Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Bank Says My PC is Infected


  • Please log in to reply
20 replies to this topic

#1 Hal06

Hal06

  • Members
  • 920 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York, New York, USA
  • Local time:02:47 AM

Posted 31 August 2015 - 01:57 PM

My bank called to confirm an online transaction I made. After confirming it they said that their system noticed that my PC was infected. I found it a bit scary that their systems could detect an infection on my PC.

 

1. Is it possible for the bank's systems to detect a problem on my PC?

 

2. What should I do now to ensure my PC's health?

 

Thanks.



BC AdBot (Login to Remove)

 


#2 Gorbulan

Gorbulan

  • Members
  • 832 posts
  • OFFLINE
  •  
  • Local time:10:47 PM

Posted 31 August 2015 - 02:16 PM

1. They can not detect viruses in your computer. It sounds like a scam call. Somebody may be trying to scare you in to revealing financial details.

 

2. You are in the right place. Just wait patiently, do not bump your post. Somebody with more experience than me is sure to come by and help you scan your computer for malware.

 

Good luck!



#3 JohnC_21

JohnC_21

  • Members
  • 24,024 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:47 AM

Posted 31 August 2015 - 02:20 PM

A bank does not usually call to confirm online transactions. Did you provide any personal information to the person on the line such as a credit card number?



#4 Hal06

Hal06
  • Topic Starter

  • Members
  • 920 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York, New York, USA
  • Local time:02:47 AM

Posted 31 August 2015 - 02:49 PM

On the bank issue I confirmed it was my bank. There is no doubt about that.



#5 JohnC_21

JohnC_21

  • Members
  • 24,024 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:47 AM

Posted 31 August 2015 - 03:11 PM

Okay, that is good to know. What is your current AV? What is your OS?

 

You can run the following scans in order. Post the logs of everything except TFC.

 

TFC    -  a temp file remover

 

Adwcleaner  -  cleans browser infections

 

Junkware Remover  -  cleans browser infections

 

Malwarebytes  -

 

HitmanPro  -  needs an internet connection   30 day demo allows cleaning

 

HitmanPro Alert   needs an internet connection   30 day demo allows cleaning

 

TDSS killer  -  rootkit scanner


Edited by JohnC_21, 31 August 2015 - 03:11 PM.


#6 Hal06

Hal06
  • Topic Starter

  • Members
  • 920 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York, New York, USA
  • Local time:02:47 AM

Posted 31 August 2015 - 04:53 PM

Adware:

 

# AdwCleaner v5.005 - Logfile created 31/08/2015 at 17:49:19
# Updated 31/08/2015 by Xplode
# Database : 2015-08-31.2 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Harold - HAROLD-HP
# Running from : C:\Users\Harold\Downloads\AdwCleaner.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\TweakBit
[-] Folder Deleted : C:\ProgramData\TweakBit
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit
[-] Folder Deleted : C:\Windows\Sysnative\Tasks\TweakBit

***** [ Files ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : TweakBit\Driver Updater\Start Driver Updater ?n logon

***** [ Registry ] *****

[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\Compete
[-] Key Deleted : HKCU\Software\APN PIP
[!] Key Not Deleted : [x64] HKCU\Software\APN PIP
[!] Key Not Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\Compete
[!] Key Not Deleted : HKU\S-1-5-18\Software\AppDataLow\Software\Compete

***** [ Web browsers ] *****


*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1245 bytes] ##########
 



#7 Hal06

Hal06
  • Topic Starter

  • Members
  • 920 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York, New York, USA
  • Local time:02:47 AM

Posted 31 August 2015 - 06:38 PM

HP running Windows 7 and using Microsoft Security Essentials.


Adware

 

# AdwCleaner v5.005 - Logfile created 31/08/2015 at 18:02:06
# Updated 31/08/2015 by Xplode
# Database : 2015-08-31.2 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Harold - HAROLD-HP
# Running from : C:\Users\Harold\Downloads\AdwCleaner.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [626 bytes] ##########
 



#8 Hal06

Hal06
  • Topic Starter

  • Members
  • 920 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York, New York, USA
  • Local time:02:47 AM

Posted 31 August 2015 - 06:45 PM

Junkware:

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.0 (08.31.2015:1)
OS: Windows 7 Home Premium x64
Ran by Harold on Mon 08/31/2015 at 19:39:53.63
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Chrome


[C:\Users\Harold\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\Harold\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\Harold\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\Harold\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mon 08/31/2015 at 19:43:10.06
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 



#9 Hal06

Hal06
  • Topic Starter

  • Members
  • 920 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York, New York, USA
  • Local time:02:47 AM

Posted 31 August 2015 - 06:58 PM

So I've used malewarebytes before with no trouble. But tonight it cancels immediately after starting a scan. What's with that?



#10 JohnC_21

JohnC_21

  • Members
  • 24,024 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:47 AM

Posted 31 August 2015 - 07:41 PM

Malware may be forcing it to close before scanning. Run Rkill first but do not reboot. Then run malwarebytes. If it still does not run then use Chameleon.



#11 Hal06

Hal06
  • Topic Starter

  • Members
  • 920 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York, New York, USA
  • Local time:02:47 AM

Posted 31 August 2015 - 08:01 PM

Rkill 2.8.2 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2015 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 08/31/2015 08:51:52 PM in x64 mode.
Windows Version: Windows 7 Home Premium Service Pack 1

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * No malware processes found to kill.

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * No issues found.

Checking Windows Service Integrity:

 * No issues found.

Searching for Missing Digital Signatures:

 * No issues found.

Checking HOSTS File:

 * No issues found.

Program finished at: 08/31/2015 08:53:49 PM
Execution time: 0 hours(s), 1 minute(s), and 57 seconds(s)
 



#12 JohnC_21

JohnC_21

  • Members
  • 24,024 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:47 AM

Posted 31 August 2015 - 08:12 PM

If you cannot get malwarebytes to run using chameleon then scan with HitmanPro next.



#13 Hal06

Hal06
  • Topic Starter

  • Members
  • 920 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York, New York, USA
  • Local time:02:47 AM

Posted 31 August 2015 - 08:33 PM

Malewarebytes ran but no log? It said it found non-maleware and I deleted them.



#14 JohnC_21

JohnC_21

  • Members
  • 24,024 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:47 AM

Posted 31 August 2015 - 08:40 PM

So far it seems the computer is clean. HitmanPro will pick up any active malware and HitmanPro Alert will find anything based on behavior analysis. Keep HitmanAlert installed for the full 30 days I would stop using Microsoft MSE and use a program like Bitdefender Free. You will need to create an account for Bitdefender Free.



#15 Hal06

Hal06
  • Topic Starter

  • Members
  • 920 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York, New York, USA
  • Local time:02:47 AM

Posted 31 August 2015 - 08:49 PM

HitmanPro 3.7.9.245
www.hitmanpro.com

   Computer name . . . . : HAROLD-HP
   Windows . . . . . . . : 6.1.1.7601.X64/4
   User name . . . . . . : Harold-HP\Harold
   UAC . . . . . . . . . : Enabled
   License . . . . . . . : Free

   Scan date . . . . . . : 2015-08-31 21:35:20
   Scan mode . . . . . . : Normal
   Scan duration . . . . : 9m 28s
   Disk access mode  . . : Direct disk access (SRB)
   Cloud . . . . . . . . : Internet
   Reboot  . . . . . . . : No

   Threats . . . . . . . : 0
   Traces  . . . . . . . : 118

   Objects scanned . . . : 2,061,645
   Files scanned . . . . : 61,893
   Remnants scanned  . . : 421,874 files / 1,577,878 keys

Potential Unwanted Programs _________________________________________________

   HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}\ (ConsumerInput)
   HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}\ (ConsumerInput)
   HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_\ (Crossrider)
   HKU\S-1-5-18\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_\ (Crossrider)
   HKU\S-1-5-21-3909690924-3761086334-1024949271-1000\Software\Microsoft\Windows\CurrentVersion\App Paths\smplayer.exe\ (LiveiStream)

Cookies _____________________________________________________________________

   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:2o7.net
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.360yield.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:adlegend.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.bridgetrack.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.creative-serving.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.cruisingforsex.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.mediade.sk
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.p161.net
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.pointroll.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.pubmatic.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.smartstream.tv
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.stickyadstv.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.trafficjunky.net
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:adtech.de
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:adtechus.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:adultfriendfinder.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:advertising.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:advertising.justusboys.net
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:adverts.adam4adam.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:asianboys.xxx
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:at.atwola.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:atdmt.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:bs.serving-sys.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:casalemedia.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:collective-media.net
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:cruisingforsex.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:engine.phn.doublepimp.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:exoclick.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:fastclick.net
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:freepornhdonline.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:givemegayporn.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:googleadservices.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:hairyguysingayporn.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:in.getclicky.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:media6degrees.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:mediaplex.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:openx.sexsearch.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:pointroll.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:pornhub.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:questionmarket.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:revsci.net
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:ru4.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:serving-sys.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:smartadserver.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:statcounter.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:str8upgayporn.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:tribalfusion.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:youporn.com
   C:\Users\Harold\AppData\Local\Google\Chrome\User Data\Default\Cookies:zedo.com
   C:\Users\Harold\AppData\Roaming\Microsoft\Windows\Cookies\6SPGOGXT.txt
   C:\Users\Harold\AppData\Roaming\Microsoft\Windows\Cookies\JTWBK5BQ.txt
   C:\Users\Harold\AppData\Roaming\Microsoft\Windows\Cookies\VIVM1U4H.txt
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:247realmedia.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:2o7.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ad.360yield.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:adlegend.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.celtra.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.creative-serving.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.inventmx.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.linkedin.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.mediade.sk
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.nexage.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.p161.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.pointroll.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.pubmatic.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.servebom.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.smartstream.tv
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.stickyadstv.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ads.undertone.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:adservingml.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:adtech.de
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:adtechus.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:advertising.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:agryporn.space
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:atdmt.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:atlanticmedia.122.2o7.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:atwola.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:bs.serving-sys.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:burstnet.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:canwestglobal.112.2o7.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:casalemedia.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:cn.clickable.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:collective-media.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:creative-serving.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:doubleclick.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:emjcd.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:fastclick.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:googleadservices.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:hearstmagazines.112.2o7.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:in.getclicky.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:kontera.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:linksynergy.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:media6degrees.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:mediaplex.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:pointroll.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:questionmarket.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:revsci.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:ru4.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:server.cpmstar.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:serving-sys.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:smartadserver.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:specificclick.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:statcounter.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:statse.webtrendslive.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:survey.g.doubleclick.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:track.adform.net
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:tribalfusion.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:weborama.fr
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:www.googleadservices.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:www5.smartadserver.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:xiti.com
   C:\Users\Harold\AppData\Roaming\Mozilla\Firefox\Profiles\h05iluh2.default\cookies.sqlite:zedo.com
 




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users