • Copy and paste the scan log results in your next reply.
-- Some types of malware will disable security tools. If SUPERAntiSpyware will not install, please refer to these instructions for using the SUPERAntiSpyware Installer. If SUPERAntiSpyware is already installed but will not run, then follow the instructions for using RUNSAS.EXE to launch the program.

>>>>>

Please download AdwCleaner by Xplode onto your desktop.


  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Delete.
  • Confirm each time with Ok.
  • You will be prompted to restart your computer. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.


>>> And
Please download TFC (Temp File Cleaner) by Old Timer and save it to your desktop.
alternate download link
  • Save any unsaved work. TFC will close ALL open programs including your browser!
  • Double-click on TFC.exe to run it. If you are using Vista, right-click on the file and choose Run As Administrator.
  • Click the Start button to begin the cleaning process and let it run uninterrupted to completion.
  • TFC will clear out all temp folders for all user accounts (temp, IE temp, Java, FF, Opera, Chrome, Safari), including Administrator, All Users, LocalService, NetworkService, and any other accounts in the user folder.
  • Important! If TFC prompts you to reboot, please do so immediately. If not prompted, manually reboot the machine anyway to ensure a complete clean.
Note: It is normal for the computer to be slow to boot after running TFC cleaner the first time.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#7 albatross_hunter

albatross_hunter
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:38 AM

Posted 28 November 2012 - 04:00 PM

My computer seems to running much more smoothly after these latest scans... thanks again for all your assistance!

here are the latest results...

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 11/28/2012 at 02:14 PM

Application Version : 5.6.1014

Core Rules Database Version : 9651
Trace Rules Database Version: 7463

Scan type : Complete Scan
Total Scan Time : 01:20:16

Operating System Information
Windows XP Home Edition 32-bit, Service Pack 3 (Build 5.01.2600)
Administrator

Memory items scanned : 845
Memory threats detected : 0
Registry items scanned : 38084
Registry threats detected : 0
File items scanned : 45956
File threats detected : 711

PUP.MyWebSearch
C:\DOCUMENTS AND SETTINGS\ERIK-PC\Local Settings\Temporary Internet Files\Content.IE5\C0S02SJI\hp.home-base[1].js [ cache:mywebsearch.com ]
C:\DOCUMENTS AND SETTINGS\ERIK-PC\Local Settings\Temporary Internet Files\Content.IE5\K6PQ5HGS\hp.home-base[1].js [ cache:mywebsearch.com ]
C:\DOCUMENTS AND SETTINGS\ERIK-PC\Local Settings\Temporary Internet Files\Content.IE5\C0S02SJI\unified[2].css [ cache:mywebsearch.com ]
C:\DOCUMENTS AND SETTINGS\ERIK-PC\Local Settings\Temporary Internet Files\Content.IE5\C0S02SJI\unified[1].css [ cache:mywebsearch.com ]
C:\DOCUMENTS AND SETTINGS\ERIK-PC\Local Settings\Temporary Internet Files\Content.IE5\K6PQ5HGS\insert[1].txt [ cache:mywebsearch.com ]
C:\DOCUMENTS AND SETTINGS\ERIK-PC\Local Settings\Temporary Internet Files\Content.IE5\W2TEVC1Q\hp.home-base[1].js [ cache:mywebsearch.com ]

Adware.Tracking Cookie
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@247realmedia[2].txt [ /247realmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ad.amgdgt[1].txt [ /ad.amgdgt ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ad.bodybuilding[2].txt [ /ad.bodybuilding ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ad.wsod[1].txt [ /ad.wsod ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ad.wsod[3].txt [ /ad.wsod ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ad.yieldmanager[1].txt [ /ad.yieldmanager ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ad.yieldmanager[2].txt [ /ad.yieldmanager ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.ad4game[1].txt [ /ads.ad4game ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.adgoto[1].txt [ /ads.adgoto ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.adk2[1].txt [ /ads.adk2 ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.as4x.tmcs.ticketmaster[1].txt [ /ads.as4x.tmcs.ticketmaster ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.avenfeld[1].txt [ /ads.avenfeld ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.cnn[1].txt [ /ads.cnn ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.cpxadroit[1].txt [ /ads.cpxadroit ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.crakmedia[1].txt [ /ads.crakmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.foodbuzz[1].txt [ /ads.foodbuzz ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.nba[1].txt [ /ads.nba ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.networldmedia[2].txt [ /ads.networldmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.networldmedia[3].txt [ /ads.networldmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.networldmedia[4].txt [ /ads.networldmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.pgatour[1].txt [ /ads.pgatour ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.pointroll[1].txt [ /ads.pointroll ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.pushplay[1].txt [ /ads.pushplay ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.tmnetads[1].txt [ /ads.tmnetads ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.traffikings[1].txt [ /ads.traffikings ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.undertone[1].txt [ /ads.undertone ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.vegas[1].txt [ /ads.vegas ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.zeusclicks[1].txt [ /ads.zeusclicks ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads.zeusclicks[2].txt [ /ads.zeusclicks ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ads2.zeusclicks[1].txt [ /ads2.zeusclicks ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@adserver.adpredictive[2].txt [ /adserver.adpredictive ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@adserver.gunaxin[2].txt [ /adserver.gunaxin ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@adsplash.rotator.hadj1.adjuggler[2].txt [ /adsplash.rotator.hadj1.adjuggler ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@advertising.sheknows[2].txt [ /advertising.sheknows ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@adxpansion[2].txt [ /adxpansion ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@adxpose[1].txt [ /adxpose ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@analytics.rogersmedia[1].txt [ /analytics.rogersmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@at.atwola[2].txt [ /at.atwola ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@atdmt.combing[2].txt [ /atdmt.combing ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@atdmt[2].txt [ /atdmt ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@banner.adchemy[1].txt [ /banner.adchemy ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@beacon.dmsinsights[2].txt [ /beacon.dmsinsights ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@bizrate[2].txt [ /bizrate ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@bs.serving-sys[1].txt [ /bs.serving-sys ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@bs.serving-sys[2].txt [ /bs.serving-sys ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@careers.peopleclick[1].txt [ /careers.peopleclick ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@casalemedia[2].txt [ /casalemedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@cdn1.trafficmp[1].txt [ /cdn1.trafficmp ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@click.superpaysys[2].txt [ /click.superpaysys ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@cltomedia[2].txt [ /cltomedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@cn.clickable[2].txt [ /cn.clickable ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@collective-media[1].txt [ /collective-media ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@content.yieldmanager[2].txt [ /content.yieldmanager ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@content.yieldmanager[4].txt [ /content.yieldmanager ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@d.mediadakine[1].txt [ /d.mediadakine ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@dc.tremormedia[2].txt [ /dc.tremormedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@dealtime[1].txt [ /dealtime ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@delivery.trafficjunky[1].txt [ /delivery.trafficjunky ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@doubleclick[1].txt [ /doubleclick ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@driversfinder[1].txt [ /driversfinder ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@driversfinder[2].txt [ /driversfinder ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@dumpaporn[2].txt [ /dumpaporn ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@ext-us.bestofmedia[2].txt [ /ext-us.bestofmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@legolas-media[2].txt [ /legolas-media ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@lfstmedia[2].txt [ /lfstmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@linksynergy.walmart[2].txt [ /linksynergy.walmart ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@media.adfrontiers[1].txt [ /media.adfrontiers ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@media.medhelp[1].txt [ /media.medhelp ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@media.medhelp[3].txt [ /media.medhelp ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@media01.isagenix[1].txt [ /media01.isagenix ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@mediaforge[2].txt [ /mediaforge ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@mediaplex[2].txt [ /mediaplex ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@metroleap.rotator.hadj7.adjuggler[1].txt [ /metroleap.rotator.hadj7.adjuggler ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@naiadsystems[1].txt [ /naiadsystems ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@networldmedia[1].txt [ /networldmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@networldmedia[2].txt [ /networldmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@nextag[1].txt [ /nextag ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@nextag[3].txt [ /nextag ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@pluckit.demandmedia[1].txt [ /pluckit.demandmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@rdmedia.go2jump[1].txt [ /rdmedia.go2jump ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@richmedia.yahoo[2].txt [ /richmedia.yahoo ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@rogersmedia[1].txt [ /rogersmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@rts.pgmediaserve[1].txt [ /rts.pgmediaserve ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@sales.liveperson[1].txt [ /sales.liveperson ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@sales.liveperson[3].txt [ /sales.liveperson ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@sales.liveperson[4].txt [ /sales.liveperson ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@server.iad.liveperson[1].txt [ /server.iad.liveperson ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@server.iad.liveperson[2].txt [ /server.iad.liveperson ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@server.iad.liveperson[4].txt [ /server.iad.liveperson ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@server.iad.liveperson[5].txt [ /server.iad.liveperson ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@serving-sys[1].txt [ /serving-sys ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@shared.rogersmedia[1].txt [ /shared.rogersmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@shlquestionnaires[1].txt [ /shlquestionnaires ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@sportscracklepop[1].txt [ /sportscracklepop ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@stat.dealtime[2].txt [ /stat.dealtime ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@stats.bodylastics[1].txt [ /stats.bodylastics ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@stats.complex[2].txt [ /stats.complex ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@stats.paypal[1].txt [ /stats.paypal ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@tacoda.at.atwola[1].txt [ /tacoda.at.atwola ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@track.tmpservice[2].txt [ /track.tmpservice ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@tracking.sokrati[1].txt [ /tracking.sokrati ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@traffic.buyservices[1].txt [ /traffic.buyservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@trafficholder[1].txt [ /trafficholder ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@trvlnet.adbureau[1].txt [ /trvlnet.adbureau ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@user.lucidmedia[1].txt [ /user.lucidmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@vitamine.networldmedia[2].txt [ /vitamine.networldmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@vitamine.networldmedia[3].txt [ /vitamine.networldmedia ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.getpayperclickadzfree[1].txt [ /www.getpayperclickadzfree ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[10].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[11].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[1].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[2].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[3].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[4].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[5].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[6].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[7].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[8].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@www.googleadservices[9].txt [ /www.googleadservices ]
C:\Documents and Settings\Erik-PC\Cookies\erik-pc@yeprevenue[1].txt [ /yeprevenue ]
C:\Documents and Settings\Erik-PC\Cookies\5J2VB5FS.txt [ /ads.bleepingcomputer.com ]
C:\Documents and Settings\Erik-PC\Cookies\X21IB6K5.txt [ /adserver.zenoviaexchange.com ]
C:\Documents and Settings\Erik-PC\Cookies\GVWSTWXK.txt [ /adnetwork.net ]
C:\Documents and Settings\Erik-PC\Cookies\VWURRWXY.txt [ /doubleclick.net ]
C:\Documents and Settings\Erik-PC\Cookies\FJOS2NVJ.txt [ /accounts.google.com ]
C:\Documents and Settings\Erik-PC\Cookies\3OIWA839.txt [ /rts.pgmediaserve.com ]
C:\Documents and Settings\Erik-PC\Cookies\ARVG76OE.txt [ /filter.rmediaxmlsearchfeed.com ]
C:\Documents and Settings\Erik-PC\Cookies\Q7K9LJF2.txt [ /content.yieldmanager.com ]
C:\Documents and Settings\Erik-PC\Cookies\71MYE6YT.txt [ /adjuggler.net ]
C:\Documents and Settings\Erik-PC\Cookies\050OXM29.txt [ /www.trekmedia.net ]
C:\Documents and Settings\Erik-PC\Cookies\VJIT3R3M.txt [ /ads.dothads.com ]
C:\Documents and Settings\Erik-PC\Cookies\KHZNER4X.txt [ /legolas-media.com ]
C:\Documents and Settings\Erik-PC\Cookies\N2QISXP3.txt [ /fidelity.rotator.hadj7.adjuggler.net ]
C:\Documents and Settings\Erik-PC\Cookies\HUXIKNYG.txt [ /banners.gossipcenter.com ]
C:\Documents and Settings\Erik-PC\Cookies\R04L6WAP.txt [ /pu.trafficshop.com ]
C:\Documents and Settings\Erik-PC\Cookies\WT6CHFZT.txt [ /at.atwola.com ]
C:\Documents and Settings\Erik-PC\Cookies\1IOQFT8Z.txt [ /imrworldwide.com ]
C:\Documents and Settings\Erik-PC\Cookies\DFYGRQMY.txt [ /kontera.com ]
C:\Documents and Settings\Erik-PC\Cookies\SBTS3MTE.txt [ /ads.traffikings.com ]
C:\Documents and Settings\Erik-PC\Cookies\X7V11EOU.txt [ /adserver2.exgfnetwork.com ]
C:\Documents and Settings\Erik-PC\Cookies\TNZTU21D.txt [ /ox-d.fondnessmedia.com ]
C:\Documents and Settings\Erik-PC\Cookies\71HIM36T.txt [ /collective-media.net ]
C:\Documents and Settings\Erik-PC\Cookies\UCCJ9QK0.txt [ /networldmedia.net ]
C:\Documents and Settings\Erik-PC\Cookies\Y8SKKV04.txt [ /atdmt.combing.com ]
C:\Documents and Settings\Erik-PC\Cookies\COTMP5CY.txt [ /ads.voloome.com ]
C:\Documents and Settings\Erik-PC\Cookies\K995O66S.txt [ /click.imagesearchanswers.com ]
C:\Documents and Settings\Erik-PC\Cookies\GL019653.txt [ /adinterax.com ]
C:\Documents and Settings\Erik-PC\Cookies\1B19TTF3.txt [ /ad.360yield.com ]
C:\Documents and Settings\Erik-PC\Cookies\GFQ6FOC3.txt [ /openx.overadmedia.com ]
C:\Documents and Settings\Erik-PC\Cookies\0HMB8GNU.txt [ /delivery.bluefinmediaads.com ]
C:\Documents and Settings\Erik-PC\Cookies\BO8I254Y.txt [ /filter.bluemediappc.com ]
C:\Documents and Settings\Erik-PC\Cookies\YRDFV1U3.txt [ /ads.adk2.com ]
C:\Documents and Settings\Erik-PC\Cookies\HYJHXNE7.txt [ /ads.networldmedia.net ]
C:\Documents and Settings\Erik-PC\Cookies\78TT3928.txt [ /filter.cynosmedia.com ]
C:\Documents and Settings\Erik-PC\Cookies\X2OY23MA.txt [ /ox-d.enveromedia.com ]
C:\Documents and Settings\Erik-PC\Cookies\MNV7CRIS.txt [ /click.get-amazing-results.com ]
C:\Documents and Settings\Erik-PC\Cookies\MS8PCOBX.txt [ /trekmedia.net ]
C:\Documents and Settings\Erik-PC\Cookies\D92KU5A5.txt [ /ads.gamersmedia.com ]
C:\Documents and Settings\Erik-PC\Cookies\29B2UJ30.txt [ /s2.trafficno.com ]
C:\Documents and Settings\Erik-PC\Cookies\BVIGIHFW.txt [ /eset.122.2o7.net ]
C:\Documents and Settings\Erik-PC\Cookies\HTAFGEU2.txt [ /www.googleadservices.com ]
C:\DOCUMENTS AND SETTINGS\ERIK-PC\Cookies\1KH2S73L.txt [ Cookie:erik-pc@google.com/accounts/ ]
C:\DOCUMENTS AND SETTINGS\ERIK-PC\Cookies\GP7KOHTQ.txt [ Cookie:erik-pc@clkads.com/adServe ]
C:\DOCUMENTS AND SETTINGS\ERIK-PC\Cookies\9IOWQEGM.txt [ Cookie:erik-pc@adsonar.com/adserving ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\QJVTSANJ.txt [ Cookie:system@imrworldwide.com/cgi-bin ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\Z9IG0P5X.txt [ Cookie:system@ru4.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\EGFWQEPQ.txt [ Cookie:system@ads.gamersmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\T3MMF0BV.txt [ Cookie:system@fastclick.net/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\XMFIIWNM.txt [ Cookie:system@banners.gossipcenter.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\NTNAT8DL.txt [ Cookie:system@networldmedia.net/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\XWMQSGJI.txt [ Cookie:system@s2.trafficno.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\NYIAU140.txt [ Cookie:system@ox-d.enveromedia.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\HUAZRL4D.txt [ Cookie:system@pointroll.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\HLLNJZ6X.txt [ Cookie:system@media6degrees.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\4IDX0435.txt [ Cookie:system@click.imagesearchanswers.com/ads-clicktrack/click/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\2DYWZEP7.txt [ Cookie:system@revsci.net/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\81QAM92X.txt [ Cookie:system@atdmt.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\YT0L75H9.txt [ Cookie:system@doubleclick.net/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\83QLF7OK.txt [ Cookie:system@lucidmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\WRMZ7SGQ.txt [ Cookie:system@b.admedia.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\WBB21SF1.txt [ Cookie:system@ads.pointroll.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\NV536L9B.txt [ Cookie:system@realmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\D1BFIGF5.txt [ Cookie:system@bestgoodfind.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\5S2DG9UA.txt [ Cookie:system@adjuggler.net/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\UTHMA892.txt [ Cookie:system@adbrite.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\RIRID01U.txt [ Cookie:system@adserver.zenoviaexchange.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\HSZTP803.txt [ Cookie:system@apmebf.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\SQ4RYFCV.txt [ Cookie:system@adxpose.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\IS7DYWDM.txt [ Cookie:system@openx.overadmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\HYHF9V6Z.txt [ Cookie:system@pro-market.net/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\A6VXNOFT.txt [ Cookie:system@casalemedia.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\5WBNDE08.txt [ Cookie:system@network.realmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\2Z2K1KAE.txt [ Cookie:system@filter.rmediaxmlsearchfeed.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\HNJCCTBZ.txt [ Cookie:system@tribalfusion.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\WISVUZ39.txt [ Cookie:system@s3.mediaadserver.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\AWJY7LEO.txt [ Cookie:system@xml.trafficengine.net/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\9SSROI6J.txt [ Cookie:system@advertising.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\XBS0EAKP.txt [ Cookie:system@www.republicofadvertising.com/ ]
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\Cookies\G2F4YF0V.txt [ Cookie:system@ads.networldmedia.net/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\WXJENA1L.txt [ Cookie:system@click.globotechservices.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\2GD3DDQJ.txt [ Cookie:system@ru4.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\7PURR8XR.txt [ Cookie:system@fastclick.net/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\0FF4YNIL.txt [ Cookie:system@ads.gamersmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\DUUOSP6W.txt [ Cookie:system@ox-d.enveromedia.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\ONHHULFI.txt [ Cookie:system@myroitracking.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\QGMPQZRM.txt [ Cookie:system@media6degrees.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\LHA3HXCD.txt [ Cookie:system@revsci.net/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\UIGN9EFE.txt [ Cookie:system@atdmt.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\J7LXIMFU.txt [ Cookie:system@doubleclick.net/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\JJQU5XNG.txt [ Cookie:system@77505.31119-581.0.yunofindit.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\TSFQLK5A.txt [ Cookie:system@filter.cynosmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\MDNNVFOP.txt [ Cookie:system@lucidmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\ZB2PC1FT.txt [ Cookie:system@relevantcontentfind.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\U0Q062X7.txt [ Cookie:system@realmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\7EV4Z7MS.txt [ Cookie:system@adjuggler.net/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\E2SCUIC9.txt [ Cookie:system@adserver.zenoviaexchange.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\9ODZWYHW.txt [ Cookie:system@adbrite.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\WHMEVR6P.txt [ Cookie:system@apmebf.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\ECIMASAZ.txt [ Cookie:system@adxpose.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\O1B4R5KP.txt [ Cookie:system@ad2.adfarm1.adition.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\GZYPROXY.txt [ Cookie:system@pro-market.net/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\OSI5HQYM.txt [ Cookie:system@casalemedia.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\WGZIW9AQ.txt [ Cookie:system@adserver.adtechus.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\SJTGSS1A.txt [ Cookie:system@network.realmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\7XU8FS0G.txt [ Cookie:system@filter.rmediaxmlsearchfeed.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\0YS8EPE3.txt [ Cookie:system@s3.mediaadserver.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\GCED8N4B.txt [ Cookie:system@247realmedia.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\MN5SE4UJ.txt [ Cookie:system@mediaservices-d.openxenterprise.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\B2BNIF48.txt [ Cookie:system@clicksor.com/ ]
C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\Cookies\YZWKYERF.txt [ Cookie:system@advertising.com/ ]
cdn1.static.pornhub.phncdn.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XMZM283M ]
core.saymedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XMZM283M ]
ia.media-imdb.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XMZM283M ]
media.towerswatson.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XMZM283M ]
secure-us.imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XMZM283M ]
video.unrulymedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XMZM283M ]
.invitemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.xiti.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.histats.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.histats.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
wstat.wibiya.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mywebsearch.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
bridge.sf.admarketplace.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.admarketplace.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.prnewswire.122.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.thecorporateentrepreneur.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.dmtracker.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tjx.112.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.bizrate.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.bizrate.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.bizrate.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.bizrate.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.bizrate.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.bizrate.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.philips.112.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.etfinsight.ca [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.jobs3.netmedia1.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.jobs3.netmedia1.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.hypertracker.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.accountingtools.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.accountingtools.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.accountingtools.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.msnbc.112.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.virginmobileca.122.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.accountantforums.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.accountantforums.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
interviewquestionsandanswers.biz [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
interviewquestionsandanswers.biz [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
interviewquestionsandanswers.biz [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.e-2dj6afkiwiajoho.stats.esomniture.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.i4commerce.112.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.accountingtools.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.accountingtools.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.byuidaho.112.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.accounts.google.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.accounts.google.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.gsimedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
pulse-analytics-beacon.reutersmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
in.getclicky.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.bellglobemediapublishing.122.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.russell.112.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.estat.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.accountingcoach.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.accountingcoach.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.accountingcoach.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mywebsearch.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mywebsearch.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mywebsearch.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mywebsearch.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mywebsearch.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
insight.torbit.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www2.findbest-games.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mywebsearch.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
home.mywebsearch.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mywebsearch.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
mshakers.rotator.hadj7.adjuggler.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
mshakers.rotator.hadj7.adjuggler.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adtechus.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adinterax.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clicksor.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.myroitracking.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.evite.112.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.steelhousemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.px.steelhousemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.steelhousemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
media.rbcgam.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ads.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ads.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ads.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ads.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.rogersmedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
server.iad.liveperson.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.bs.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.torstardigital.122.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
cms-rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clickfuse.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
lyricfind.rotator.hadj7.adjuggler.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
lyricfind.rotator.hadj7.adjuggler.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
lyricfind.rotator.hadj7.adjuggler.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clickfuse.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mmstat.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adinterax.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
track.prd1.netshelter.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
forums.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.unrulymedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.burstnet.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
forums.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
forums.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
forums.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
forums.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
forums.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
forums.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
forums.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
forums.crackberry.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ar.atwola.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adserver.adtechus.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adserver.adtechus.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.saymedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.saymedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.saymedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.yieldmanager.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
oasc12.247realmedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
stats.optijob.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adknowledge.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adknowledge.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adknowledge.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adknowledge.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clickbank.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clickbank.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ad.mlnadvertising.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.careers.peopleclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.careers.peopleclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.careers.peopleclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
careers.peopleclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.technoratimedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.technoratimedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.fastclick.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.technoratimedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.kontera.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www2.findbest-games.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.workopolis.122.2o7.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
stats.royalbank.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clickfuse.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clickfuse.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clickfuse.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.clickfuse.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
click.searchwebresults.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
click.searchwebresults.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.c1.atdmt.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
www.googleadservices.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.adinterax.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
statse.webtrendslive.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.pointroll.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.lucidmedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.tribalfusion.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.fastclick.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4A0J6R86.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.googleadservices.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
find.allstate.ca [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
find.allstate.ca [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
find.allstate.ca [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.find.allstate.ca [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats4.clicktracks.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats4.clicktracks.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats4.clicktracks.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats4.clicktracks.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
careers.peopleclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
careers.peopleclick.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
click.searchwebresults.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
click.searchwebresults.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\ERIK-PC\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]

PUP.BabylonToolbar
C:\SYSTEM VOLUME INFORMATION\_RESTORE{6BDE1B5D-CD81-4C7F-9C7E-A1784B5C24A6}\RP640\A0071956.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{6BDE1B5D-CD81-4C7F-9C7E-A1784B5C24A6}\RP640\A0071957.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{6BDE1B5D-CD81-4C7F-9C7E-A1784B5C24A6}\RP640\A0071958.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{6BDE1B5D-CD81-4C7F-9C7E-A1784B5C24A6}\RP640\A0071959.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{6BDE1B5D-CD81-4C7F-9C7E-A1784B5C24A6}\RP640\A0071960.DLL



**************************
**************************
**************************

# AdwCleaner v2.009 - Logfile created 11/28/2012 at 15:19:08
# Updated 24/11/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Erik-PC - ERIK
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Erik-PC\Local Settings\Temporary Internet Files\Content.IE5\CFW1T8VC\AdwCleaner[1].exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Deleted on reboot : C:\Program Files\Common Files\AVG Secure Search
File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml
Folder Deleted : C:\DOCUME~1\Erik-PC\LOCALS~1\Temp\avg@toolbar
Folder Deleted : C:\DOCUME~1\Erik-PC\LOCALS~1\Temp\BabylonToolbar
Folder Deleted : C:\DOCUME~1\Erik-PC\LOCALS~1\Temp\boost_interprocess
Folder Deleted : C:\Documents and Settings\All Users\Application Data\AVG Secure Search
Folder Deleted : C:\Documents and Settings\Erik-PC\Application Data\AVG Secure Search
Folder Deleted : C:\Documents and Settings\Erik-PC\Local Settings\Application Data\AVG Secure Search
Folder Deleted : C:\Program Files\AVG Secure Search

***** [Registry] *****

Key Deleted : HKCU\Software\AVG Secure Search
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\MenuExt\&Search
Key Deleted : HKLM\Software\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{13119113-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\escort.escrtBtn.1
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{03119103-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\BabylonToolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

-\\ Mozilla Firefox v17.0 (en-US)

Profile name : default
File : C:\Documents and Settings\Erik-PC\Application Data\Mozilla\Firefox\Profiles\4a0j6r86.default\prefs.js

Deleted : user_pref("browser.search.defaultenginename", "AVG Secure Search");
Deleted : user_pref("browser.search.selectedEngine", "AVG Secure Search");
Deleted : user_pref("extensions.BabylonToolbar_i.aflt", "babsst");
Deleted : user_pref("extensions.BabylonToolbar_i.babExt", "");
Deleted : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=113480");
Deleted : user_pref("extensions.BabylonToolbar_i.hardId", "240fc260000000000000002421cb23ed");
Deleted : user_pref("extensions.BabylonToolbar_i.id", "240fc260000000000000002421cb23ed");
Deleted : user_pref("extensions.BabylonToolbar_i.instlDay", "15536");
Deleted : user_pref("extensions.BabylonToolbar_i.instlRef", "sst");
Deleted : user_pref("extensions.BabylonToolbar_i.newTab", false);
Deleted : user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar");
Deleted : user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon");
Deleted : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
Deleted : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
Deleted : user_pref("extensions.BabylonToolbar_i.tlbrId", "tb9");
Deleted : user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17");
Deleted : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1715:59:06");
Deleted : user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17");
Deleted : user_pref("extensions.ffxtlbr@babylon.com.install-event-fired", true);
Deleted : user_pref("extensions.mywebsearch.prevDefaultEngine", "Google");
Deleted : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
Deleted : user_pref("extensions.mywebsearch.prevKwdURL", "hxxp://search.mywebsearch.com/mywebsearch/GGmain.jht[...]
Deleted : user_pref("extensions.mywebsearch.prevSelectedEngine", "Google");
Deleted : user_pref("extensions.toolbar.mindspark._12Members_.homepage", "hxxp://home.mywebsearch.com/index.jh[...]
Deleted : user_pref("keyword.URL", "hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?st=kwd&ptb=4BD4079F[...]

-\\ Google Chrome v [Unable to get version]

File : C:\Documents and Settings\Erik-PC\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

Deleted [l.8] : homepage = "hxxp://search.babylon.com/?affID=113480&babsrc=HP_ss&mntrId=240fc2600000000000000[...]
Deleted [l.12] : urls_to_restore_on_startup = [ "hxxp://search.babylon.com/?affID=113480&babsrc=HP_ss&mntrI[...]
Deleted [l.35] : icon_url = "hxxps://isearch.avg.com/favicon.ico",
Deleted [l.38] : keyword = "isearch.avg.com",
Deleted [l.41] : search_url = "hxxps://isearch.avg.com/search?cid={A7E6A417-2751-40A8-B76A-E5EA0EE4E08C}&mid=&[...]
Deleted [l.1531] : homepage = "hxxp://search.babylon.com/?affID=113480&babsrc=HP_ss&mntrId=240fc2600000000000000024[...]
Deleted [l.1864] : urls_to_restore_on_startup = [ "hxxp://search.babylon.com/?affID=113480&babsrc=HP_ss&mntrId=2[...]

*************************

AdwCleaner[S1].txt - [6411 octets] - [28/11/2012 15:19:08]

########## EOF - C:\AdwCleaner[S1].txt - [6471 octets] ##########

#8 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,035 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:11:38 AM

Posted 28 November 2012 - 09:09 PM

Looks good now and you are welcome!

If there are no more problems or signs of infection, you should Create a New Restore Point to prevent possible reinfection from an old one. Some of the malware you picked up could have been saved in System Restore. Since this is a protected directory your tools cannot access to delete these files, they sometimes can reinfect your system if you accidentally use an old restore point. Setting a new restore point AFTER cleaning your system will help prevent this and enable your computer to "roll-back" to a clean working state.

The easiest and safest way to do this is:
  • Go to Start > Programs > Accessories > System Tools and click "System Restore".
  • Choose the radio button marked "Create a Restore Point" on the first screen then click "Next". Give the R.P. a name, then click "Create". The new point will be stamped with the current date and time. Keep a log of this so you can find it easily should you need to use System Restore.
  • Then use Disk Cleanup to remove all but the most recently created Restore Point.
  • Go to Start > Run and type: Cleanmgr
  • Click "Ok". Disk Cleanup will scan your files for several minutes, then open.
  • Click the "More Options" tab, then click the "Clean up" button under System Restore.
  • Click Ok. You will be prompted with "Are you sure you want to delete all but the most recent restore point?"
  • Click Yes, then click Ok.
  • Click Yes again when prompted with "Are you sure you want to perform these actions?"
  • Disk Cleanup will remove the files and close automatically.
Vista Users can refer to these links: Create a New Restore Point and Disk Cleanup.

Tips to protect yourself against malware and reduce the potential for re-infection:? Avoid gaming sites, pirated software, cracking tools, keygens, and peer-to-peer (P2P) file sharing programs. They are a security risk which can make your computer susceptible to a smörgåsbord of malware infections, remote attacks, exposure of personal information, and identity theft. Many malicious worms and Trojans spread across P2P file sharing networks, gaming and underground sites. Users visiting such pages may see innocuous-looking banner ads containing code which can trigger pop-up ads and malicious Flash ads that install viruses, Trojans and spyware. Ads are a target for hackers because they offer a stealthy way to distribute malware to a wide range of Internet users. The best way to reduce the risk of infection is to avoid these types of web sites and not use any P2P applications. Read P2P Software User Advisories and Risks of File-Sharing Technology.

? Keeping Autorun enabled on USB and other removable drives has become a significant security risk due to the increasing number of malware variants that can infect them and transfer the infection to your computer. To learn more about this risk, please read:
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#9 albatross_hunter

albatross_hunter
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:38 AM

Posted 28 November 2012 - 10:59 PM

Great thanks again! I truly appreciate your help. Kudos to bleepingcomputer.com and to boopme specifically! :thumbsup:




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users