Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Trojan:JS/Seedabutor.C


  • Please log in to reply
20 replies to this topic

#1 Starrysky

Starrysky

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 31 July 2013 - 11:42 PM

For the past few days I've been getting alerts from MSE saying 

it's removing potentially harmful threat. When I looked in my 

MSE history I noticed the trojan:js/seedabutor.C was in my

quarantined items. I proceeded to remove the virus,but it 

seems to come back everyday. I'll do a scan and nothing

comes up,but shortly after I'll receive another message notifying

me it's removing a potential threat. I ran tdsskiller,no virus (or

threat) was found, but eset did find two threats (win32/bundle.toolbar.ask,

forgot the other threat found). Help would be highly appreciated,thank you!

 



BC AdBot (Login to Remove)

 


#2 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:04:43 PM

Posted 01 August 2013 - 05:44 AM

Hello Starrysky -

A quick idea of what you are dealing with - Threat behavior
Trojan:JS/Seedabutor.C is a detection for a JavaScript that tries to redirect your Internet browser to another website.
 

Please run these scans / reports -

Download Security Check by Screen317 from HERE
* Save it to your Desktop.
* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt; please post the contents of that document.
Note: If a security program requests permission to access the Internet, allow it to do so.

 

 

If you have either of these programs installed, please Update them prior to any scan -

 

 

Download Malwarebytes' Anti-Malware Free (aka MBAM)
* Double-click mbam-setup.exe and follow the prompts to install the program.
* At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform quick scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When completed, a log will open in Notepad.
* Post the log back here.
Be sure to reboot the computer after you post the log.

 

 

Download SUPERAntiSpyware Free (aka SAS)
* Double-click SAS -setup.exe and follow the prompts to install the program.
* At the end, be sure to Check for Updates to be sure it is current
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform quick scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When completed, a log will open in Notepad.
* Post the log back here.

Be sure to reboot the computer after you post the log.

 

 

Please download AdwCleaner by Xplode onto your desktop.

*Close all open programs and internet browsers.
*Double click on adwcleaner.exe to run the tool.
*Click on Delete.
*Confirm each time with Ok.
*Your computer will be rebooted automatically. A text file will open after the restart.

*Please post the contents of that logfile with your next reply.
*You can find the logfile at C:\AdwCleaner[S1].txt as well.

 

 

And lastly, to clean out your Temp / Junk Files -

Please download TFC, or Temp File Cleaner from BleepingComputer downloads
Usage Instructions:

  • Download TFC from the download link above and save the file on your desktop.
  • Close ALL running applications as TFC will terminate them before attempting to clean up the temporary files.
  • Double-click on the TFC icon.
  • When the program opens, click on the Start button.  TFC will terminate the Explorer process and all running applications and then begin the process of cleaning out all of your temp folders.
  • When done, press OK to reboot your computer and finish the cleanup.

Note: Depending on how much data is currently stored in the Temp folders, this process can take quite a while to remove all of the files, so please be patient.

 

 

 

Thank You -



#3 Starrysky

Starrysky
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 01 August 2013 - 11:07 AM

 Results of screen317's Security Check version 0.99.71  
 Windows Vista Service Pack 2 x64 (UAC is enabled)  
 Internet Explorer 7 Out of date! 
``````````````Antivirus/Firewall Check:`````````````` 
 Windows Firewall Enabled!  
Microsoft Security Essentials   
 Antivirus up to date!  
`````````Anti-malware/Other Utilities Check:````````` 
 McAfee SiteAdvisor    
 Malwarebytes Anti-Malware version 1.75.0.1300  
 Java™ 6 Update 39  
 Java 7 Update 25  
 Adobe Flash Player 11.7.700.224  
 Adobe Reader 8 Adobe Reader out of Date! 
 Mozilla Firefox (22.0) 
 Google Chrome 28.0.1500.72  
 Google Chrome 28.0.1500.95  
````````Process Check: objlist.exe by Laurent````````  
 Microsoft Security Essentials MSMpEng.exe 
 Microsoft Security Essentials msseces.exe 
 WinPatrol winpatrol.exe 
 BillP Studios WinPatrol WinPatrol.exe  
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C: 4 % Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log`````````````````````` 


#4 Starrysky

Starrysky
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 01 August 2013 - 11:25 AM

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.07.25.06
 
Windows Vista Service Pack 2 x64 NTFS
Internet Explorer 7.0.6002.18005
Anita :: ANITA-PC [administrator]
 
8/1/2013 12:09:13 PM
mbam-log-2013-08-01 (12-09-13).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 251713
Time elapsed: 15 minute(s), 6 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 0
(No malicious items detected)
 
(end)


#5 Starrysky

Starrysky
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 01 August 2013 - 12:06 PM

SUPERAntiSpyware Scan Log
 
Generated 08/01/2013 at 01:04 PM
 
Application Version : 5.6.1020
 
Core Rules Database Version : 10657
Trace Rules Database Version: 8469
 
Scan type       : Quick Scan
Total Scan Time : 00:08:13
 
Operating System Information
Windows Vista Home Premium 64-bit, Service Pack 2 (Build 6.00.6002)
UAC On - Limited User
 
Memory items scanned      : 646
Memory threats detected   : 0
Registry items scanned    : 59822
Registry threats detected : 0
File items scanned        : 12466
File threats detected     : 328
 
Adware.Tracking Cookie
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\EAZGUQDI.txt [ Cookie:bonnie@zedo.com/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\PLW2FQIM.txt [ Cookie:bonnie@invitemedia.com/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\IDYO48XO.txt [ Cookie:bonnie@primedia.uservoice.com/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\0FFK1VYQ.txt [ Cookie:bonnie@interclick.com/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\76YJYMWQ.txt [ Cookie:bonnie@imrworldwide.com/cgi-bin ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\E0U63FL6.txt [ Cookie:bonnie@collective-media.net/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\QL4QG5JC.txt [ Cookie:bonnie@atdmt.com/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\2V6E0FW5.txt [ Cookie:bonnie@doubleclick.net/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\GDLXEWCP.txt [ Cookie:bonnie@revsci.net/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\D370U12S.txt [ Cookie:bonnie@apmebf.com/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\IG0GPOD0.txt [ Cookie:bonnie@mediaplex.com/ ]
.mediafire.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\EJLYDZDD.txt [ Cookie:bonnie@ru4.com/ ]
C:\USERS\BONNIE\AppData\Roaming\Microsoft\Windows\Cookies\Low\IM4CKRSG.txt [ Cookie:bonnie@questionmarket.com/ ]
forum.blackhairmedia.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
franslikethecountry.storenvy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
franslikethecountry.storenvy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
franslikethecountry.storenvy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
franslikethecountry.storenvy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.franslikethecountry.storenvy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.franslikethecountry.storenvy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.clthebaddestfemale.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
mediatakeout.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.mediaite.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.solvemedia.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.petfinder.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
www.petfinder.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.petfinder.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.cracked.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.cracked.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.cracked.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.cracked.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.cracked.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.nordictrack.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.nordictrack.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
www.lacountyfair.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
clthebaddestfemale.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
clthebaddestfemale.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.linksynergy.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
www.nordictrack.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
www.nordictrack.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.nordictrack.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
www.nordictrack.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.stats.complex.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.stats.complex.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.stats.complex.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.stats.paypal.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\USERS\ANITA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HCFZW97F.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c1.atdmt.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.kontera.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.server.cpmstar.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.server.cpmstar.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.amazon-adsystem.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.amazon-adsystem.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.imrworldwide.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.imrworldwide.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
insight-beacon.torbit.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.kaspersky.122.2o7.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.specificclick.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ad.mlnadvertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.technoratimedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.technoratimedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.legolas-media.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ads.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
track.adform.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.eyeviewads.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.interclick.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.interclick.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.a1.interclick.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clickfuse.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
a.intentmedia.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clickfuse.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.burstnet.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
insight.torbit.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adlegend.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.apmebf.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaplex.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.a1.interclick.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
mediaservices-d.openxenterprise.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
mediaservices-d.openxenterprise.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bs.serving-sys.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.cdn.complexmedianetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.cdn.complexmedianetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.cdn.complexmedianetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.stats.complex.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.stats.complex.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.stats.complex.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.chicagosuntimes.122.2o7.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.dmtracker.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
demandmedia.trc.taboola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
demandmedia.trc.taboola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
demandmedia.trc.taboola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
demandmedia.trc.taboola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.a1.interclick.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.interclick.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
demandmedia.trc.taboola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
demandmedia.trc.taboola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
in.getclicky.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ar.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ar.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ar.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtechus.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.eset.122.2o7.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.at.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.server.cpmstar.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.server.cpmstar.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
track.prd.inpwrd.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.server.cpmstar.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.statcounter.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.xiti.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.xiti.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.estat.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.googleadservices.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaforge.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.steelhousemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.px.steelhousemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaforge.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaforge.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.doubleclick.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.doubleclick.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.doubleclick.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.doubleclick.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats.adotube.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
uk.sitestat.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
uk.sitestat.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.legolas-media.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.hearst.112.2o7.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.overture.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
snap9.advertserve.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clickfuse.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.at.atwola.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lucidmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lucidmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.server.cpmstar.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.smartadserver.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clickfuse.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.network.realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.network.realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.traveladvertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.nordictrack.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.nordictrack.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.nordictrack.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
f.blogads.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
count.carrierzone.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atrack.allposters.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.nordictrack.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.googleadservices.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ads.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ads.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ads.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ads.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ads.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ads.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ads.pointroll.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.a1.interclick.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.a1.interclick.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.interclick.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.nordictrack.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.nordictrack.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.nordictrack.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.nordictrack.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.nordictrack.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.fastclick.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.googleadservices.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
media.wayfair.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.traveladvertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.traveladvertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
network.realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ww251.smartadserver.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adserver.adtechus.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
network.realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.247realmedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tribalfusion.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaplex.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
tracking.searchmarketing.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
sales.liveperson.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
sales.liveperson.net [ C:\USERS\ANITA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]


#6 Starrysky

Starrysky
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 01 August 2013 - 12:30 PM

# AdwCleaner v2.306 - Logfile created 08/01/2013 at 13:22:18
# Updated 19/07/2013 by Xplode
# Operating system : Windows ™ Vista Home Premium Service Pack 2 (64 bits)
# User : Anita - ANITA-PC
# Boot Mode : Normal
# Running from : C:\Users\Anita\Downloads\adwcleaner.exe
# Option [Delete]
 
 
***** [Services] *****
 
 
***** [Files / Folders] *****
 
Deleted on reboot : C:\Program Files (x86)\Ask.com
Deleted on reboot : C:\Program Files (x86)\GamesBar
Deleted on reboot : C:\ProgramData\Ask
Deleted on reboot : C:\Users\Anita\AppData\Local\PackageAware
Deleted on reboot : C:\Users\Anita\AppData\LocalLow\AskToolbar
Deleted on reboot : C:\Users\Bonnie\AppData\Local\APN
Deleted on reboot : C:\Users\Bonnie\AppData\LocalLow\AskToolbar
Deleted on reboot : C:\Users\Bonnie\AppData\Roaming\Mozilla\Firefox\Profiles\0ad2flwo.default\extensions\toolbar@ask.com
Deleted on reboot : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
File Deleted : C:\Users\Bonnie\AppData\Roaming\Mozilla\Firefox\Profiles\0ad2flwo.default\searchplugins\Askcom.xml
 
***** [Registry] *****
 
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\Headlight
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\GamesBarSetup
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}
Key Deleted : HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
 
***** [Internet Browsers] *****
 
-\\ Internet Explorer v7.0.6002.18005
 
[OK] Registry is clean.
 
-\\ Mozilla Firefox v22.0 (en-US)
 
File : C:\Users\Anita\AppData\Roaming\Mozilla\Firefox\Profiles\hcfzw97f.default\prefs.js
 
C:\Users\Anita\AppData\Roaming\Mozilla\Firefox\Profiles\hcfzw97f.default\user.js ... Deleted !
 
Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Deleted : user_pref("browser.search.defaultenginename", "Ask.com");
Deleted : user_pref("browser.search.defaultthis.engineName", "IMVU Inc Customized Web Search");
Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2612669&Sea[...]
Deleted : user_pref("browser.search.order.1", "Ask.com");
Deleted : user_pref("browser.search.selectedEngine", "Ask.com");
Deleted : user_pref("extensions.asktb.ff-original-keyword-url", "");
Deleted : user_pref("keyword.URL", "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=ORJ&o=&locale=&apn_u[...]
Deleted : user_pref("myqna.searchquotes", "Y");
 
File : C:\Users\Bonnie\AppData\Roaming\Mozilla\Firefox\Profiles\0ad2flwo.default\prefs.js
 
Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Deleted : user_pref("browser.search.defaultenginename", "Ask.com");
Deleted : user_pref("browser.search.order.1", "Ask.com");
Deleted : user_pref("browser.search.selectedEngine", "Ask.com");
Deleted : user_pref("extensions.asktb.ff-original-keyword-url", "hxxp://search.yahoo.com/search?fr=mcafee&p=")[...]
 
-\\ Google Chrome v28.0.1500.95
 
File : C:\Users\Anita\AppData\Local\Google\Chrome\User Data\Default\Preferences
 
[OK] File is clean.
 
File : C:\Users\Bonnie\AppData\Local\Google\Chrome\User Data\Default\Preferences
 
Deleted [l.46] : icon_url = "hxxp://www.ask.com/favicon.ico",
Deleted [l.49] : keyword = "ask.com",
Deleted [l.53] : search_url = "hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=E8[...]
Deleted [l.54] : suggest_url = "hxxp://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms[...]
 
*************************
 
AdwCleaner[R1].txt - [6953 octets] - [01/08/2013 13:19:31]
AdwCleaner[R2].txt - [7013 octets] - [01/08/2013 13:21:44]
AdwCleaner[S1].txt - [6644 octets] - [01/08/2013 13:22:18]
 
########## EOF - C:\AdwCleaner[S1].txt - [6704 octets] ##########


#7 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:04:43 PM

Posted 01 August 2013 - 06:05 PM

Hi -
A few severe problems do still pop out at me ......
Internet Explorer 7 Out of date! < < Do you have Windows Updates turned on ? If No then Why ?

IE 8 or 9 should be in use by now since IE 7 was retired a couple of years ago, and this will cause problems.

 

I.E. 8 - Date Published: 11/03/2009 and more modern I.E. 9 install. Please install one -

 

 

 Adobe Reader 8 Adobe Reader out of Date! The current is Version 11 these days.
Untick the offer for Google Add-Ons that are offered with the download.

 

Java™ 6 Update 39 < < This version needs to be removed from Programs and Features

 

GenericAskToolbar.DLL < < From AdwCleaner - Always read your downloads and do not accept these Add-Ons

 

These were some of the "redirect problems" that have been now removed > > >
hxxp://websearch.ask.com/redirect? - hxxp://websearch.ask.com/redirect? - hxxp://ss.websearch.ask.com/query? - IMVU Inc Customized Web Search -

 

Please fix the listed ones, and post back if you want help with any of them, or when you have done them.

 

Then give me a report on how your system is operating -

 

Thank You -



#8 Starrysky

Starrysky
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 01 August 2013 - 07:33 PM

Hi Noknojon!

 

Yes, I do have the Windows Update turned on and I removed/updated the

following programs listed. I looked in my MSE history and found another

Trojan:JS/Seedabutor.C detection (it was found today at 1:06am).  :( 



#9 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:04:43 PM

Posted 01 August 2013 - 10:39 PM

Hi - 2 things -

 

First - Please post a snapshot with Speccy for more system details -
How to Publish a snapshot with Speccy <<--Full Directions Here (Only post the link)

 

At lease your Antivirus is catching it, and it is informing you about it -

We are using another method apart from just re-running ESET again .......

 

If these instructions are a bit long, please print this so you can refer back to it ........

 

Lets continue with another cleaning method -

 

NOTE If you are not 100% sure, Please print this post so that you can do it Step by Step.

Note that I do need the report at the end - So ask if you have questions.

This is very similar to Kaspersky Scanner -

 

1. Please download Dr.Web CureIt! antivirus and save it to your desktop. The file size is in excess of 100MB
2. NOTE: Free usage of Dr.Web CureIt! for business purposes is illegal.
3. Internet Explorer may show a warning when downloading - The file is safe to download from the provided link.
4. Shutdown your antivirus to avoid any conflicts while scanning.
5. Once the scans have completed please re-enable your antivirus.
6. If using Other Active Antimalware, please disable this also.
7. If needed you can also temporarily disable them from starting with Windows
8. Temporarily turn off any other security add-ons or applications you may also have. > How To Temporarily Disable Your Anti-virus
9. Once you have downloaded Dr.Web CureIt! you should right click over it and choose Properties and verify it has a Digital Signature.
10. If it does not have a Digital Signature then do not run it.
11. Close all open programs including all Web browsers and then double-click on drweb-cureit.exe to start the installer.
12. You should have your User Account Control (UAC) enabled for improved security and which should then produce a dialog box asking for approval to run the installer.
13. Click on the Yes button to start the installer.
14. Click OK to scan your computer in the Enhanced Protection Mode
15. Click on the check box to agree to participate in their software improvement program.
16. Then if needed choose your Language by clicking on the small globe like icon in the upper right corner by the wrench.
17. Then click on the Continue button and then click on the Select objects for scanning link just below the "Start scanning" button.
18. Place a check mark on all the items except for Temporary files and System restore points - those items should not have a check mark on them.
19. Then click on the Start scanning button.
20. If a threat is found you can click on the Action column in the program.
21. Your options will be Cure or Ignore
22. If you see an item that you are absolutely sure is OK, then un-check the check box for that item, otherwise keep it on Cure.
23. Then click on the Neutralize button.

 

Very Important From Here On .................
 

24. Once completed click on the green Open Report link. It will open the report in NOTEPAD
25. Save the report to your desktop. The report will be called Cureit.log
26. Close Dr.Web Cureit!
27. Reboot your computer to allow files that were in use to be moved/deleted during reboot.
28. After reboot, attach the log Cureit.log you saved previously in your next reply.
29. Re-Enable your antivirus and other security programs when all done.

 

Thank You -



#10 Starrysky

Starrysky
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 02 August 2013 - 07:11 AM

http://speccy.piriform.com/results/ZF8hRFuU1gMH5LqQ5Ry3m04

 



#11 Starrysky

Starrysky
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 02 August 2013 - 08:54 AM

I ran Dr.Web-Cure It! and no threats were found.



#12 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:04:43 PM

Posted 02 August 2013 - 02:39 PM

Hi -

I would like you to run a Diskcheck on your system -

 

Run a Disk Check on your C: drive in Windows Vista or Windws 7:
• Click the Start button and select Computer

Right-click on C:(or your main hard drive letter) and select Properties

• Click on the Tools tab

• Under Error-checking click the Check Now... button and click Continue at the User Account Control prompt

• Mark the 2 boxes next to Automatically fix file system errors and Scan for and attempt recovery of bad sectors

• Click on the Start button

• When the message box pops up, click the Schedule disk check button and Restart your computer

• Once your computer restarts it will check the drive. Don't press any keys so that it is allowed to fully do so

 

This will take (on average only) from 1 to 2 hours so please be patient while all 5 stages fully run.

If this is a laptop, be sure it is plugged into a power source and not allowed to run just on battery.

Do Not stop the check once it has started, and just let it run -

 

Thank You -



#13 Starrysky

Starrysky
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 02 August 2013 - 07:46 PM

Hello Noknojon,

 

I ran the Diskcheck.  :)



#14 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:04:43 PM

Posted 02 August 2013 - 08:23 PM

OK -

How are things running, and whn was the last infection report from M.S.E. Antivirus ??

 

Can you please tell me what version of Internet Explorer you ended up installing IE 8 or IE 9 ??

It looks like you now have - Internet Explorer Version: 9.0.8112.16421 (is this correct) and how is it running ?

 

You seem to not have Updates turned "on" at the moment ... Windows Update - AutoUpdate:  - Not configured ...........

(from your Speccy Report which is often wrong)

 

Do you get a Yellow Icon in the Tray every month (second Tuesday), or do you just check them at random times ??

Sorry to be a pest, but I just want your computer kept at top operating condition for you  :)

 

Just check-up time prior to any next steps -

 

Thanks -



#15 Starrysky

Starrysky
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:02:43 AM

Posted 03 August 2013 - 09:17 AM

Hello,

 

Everything's running fine,I haven't had any reports from MSE since August 1st,

I don't use internet explorer that much to be honest (it's extremely rare that I 

use it,I use Google Chrome or Firefox),so I don't really know how it's running.

That's weird,I thought I set up the auto-update,I have to admit,I do check them

at random times. x.X






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users