Jump to content

Help getting started (messed up at step one)


Recommended Posts

Hi

I'm new and have been trying to rid my computer of viruses using Super Anti Spyware, and Avast, I had Mc aphee but it hasn't seemed to help much lately.

Ok I have Microsoft Windows XP, Professional, Version 2002, Service Pack 3,

Dell OPTIPLEX GX270 Intel®, Pentium®, 4 CPU, 2.4GHz, 2.39 GHz, 1GB of RAM

I was following the instructions on Pre-HJT Post Instructions so that I could post a HJT log but have already run into a problem during step one. Ugh!

I had an old version of SpyBot and decided to uninstall that and get the newer 1.6 version so I could run a scan using that and I cannot get the new version of Spybot to install. An error message comes up that says Error sending request a connection with the server could not be established. However I am able to go online just fine so I'm not sure what could be wrong with the conection. I did just reset my Firewall settings to a default state and have been adding programs to it as needed. Do I need to add a port (not sure what that is but it does show that as an option)?

Thanks for any light you can shed on this matter.

Link to post
Share on other sites

Ok I evidently am having problems with some automatic downloads because of my firewall

I unticked the checkbox in front of "download updates during installation" and it worked.

I will just have to download the updates later on manually if it won't work.

Also I just downloaded Malwarebytes freeware too and can't get it to do an update.

I will run the spyware now and post back.

Please let me know anyone if you know how to fix my firewall to allow updates for certain programs. (I already added these programs to the exceptions list in Windows Firewall.

Link to post
Share on other sites

Malwarebytes' Anti-Malware 1.30

Database version: 1442

Windows 5.1.2600 Service Pack 3

12/3/2008 1:52:46 AM

mbam-log-2008-12-03 (01-52-46).txt

Scan type: Quick Scan

Objects scanned: 120952

Time elapsed: 34 minute(s), 41 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 2

Registry Keys Infected: 24

Registry Values Infected: 5

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 10

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

C:\WINDOWS\SYSTEM32\toyoyavi.dll (Trojan.Vundo) -> Delete on reboot.

c:\WINDOWS\SYSTEM32\gekujoni.dll (Trojan.BHO) -> Delete on reboot.

Registry Keys Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0df9c58a-bd06-4be6-b9e5-60085b80e4ac} (Trojan.BHO.H) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{0df9c58a-bd06-4be6-b9e5-60085b80e4ac} (Trojan.BHO.H) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.BHO) -> Delete on reboot.

HKEY_CLASSES_ROOT\CLSID\{87255c51-cd7d-4506-b9ad-97606daf53f3} (Adware.Coupons) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{2b96d5cc-c5b5-49a5-a69d-cc0a30f9028c} (Adware.Minibug) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9522b3fb-7a2b-4646-8af6-36e7f593073c} (Adware.Coupons) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2b96d5cc-c5b5-49a5-a69d-cc0a30f9028c} (Adware.Minibug) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntivirus) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{9522b3fb-7a2b-4646-8af6-36e7f593073c} (Adware.Coupons) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{2eff3cf7-99c1-4c29-bc2b-68e057e22340} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{a6573479-9075-4a65-98a6-19fd29cf7374} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\The Weather Channel (Adware.Hotbar) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Registry Values Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\b0560a8b (Trojan.Vundo) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.BHO) -> Delete on reboot.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\ssodl (Trojan.BHO) -> Delete on reboot.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cpmb3653917 (Trojan.Agent) -> Delete on reboot.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sajonarasa (Trojan.Agent) -> Quarantined and deleted successfully.

Registry Data Items Infected:

(No malicious items detected)

Some items say Delete on Reboot so I will do that next.

Link to post
Share on other sites

Ok Malwarebytes appeared to get rid of the items after I rebooted

I rebooted again this morning and now Spybot Search and Destroy has detected and important registry entry that has been changed.

Category: Shell services

Change: Value Added

Entry: SSODL

New Data: {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}

When I click Deny Change it just keeps coming back up!

any ideas as to what this is?

Link to post
Share on other sites

Panda Scan:

;*******************************************************************************

********************************************************************************

*

*******************

ANALYSIS: 2008-12-03 11:55:06

PROTECTIONS: 2

MALWARE: 31

SUSPECTS: 3

;*******************************************************************************

********************************************************************************

*

*******************

PROTECTIONS

Description Version Active Updated

;===============================================================================

================================================================================

=

===================

COMODO Antivirus 3.5 Yes Yes

avast! antivirus 4.8.1229 [VPS 081130-0] 4.8.1229 Yes Yes

;===============================================================================

================================================================================

=

===================

MALWARE

Id Description Type Active Severity Disinfectable Disinfected Location

;===============================================================================

================================================================================

=

===================

00027660 adware/savenow Adware No 0 Yes No hkey_local_machine\software\microsoft\windows\currentversion\app management\arpcache\savenow

00029258 application/altnet HackTools No 0 Yes No c:\program files\altnet

00029258 application/altnet HackTools No 0 Yes No c:\windows\temp\altnet

00029258 application/altnet HackTools No 0 Yes No c:\hasbro\programs\altnet

00029258 application/altnet HackTools No 0 Yes No hkey_local_machine\software\classes\appid\adm.exe

00029258 application/altnet HackTools No 0 Yes No hkey_local_machine\software\classes\appid\altnet signing module.exe

00029258 application/altnet HackTools No 0 Yes No hkey_classes_root\appid\adm.exe

00029258 application/altnet HackTools No 0 Yes No hkey_local_machine\software\microsoft\windows\currentversion\app management\arpcache\altnetdm

00041446 application/myway HackTools No 0 Yes No HKEY_LOCAL_MACHINE\software\classes\CLSID\{66FC8717-EFA7-4546-8C4A-E224F3A80C76}

00041446 application/myway HackTools No 0 Yes No hkey_classes_root\clsid\{66fc8717-efa7-4546-8c4a-e224f3a80c76}

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.doubleclick.net/]

00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.atdmt.com/]

00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.tradedoubler.com/]

00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.tribalfusion.com/]

00145869 Cookie/SpyLog TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.spylog.com/]

00167642 Cookie/Com.com TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt[.com.com/]

00167642 Cookie/Com.com TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@com[1].txt

00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.xiti.com/]

00167749 Cookie/Toplist TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.toplist.cz/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.bs.serving-sys.com/]

00168097 Cookie/BurstBeacon TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.www.burstbeacon.com/]

00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.server.iad.liveperson.net/]

00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.server.iad.liveperson.net/hc/90874191]

00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.server.iad.liveperson.net/hc/79635536]

00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.advertising.com/]

00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statse.webtrendslive.com/S005-01-7-9-261046-87881]

00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statse.webtrendslive.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.overture.com/]

00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.overture.com/]

00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.overture.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.go.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@go[2].txt

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt[.go.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.go.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt[.go.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt[.go.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt[.go.com/]

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.target.com/]

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt[.target.com/]

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.target.com/]

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@target[1].txt

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\WINDOWS\SYSTEM32\rilihoki.dll

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\WINDOWS\SYSTEM32\kuwalobe.dll

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\WINDOWS\SYSTEM32\kagohaku.dll

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\WINDOWS\SYSTEM32\wiludubu.dll

03839851 Trj/Downloader.MDW Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261711.sys

04184693 Generic Trojan Virus/Trojan No 0 Yes No C:\Documents and Settings\Angela\Local Settings\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\Cache\C2152591d01

04184693 Generic Trojan Virus/Trojan No 0 Yes No C:\Documents and Settings\Angela\Desktop\ComboFix.exe

;===============================================================================

================================================================================

=

===================

SUSPECTS

Sent Location

;===============================================================================

================================================================================

=

===================

No C:\ComboFix\psexec.cfexe

No C:\Documents and Settings\Angela\Desktop\ComboFix.exe[32788R22FWJFW\psexec.cfexe]

No C:\Documents and Settings\Angela\Local Settings\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\Cache\C2152591d01[32788R22FWJFW\psexec.cfexe]

;===============================================================================

================================================================================

=

===================

VULNERABILITIES

Id Severity Description

;===============================================================================

================================================================================

=

===================

;===============================================================================

================================================================================

=

===================

Link to post
Share on other sites

Hijack This Scan:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 12:11:54 PM, on 12/3/2008

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16735)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\csrss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Ahead\InCD\InCDsrv.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\LEXBCES.EXE

C:\WINDOWS\system32\LEXPPS.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Intel\ASF Agent\ASFAgent.exe

C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe

C:\WINDOWS\System32\CTsvcCDA.exe

C:\Program Files\Common Files\Command Software\dvpapi.exe

C:\WINDOWS\System32\nvsvc32.exe

C:\WINDOWS\system32\HPZipm12.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\MsPMSPSv.exe

c:\WINDOWS\system32\ZuneBusEnum.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\System32\alg.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\QuickTime\qttask.exe

C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe

C:\Program Files\Zune\ZuneLauncher.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\Program Files\COMODO\SafeSurf\cssurf.exe

C:\WINDOWS\system32\RUNDLL32.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe

C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

C:\Program Files\Digital Line Detect\DLG.exe

C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe

C:\Program Files\CASIO\YouTube Uploader for CASIO\YStart.exe

C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe

C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearchIndexer.exe

C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe

C:\Program Files\MSN\MSNCoreFiles\MSN.EXE

C:\Program Files\Microsoft Office\Office10\WINWORD.EXE

C:\WINDOWS\msagent\AgentSvr.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

C:\WINDOWS\System32\wbem\wmiprvse.exe

C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearchFilter.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comodo.com/search/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = http://localhost

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {0df9c58a-bd06-4be6-b9e5-60085b80e4ac} - C:\WINDOWS\system32\vegilahu.dll (file missing)

O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll

O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll

O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [diagent] "C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe" startup

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe

O4 - HKLM\..\Run: [Dell AIO Printer A920] "C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [avserve2.exe] C:\WINDOWS\avserve2.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [inCD] C:\Program Files\Ahead\InCD\InCD.exe

O4 - HKLM\..\Run: [VerizonServicepoint.exe] C:\Program Files\Verizon\Servicepoint\VerizonServicepoint.exe

O4 - HKLM\..\Run: [A Verizon App] C:\PROGRA~1\VERIZO~1\HELPSU~1\VERIZO~1.EXE

O4 - HKLM\..\Run: [HPHUPD08] C:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"

O4 - HKLM\..\Run: [eSnips] "C:\Program Files\eSnips\ClientGW.exe"

O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe

O4 - HKLM\..\Run: [Zune Launcher] "c:\Program Files\Zune\ZuneLauncher.exe"

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [COMODO SafeSurf] "C:\Program Files\COMODO\SafeSurf\cssurf.exe" -s

O4 - HKLM\..\Run: [sajonarasa] Rundll32.exe "C:\WINDOWS\system32\zijupaku.dll",s

O4 - HKLM\..\Run: [CPMb3653917] Rundll32.exe "c:\windows\system32\koravulu.dll",a

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet

O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [spyware Cleaner] "C:\Program Files\Spyware Cleaner\SpywareCleaner.Exe" /boot

O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKUS\S-1-5-18\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'Default user')

O4 - Startup: Cyber-shot Viewer Media Check Tool.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe

O4 - Global Startup: Digital Line Detect.lnk = ?

O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE

O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe

O4 - Global Startup: YouTube Uploader for CASIO.lnk = C:\Program Files\CASIO\YouTube Uploader for CASIO\YStart.exe

O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm

O8 - Extra context menu item: &Search - ?p=ZNxmk788YYUS

O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)

O9 - Extra button: Odds Maker - {b3cab7b9-eb43-46a2-8e15-02cc298dec71} - C:\HASBRO\Programs\Odds Maker\Odds Maker.lnk (HKCU)

O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

O15 - Trusted Zone: *.doginhispen.com

O15 - Trusted Zone: *.whataboutadog.com

O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemydsl.verizon.net/sdcCommon...oad/tgctlcm.cab

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/Facebo...toUploader5.cab

O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Monopoly%20Here%20and%20Now/Images/stg_drm.ocx

O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab

O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www2.snapfish.com/SnapfishActivia.cab

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1154377083015

O16 - DPF: {6E704581-CCAE-46D2-9C64-20D724B3624E} (UnagiAx Class) - http://radaol-prod-web-rr.streamops.aol.co...agi3.0.84.2.cab

O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab

O16 - DPF: {A7EA8AD2-287F-11D3-B120-006008C39542} (CBSTIEPrint Class) - http://offers.e-centives.com/cif/download/bin/actxcab.cab

O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Monopoly%20Here%20and%20Now/Images/armhelper.ocx

O16 - DPF: {F127B9BA-89EA-4B04-9C67-2074A9DF61FD} (Photo Upload Plugin Class) - http://cvs.pnimedia.com/upload/activex/v2_...tupv2.0.0.9.cab?

O16 - DPF: {FE5B9F54-7764-4C01-89F0-4862601EE954} (DigWebHelper Class) - http://photos.msn.com/resources/neutral/co....cab?10,0,910,0

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\koravulu.dll

O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\koravulu.dll

O23 - Service: ASF Agent (ASFAgent) - Intel Corporation - C:\Program Files\Intel\ASF Agent\ASFAgent.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe

O23 - Service: DvpApi (dvpapi) - Command Software Systems, Inc. - C:\Program Files\Common Files\Command Software\dvpapi.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe

O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe

O23 - Service: NNServ - Unknown owner - C:\Program Files\NewDotNet\nnrun.exe (file missing)

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

--

End of file - 16510 bytes

Link to post
Share on other sites

on reboot got the following error messages:

MsnMsgr.Exe - Application Error

the application failed to initialize properly (0xc0000022). Click on OK to terminate the application. So I clicked on OK

Also

RUNDLL

Error loading C:\WINDOWS\system32\zijupaku.dll

The specified module could not be found.

so I clicked ok for that too

Getting on the internet and checking email is taking alot longer

However surfing the net is normal speed.

Link to post
Share on other sites

The following information may be important too:

I noticed there was a problem when while on the internet using Internet Explorer or Firefox I would be forced to go to another page which sometimes included an advertisement for some possibly fraud spyware that seemed to start scannning my computer until I could quick hit the X to exit the page.

I then performed scans using AVAST and SuperAntiSpyware and deleted or quarantined a bunch of stuff from my computer. I have been trying to figure out how to copy the info obtained from the AVAST Scan but there appears to be no copy and paste feature in their "Virus Chest". Also the same seems true for the SuperAntiSpyware Program. If there is a way to get a copy of what these programs found I would love to know how so I can post those here too.

Both of these were not able to rid my computer of the popups it now popsup to a blank page instead of an advertisement and as I mentioned now there seems to be a few errors upon startup and logging on the internet and checking email takes FoREver.

Then I found out about Malwarebytes and since have followed the directions here.

Thank you in advance for taking the time to read all of this and helping me!

Link to post
Share on other sites

Ok figured out how to copy and paste for Super Anti Spyware:

I did three scans using Super Anti SpyWare and it found a ton of stuff In fact it is so long I can't post it all at once. sorry :D

Here is the first:

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

Generated 11/26/2008 at 00:39 AM

Application Version : 4.22.1014

Core Rules Database Version : 3653

Trace Rules Database Version: 1635

Scan type : Complete Scan

Total Scan Time : 01:30:55

Memory items scanned : 440

Memory threats detected : 0

Registry items scanned : 7213

Registry threats detected : 805

File items scanned : 30539

File threats detected : 558

Adware.MyWebSearch

HKLM\Software\Classes\CLSID\{00A6FAF1-072E-44cf-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\InprocServer32

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\InprocServer32#ThreadingModel

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\Programmable

C:\PROGRAM FILES\MYWEBSEARCH\SRCHASTT\1.BIN\MWSSRCAS.DLL

HKLM\Software\Classes\CLSID\{00A6FAF6-072E-44cf-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}\InprocServer32

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}\InprocServer32#ThreadingModel

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}\Programmable

HKLM\Software\Classes\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\InprocServer32

HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\InprocServer32#ThreadingModel

C:\PROGRAM FILES\MYWEBSEARCH\BAR\1.BIN\MWSBAR.DLL

HKLM\Software\Classes\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\InprocServer32

HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\InprocServer32#ThreadingModel

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA9-A523-4961-B6BB-170DE4475CCA}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Internet Explorer\URLSearchHooks#{00A6FAF6-072E-44cf-8957-5838F569A31D}

Unclassified.Unknown Origin

HKLM\Software\Classes\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}

HKCR\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}

HKCR\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}

HKCR\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}#AppID

HKCR\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}\InprocServer32

HKCR\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}\InprocServer32#ThreadingModel

HKCR\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}\ProgID

HKCR\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}\Programmable

HKCR\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}\TypeLib

HKCR\CLSID\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}\VersionIndependentProgID

HKCR\toolbar.TB.1

HKCR\toolbar.TB.1\CLSID

HKCR\toolbar.TB

HKCR\toolbar.TB\CLSID

HKCR\toolbar.TB\CurVer

HKCR\TypeLib\{A8954909-1F0F-41A5-A7FA-3B376D69E226}

HKCR\TypeLib\{A8954909-1F0F-41A5-A7FA-3B376D69E226}\1.0

HKCR\TypeLib\{A8954909-1F0F-41A5-A7FA-3B376D69E226}\1.0\0

HKCR\TypeLib\{A8954909-1F0F-41A5-A7FA-3B376D69E226}\1.0\0\win32

HKCR\TypeLib\{A8954909-1F0F-41A5-A7FA-3B376D69E226}\1.0\FLAGS

HKCR\TypeLib\{A8954909-1F0F-41A5-A7FA-3B376D69E226}\1.0\HELPDIR

C:\PROGRAM FILES\WINBUDGET\BIN\MATRIX.DLL

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}

Adware.Vundo Variant

HKLM\Software\Classes\CLSID\{EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}\InprocServer32

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}\InprocServer32#ThreadingModel

C:\WINDOWS\SYSTEM32\VASIDIFU.DLL

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler#{EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad#SSODL

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}

Adware.MyWay

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0494D0D1-F8E0-41AD-92A3-14154ECE70AC}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0494D0D9-F8E0-41AD-92A3-14154ECE70AC}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser#{0494D0D9-F8E0-41AD-92A3-14154ECE70AC}

HKLM\Software\MyWay

C:\Program Files\MyWay\myBar\1.bin\MY2NS.EXE

C:\Program Files\MyWay\myBar\1.bin\MYBAR.DLL

C:\Program Files\MyWay\myBar\1.bin\PARTNER.DAT

C:\Program Files\MyWay\myBar\1.bin

C:\Program Files\MyWay\myBar\Cache\04431C18

C:\Program Files\MyWay\myBar\Cache\0B3C049E

C:\Program Files\MyWay\myBar\Cache\0B9D05EE

C:\Program Files\MyWay\myBar\Cache\0B9D1928.bin

C:\Program Files\MyWay\myBar\Cache\0B9D2B1A.bin

C:\Program Files\MyWay\myBar\Cache\0B9D38A7.bin

C:\Program Files\MyWay\myBar\Cache\50512264

C:\Program Files\MyWay\myBar\Cache\files.ini

C:\Program Files\MyWay\myBar\Cache

C:\Program Files\MyWay\myBar\History\search

C:\Program Files\MyWay\myBar\History

C:\Program Files\MyWay\myBar\NSUrlEcho.ini

C:\Program Files\MyWay\myBar\Settings\prevcfg.htm

C:\Program Files\MyWay\myBar\Settings

C:\Program Files\MyWay\myBar

C:\Program Files\MyWay

Trojan.NewDotNet

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E}

HKU\.DEFAULT\Software\New.net

HKU\S-1-5-18\Software\New.net

C:\WINDOWS\NDNUNINSTALL6_38.EXE

C:\WINDOWS\NDNUNINSTALL7_22.EXE

C:\WINDOWS\NDNUNINSTALL7_48.EXE

InstaFinderK BHO

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4E7BD74F-2B8D-469E-90F0-F66AB581A933}

Adware.Tracking Cookie

C:\Documents and Settings\Angela\Cookies\angela@media.adrevolver[1].txt

C:\Documents and Settings\Angela\Cookies\angela@server.iad.liveperson[2].txt

C:\Documents and Settings\Angela\Cookies\angela@tracking.fathomseo[1].txt

C:\Documents and Settings\Angela\Cookies\angela@doubleclick[2].txt

C:\Documents and Settings\Angela\Cookies\angela@www.burstnet[2].txt

C:\Documents and Settings\Angela\Cookies\angela@lm.logicalmedia[2].txt

C:\Documents and Settings\Angela\Cookies\angela@realmedia[1].txt

C:\Documents and Settings\Angela\Cookies\angela@tradedoubler[1].txt

C:\Documents and Settings\Angela\Cookies\angela@data.coremetrics[1].txt

C:\Documents and Settings\Angela\Cookies\angela@samsclub.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@www.googleadservices[1].txt

C:\Documents and Settings\Angela\Cookies\angela@mediaonenetwork[1].txt

C:\Documents and Settings\Angela\Cookies\angela@adopt.euroclick[1].txt

C:\Documents and Settings\Angela\Cookies\angela@ehg-ioffer.hitbox[1].txt

C:\Documents and Settings\Angela\Cookies\angela@msnportal.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@adrevolver[2].txt

C:\Documents and Settings\Angela\Cookies\angela@www.googleadservices[3].txt

C:\Documents and Settings\Angela\Cookies\angela@partymakerdiscountmegastore[2].txt

C:\Documents and Settings\Angela\Cookies\angela@collective-media[2].txt

C:\Documents and Settings\Angela\Cookies\angela@media.photobucket[1].txt

C:\Documents and Settings\Angela\Cookies\angela@atwola[1].txt

C:\Documents and Settings\Angela\Cookies\angela@parentingteens.about[2].txt

C:\Documents and Settings\Angela\Cookies\angela@www.ticketsnow2[2].txt

C:\Documents and Settings\Angela\Cookies\angela@bs.serving-sys[2].txt

C:\Documents and Settings\Angela\Cookies\angela@media.adrevolver[2].txt

C:\Documents and Settings\Angela\Cookies\angela@adlegend[2].txt

C:\Documents and Settings\Angela\Cookies\angela@burstnet[2].txt

C:\Documents and Settings\Angela\Cookies\angela@download.nmp.neuroticmedia[1].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.lucidmedia[1].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.widgetbucks[1].txt

C:\Documents and Settings\Angela\Cookies\angela@statse.webtrendslive[3].txt

C:\Documents and Settings\Angela\Cookies\angela@angleinteractive.directtrack[2].txt

C:\Documents and Settings\Angela\Cookies\angela@hearstmagazines.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@interclick[2].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.bridgetrack[2].txt

C:\Documents and Settings\Angela\Cookies\angela@track.bestbuy[1].txt

C:\Documents and Settings\Angela\Cookies\angela@bridge1.admarketplace[1].txt

C:\Documents and Settings\Angela\Cookies\angela@neuroticmedia[1].txt

C:\Documents and Settings\Angela\Cookies\angela@server.iad.liveperson[1].txt

C:\Documents and Settings\Angela\Cookies\angela@etoys.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@statse.webtrendslive[2].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.financialcontent[1].txt

C:\Documents and Settings\Angela\Cookies\angela@mediaplex[2].txt

C:\Documents and Settings\Angela\Cookies\angela@zedo[2].txt

C:\Documents and Settings\Angela\Cookies\angela@apmebf[2].txt

C:\Documents and Settings\Angela\Cookies\angela@overture[2].txt

C:\Documents and Settings\Angela\Cookies\angela@revsci[2].txt

C:\Documents and Settings\Angela\Cookies\angela@admarketplace[1].txt

C:\Documents and Settings\Angela\Cookies\angela@10technology.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@network.realmedia[1].txt

C:\Documents and Settings\Angela\Cookies\angela@adbrite[2].txt

C:\Documents and Settings\Angela\Cookies\angela@tribalfusion[1].txt

C:\Documents and Settings\Angela\Cookies\angela@atdmt[1].txt

C:\Documents and Settings\Angela\Cookies\angela@traffic.buyservices[1].txt

C:\Documents and Settings\Angela\Cookies\angela@questionmarket[2].txt

C:\Documents and Settings\Angela\Cookies\angela@tacoda[1].txt

C:\Documents and Settings\Angela\Cookies\angela@specificclick[1].txt

C:\Documents and Settings\Angela\Cookies\angela@fastclick[1].txt

C:\Documents and Settings\Angela\Cookies\angela@dynamic.media.adrevolver[1].txt

C:\Documents and Settings\Angela\Cookies\angela@2o7[2].txt

C:\Documents and Settings\Angela\Cookies\angela@linksynergy[1].txt

C:\Documents and Settings\Angela\Cookies\angela@247realmedia[2].txt

C:\Documents and Settings\Angela\Cookies\angela@imrworldwide[2].txt

C:\Documents and Settings\Angela\Cookies\angela@www.seventeen[1].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.addynamix[1].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.pointroll[2].txt

C:\Documents and Settings\Angela\Cookies\angela@ad.yieldmanager[1].txt

C:\Documents and Settings\Angela\Cookies\angela@advertising[1].txt

C:\Documents and Settings\Angela\Cookies\angela@adopt.specificclick[2].txt

C:\Documents and Settings\Angela\Cookies\angela@seventeen[2].txt

C:\Documents and Settings\Angela\Cookies\angela@tqstats[1].txt

C:\Documents and Settings\Angela\Cookies\angela@statse.webtrendslive[4].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.resellerratings[2].txt

C:\Documents and Settings\Angela\Cookies\angela@casalemedia[1].txt

C:\Documents and Settings\Angela\Cookies\angela@serving-sys[1].txt

C:\Documents and Settings\Angela\Cookies\angela@trafficmp[1].txt

C:\Documents and Settings\Angela\Cookies\angela@kontera[2].txt

C:\Documents and Settings\Angela\Cookies\angela@ehg-foxsports.hitbox[1].txt

C:\Documents and Settings\Angela\Cookies\angela@www.yourhitstats[1].txt

C:\Documents and Settings\Angela\Cookies\angela@www.burstbeacon[2].txt

C:\Documents and Settings\Angela\Cookies\angela@media6degrees[1].txt

C:\Documents and Settings\Angela\Cookies\angela@cache.trafficmp[1].txt

C:\Documents and Settings\Angela\Cookies\angela@media.brandreachsys[2].txt

C:\Documents and Settings\Angela\Cookies\angela@specificmedia[1].txt

C:\Documents and Settings\Angela\Cookies\angela@directtrack[1].txt

C:\Documents and Settings\Angela\Cookies\angela@cbs.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@linksynergy.walmart[2].txt

C:\Documents and Settings\Angela\Cookies\angela@xiti[1].txt

C:\Documents and Settings\Angela\Cookies\angela@incentreward.directtrack[2].txt

C:\Documents and Settings\Angela\Cookies\angela@insightexpressai[2].txt

C:\Documents and Settings\Angela\Cookies\angela@yieldmanager[1].txt

C:\Documents and Settings\Angela\Cookies\angela@statcounter[1].txt

C:\Documents and Settings\Angela\Cookies\angela@buycom.122.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@ads2.slickdeals[1].txt

C:\Documents and Settings\Angela\Cookies\angela@hitbox[1].txt

C:\Documents and Settings\Angela\Cookies\angela@cadburyschweppesamericas.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@azjmp[2].txt

C:\Documents and Settings\Angela\Cookies\angela@view.atdmt[1].txt

C:\Documents and Settings\Angela\Cookies\angela@tracking.gajmp[1].txt

C:\Documents and Settings\Angela\Cookies\angela@microsoftwindows.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@dmtracker[1].txt

C:\Documents and Settings\Angela\Cookies\angela@mediamgr.ugo[1].txt

C:\Documents and Settings\Angela\Cookies\angela@fl01.ct2.comclick[1].txt

C:\Documents and Settings\Angela\Cookies\angela@gostats[1].txt

C:\Documents and Settings\Angela\Cookies\angela@chitika[2].txt

C:\Documents and Settings\Angela\Cookies\angela@kaboose.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@208.122.40[1].txt

C:\Documents and Settings\Angela\Cookies\angela@microsofteducation.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@enhance[2].txt

C:\Documents and Settings\Angela\Cookies\angela@www.googleadservices[4].txt

C:\Documents and Settings\Angela\Cookies\angela@www6.addfreestats[2].txt

C:\Documents and Settings\Angela\Cookies\angela@ordie.adbureau[2].txt

C:\Documents and Settings\Angela\Cookies\angela@lynxtrack[1].txt

C:\Documents and Settings\Angela\Cookies\angela@www.googleadservices[2].txt

C:\Documents and Settings\Angela\Cookies\angela@overviewclicks[1].txt

C:\Documents and Settings\Angela\Cookies\angela@hornymatches[1].txt

C:\Documents and Settings\Angela\Cookies\angela@at.atwola[2].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.ourstage[1].txt

overviewclicks.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.yieldmanager.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.clickbank.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adtrafficdriver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adtrafficdriver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adtrafficdriver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adtrafficdriver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adtrafficdriver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.atdmt.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.atdmt.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.linksynergy.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.linksynergy.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.linksynergy.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.burstnet.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

www.burstnet.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.burstnet.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.burstnet.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.doubleclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.doubleclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.microsoftwindows.112.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.chitika.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

ads2.slickdeals.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.atwola.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.kaboose.112.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.kontera.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.kontera.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.kontera.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.fastclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.fastclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.fastclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.fastclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.mediaplex.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.mediaplex.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.questionmarket.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.questionmarket.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.advertising.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.advertising.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.at.atwola.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.at.atwola.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.advertising.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.advertising.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.advertising.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.advertising.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.tribalfusion.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

server.iad.liveperson.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

server.iad.liveperson.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.etoys.112.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adopt.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adopt.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adopt.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.specificmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adopt.specificclick.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.bizrate.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.bizrate.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.bizrate.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.bizrate.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.bs.serving-sys.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.247realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.247realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.247realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

www.burstbeacon.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

data.coremetrics.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.media6degrees.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.media6degrees.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.media6degrees.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.media6degrees.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.media6degrees.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.zedo.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.zedo.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.zedo.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.zedo.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.zedo.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.hitbox.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ehg-zvents.hitbox.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ehg-zvents.hitbox.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.ehg-paramountfarms.hitbox.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.amsterdamprinting.122.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.linksynergy.walmart.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.linksynergy.walmart.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.linksynergy.walmart.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.trafficmp.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.trafficmp.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.trafficmp.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.trafficmp.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.trafficmp.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.imrworldwide.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.imrworldwide.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.insightexpressai.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adopt.euroclick.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adopt.euroclick.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adopt.euroclick.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adlegend.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adlegend.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.richmedia.yahoo.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.network.realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.realmedia.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.neuroticmedia.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.aarf.122.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.apmebf.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.apmebf.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.interclick.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.interclick.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.interclick.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.interclick.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.harpo.122.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

www.countertracker.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

www.countertracker.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.collective-media.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.collective-media.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.collective-media.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.collective-media.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.media.photobucket.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.media.photobucket.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.media.photobucket.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

login.tracking101.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.a.websponsors.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

ads.bridgetrack.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

ads.bridgetrack.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

www8.addfreestats.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

www3.addfreestats.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.indextools.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

statse.webtrendslive.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

media.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

media.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

media.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

media.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.dynamic.media.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.dynamic.media.adrevolver.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

www.addfreestats.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adecn.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.azjmp.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adbrite.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adbrite.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adbrite.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.adbrite.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.educationcom.112.2o7.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.bravenet.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.bravenet.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.qksrv.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.qksrv.net [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

C:\Documents and Settings\Angie's School Stuff\Cookies\angie's school stuff@belnk[2].txt

C:\Documents and Settings\James\Cookies\james@belnk[1].txt

C:\Documents and Settings\James\Cookies\james@casalemedia[2].txt

C:\Documents and Settings\James\Cookies\james@tribalfusion[1].txt

C:\Documents and Settings\James\Cookies\james@ad.yieldmanager[1].txt

C:\Documents and Settings\James\Cookies\james@realmedia[1].txt

C:\Documents and Settings\James\Cookies\james@fastclick[1].txt

C:\Documents and Settings\James\Cookies\james@atdmt[2].txt

C:\Documents and Settings\James\Cookies\james@adopt.euroclick[2].txt

C:\Documents and Settings\James\Cookies\james@precisionclick[2].txt

C:\Documents and Settings\James\Cookies\james@advertising[2].txt

C:\Documents and Settings\James\Cookies\james@trafficmp[1].txt

Link to post
Share on other sites

Adware.WhenU

HKCR\ACM.ACMFactory

HKCR\ACM.ACMFactory\CLSID

HKCR\ACM.ACMFactory\CurVer

HKCR\ACM.ACMFactory.1

HKCR\ACM.ACMFactory.1\CLSID

HKCR\Interface\{572FB162-C0BA-4EDF-8CFF-E3846153B9B0}

HKCR\Interface\{572FB162-C0BA-4EDF-8CFF-E3846153B9B0}\ProxyStubClsid

HKCR\Interface\{572FB162-C0BA-4EDF-8CFF-E3846153B9B0}\ProxyStubClsid32

HKCR\Interface\{572FB162-C0BA-4EDF-8CFF-E3846153B9B0}\TypeLib

HKCR\Interface\{572FB162-C0BA-4EDF-8CFF-E3846153B9B0}\TypeLib#Version

HKCR\AppId\{127DF9B4-D75D-44A6-AF78-8C3A8CEB03DB}

HKCR\CLSID\{A9AAE1AB-9688-42C5-86F5-C12F6B9015AD}

HKCR\CLSID\{A9AAE1AB-9688-42C5-86F5-C12F6B9015AD}#AppID

HKCR\CLSID\{A9AAE1AB-9688-42C5-86F5-C12F6B9015AD}\InprocServer32

HKCR\CLSID\{A9AAE1AB-9688-42C5-86F5-C12F6B9015AD}\InprocServer32#ThreadingModel

HKCR\CLSID\{A9AAE1AB-9688-42C5-86F5-C12F6B9015AD}\ProgID

HKCR\CLSID\{A9AAE1AB-9688-42C5-86F5-C12F6B9015AD}\Programmable

HKCR\CLSID\{A9AAE1AB-9688-42C5-86F5-C12F6B9015AD}\TypeLib

HKCR\CLSID\{A9AAE1AB-9688-42C5-86F5-C12F6B9015AD}\VersionIndependentProgID

HKCR\AppId\ACM.DLL

HKCR\AppId\ACM.DLL#AppID

HKCR\TypeLib\{DF901432-1B9F-4F5B-9E56-301C553F9095}

HKCR\TypeLib\{DF901432-1B9F-4F5B-9E56-301C553F9095}\1.0

HKCR\TypeLib\{DF901432-1B9F-4F5B-9E56-301C553F9095}\1.0\0

HKCR\TypeLib\{DF901432-1B9F-4F5B-9E56-301C553F9095}\1.0\0\win32

HKCR\TypeLib\{DF901432-1B9F-4F5B-9E56-301C553F9095}\1.0\FLAGS

HKCR\TypeLib\{DF901432-1B9F-4F5B-9E56-301C553F9095}\1.0\HELPDIR

HKCR\Interface\{72A836D1-BC00-43C0-A941-17960E4FB842}

HKCR\Interface\{72A836D1-BC00-43C0-A941-17960E4FB842}\ProxyStubClsid

HKCR\Interface\{72A836D1-BC00-43C0-A941-17960E4FB842}\ProxyStubClsid32

HKCR\Interface\{72A836D1-BC00-43C0-A941-17960E4FB842}\TypeLib

HKCR\Interface\{72A836D1-BC00-43C0-A941-17960E4FB842}\TypeLib#Version

HKCR\Interface\{43382522-A846-46F4-AC57-1F71AE6E1086}

HKCR\Interface\{43382522-A846-46F4-AC57-1F71AE6E1086}\ProxyStubClsid

HKCR\Interface\{43382522-A846-46F4-AC57-1F71AE6E1086}\ProxyStubClsid32

HKCR\Interface\{43382522-A846-46F4-AC57-1F71AE6E1086}\TypeLib

HKCR\Interface\{43382522-A846-46F4-AC57-1F71AE6E1086}\TypeLib#Version

C:\HASBRO\Programs\WhenU\Customer Support.lnk

C:\HASBRO\Programs\WhenU\Learn More About WhenU Save.url

C:\HASBRO\Programs\WhenU\Learn More About WhenU SaveNow.url

C:\HASBRO\Programs\WhenU\Uninstall Instructions.lnk

C:\HASBRO\Programs\WhenU\WhenU.com Website.url

C:\HASBRO\Programs\WhenU

C:\PROGRAM FILES\CD TO WAV AND MP3 RIPPER\M3DEVELOPMENT_WHENUSAVE_INSTALLERINST.EXE

Adware.MyWebSearch/FunWebProducts

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\SOFTWARE\Fun Web Products

HKLM\SOFTWARE\Fun Web Products

HKLM\SOFTWARE\Fun Web Products#JpegConversionLib

HKLM\SOFTWARE\Fun Web Products#CacheDir

HKLM\SOFTWARE\Fun Web Products\CursorLoader

HKLM\SOFTWARE\Fun Web Products\CursorLoader#Dir

HKLM\SOFTWARE\Fun Web Products\MSNMessenger

HKLM\SOFTWARE\Fun Web Products\MSNMessenger#DLLFile

HKLM\SOFTWARE\Fun Web Products\MSNMessenger#DLLDir

HKLM\SOFTWARE\Fun Web Products\ScreenSaver

HKLM\SOFTWARE\Fun Web Products\ScreenSaver#ImagesDir

HKLM\SOFTWARE\Fun Web Products\ScreenSaver#PM

HKLM\SOFTWARE\Fun Web Products\Settings

HKLM\SOFTWARE\Fun Web Products\Settings\AvatarSmallBtn

HKLM\SOFTWARE\Fun Web Products\Settings\AvatarSmallBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\AvatarSmallBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\AvatarSmallBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn

HKLM\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn

HKLM\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\MailStampBtn

HKLM\SOFTWARE\Fun Web Products\Settings\MailStampBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\MailStampBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\MailStampBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn

HKLM\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\MyStationeryBtn

HKLM\SOFTWARE\Fun Web Products\Settings\MyStationeryBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\MyStationeryBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\MyStationeryBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\Promos

HKLM\SOFTWARE\Fun Web Products\Settings\Promos#BuddyTextNone.numActive

HKLM\SOFTWARE\Fun Web Products\Settings\Promos#BuddyTextNone.0

HKLM\SOFTWARE\Fun Web Products\Settings\Promos#BuddyFreqNone

HKLM\SOFTWARE\Fun Web Products\Settings\Promos#BuddyTextUninstalled.numActive

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#HTMLMenuPosDeleted

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#msn.exe.pos

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#iexplore.exe.pos

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\SOFTWARE\FunWebProducts

HKLM\SOFTWARE\FunWebProducts

HKLM\SOFTWARE\FunWebProducts\Installer

HKLM\SOFTWARE\FunWebProducts\Installer#Dir

HKLM\SOFTWARE\FunWebProducts\Installer#CurInstall

HKLM\SOFTWARE\FunWebProducts\Installer#sr

HKLM\SOFTWARE\FunWebProducts\Installer#pl

HKLM\SOFTWARE\FunWebProducts\Installer#CheckForConnection

HKLM\SOFTWARE\FunWebProducts\Installer#CacheDir

HKLM\SOFTWARE\FunWebProducts\Installer\downloaded

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\SOFTWARE\MyWebSearch

HKLM\SOFTWARE\MyWebSearch

HKLM\SOFTWARE\MyWebSearch\bar

HKLM\SOFTWARE\MyWebSearch\bar#Maximized

HKLM\SOFTWARE\MyWebSearch\bar#Visible

HKLM\SOFTWARE\MyWebSearch\bar#pid

HKLM\SOFTWARE\MyWebSearch\bar#fwp

HKLM\SOFTWARE\MyWebSearch\bar#mwsask

HKLM\SOFTWARE\MyWebSearch\bar#un

HKLM\SOFTWARE\MyWebSearch\bar#tiec

HKLM\SOFTWARE\MyWebSearch\bar#Dir

HKLM\SOFTWARE\MyWebSearch\bar#PluginPath

HKLM\SOFTWARE\MyWebSearch\bar#CurInstall

HKLM\SOFTWARE\MyWebSearch\bar#Id

HKLM\SOFTWARE\MyWebSearch\bar#CacheDir

HKLM\SOFTWARE\MyWebSearch\bar#SettingsDir

HKLM\SOFTWARE\MyWebSearch\bar#sr

HKLM\SOFTWARE\MyWebSearch\bar#pl

HKLM\SOFTWARE\MyWebSearch\bar#ConfigRevision

HKLM\SOFTWARE\MyWebSearch\bar#ConfigRevisionURL

HKLM\SOFTWARE\MyWebSearch\bar#ConfigDateStamp

HKLM\SOFTWARE\MyWebSearch\bar#HTMLMenuRevision

HKLM\SOFTWARE\MyWebSearch\bar#sscSet

HKLM\SOFTWARE\MyWebSearch\bar#sscLabel

HKLM\SOFTWARE\MyWebSearch\MWSOEMON

HKLM\SOFTWARE\MyWebSearch\MWSOEMON#Version

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG#Version

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG#Path

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG#StandardSmileyDir.AIM

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.0

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.1

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.3

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.4

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.5

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.6

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.numActive

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.0.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.1.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.2.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.3.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.4.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.5.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.6.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.7.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.8.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.9.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.10.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.11.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.12.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.numActive

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.0.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.1.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.2.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.3.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.4.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.5.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.0

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.1

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.3

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.4

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.5

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.0

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.1

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.3

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.4

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.5

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.6

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promos

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promos#ICQT.numActive

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promos#ICQT.numActive2

HKLM\SOFTWARE\MyWebSearch\OEHosts

HKLM\SOFTWARE\MyWebSearch\OEHosts#boscript

HKLM\SOFTWARE\MyWebSearch\SearchAssistant

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#pid

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#fwp

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#mwsask

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#Dir

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#esh

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#lsp

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#CurInstall

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#sr

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#pl

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#Id

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#ConfigDateStamp

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#ABS

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#DES

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#sscEnabled

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#eintl

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#NextRequest

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#LastRequest

HKLM\SOFTWARE\MyWebSearch\SkinTools

HKLM\SOFTWARE\MyWebSearch\SkinTools#PlayerPath

HKCR\FunWebProducts.DataControl

HKCR\FunWebProducts.DataControl\CLSID

HKCR\FunWebProducts.DataControl\CurVer

HKCR\FunWebProducts.DataControl.1

HKCR\FunWebProducts.DataControl.1\CLSID

HKCR\FunWebProducts.HistoryKillerScheduler

HKCR\FunWebProducts.HistoryKillerScheduler\CLSID

HKCR\FunWebProducts.HistoryKillerScheduler\CurVer

HKCR\FunWebProducts.HistoryKillerScheduler.1

HKCR\FunWebProducts.HistoryKillerScheduler.1\CLSID

HKCR\FunWebProducts.HistorySwatterControlBar

HKCR\FunWebProducts.HistorySwatterControlBar\CLSID

HKCR\FunWebProducts.HistorySwatterControlBar\CurVer

HKCR\FunWebProducts.HistorySwatterControlBar.1

HKCR\FunWebProducts.HistorySwatterControlBar.1\CLSID

HKCR\FunWebProducts.HTMLMenu

HKCR\FunWebProducts.HTMLMenu\CLSID

HKCR\FunWebProducts.HTMLMenu\CurVer

HKCR\FunWebProducts.HTMLMenu.1

HKCR\FunWebProducts.HTMLMenu.1\CLSID

HKCR\FunWebProducts.HTMLMenu.2

HKCR\FunWebProducts.HTMLMenu.2\CLSID

HKCR\FunWebProducts.IECookiesManager

HKCR\FunWebProducts.IECookiesManager\CLSID

HKCR\FunWebProducts.IECookiesManager\CurVer

HKCR\FunWebProducts.IECookiesManager.1

HKCR\FunWebProducts.IECookiesManager.1\CLSID

HKCR\FunWebProducts.KillerObjManager

HKCR\FunWebProducts.KillerObjManager\CLSID

HKCR\FunWebProducts.KillerObjManager\CurVer

HKCR\FunWebProducts.KillerObjManager.1

HKCR\FunWebProducts.KillerObjManager.1\CLSID

HKCR\FunWebProducts.PopSwatterBarButton

HKCR\FunWebProducts.PopSwatterBarButton\CLSID

HKCR\FunWebProducts.PopSwatterBarButton\CurVer

HKCR\FunWebProducts.PopSwatterBarButton.1

HKCR\FunWebProducts.PopSwatterBarButton.1\CLSID

HKCR\FunWebProducts.PopSwatterSettingsControl

HKCR\FunWebProducts.PopSwatterSettingsControl\CLSID

HKCR\FunWebProducts.PopSwatterSettingsControl\CurVer

HKCR\FunWebProducts.PopSwatterSettingsControl.1

HKCR\FunWebProducts.PopSwatterSettingsControl.1\CLSID

HKCR\MyWebSearch.ChatSessionPlugin

HKCR\MyWebSearch.ChatSessionPlugin\CLSID

HKCR\MyWebSearch.ChatSessionPlugin\CurVer

HKCR\MyWebSearch.ChatSessionPlugin.1

HKCR\MyWebSearch.ChatSessionPlugin.1\CLSID

HKCR\MyWebSearch.HTMLPanel

HKCR\MyWebSearch.HTMLPanel\CLSID

HKCR\MyWebSearch.HTMLPanel\CurVer

HKCR\MyWebSearch.HTMLPanel.1

HKCR\MyWebSearch.HTMLPanel.1\CLSID

HKCR\MyWebSearch.OutlookAddin

HKCR\MyWebSearch.OutlookAddin\CLSID

HKCR\MyWebSearch.OutlookAddin\CurVer

HKCR\MyWebSearch.OutlookAddin.1

HKCR\MyWebSearch.OutlookAddin.1\CLSID

HKCR\MyWebSearch.PseudoTransparentPlugin

HKCR\MyWebSearch.PseudoTransparentPlugin\CLSID

HKCR\MyWebSearch.PseudoTransparentPlugin\CurVer

HKCR\MyWebSearch.PseudoTransparentPlugin.1

HKCR\MyWebSearch.PseudoTransparentPlugin.1\CLSID

HKCR\MyWebSearchToolBar.SettingsPlugin

HKCR\MyWebSearchToolBar.SettingsPlugin\CLSID

HKCR\MyWebSearchToolBar.SettingsPlugin\CurVer

HKCR\MyWebSearchToolBar.SettingsPlugin.1

HKCR\MyWebSearchToolBar.SettingsPlugin.1\CLSID

HKCR\MyWebSearchToolBar.ToolbarPlugin

HKCR\MyWebSearchToolBar.ToolbarPlugin\CLSID

HKCR\MyWebSearchToolBar.ToolbarPlugin\CurVer

HKCR\MyWebSearchToolBar.ToolbarPlugin.1

HKCR\MyWebSearchToolBar.ToolbarPlugin.1\CLSID

HKCR\ScreenSaverControl.ScreenSaverInstaller

HKCR\ScreenSaverControl.ScreenSaverInstaller\CLSID

HKCR\ScreenSaverControl.ScreenSaverInstaller\CurVer

HKCR\ScreenSaverControl.ScreenSaverInstaller.1

HKCR\ScreenSaverControl.ScreenSaverInstaller.1\CLSID

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\Control

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\InprocServer32

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\InprocServer32#ThreadingModel

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\MiscStatus

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\MiscStatus\1

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\ProgID

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\Programmable

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\TypeLib

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\Version

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\VersionIndependentProgID

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\InprocServer32

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\InprocServer32#ThreadingModel

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\ProgID

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\Programmable

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\TypeLib

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\VersionIndependentProgID

HKCR\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}

HKCR\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}\TreatAs

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Implemented Categories

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Implemented Categories\{00021493-0000-0000-C000-000000000046}

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\InprocServer32

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\InprocServer32#ThreadingModel

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Instance

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Instance#CLSID

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Instance\InitPropertyBag

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Instance\InitPropertyBag#Url

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\Control

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\InprocServer32

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\InprocServer32#ThreadingModel

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\MiscStatus

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\MiscStatus\1

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\ProgID

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\Programmable

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\TypeLib

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\Version

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\VersionIndependentProgID

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}\InprocServer32

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}\InprocServer32#ThreadingModel

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}\ProgID

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}\VersionIndependentProgID

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\Control

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\InprocServer32

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\InprocServer32#ThreadingModel

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\MiscStatus

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\MiscStatus\1

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\ProgID

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\Programmable

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\TypeLib

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\Version

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\VersionIndependentProgID

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\InprocServer32

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\InprocServer32#ThreadingModel

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\ProgID

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\Programmable

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\TypeLib

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\VersionIndependentProgID

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\InprocServer32

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\InprocServer32#ThreadingModel

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\ProgID

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\Programmable

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\TypeLib

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\VersionIndependentProgID

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\Control

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32#ThreadingModel

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus\1

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\Programmable

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\Version

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\Control

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32#ThreadingModel

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus\1

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\ProgID

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\Programmable

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\Version

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\VersionIndependentProgID

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\Control

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32#ThreadingModel

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus\1

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\Programmable

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\Version

HKCR\CLSID\{84DA4FDF-A1CF-4195-8688-3E961F505983}

HKCR\CLSID\{84DA4FDF-A1CF-4195-8688-3E961F505983}\InprocServer32

HKCR\CLSID\{84DA4FDF-A1CF-4195-8688-3E961F505983}\InprocServer32#ThreadingModel

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\InprocServer32

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\InprocServer32#ThreadingModel

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\ProgID

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\Programmable

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\TypeLib

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\VersionIndependentProgID

HKCR\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}

HKCR\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}\InprocServer32

HKCR\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}\InprocServer32#ThreadingModel

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}\InprocServer32

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}\InprocServer32#ThreadingModel

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}\ProgID

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}\VersionIndependentProgID

HKCR\CLSID\{9AFB8248-617F-460d-9366-D71CDEDA3179}

HKCR\CLSID\{9AFB8248-617F-460d-9366-D71CDEDA3179}\TreatAs

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\InprocServer32

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\InprocServer32#ThreadingModel

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\MiscStatus

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\MiscStatus\1

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\ProgID

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\Programmable

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\TypeLib

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\Version

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\VersionIndependentProgID

HKCR\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3}

HKCR\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3}\TreatAs

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}\InprocServer32

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}\InprocServer32#ThreadingModel

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}\Programmable

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}\TypeLib

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\InprocServer32

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\InprocServer32#ThreadingModel

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\ProgID

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\Programmable

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\VersionIndependentProgID

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\InprocServer32

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\InprocServer32#ThreadingModel

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\MiscStatus

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\MiscStatus\1

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\ProgID

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\Programmable

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\TypeLib

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\Version

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\VersionIndependentProgID

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\InprocServer32

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\InprocServer32#ThreadingModel

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\MiscStatus

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\MiscStatus\1

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\ProgID

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\Programmable

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\TypeLib

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\Version

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\VersionIndependentProgID

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\InprocServer32

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\InprocServer32#ThreadingModel

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\ProgID

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\Programmable

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\TypeLib

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\VersionIndependentProgID

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}\InprocServer32

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}\InprocServer32#ThreadingModel

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}\Programmable

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}\TypeLib

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\Control

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\InprocServer32

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\InprocServer32#ThreadingModel

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\MiscStatus

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\MiscStatus\1

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\ProgID

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\Programmable

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\TypeLib

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\Version

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\VersionIndependentProgID

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0\0

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0\0\win32

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0\FLAGS

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0\HELPDIR

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0\0

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0\0\win32

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0\FLAGS

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0\HELPDIR

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0\0

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0\0\win32

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0\FLAGS

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0\HELPDIR

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0\0

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0\0\win32

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0\FLAGS

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0\HELPDIR

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0\0

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0\0\win32

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0\FLAGS

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0\HELPDIR

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0\0

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0\0\win32

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0\FLAGS

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0\HELPDIR

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0\0

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0\0\win32

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0\FLAGS

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0\HELPDIR

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0\0

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0\0\win32

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0\FLAGS

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0\HELPDIR

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0\0

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0\0\win32

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0\FLAGS

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0\HELPDIR

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0\0

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0\0\win32

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0\FLAGS

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0\HELPDIR

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0\0

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0\0\win32

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0\FLAGS

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0\HELPDIR

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}\ProxyStubClsid

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}\ProxyStubClsid32

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}\TypeLib

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}\TypeLib#Version

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}\ProxyStubClsid

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}\ProxyStubClsid32

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}\TypeLib

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}\TypeLib#Version

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}\ProxyStubClsid

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}\ProxyStubClsid32

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}\TypeLib

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}\TypeLib#Version

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}\ProxyStubClsid

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}\ProxyStubClsid32

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}\TypeLib

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}\TypeLib#Version

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}\ProxyStubClsid

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}\ProxyStubClsid32

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}\TypeLib

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}\TypeLib#Version

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}\ProxyStubClsid

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}\ProxyStubClsid32

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}\TypeLib

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}\TypeLib#Version

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}\ProxyStubClsid

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}\ProxyStubClsid32

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}\TypeLib

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}\TypeLib#Version

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}\ProxyStubClsid

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}\ProxyStubClsid32

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}\TypeLib

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}\TypeLib#Version

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}\ProxyStubClsid

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}\ProxyStubClsid32

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}\TypeLib

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}\TypeLib#Version

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}\ProxyStubClsid

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}\ProxyStubClsid32

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}\TypeLib

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}\TypeLib#Version

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}\ProxyStubClsid

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}\ProxyStubClsid32

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}\TypeLib

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}\TypeLib#Version

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}\ProxyStubClsid

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}\ProxyStubClsid32

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}\TypeLib

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}\TypeLib#Version

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}\ProxyStubClsid

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}\ProxyStubClsid32

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}\TypeLib

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}\TypeLib#Version

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}\ProxyStubClsid

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}\ProxyStubClsid32

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}\TypeLib

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}\TypeLib#Version

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}\ProxyStubClsid

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}\ProxyStubClsid32

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}\TypeLib

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}\TypeLib#Version

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}\ProxyStubClsid

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}\ProxyStubClsid32

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}\TypeLib

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}\TypeLib#Version

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}\ProxyStubClsid

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}\ProxyStubClsid32

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}\TypeLib

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}\TypeLib#Version

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}\ProxyStubClsid

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}\ProxyStubClsid32

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}\TypeLib

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}\TypeLib#Version

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid32

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib#Version

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid32

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib#Version

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid32

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib#Version

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid32

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib#Version

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}\ProxyStubClsid

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}\ProxyStubClsid32

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}\TypeLib

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}\TypeLib#Version

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}\ProxyStubClsid

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}\ProxyStubClsid32

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}\TypeLib

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}\TypeLib#Version

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}\ProxyStubClsid

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}\ProxyStubClsid32

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}\TypeLib

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}\TypeLib#Version

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}\ProxyStubClsid

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}\ProxyStubClsid32

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}\TypeLib

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}\TypeLib#Version

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}\ProxyStubClsid

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}\ProxyStubClsid32

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}\TypeLib

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}\TypeLib#Version

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}\ProxyStubClsid

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}\ProxyStubClsid32

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}\TypeLib

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}\TypeLib#Version

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}\ProxyStubClsid

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}\ProxyStubClsid32

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}\TypeLib

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}\TypeLib#Version

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}\ProxyStubClsid

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}\ProxyStubClsid32

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}\TypeLib

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}\TypeLib#Version

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}\ProxyStubClsid

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}\ProxyStubClsid32

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}\TypeLib

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}\TypeLib#Version

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}\ProxyStubClsid

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}\ProxyStubClsid32

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}\TypeLib

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}\TypeLib#Version

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}\ProxyStubClsid

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}\ProxyStubClsid32

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}\TypeLib

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}\TypeLib#Version

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}\ProxyStubClsid

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}\ProxyStubClsid32

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}\TypeLib

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}\TypeLib#Version

HKLM\Software\FocusInteractive

HKLM\Software\FocusInteractive\bar

HKLM\Software\FocusInteractive\bar\Switches

HKLM\Software\FocusInteractive\bar\Switches#incmail.exe

HKLM\Software\FocusInteractive\bar\Switches#msimn.exe

HKLM\Software\FocusInteractive\bar\Switches#msn.exe

HKLM\Software\FocusInteractive\bar\Switches#outlook.exe

HKLM\Software\FocusInteractive\bar\Switches#waol.exe

HKLM\Software\FocusInteractive\bar\Switches#aim.exe

HKLM\Software\FocusInteractive\bar\Switches#icq.exe

HKLM\Software\FocusInteractive\bar\Switches#icqlite.exe

HKLM\Software\FocusInteractive\bar\Switches#msmsgs.exe

HKLM\Software\FocusInteractive\bar\Switches#msnmsgr.exe

HKLM\Software\FocusInteractive\bar\Switches#ypager.exe

HKLM\Software\FocusInteractive\bar\Switches#au

HKLM\Software\FocusInteractive\bar\Switches#mwsSrcAs.dll

HKLM\Software\FocusInteractive\bar\Switches#ps

HKLM\Software\FocusInteractive\bar\Switches#ok

HKLM\Software\FocusInteractive\bar\Switches#od

HKLM\Software\FocusInteractive\bar\Switches#nk

HKLM\Software\FocusInteractive\bar\Switches#nd

HKLM\Software\FocusInteractive\Email-IM

HKLM\Software\FocusInteractive\Email-IM\0

HKLM\Software\FocusInteractive\Email-IM\0#Toolbar

HKLM\Software\FocusInteractive\Email-IM\0#AppName

HKLM\Software\FocusInteractive\Email-IM\0#Path

HKLM\Software\FocusInteractive\Outlook

HKLM\Software\FocusInteractive\Outlook#MyWebSearch.OutlookAddin

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#DisplayName

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#HelpLink

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#Publisher

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#UninstallString

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#UrlInfoAbout

C:\Program Files\MyWebSearch\bar\1.bin\bak\mwsoemon.exe

C:\Program Files\MyWebSearch\bar\1.bin\bak

C:\Program Files\MyWebSearch\bar\1.bin\F3BKGERR.JPG

C:\Program Files\MyWebSearch\bar\1.bin\F3BROVLY.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3CJPEG.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3DTACTL.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3HISTSW.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3HTMLMU.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3HTTPCT.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3IMSTUB.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3POPSWT.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3PSSAVR.SCR

C:\Program Files\MyWebSearch\bar\1.bin\F3REPROX.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3RESTUB.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3SCHMON.EXE

C:\Program Files\MyWebSearch\bar\1.bin\F3SCRCTR.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3SHLLVW.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3SPACER.WMV

C:\Program Files\MyWebSearch\bar\1.bin\F3WALLPP.DAT

C:\Program Files\MyWebSearch\bar\1.bin\F3WPHOOK.DLL

C:\Program Files\MyWebSearch\bar\1.bin\M3FFXTBR.JAR

C:\Program Files\MyWebSearch\bar\1.bin\M3FFXTBR.MANIFEST

C:\Program Files\MyWebSearch\bar\1.bin\M3HTML.DLL

C:\Program Files\MyWebSearch\bar\1.bin\M3IDLE.DLL

C:\Program Files\MyWebSearch\bar\1.bin\M3IMPIPE.EXE

C:\Program Files\MyWebSearch\bar\1.bin\M3MSG.DLL

C:\Program Files\MyWebSearch\bar\1.bin\M3NTSTBR.JAR

C:\Program Files\MyWebSearch\bar\1.bin\M3NTSTBR.MANIFEST

C:\Program Files\MyWebSearch\bar\1.bin\M3OUTLCN.DLL

C:\Program Files\MyWebSearch\bar\1.bin\M3PLUGIN.DLL

C:\Program Files\MyWebSearch\bar\1.bin\M3SKIN.DLL

C:\Program Files\MyWebSearch\bar\1.bin\M3SKPLAY.EXE

C:\Program Files\MyWebSearch\bar\1.bin\M3SLSRCH.EXE

C:\Program Files\MyWebSearch\bar\1.bin\MWSOEPLG.DLL

C:\Program Files\MyWebSearch\bar\1.bin\MWSOESTB.DLL

C:\Program Files\MyWebSearch\bar\1.bin\NPMYWEBS.DLL

C:\Program Files\MyWebSearch\bar\1.bin

C:\Program Files\MyWebSearch\bar\Avatar\COMMON.F3S

C:\Program Files\MyWebSearch\bar\Avatar

C:\Program Files\MyWebSearch\bar\Cache\02B1F65F.bin

C:\Program Files\MyWebSearch\bar\Cache\02B1F8EF.bin

C:\Program Files\MyWebSearch\bar\Cache\02B20543

C:\Program Files\MyWebSearch\bar\Cache\0417D6F2

C:\Program Files\MyWebSearch\bar\Cache\0417DCAF.bin

C:\Program Files\MyWebSearch\bar\Cache\0417DDF7.bin

C:\Program Files\MyWebSearch\bar\Cache\0417E133.bin

C:\Program Files\MyWebSearch\bar\Cache\0417E5F6.bin

C:\Program Files\MyWebSearch\bar\Cache\0417E7AC.bin

C:\Program Files\MyWebSearch\bar\Cache\0417E896.bin

C:\Program Files\MyWebSearch\bar\Cache\0417EDB6.bin

C:\Program Files\MyWebSearch\bar\Cache\0417F037.bin

C:\Program Files\MyWebSearch\bar\Cache\0417FC9B

C:\Program Files\MyWebSearch\bar\Cache\04224FCB.bin

C:\Program Files\MyWebSearch\bar\Cache\04225C9C.bin

C:\Program Files\MyWebSearch\bar\Cache\04225E52.bin

C:\Program Files\MyWebSearch\bar\Cache\04226101.bin

C:\Program Files\MyWebSearch\bar\Cache\files.ini

C:\Program Files\MyWebSearch\bar\Cache

C:\Program Files\MyWebSearch\bar\Game\CHECKERS.F3S

C:\Program Files\MyWebSearch\bar\Game\CHESS.F3S

C:\Program Files\MyWebSearch\bar\Game\REVERSI.F3S

C:\Program Files\MyWebSearch\bar\Game

C:\Program Files\MyWebSearch\bar\History\search2

C:\Program Files\MyWebSearch\bar\History

C:\Program Files\MyWebSearch\bar\icons\CM.ICO

C:\Program Files\MyWebSearch\bar\icons\MFC.ICO

C:\Program Files\MyWebSearch\bar\icons\PSS.ICO

C:\Program Files\MyWebSearch\bar\icons\SMILEY.ICO

C:\Program Files\MyWebSearch\bar\icons\WB.ICO

C:\Program Files\MyWebSearch\bar\icons\ZWINKY.ICO

C:\Program Files\MyWebSearch\bar\icons

C:\Program Files\MyWebSearch\bar\Message\COMMON.F3S

C:\Program Files\MyWebSearch\bar\Message

C:\Program Files\MyWebSearch\bar\Notifier\COMMON.F3S

C:\Program Files\MyWebSearch\bar\Notifier\DOG.F3S

C:\Program Files\MyWebSearch\bar\Notifier\FISH.F3S

C:\Program Files\MyWebSearch\bar\Notifier\KUNGFU.F3S

C:\Program Files\MyWebSearch\bar\Notifier\LIFEGARD.F3S

C:\Program Files\MyWebSearch\bar\Notifier\MAID.F3S

C:\Program Files\MyWebSearch\bar\Notifier\MAILBOX.F3S

C:\Program Files\MyWebSearch\bar\Notifier\OPERA.F3S

C:\Program Files\MyWebSearch\bar\Notifier\ROBOT.F3S

C:\Program Files\MyWebSearch\bar\Notifier\SEDUCT.F3S

C:\Program Files\MyWebSearch\bar\Notifier\SURFER.F3S

C:\Program Files\MyWebSearch\bar\Notifier

C:\Program Files\MyWebSearch\bar\Settings\prevcfg2.htm

C:\Program Files\MyWebSearch\bar\Settings\setting2.htm

C:\Program Files\MyWebSearch\bar\Settings\settings.dat

C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat

C:\Program Files\MyWebSearch\bar\Settings

C:\Program Files\MyWebSearch\bar

C:\Program Files\MyWebSearch\SrchAstt\1.bin

C:\Program Files\MyWebSearch\SrchAstt

C:\Program Files\MyWebSearch

C:\Program Files\FunWebProducts\ScreenSaver\Images\2C6D6626.urr

C:\Program Files\FunWebProducts\ScreenSaver\Images

C:\Program Files\FunWebProducts\ScreenSaver

C:\Program Files\FunWebProducts\Shared\2C596F3F.dat

C:\Program Files\FunWebProducts\Shared\Cache\AvatarSmallBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\CursorManiaBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\MailStampBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\MyFunCardsIMBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\MyStationeryBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\SmileyCentralBtn.html

C:\Program Files\FunWebProducts\Shared\Cache

C:\Program Files\FunWebProducts\Shared

C:\Program Files\FunWebProducts

Trojan.VideoCach/Gen

HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}

HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}\ProxyStubClsid

HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}\ProxyStubClsid32

HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}\TypeLib

HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}\TypeLib#Version

Adware.Vundo Variant/Rel

HKLM\SOFTWARE\Microsoft\contim

HKLM\SOFTWARE\Microsoft\contim#SysShell

HKLM\SOFTWARE\Microsoft\rdfa

HKLM\SOFTWARE\Microsoft\rdfa#F

HKLM\SOFTWARE\Microsoft\rdfa#N

Trojan.Fake-Alert/Trace

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\SOFTWARE\Microsoft\fias4013

Adware.ClickSpring/Yazzle

C:\DOCUMENTS AND SETTINGS\ANGELA\MY DOCUMENTS\SUDOKUINSTALL.EXE

Link to post
Share on other sites

Here is the Second Scan using Super AntiSpyware: :D

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

Generated 12/01/2008 at 10:39 AM

Application Version : 4.22.1014

Core Rules Database Version : 3656

Trace Rules Database Version: 1637

Scan type : Complete Scan

Total Scan Time : 01:51:21

Memory items scanned : 464

Memory threats detected : 1

Registry items scanned : 7192

Registry threats detected : 738

File items scanned : 30715

File threats detected : 110

Adware.Gudmun/Resident

C:\WINDOWS\SYSTEM32\HILABIDI.DLL

C:\WINDOWS\SYSTEM32\HILABIDI.DLL

Adware.MyWebSearch

HKLM\Software\Classes\CLSID\{00A6FAF1-072E-44cf-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\InprocServer32

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\InprocServer32#ThreadingModel

HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\Programmable

C:\PROGRAM FILES\MYWEBSEARCH\SRCHASTT\1.BIN\MWSSRCAS.DLL

HKLM\Software\Classes\CLSID\{00A6FAF6-072E-44cf-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}\InprocServer32

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}\InprocServer32#ThreadingModel

HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}\Programmable

HKLM\Software\Classes\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\InprocServer32

HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\InprocServer32#ThreadingModel

C:\PROGRAM FILES\MYWEBSEARCH\BAR\1.BIN\MWSBAR.DLL

HKLM\Software\Classes\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\InprocServer32

HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\InprocServer32#ThreadingModel

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA9-A523-4961-B6BB-170DE4475CCA}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Internet Explorer\URLSearchHooks#{00A6FAF6-072E-44cf-8957-5838F569A31D}

Adware.Vundo Variant

HKLM\Software\Classes\CLSID\{EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}\InprocServer32

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}\InprocServer32#ThreadingModel

C:\WINDOWS\SYSTEM32\LISOHEZU.DLL

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler#{EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad#SSODL

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}

Adware.MyWay

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0494D0D1-F8E0-41AD-92A3-14154ECE70AC}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0494D0D9-F8E0-41AD-92A3-14154ECE70AC}

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser#{0494D0D9-F8E0-41AD-92A3-14154ECE70AC}

HKLM\Software\MyWay

C:\Program Files\MyWay\myBar\1.bin\PARTNER.DAT

C:\Program Files\MyWay\myBar\1.bin

C:\Program Files\MyWay\myBar\Cache\04431C18

C:\Program Files\MyWay\myBar\Cache\0B3C049E

C:\Program Files\MyWay\myBar\Cache\0B9D05EE

C:\Program Files\MyWay\myBar\Cache\0B9D1928.bin

C:\Program Files\MyWay\myBar\Cache\0B9D2B1A.bin

C:\Program Files\MyWay\myBar\Cache\0B9D38A7.bin

C:\Program Files\MyWay\myBar\Cache\50512264

C:\Program Files\MyWay\myBar\Cache\files.ini

C:\Program Files\MyWay\myBar\Cache

C:\Program Files\MyWay\myBar\History\search

C:\Program Files\MyWay\myBar\History

C:\Program Files\MyWay\myBar\NSUrlEcho.ini

C:\Program Files\MyWay\myBar\Settings\prevcfg.htm

C:\Program Files\MyWay\myBar\Settings

C:\Program Files\MyWay\myBar

C:\Program Files\MyWay

Adware.Tracking Cookie

C:\Documents and Settings\Angela\Cookies\angela@atdmt[2].txt

C:\Documents and Settings\Angela\Cookies\angela@2o7[2].txt

C:\Documents and Settings\Angela\Cookies\angela@tqstats[1].txt

C:\Documents and Settings\Angela\Cookies\angela@overviewclicks[2].txt

.atdmt.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\Angela\Application Data\Mozilla\Firefox\Profiles\rcjmx05t.default\cookies.txt ]

Adware.MyWebSearch/FunWebProducts

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\SOFTWARE\Fun Web Products

HKLM\SOFTWARE\Fun Web Products

HKLM\SOFTWARE\Fun Web Products#JpegConversionLib

HKLM\SOFTWARE\Fun Web Products#CacheDir

HKLM\SOFTWARE\Fun Web Products\CursorLoader

HKLM\SOFTWARE\Fun Web Products\CursorLoader#Dir

HKLM\SOFTWARE\Fun Web Products\MSNMessenger

HKLM\SOFTWARE\Fun Web Products\MSNMessenger#DLLFile

HKLM\SOFTWARE\Fun Web Products\MSNMessenger#DLLDir

HKLM\SOFTWARE\Fun Web Products\ScreenSaver

HKLM\SOFTWARE\Fun Web Products\ScreenSaver#ImagesDir

HKLM\SOFTWARE\Fun Web Products\ScreenSaver#PM

HKLM\SOFTWARE\Fun Web Products\Settings

HKLM\SOFTWARE\Fun Web Products\Settings\AvatarSmallBtn

HKLM\SOFTWARE\Fun Web Products\Settings\AvatarSmallBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\AvatarSmallBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\AvatarSmallBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn

HKLM\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn

HKLM\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\MailStampBtn

HKLM\SOFTWARE\Fun Web Products\Settings\MailStampBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\MailStampBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\MailStampBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn

HKLM\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\MyStationeryBtn

HKLM\SOFTWARE\Fun Web Products\Settings\MyStationeryBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\MyStationeryBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\MyStationeryBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\Promos

HKLM\SOFTWARE\Fun Web Products\Settings\Promos#BuddyTextNone.numActive

HKLM\SOFTWARE\Fun Web Products\Settings\Promos#BuddyTextNone.0

HKLM\SOFTWARE\Fun Web Products\Settings\Promos#BuddyFreqNone

HKLM\SOFTWARE\Fun Web Products\Settings\Promos#BuddyTextUninstalled.numActive

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#HTMLMenuPosDeleted

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#LastHTMLMenuURL

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#HTMLMenuRevision

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#ETag

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#msn.exe.pos

HKLM\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn#iexplore.exe.pos

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\SOFTWARE\FunWebProducts

HKLM\SOFTWARE\FunWebProducts

HKLM\SOFTWARE\FunWebProducts\Installer

HKLM\SOFTWARE\FunWebProducts\Installer#Dir

HKLM\SOFTWARE\FunWebProducts\Installer#CurInstall

HKLM\SOFTWARE\FunWebProducts\Installer#sr

HKLM\SOFTWARE\FunWebProducts\Installer#pl

HKLM\SOFTWARE\FunWebProducts\Installer#CheckForConnection

HKLM\SOFTWARE\FunWebProducts\Installer#CacheDir

HKLM\SOFTWARE\FunWebProducts\Installer\downloaded

HKLM\SOFTWARE\FunWebProducts\PopSwatter

HKLM\SOFTWARE\FunWebProducts\PopSwatter#backedUp

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\SOFTWARE\MyWebSearch

HKLM\SOFTWARE\MyWebSearch

HKLM\SOFTWARE\MyWebSearch\bar

HKLM\SOFTWARE\MyWebSearch\bar#Maximized

HKLM\SOFTWARE\MyWebSearch\bar#Visible

HKLM\SOFTWARE\MyWebSearch\bar#pid

HKLM\SOFTWARE\MyWebSearch\bar#fwp

HKLM\SOFTWARE\MyWebSearch\bar#mwsask

HKLM\SOFTWARE\MyWebSearch\bar#un

HKLM\SOFTWARE\MyWebSearch\bar#tiec

HKLM\SOFTWARE\MyWebSearch\bar#Dir

HKLM\SOFTWARE\MyWebSearch\bar#PluginPath

HKLM\SOFTWARE\MyWebSearch\bar#CurInstall

HKLM\SOFTWARE\MyWebSearch\bar#Id

HKLM\SOFTWARE\MyWebSearch\bar#CacheDir

HKLM\SOFTWARE\MyWebSearch\bar#SettingsDir

HKLM\SOFTWARE\MyWebSearch\bar#sr

HKLM\SOFTWARE\MyWebSearch\bar#pl

HKLM\SOFTWARE\MyWebSearch\bar#ConfigRevision

HKLM\SOFTWARE\MyWebSearch\bar#ConfigRevisionURL

HKLM\SOFTWARE\MyWebSearch\bar#ConfigDateStamp

HKLM\SOFTWARE\MyWebSearch\bar#HTMLMenuRevision

HKLM\SOFTWARE\MyWebSearch\bar#sscSet

HKLM\SOFTWARE\MyWebSearch\bar#sscLabel

HKLM\SOFTWARE\MyWebSearch\MWSOEMON

HKLM\SOFTWARE\MyWebSearch\MWSOEMON#Version

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG#Version

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG#Path

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG#StandardSmileyDir.AIM

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.0

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.1

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.3

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.4

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.5

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.6

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.numActive

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.0.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.1.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.2.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.3.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.4.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.5.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.6.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.7.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.8.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.9.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.10.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.11.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#Yahoo.12.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.numActive

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.0.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.1.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.2.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.3.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.4.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIM.5.old

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.0

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.1

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.3

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.4

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#AIMT.5

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.0

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.1

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.3

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.4

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.5

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#GoogleTalkHTML.6

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promo#ICQT.numActive2

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promos

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promos#ICQT.numActive

HKLM\SOFTWARE\MyWebSearch\MWSOEPLG\Promos#ICQT.numActive2

HKLM\SOFTWARE\MyWebSearch\OEHosts

HKLM\SOFTWARE\MyWebSearch\OEHosts#boscript

HKLM\SOFTWARE\MyWebSearch\SearchAssistant

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#pid

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#fwp

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#mwsask

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#Dir

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#esh

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#lsp

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#CurInstall

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#sr

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#pl

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#Id

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#ConfigDateStamp

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#ABS

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#DES

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#sscEnabled

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#eintl

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#NextRequest

HKLM\SOFTWARE\MyWebSearch\SearchAssistant#LastRequest

HKLM\SOFTWARE\MyWebSearch\SkinTools

HKLM\SOFTWARE\MyWebSearch\SkinTools#PlayerPath

HKCR\FunWebProducts.DataControl

HKCR\FunWebProducts.DataControl\CLSID

HKCR\FunWebProducts.DataControl\CurVer

HKCR\FunWebProducts.DataControl.1

HKCR\FunWebProducts.DataControl.1\CLSID

HKCR\FunWebProducts.HistoryKillerScheduler

HKCR\FunWebProducts.HistoryKillerScheduler\CLSID

HKCR\FunWebProducts.HistoryKillerScheduler\CurVer

HKCR\FunWebProducts.HistoryKillerScheduler.1

HKCR\FunWebProducts.HistoryKillerScheduler.1\CLSID

HKCR\FunWebProducts.HistorySwatterControlBar

HKCR\FunWebProducts.HistorySwatterControlBar\CLSID

HKCR\FunWebProducts.HistorySwatterControlBar\CurVer

HKCR\FunWebProducts.HistorySwatterControlBar.1

HKCR\FunWebProducts.HistorySwatterControlBar.1\CLSID

HKCR\FunWebProducts.HTMLMenu

HKCR\FunWebProducts.HTMLMenu\CLSID

HKCR\FunWebProducts.HTMLMenu\CurVer

HKCR\FunWebProducts.HTMLMenu.1

HKCR\FunWebProducts.HTMLMenu.1\CLSID

HKCR\FunWebProducts.HTMLMenu.2

HKCR\FunWebProducts.HTMLMenu.2\CLSID

HKCR\FunWebProducts.IECookiesManager

HKCR\FunWebProducts.IECookiesManager\CLSID

HKCR\FunWebProducts.IECookiesManager\CurVer

HKCR\FunWebProducts.IECookiesManager.1

HKCR\FunWebProducts.IECookiesManager.1\CLSID

HKCR\FunWebProducts.KillerObjManager

HKCR\FunWebProducts.KillerObjManager\CLSID

HKCR\FunWebProducts.KillerObjManager\CurVer

HKCR\FunWebProducts.KillerObjManager.1

HKCR\FunWebProducts.KillerObjManager.1\CLSID

HKCR\FunWebProducts.PopSwatterBarButton

HKCR\FunWebProducts.PopSwatterBarButton\CLSID

HKCR\FunWebProducts.PopSwatterBarButton\CurVer

HKCR\FunWebProducts.PopSwatterBarButton.1

HKCR\FunWebProducts.PopSwatterBarButton.1\CLSID

HKCR\FunWebProducts.PopSwatterSettingsControl

HKCR\FunWebProducts.PopSwatterSettingsControl\CLSID

HKCR\FunWebProducts.PopSwatterSettingsControl\CurVer

HKCR\FunWebProducts.PopSwatterSettingsControl.1

HKCR\FunWebProducts.PopSwatterSettingsControl.1\CLSID

HKCR\MyWebSearch.ChatSessionPlugin

HKCR\MyWebSearch.ChatSessionPlugin\CLSID

HKCR\MyWebSearch.ChatSessionPlugin\CurVer

HKCR\MyWebSearch.ChatSessionPlugin.1

HKCR\MyWebSearch.ChatSessionPlugin.1\CLSID

HKCR\MyWebSearch.HTMLPanel

HKCR\MyWebSearch.HTMLPanel\CLSID

HKCR\MyWebSearch.HTMLPanel\CurVer

HKCR\MyWebSearch.HTMLPanel.1

HKCR\MyWebSearch.HTMLPanel.1\CLSID

HKCR\MyWebSearch.OutlookAddin

HKCR\MyWebSearch.OutlookAddin\CLSID

HKCR\MyWebSearch.OutlookAddin\CurVer

HKCR\MyWebSearch.OutlookAddin.1

HKCR\MyWebSearch.OutlookAddin.1\CLSID

HKCR\MyWebSearch.PseudoTransparentPlugin

HKCR\MyWebSearch.PseudoTransparentPlugin\CLSID

HKCR\MyWebSearch.PseudoTransparentPlugin\CurVer

HKCR\MyWebSearch.PseudoTransparentPlugin.1

HKCR\MyWebSearch.PseudoTransparentPlugin.1\CLSID

HKCR\MyWebSearchToolBar.SettingsPlugin

HKCR\MyWebSearchToolBar.SettingsPlugin\CLSID

HKCR\MyWebSearchToolBar.SettingsPlugin\CurVer

HKCR\MyWebSearchToolBar.SettingsPlugin.1

HKCR\MyWebSearchToolBar.SettingsPlugin.1\CLSID

HKCR\MyWebSearchToolBar.ToolbarPlugin

HKCR\MyWebSearchToolBar.ToolbarPlugin\CLSID

HKCR\MyWebSearchToolBar.ToolbarPlugin\CurVer

HKCR\MyWebSearchToolBar.ToolbarPlugin.1

HKCR\MyWebSearchToolBar.ToolbarPlugin.1\CLSID

HKCR\ScreenSaverControl.ScreenSaverInstaller

HKCR\ScreenSaverControl.ScreenSaverInstaller\CLSID

HKCR\ScreenSaverControl.ScreenSaverInstaller\CurVer

HKCR\ScreenSaverControl.ScreenSaverInstaller.1

HKCR\ScreenSaverControl.ScreenSaverInstaller.1\CLSID

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\Control

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\InprocServer32

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\InprocServer32#ThreadingModel

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\MiscStatus

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\MiscStatus\1

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\ProgID

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\Programmable

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\TypeLib

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\Version

HKCR\CLSID\{07B18EAB-A523-4961-B6BB-170DE4475CCA}\VersionIndependentProgID

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\InprocServer32

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\InprocServer32#ThreadingModel

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\ProgID

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\Programmable

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\TypeLib

HKCR\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}\VersionIndependentProgID

HKCR\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}

HKCR\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}\TreatAs

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Implemented Categories

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Implemented Categories\{00021493-0000-0000-C000-000000000046}

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\InprocServer32

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\InprocServer32#ThreadingModel

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Instance

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Instance#CLSID

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Instance\InitPropertyBag

HKCR\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}\Instance\InitPropertyBag#Url

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\Control

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\InprocServer32

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\InprocServer32#ThreadingModel

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\MiscStatus

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\MiscStatus\1

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\ProgID

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\Programmable

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\TypeLib

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\Version

HKCR\CLSID\{25560540-9571-4D7B-9389-0F166788785A}\VersionIndependentProgID

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}\InprocServer32

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}\InprocServer32#ThreadingModel

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}\ProgID

HKCR\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}\VersionIndependentProgID

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\Control

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\InprocServer32

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\InprocServer32#ThreadingModel

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\MiscStatus

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\MiscStatus\1

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\ProgID

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\Programmable

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\TypeLib

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\Version

HKCR\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}\VersionIndependentProgID

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\InprocServer32

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\InprocServer32#ThreadingModel

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\ProgID

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\Programmable

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\TypeLib

HKCR\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}\VersionIndependentProgID

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\InprocServer32

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\InprocServer32#ThreadingModel

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\ProgID

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\Programmable

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\TypeLib

HKCR\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}\VersionIndependentProgID

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\Control

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32#ThreadingModel

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus\1

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\Programmable

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}\Version

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\Control

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32#ThreadingModel

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus\1

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\ProgID

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\Programmable

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\Version

HKCR\CLSID\{7473D294-B7BB-4f24-AE82-7E2CE94BB6A9}\VersionIndependentProgID

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\Control

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\InprocServer32#ThreadingModel

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\MiscStatus\1

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\Programmable

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\CLSID\{7473D296-B7BB-4f24-AE82-7E2CE94BB6A9}\Version

HKCR\CLSID\{84DA4FDF-A1CF-4195-8688-3E961F505983}

HKCR\CLSID\{84DA4FDF-A1CF-4195-8688-3E961F505983}\InprocServer32

HKCR\CLSID\{84DA4FDF-A1CF-4195-8688-3E961F505983}\InprocServer32#ThreadingModel

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\InprocServer32

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\InprocServer32#ThreadingModel

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\ProgID

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\Programmable

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\TypeLib

HKCR\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}\VersionIndependentProgID

HKCR\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}

HKCR\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}\InprocServer32

HKCR\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}\InprocServer32#ThreadingModel

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}\InprocServer32

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}\InprocServer32#ThreadingModel

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}\ProgID

HKCR\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}\VersionIndependentProgID

HKCR\CLSID\{9AFB8248-617F-460d-9366-D71CDEDA3179}

HKCR\CLSID\{9AFB8248-617F-460d-9366-D71CDEDA3179}\TreatAs

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\InprocServer32

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\InprocServer32#ThreadingModel

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\MiscStatus

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\MiscStatus\1

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\ProgID

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\Programmable

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\TypeLib

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\Version

HKCR\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}\VersionIndependentProgID

HKCR\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3}

HKCR\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3}\TreatAs

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}\InprocServer32

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}\InprocServer32#ThreadingModel

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}\Programmable

HKCR\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}\TypeLib

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\InprocServer32

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\InprocServer32#ThreadingModel

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\ProgID

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\Programmable

HKCR\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}\VersionIndependentProgID

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\InprocServer32

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\InprocServer32#ThreadingModel

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\MiscStatus

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\MiscStatus\1

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\ProgID

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\Programmable

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\TypeLib

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\Version

HKCR\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}\VersionIndependentProgID

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\InprocServer32

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\InprocServer32#ThreadingModel

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\MiscStatus

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\MiscStatus\1

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\ProgID

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\Programmable

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\TypeLib

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\Version

HKCR\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}\VersionIndependentProgID

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\InprocServer32

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\InprocServer32#ThreadingModel

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\ProgID

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\Programmable

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\TypeLib

HKCR\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}\VersionIndependentProgID

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}\InprocServer32

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}\InprocServer32#ThreadingModel

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}\Programmable

HKCR\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}\TypeLib

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\Control

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\InprocServer32

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\InprocServer32#ThreadingModel

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\MiscStatus

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\MiscStatus\1

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\ProgID

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\Programmable

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\TypeLib

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\Version

HKCR\CLSID\{E79DFBCA-5697-4fbd-94E5-5B2A9C7C1612}\VersionIndependentProgID

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0\0

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0\0\win32

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0\FLAGS

HKCR\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}\1.0\HELPDIR

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0\0

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0\0\win32

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0\FLAGS

HKCR\TypeLib\{0D26BC71-A633-4E71-AD31-EADC3A1B6A3A}\1.0\HELPDIR

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0\0

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0\0\win32

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0\FLAGS

HKCR\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}\1.0\HELPDIR

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0\0

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0\0\win32

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0\FLAGS

HKCR\TypeLib\{3E720450-B472-4954-B7AA-33069EB53906}\1.0\HELPDIR

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0\0

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0\0\win32

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0\FLAGS

HKCR\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}\1.0\HELPDIR

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0\0

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0\0\win32

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0\FLAGS

HKCR\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}\1.0\HELPDIR

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0\0

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0\0\win32

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0\FLAGS

HKCR\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}\1.0\HELPDIR

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0\0

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0\0\win32

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0\FLAGS

HKCR\TypeLib\{C8CECDE3-1AE1-4C4A-AD82-6D5B00212144}\1.0\HELPDIR

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0\0

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0\0\win32

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0\FLAGS

HKCR\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}\1.0\HELPDIR

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0\0

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0\0\win32

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0\FLAGS

HKCR\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612}\1.0\HELPDIR

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0\0

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0\0\win32

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0\FLAGS

HKCR\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}\1.0\HELPDIR

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}\ProxyStubClsid

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}\ProxyStubClsid32

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}\TypeLib

HKCR\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}\TypeLib#Version

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}\ProxyStubClsid

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}\ProxyStubClsid32

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}\TypeLib

HKCR\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}\TypeLib#Version

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}\ProxyStubClsid

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}\ProxyStubClsid32

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}\TypeLib

HKCR\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}\TypeLib#Version

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}\ProxyStubClsid

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}\ProxyStubClsid32

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}\TypeLib

HKCR\Interface\{120927BF-1700-43BC-810F-FAB92549B390}\TypeLib#Version

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}\ProxyStubClsid

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}\ProxyStubClsid32

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}\TypeLib

HKCR\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}\TypeLib#Version

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}\ProxyStubClsid

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}\ProxyStubClsid32

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}\TypeLib

HKCR\Interface\{1F52A5FA-A705-4415-B975-88503B291728}\TypeLib#Version

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}\ProxyStubClsid

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}\ProxyStubClsid32

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}\TypeLib

HKCR\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}\TypeLib#Version

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}\ProxyStubClsid

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}\ProxyStubClsid32

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}\TypeLib

HKCR\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}\TypeLib#Version

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}\ProxyStubClsid

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}\ProxyStubClsid32

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}\TypeLib

HKCR\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}\TypeLib#Version

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}\ProxyStubClsid

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}\ProxyStubClsid32

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}\TypeLib

HKCR\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}\TypeLib#Version

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}\ProxyStubClsid

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}\ProxyStubClsid32

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}\TypeLib

HKCR\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}\TypeLib#Version

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}\ProxyStubClsid

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}\ProxyStubClsid32

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}\TypeLib

HKCR\Interface\{3E720451-B472-4954-B7AA-33069EB53906}\TypeLib#Version

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}\ProxyStubClsid

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}\ProxyStubClsid32

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}\TypeLib

HKCR\Interface\{3E720453-B472-4954-B7AA-33069EB53906}\TypeLib#Version

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}\ProxyStubClsid

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}\ProxyStubClsid32

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}\TypeLib

HKCR\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}\TypeLib#Version

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}\ProxyStubClsid

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}\ProxyStubClsid32

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}\TypeLib

HKCR\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}\TypeLib#Version

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}\ProxyStubClsid

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}\ProxyStubClsid32

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}\TypeLib

HKCR\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}\TypeLib#Version

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}\ProxyStubClsid

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}\ProxyStubClsid32

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}\TypeLib

HKCR\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A}\TypeLib#Version

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}\ProxyStubClsid

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}\ProxyStubClsid32

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}\TypeLib

HKCR\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}\TypeLib#Version

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid32

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib#Version

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid32

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib#Version

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid32

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\Interface\{7473D295-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib#Version

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}\ProxyStubClsid32

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib

HKCR\Interface\{7473D297-B7BB-4F24-AE82-7E2CE94BB6A9}\TypeLib#Version

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}\ProxyStubClsid

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}\ProxyStubClsid32

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}\TypeLib

HKCR\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}\TypeLib#Version

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}\ProxyStubClsid

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}\ProxyStubClsid32

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}\TypeLib

HKCR\Interface\{991AAC62-B100-47CE-8B75-253965244F69}\TypeLib#Version

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}\ProxyStubClsid

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}\ProxyStubClsid32

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}\TypeLib

HKCR\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC}\TypeLib#Version

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}\ProxyStubClsid

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}\ProxyStubClsid32

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}\TypeLib

HKCR\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}\TypeLib#Version

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}\ProxyStubClsid

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}\ProxyStubClsid32

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}\TypeLib

HKCR\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}\TypeLib#Version

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}\ProxyStubClsid

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}\ProxyStubClsid32

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}\TypeLib

HKCR\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}\TypeLib#Version

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}\ProxyStubClsid

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}\ProxyStubClsid32

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}\TypeLib

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25E}\TypeLib#Version

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}\ProxyStubClsid

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}\ProxyStubClsid32

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}\TypeLib

HKCR\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}\TypeLib#Version

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}\ProxyStubClsid

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}\ProxyStubClsid32

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}\TypeLib

HKCR\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612}\TypeLib#Version

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}\ProxyStubClsid

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}\ProxyStubClsid32

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}\TypeLib

HKCR\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}\TypeLib#Version

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}\ProxyStubClsid

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}\ProxyStubClsid32

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}\TypeLib

HKCR\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}\TypeLib#Version

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}\ProxyStubClsid

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}\ProxyStubClsid32

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}\TypeLib

HKCR\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978}\TypeLib#Version

HKLM\Software\FocusInteractive

HKLM\Software\FocusInteractive\bar

HKLM\Software\FocusInteractive\bar\Switches

HKLM\Software\FocusInteractive\bar\Switches#incmail.exe

HKLM\Software\FocusInteractive\bar\Switches#msimn.exe

HKLM\Software\FocusInteractive\bar\Switches#msn.exe

HKLM\Software\FocusInteractive\bar\Switches#outlook.exe

HKLM\Software\FocusInteractive\bar\Switches#waol.exe

HKLM\Software\FocusInteractive\bar\Switches#aim.exe

HKLM\Software\FocusInteractive\bar\Switches#icq.exe

HKLM\Software\FocusInteractive\bar\Switches#icqlite.exe

HKLM\Software\FocusInteractive\bar\Switches#msmsgs.exe

HKLM\Software\FocusInteractive\bar\Switches#msnmsgr.exe

HKLM\Software\FocusInteractive\bar\Switches#ypager.exe

HKLM\Software\FocusInteractive\bar\Switches#au

HKLM\Software\FocusInteractive\bar\Switches#mwsSrcAs.dll

HKLM\Software\FocusInteractive\bar\Switches#ps

HKLM\Software\FocusInteractive\bar\Switches#ok

HKLM\Software\FocusInteractive\bar\Switches#od

HKLM\Software\FocusInteractive\bar\Switches#nk

HKLM\Software\FocusInteractive\bar\Switches#nd

HKLM\Software\FocusInteractive\Email-IM

HKLM\Software\FocusInteractive\Email-IM\0

HKLM\Software\FocusInteractive\Email-IM\0#Toolbar

HKLM\Software\FocusInteractive\Email-IM\0#AppName

HKLM\Software\FocusInteractive\Email-IM\0#Path

HKLM\Software\FocusInteractive\Outlook

HKLM\Software\FocusInteractive\Outlook#MyWebSearch.OutlookAddin

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#DisplayName

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#HelpLink

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#Publisher

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#UninstallString

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall#UrlInfoAbout

C:\Program Files\MyWebSearch\bar\1.bin\bak

C:\Program Files\MyWebSearch\bar\1.bin\F3BKGERR.JPG

C:\Program Files\MyWebSearch\bar\1.bin\F3HTMLMU.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3REPROX.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3SHLLVW.DLL

C:\Program Files\MyWebSearch\bar\1.bin\F3SPACER.WMV

C:\Program Files\MyWebSearch\bar\1.bin\F3WALLPP.DAT

C:\Program Files\MyWebSearch\bar\1.bin\M3FFXTBR.MANIFEST

C:\Program Files\MyWebSearch\bar\1.bin\M3NTSTBR.MANIFEST

C:\Program Files\MyWebSearch\bar\1.bin

C:\Program Files\MyWebSearch\bar\Avatar\COMMON.F3S

C:\Program Files\MyWebSearch\bar\Avatar

C:\Program Files\MyWebSearch\bar\Cache\02B1F65F.bin

C:\Program Files\MyWebSearch\bar\Cache\02B1F8EF.bin

C:\Program Files\MyWebSearch\bar\Cache\02B20543

C:\Program Files\MyWebSearch\bar\Cache\0417D6F2

C:\Program Files\MyWebSearch\bar\Cache\0417DCAF.bin

C:\Program Files\MyWebSearch\bar\Cache\0417DDF7.bin

C:\Program Files\MyWebSearch\bar\Cache\0417E133.bin

C:\Program Files\MyWebSearch\bar\Cache\0417E5F6.bin

C:\Program Files\MyWebSearch\bar\Cache\0417E7AC.bin

C:\Program Files\MyWebSearch\bar\Cache\0417E896.bin

C:\Program Files\MyWebSearch\bar\Cache\0417EDB6.bin

C:\Program Files\MyWebSearch\bar\Cache\0417F037.bin

C:\Program Files\MyWebSearch\bar\Cache\0417FC9B

C:\Program Files\MyWebSearch\bar\Cache\04224FCB.bin

C:\Program Files\MyWebSearch\bar\Cache\04225C9C.bin

C:\Program Files\MyWebSearch\bar\Cache\04225E52.bin

C:\Program Files\MyWebSearch\bar\Cache\04226101.bin

C:\Program Files\MyWebSearch\bar\Cache\files.ini

C:\Program Files\MyWebSearch\bar\Cache

C:\Program Files\MyWebSearch\bar\Game\CHECKERS.F3S

C:\Program Files\MyWebSearch\bar\Game\CHESS.F3S

C:\Program Files\MyWebSearch\bar\Game\REVERSI.F3S

C:\Program Files\MyWebSearch\bar\Game

C:\Program Files\MyWebSearch\bar\History\search2

C:\Program Files\MyWebSearch\bar\History

C:\Program Files\MyWebSearch\bar\icons\CM.ICO

C:\Program Files\MyWebSearch\bar\icons\MFC.ICO

C:\Program Files\MyWebSearch\bar\icons\PSS.ICO

C:\Program Files\MyWebSearch\bar\icons\SMILEY.ICO

C:\Program Files\MyWebSearch\bar\icons\WB.ICO

C:\Program Files\MyWebSearch\bar\icons\ZWINKY.ICO

C:\Program Files\MyWebSearch\bar\icons

C:\Program Files\MyWebSearch\bar\Message\COMMON.F3S

C:\Program Files\MyWebSearch\bar\Message

C:\Program Files\MyWebSearch\bar\Notifier\COMMON.F3S

C:\Program Files\MyWebSearch\bar\Notifier\DOG.F3S

C:\Program Files\MyWebSearch\bar\Notifier\FISH.F3S

C:\Program Files\MyWebSearch\bar\Notifier\KUNGFU.F3S

C:\Program Files\MyWebSearch\bar\Notifier\LIFEGARD.F3S

C:\Program Files\MyWebSearch\bar\Notifier\MAID.F3S

C:\Program Files\MyWebSearch\bar\Notifier\MAILBOX.F3S

C:\Program Files\MyWebSearch\bar\Notifier\OPERA.F3S

C:\Program Files\MyWebSearch\bar\Notifier\ROBOT.F3S

C:\Program Files\MyWebSearch\bar\Notifier\SEDUCT.F3S

C:\Program Files\MyWebSearch\bar\Notifier\SURFER.F3S

C:\Program Files\MyWebSearch\bar\Notifier

C:\Program Files\MyWebSearch\bar\Settings\prevcfg2.htm

C:\Program Files\MyWebSearch\bar\Settings\setting2.htm

C:\Program Files\MyWebSearch\bar\Settings\settings.dat

C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat

C:\Program Files\MyWebSearch\bar\Settings

C:\Program Files\MyWebSearch\bar

C:\Program Files\MyWebSearch\SrchAstt\1.bin

C:\Program Files\MyWebSearch\SrchAstt

C:\Program Files\MyWebSearch

C:\Program Files\FunWebProducts\ScreenSaver\Images\2C6D6626.urr

C:\Program Files\FunWebProducts\ScreenSaver\Images

C:\Program Files\FunWebProducts\ScreenSaver

C:\Program Files\FunWebProducts\Shared\2C596F3F.dat

C:\Program Files\FunWebProducts\Shared\Cache\AvatarSmallBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\CursorManiaBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\MailStampBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\MyFunCardsIMBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\MyStationeryBtn.html

C:\Program Files\FunWebProducts\Shared\Cache\SmileyCentralBtn.html

C:\Program Files\FunWebProducts\Shared\Cache

C:\Program Files\FunWebProducts\Shared

C:\Program Files\FunWebProducts

Adware.Vundo Variant/Rel

HKLM\SOFTWARE\Microsoft\contim

HKLM\SOFTWARE\Microsoft\contim#SysShell

HKLM\SOFTWARE\Microsoft\rdfa

HKLM\SOFTWARE\Microsoft\rdfa#F

HKLM\SOFTWARE\Microsoft\rdfa#N

Trojan.Fake-Alert/Trace

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\SOFTWARE\Microsoft\fias4013

Trojan.SystemDriver

C:\COMBOFIX\CREG.DAT

Link to post
Share on other sites

Here is what the third and last scan found I did with Super Spyware: :D

I haven't deleted all of these problems that Super Spyware and Avast have found yet~ I just quarantined them. Thank you so much in advance to whoever helps me! I'm just crossing my fingers that someone can help me! It looks like my problem is a messy one ~ I can't believe how many items these scans have found!

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

Generated 12/02/2008 at 09:28 AM

Application Version : 4.22.1014

Core Rules Database Version : 3658

Trace Rules Database Version: 1639

Scan type : Quick Scan

Total Scan Time : 00:46:29

Memory items scanned : 552

Memory threats detected : 0

Registry items scanned : 704

Registry threats detected : 12

File items scanned : 12224

File threats detected : 7

Adware.Vundo Variant

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler#{EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}

HKCR\CLSID\{EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}\InprocServer32

HKCR\CLSID\{EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}\InprocServer32#ThreadingModel

C:\WINDOWS\SYSTEM32\SOYERURU.DLL

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad#SSODL

HKCR\CLSID\{EC43E3FD-5C60-46A6-97D7-E0B85DBDD6C4}

Adware.Tracking Cookie

C:\Documents and Settings\Angela\Cookies\angela@pop.webfile[1].txt

C:\Documents and Settings\Angela\Cookies\angela@atdmt[2].txt

C:\Documents and Settings\Angela\Cookies\angela@2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@tqstats[1].txt

C:\Documents and Settings\Angela\Cookies\angela@ads4.slickdeals[2].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.diamondshark[2].txt

Adware.Vundo Variant/Rel

HKLM\SOFTWARE\Microsoft\contim

HKLM\SOFTWARE\Microsoft\contim#SysShell

HKLM\SOFTWARE\Microsoft\rdfa

HKLM\SOFTWARE\Microsoft\rdfa#F

HKLM\SOFTWARE\Microsoft\rdfa#N

Trojan.Fake-Alert/Trace

HKU\S-1-5-21-3906193499-2007487670-577554360-1005\SOFTWARE\Microsoft\fias4013

Link to post
Share on other sites

I did another full scan today with Malwarebytes:

Malwarebytes' Anti-Malware 1.30

Database version: 1442

Windows 5.1.2600 Service Pack 3

12/4/2008 8:25:45 PM

mbam-log-2008-12-04 (20-25-27).txt

Scan type: Full Scan (C:\|)

Objects scanned: 235567

Time elapsed: 2 hour(s), 47 minute(s), 33 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 2

Registry Keys Infected: 5

Registry Values Infected: 5

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 30

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

C:\WINDOWS\SYSTEM32\batusoka.dll (Trojan.Vundo.H) -> No action taken.

c:\WINDOWS\SYSTEM32\jubasani.dll (Trojan.BHO) -> No action taken.

Registry Keys Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0df9c58a-bd06-4be6-b9e5-60085b80e4ac} (Trojan.BHO.H) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{0df9c58a-bd06-4be6-b9e5-60085b80e4ac} (Trojan.BHO.H) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.BHO) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.

Registry Values Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\b0560a8b (Trojan.Vundo.H) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.BHO) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\ssodl (Trojan.BHO) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cpmb3653917 (Trojan.Agent) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sajonarasa (Trojan.Agent) -> No action taken.

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

C:\WINDOWS\SYSTEM32\batusoka.dll (Trojan.Vundo.H) -> No action taken.

C:\WINDOWS\SYSTEM32\akosutab.ini (Trojan.Vundo.H) -> No action taken.

C:\WINDOWS\SYSTEM32\jepewosi.dll (Trojan.Vundo.H) -> No action taken.

C:\WINDOWS\SYSTEM32\isowepej.ini (Trojan.Vundo.H) -> No action taken.

C:\WINDOWS\SYSTEM32\sazuviyu.dll (Trojan.Vundo.H) -> No action taken.

C:\WINDOWS\SYSTEM32\uyivuzas.ini (Trojan.Vundo.H) -> No action taken.

C:\WINDOWS\SYSTEM32\dehaseha.dll (Trojan.BHO.H) -> No action taken.

c:\WINDOWS\SYSTEM32\jubasani.dll (Trojan.BHO) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261446.DLL (Adware.MyWebSearch) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261447.DLL (Adware.MyWebSearch) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261486.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261487.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261488.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261489.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261490.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261491.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261492.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261493.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261494.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261495.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1530\A0261496.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261664.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261703.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261704.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261705.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261706.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261707.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261708.dll (Trojan.Vundo) -> No action taken.

C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261721.dll (Trojan.Vundo) -> No action taken.

C:\WINDOWS\SYSTEM32\pejokehe.dll (Trojan.Agent) -> No action taken.

Link to post
Share on other sites

Just ran Spybot and it couldn't get rid of 2 items even after a reboot

I will run another malewarebytes scan with updates

not sure if you need this but I think this is the Spybot report There are 2 (I think one before reboot and one after)

--- Report generated: 2008-12-04 23:50 ---

Hint of the Day: Click the bar at the right of this to see more information! ()

Spyware Cleaner: [sBI $DD3B3C0D] Program directory (Directory, fixing failed)

C:\Program Files\Spyware Cleaner\

Microsoft.WindowsSecurityCenter.FirewallBypass: [sBI $D80580B5] Settings (Registry value, fixed)

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\C:\WINDOWS\explorer.exe

Microsoft.WindowsSecurityCenter.FirewallBypass: [sBI $B067B5B7] Settings (Registry value, fixed)

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\C:\WINDOWS\explorer.exe

Altnet: [sBI $3C8FED45] Program directory (Directory, fixing failed)

c:\Program Files\Altnet\

Virtumonde: [sBI $FD08B4B7] Configuration file (File, fixed)

C:\WINDOWS\SYSTEM32\ivayoyot.ini2

Virtumonde: [sBI $D510A69C] Configuration file (File, fixed)

C:\WINDOWS\SYSTEM32\iwutazup.ini

Virtumonde: [sBI $1E12D746] User settings (Registry key, fixed)

HKEY_USERS\S-1-5-21-3906193499-2007487670-577554360-1005\Software\Microsoft\fias4013

Virtumonde.prx: [sBI $3F5CA9DA] Autorun settings (CPMb3653917) (Registry value, fixed)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\CPMb3653917

Virtumonde.prx: [sBI $3F5CA9DA] Program file (File, fixed)

C:\WINDOWS\system32\vohepeyu.dll

Virtumonde.prx: [sBI $3F5CA9DA] Autorun settings (sajonarasa) (Registry value, fixed)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sajonarasa

Clickbank: Tracking cookie (Internet Explorer: Angela) (Cookie, fixed)

CasaleMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

CasaleMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

CasaleMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

CasaleMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

DoubleClick: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

WebTrends live: Tracking cookie (Flock: default) (Cookie, nothing done)

WebTrends live: Tracking cookie (Flock: default) (Cookie, nothing done)

CoreMetrics: Tracking cookie (Flock: default) (Cookie, nothing done)

Tradedoubler: Tracking cookie (Flock: default) (Cookie, nothing done)

CoreMetrics: Tracking cookie (Flock: default) (Cookie, nothing done)

BurstMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

--- Spybot - Search & Destroy version: 1.6.0 (build: 20080707) ---

2008-07-07 blindman.exe (1.0.0.8)

2008-07-07 SDFiles.exe (1.6.0.4)

2008-07-07 SDMain.exe (1.0.0.6)

2008-07-07 SDShred.exe (1.0.2.3)

2008-07-07 SDUpdate.exe (1.6.0.8)

2008-07-07 SDWinSec.exe (1.0.0.12)

2008-07-07 SpybotSD.exe (1.6.0.30)

2008-09-16 TeaTimer.exe (1.6.3.25)

2008-12-02 unins000.exe (51.49.0.0)

2008-07-07 Update.exe (1.6.0.7)

2008-10-22 advcheck.dll (1.6.2.13)

2007-04-02 aports.dll (2.1.0.0)

2008-06-14 DelZip179.dll (1.79.11.1)

2008-07-07 SDHelper.dll (1.6.0.12)

2008-06-19 sqlite3.dll

2008-07-07 Tools.dll (2.1.5.7)

2008-11-04 Includes\Adware.sbi (*)

2008-11-25 Includes\AdwareC.sbi (*)

2008-06-03 Includes\Cookies.sbi (*)

2008-09-02 Includes\Dialer.sbi (*)

2008-09-09 Includes\DialerC.sbi (*)

2008-07-23 Includes\HeavyDuty.sbi (*)

2008-11-18 Includes\Hijackers.sbi (*)

2008-11-18 Includes\HijackersC.sbi (*)

2008-09-09 Includes\Keyloggers.sbi (*)

2008-11-18 Includes\KeyloggersC.sbi (*)

2004-11-29 Includes\LSP.sbi (*)

2008-11-18 Includes\Malware.sbi (*)

2008-12-03 Includes\MalwareC.sbi (*)

2008-11-03 Includes\PUPS.sbi (*)

2008-12-02 Includes\PUPSC.sbi (*)

2007-11-07 Includes\Revision.sbi (*)

2008-06-18 Includes\Security.sbi (*)

2008-12-02 Includes\SecurityC.sbi (*)

2008-06-03 Includes\Spybots.sbi (*)

2008-06-03 Includes\SpybotsC.sbi (*)

2008-11-04 Includes\Spyware.sbi (*)

2008-12-02 Includes\SpywareC.sbi (*)

2008-06-03 Includes\Tracks.uti

2008-11-04 Includes\Trojans.sbi (*)

2008-12-02 Includes\TrojansC.sbi (*)

2008-03-04 Plugins\Chai.dll

2008-03-05 Plugins\Fennel.dll

2008-02-26 Plugins\Mate.dll

2007-12-24 Plugins\TCPIPAddress.dll

--- Report generated: 2008-12-05 07:12 ---

Hint of the Day: Click the bar at the right of this to see more information! ()

Spyware Cleaner: [sBI $DD3B3C0D] Program directory (Directory, fixing failed)

C:\Program Files\Spyware Cleaner\

Altnet: [sBI $3C8FED45] Program directory (Directory, fixing failed)

c:\Program Files\Altnet\

Virtumonde.prx: [sBI $3F5CA9DA] Autorun settings (CPMb3653917) (Registry value, fixed)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\CPMb3653917

Virtumonde.prx: [sBI $3F5CA9DA] Autorun settings (sajonarasa) (Registry value, fixed)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sajonarasa

CasaleMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

CasaleMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

CasaleMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

CasaleMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

DoubleClick: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

HitBox: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

Statcounter: Tracking cookie (Flock: default) (Cookie, nothing done)

WebTrends live: Tracking cookie (Flock: default) (Cookie, nothing done)

WebTrends live: Tracking cookie (Flock: default) (Cookie, nothing done)

CoreMetrics: Tracking cookie (Flock: default) (Cookie, nothing done)

Tradedoubler: Tracking cookie (Flock: default) (Cookie, nothing done)

CoreMetrics: Tracking cookie (Flock: default) (Cookie, nothing done)

BurstMedia: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

Zedo: Tracking cookie (Flock: default) (Cookie, nothing done)

--- Spybot - Search & Destroy version: 1.6.0 (build: 20080707) ---

2008-07-07 blindman.exe (1.0.0.8)

2008-07-07 SDFiles.exe (1.6.0.4)

2008-07-07 SDMain.exe (1.0.0.6)

2008-07-07 SDShred.exe (1.0.2.3)

2008-07-07 SDUpdate.exe (1.6.0.8)

2008-07-07 SDWinSec.exe (1.0.0.12)

2008-07-07 SpybotSD.exe (1.6.0.30)

2008-09-16 TeaTimer.exe (1.6.3.25)

2008-12-02 unins000.exe (51.49.0.0)

2008-07-07 Update.exe (1.6.0.7)

2008-10-22 advcheck.dll (1.6.2.13)

2007-04-02 aports.dll (2.1.0.0)

2008-06-14 DelZip179.dll (1.79.11.1)

2008-07-07 SDHelper.dll (1.6.0.12)

2008-06-19 sqlite3.dll

2008-07-07 Tools.dll (2.1.5.7)

2008-11-04 Includes\Adware.sbi (*)

2008-11-25 Includes\AdwareC.sbi (*)

2008-06-03 Includes\Cookies.sbi (*)

2008-09-02 Includes\Dialer.sbi (*)

2008-09-09 Includes\DialerC.sbi (*)

2008-07-23 Includes\HeavyDuty.sbi (*)

2008-11-18 Includes\Hijackers.sbi (*)

2008-11-18 Includes\HijackersC.sbi (*)

2008-09-09 Includes\Keyloggers.sbi (*)

2008-11-18 Includes\KeyloggersC.sbi (*)

2004-11-29 Includes\LSP.sbi (*)

2008-11-18 Includes\Malware.sbi (*)

2008-12-03 Includes\MalwareC.sbi (*)

2008-11-03 Includes\PUPS.sbi (*)

2008-12-02 Includes\PUPSC.sbi (*)

2007-11-07 Includes\Revision.sbi (*)

2008-06-18 Includes\Security.sbi (*)

2008-12-02 Includes\SecurityC.sbi (*)

2008-06-03 Includes\Spybots.sbi (*)

2008-06-03 Includes\SpybotsC.sbi (*)

2008-11-04 Includes\Spyware.sbi (*)

2008-12-02 Includes\SpywareC.sbi (*)

2008-06-03 Includes\Tracks.uti

2008-11-04 Includes\Trojans.sbi (*)

2008-12-02 Includes\TrojansC.sbi (*)

2008-03-04 Plugins\Chai.dll

2008-03-05 Plugins\Fennel.dll

2008-02-26 Plugins\Mate.dll

2007-12-24 Plugins\TCPIPAddress.dll

Link to post
Share on other sites

Here is another Malwarebytes Scan :

Malwarebytes' Anti-Malware 1.30

Database version: 1442

Windows 5.1.2600 Service Pack 3

12/5/2008 4:05:23 PM

mbam-log-2008-12-05 (16-05-20).txt

Scan type: Full Scan (C:\|)

Objects scanned: 235528

Time elapsed: 2 hour(s), 47 minute(s), 14 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 0

Registry Values Infected: 1

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 0

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

(No malicious items detected)

Registry Values Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sajonarasa (Trojan.Agent) -> No action taken.

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

(No malicious items detected)

I will preform the Panda scan next and post the results.

Link to post
Share on other sites

Panda Scan#2:

;*******************************************************************************

********************************************************************************

*

*******************

ANALYSIS: 2008-12-06 20:40:18

PROTECTIONS: 2

MALWARE: 33

SUSPECTS: 2

;*******************************************************************************

********************************************************************************

*

*******************

PROTECTIONS

Description Version Active Updated

;===============================================================================

================================================================================

=

===================

COMODO Antivirus 3.5 Yes Yes

avast! antivirus 4.8.1229 [VPS 081130-0] 4.8.1229 Yes Yes

;===============================================================================

================================================================================

=

===================

MALWARE

Id Description Type Active Severity Disinfectable Disinfected Location

;===============================================================================

================================================================================

=

===================

00027660 adware/savenow Adware No 0 Yes No hkey_local_machine\software\microsoft\windows\currentversion\app management\arpcache\savenow

00029258 application/altnet HackTools No 0 Yes No c:\program files\altnet

00029258 application/altnet HackTools No 0 Yes No c:\windows\temp\altnet

00029258 application/altnet HackTools No 0 Yes No c:\hasbro\programs\altnet

00029258 application/altnet HackTools No 0 Yes No hkey_local_machine\software\classes\appid\adm.exe

00029258 application/altnet HackTools No 0 Yes No hkey_local_machine\software\classes\appid\altnet signing module.exe

00029258 application/altnet HackTools No 0 Yes No hkey_classes_root\appid\adm.exe

00029258 application/altnet HackTools No 0 Yes No hkey_local_machine\software\microsoft\windows\currentversion\app management\arpcache\altnetdm

00041446 application/myway HackTools No 0 Yes No HKEY_LOCAL_MACHINE\software\classes\CLSID\{66FC8717-EFA7-4546-8C4A-E224F3A80C76}

00041446 application/myway HackTools No 0 Yes No hkey_classes_root\clsid\{66fc8717-efa7-4546-8c4a-e224f3a80c76}

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.doubleclick.net/]

00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@atdmt[2].txt

00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.atdmt.com/]

00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.tradedoubler.com/]

00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.tribalfusion.com/]

00145869 Cookie/SpyLog TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.spylog.com/]

00167642 Cookie/Com.com TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@com[1].txt

00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.xiti.com/]

00167749 Cookie/Toplist TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.toplist.cz/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.bs.serving-sys.com/]

00168097 Cookie/BurstBeacon TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.www.burstbeacon.com/]

00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.server.iad.liveperson.net/hc/90874191]

00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.server.iad.liveperson.net/]

00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.server.iad.liveperson.net/hc/79635536]

00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.advertising.com/]

00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statse.webtrendslive.com/]

00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statse.webtrendslive.com/S005-01-7-9-261046-87881]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.overture.com/]

00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.overture.com/]

00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.overture.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.go.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.go.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@go[1].txt

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@target[1].txt

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.target.com/]

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.target.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\WINDOWS\SYSTEM32\rilihoki.dll

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\WINDOWS\SYSTEM32\kagohaku.dll

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\WINDOWS\SYSTEM32\kuwalobe.dll

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\WINDOWS\SYSTEM32\wiludubu.dll

00471635 Trj/Agent.LBD Virus/Trojan No 0 Yes No C:\WINDOWS\SYSTEM32\vahoremo.dll

00471760 Trj/Agent.LBD Virus/Trojan No 0 Yes No C:\WINDOWS\SYSTEM32\lavejipu.dll

03839851 Trj/Downloader.MDW Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1533\A0261876.sys

04184693 Generic Trojan Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1532\A0261774.exe

;===============================================================================

================================================================================

=

===================

SUSPECTS

Sent Location 7N

;===============================================================================

================================================================================

=

===================

No C:\Documents and Settings\Angela\Local Settings\Temporary Internet Files\Content.IE5\CR42E5JS\box-line-tr[1].gif

No C:\ComboFix\psexec.cfexe 7N

;===============================================================================

================================================================================

=

===================

VULNERABILITIES

Id Severity Description 7N

;===============================================================================

================================================================================

=

===================

;===============================================================================

================================================================================

=

===================

Link to post
Share on other sites

Hijack This Log #2:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 8:48:34 PM, on 12/6/2008

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16735)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Ahead\InCD\InCDsrv.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\LEXBCES.EXE

C:\WINDOWS\system32\LEXPPS.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Intel\ASF Agent\ASFAgent.exe

C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe

C:\WINDOWS\System32\CTsvcCDA.exe

C:\Program Files\Common Files\Command Software\dvpapi.exe

C:\WINDOWS\System32\nvsvc32.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\MsPMSPSv.exe

c:\WINDOWS\system32\ZuneBusEnum.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\Program Files\QuickTime\qttask.exe

C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe

C:\Program Files\Zune\ZuneLauncher.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\Program Files\COMODO\SafeSurf\cssurf.exe

C:\WINDOWS\system32\RUNDLL32.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe

C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

C:\Program Files\Digital Line Detect\DLG.exe

C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe

C:\Program Files\CASIO\YouTube Uploader for CASIO\YStart.exe

C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe

C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearchIndexer.exe

C:\WINDOWS\system32\rundll32.exe

C:\Program Files\MSN\MSNCoreFiles\MSN.EXE

C:\WINDOWS\system32\taskmgr.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comodo.com/search/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://go.microsoft.com/fwlink/?LinkId=54843

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = http://localhost

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {0df9c58a-bd06-4be6-b9e5-60085b80e4ac} - C:\WINDOWS\system32\holiditu.dll

O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll

O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll

O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [diagent] "C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe" startup

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe

O4 - HKLM\..\Run: [Dell AIO Printer A920] "C:\Program Files\Dell AIO Printer A920\dlbkbmgr.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [avserve2.exe] C:\WINDOWS\avserve2.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [inCD] C:\Program Files\Ahead\InCD\InCD.exe

O4 - HKLM\..\Run: [VerizonServicepoint.exe] C:\Program Files\Verizon\Servicepoint\VerizonServicepoint.exe

O4 - HKLM\..\Run: [A Verizon App] C:\PROGRA~1\VERIZO~1\HELPSU~1\VERIZO~1.EXE

O4 - HKLM\..\Run: [HPHUPD08] C:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"

O4 - HKLM\..\Run: [eSnips] "C:\Program Files\eSnips\ClientGW.exe"

O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe

O4 - HKLM\..\Run: [Zune Launcher] "c:\Program Files\Zune\ZuneLauncher.exe"

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [COMODO SafeSurf] "C:\Program Files\COMODO\SafeSurf\cssurf.exe" -s

O4 - HKLM\..\Run: [sajonarasa] Rundll32.exe "C:\WINDOWS\system32\gifumuya.dll",s

O4 - HKLM\..\Run: [b0560a8b] rundll32.exe "C:\WINDOWS\system32\tegavali.dll",b

O4 - HKLM\..\Run: [CPMb3653917] Rundll32.exe "C:\WINDOWS\system32\sebiyajo.dll",a

O4 - HKLM\..\RunOnce: [spybotSnD] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet

O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [spyware Cleaner] "C:\Program Files\Spyware Cleaner\SpywareCleaner.Exe" /boot

O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - HKUS\S-1-5-18\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'Default user')

O4 - Startup: Cyber-shot Viewer Media Check Tool.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe

O4 - Global Startup: Digital Line Detect.lnk = ?

O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE

O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe

O4 - Global Startup: YouTube Uploader for CASIO.lnk = C:\Program Files\CASIO\YouTube Uploader for CASIO\YStart.exe

O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm

O8 - Extra context menu item: &Search - ?p=ZNxmk788YYUS

O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)

O9 - Extra button: Odds Maker - {b3cab7b9-eb43-46a2-8e15-02cc298dec71} - C:\HASBRO\Programs\Odds Maker\Odds Maker.lnk (HKCU)

O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

O15 - Trusted Zone: *.doginhispen.com

O15 - Trusted Zone: *.whataboutadog.com

O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemydsl.verizon.net/sdcCommon...oad/tgctlcm.cab

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/Facebo...toUploader5.cab

O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Monopoly%20Here%20and%20Now/Images/stg_drm.ocx

O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab

O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www2.snapfish.com/SnapfishActivia.cab

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1154377083015

O16 - DPF: {6E704581-CCAE-46D2-9C64-20D724B3624E} (UnagiAx Class) - http://radaol-prod-web-rr.streamops.aol.co...agi3.0.84.2.cab

O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab

O16 - DPF: {A7EA8AD2-287F-11D3-B120-006008C39542} (CBSTIEPrint Class) - http://offers.e-centives.com/cif/download/bin/actxcab.cab

O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Monopoly%20Here%20and%20Now/Images/armhelper.ocx

O16 - DPF: {F127B9BA-89EA-4B04-9C67-2074A9DF61FD} (Photo Upload Plugin Class) - http://cvs.pnimedia.com/upload/activex/v2_...tupv2.0.0.9.cab?

O16 - DPF: {FE5B9F54-7764-4C01-89F0-4862601EE954} (DigWebHelper Class) - http://photos.msn.com/resources/neutral/co....cab?10,0,910,0

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\sebiyajo.dll

O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\sebiyajo.dll

O23 - Service: ASF Agent (ASFAgent) - Intel Corporation - C:\Program Files\Intel\ASF Agent\ASFAgent.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe

O23 - Service: DvpApi (dvpapi) - Command Software Systems, Inc. - C:\Program Files\Common Files\Command Software\dvpapi.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe

O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe

O23 - Service: NNServ - Unknown owner - C:\Program Files\NewDotNet\nnrun.exe (file missing)

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

--

End of file - 16244 bytes

Link to post
Share on other sites

Ran a Spyware Scan and now a 3rd Malwarebytes scan:

Malwarebytes' Anti-Malware 1.30

Database version: 1442

Windows 5.1.2600 Service Pack 3

12/8/2008 7:41:34 PM

mbam-log-2008-12-08 (19-41-27).txt

Scan type: Full Scan (C:\|)

Objects scanned: 238951

Time elapsed: 5 hour(s), 1 minute(s), 57 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 2

Registry Values Infected: 1

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 1

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0df9c58a-bd06-4be6-b9e5-60085b80e4ac} (Trojan.BHO.H) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{0df9c58a-bd06-4be6-b9e5-60085b80e4ac} (Trojan.BHO.H) -> No action taken.

Registry Values Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sajonarasa (Trojan.Agent) -> No action taken.

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

C:\WINDOWS\SYSTEM32\menenera.dll (Trojan.BHO.H) -> No action taken.

Link to post
Share on other sites

oops sorry ~here is the Maleware Scan Log after I removed the items checked:

Malwarebytes' Anti-Malware 1.30

Database version: 1442

Windows 5.1.2600 Service Pack 3

12/8/2008 8:01:31 PM

mbam-log-2008-12-08 (20-01-31).txt

Scan type: Full Scan (C:\|)

Objects scanned: 238951

Time elapsed: 5 hour(s), 1 minute(s), 57 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 2

Registry Values Infected: 1

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 1

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0df9c58a-bd06-4be6-b9e5-60085b80e4ac} (Trojan.BHO.H) -> Delete on reboot.

HKEY_CLASSES_ROOT\CLSID\{0df9c58a-bd06-4be6-b9e5-60085b80e4ac} (Trojan.BHO.H) -> Quarantined and deleted successfully.

Registry Values Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sajonarasa (Trojan.Agent) -> Quarantined and deleted successfully.

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

C:\WINDOWS\SYSTEM32\menenera.dll (Trojan.BHO.H) -> Delete on reboot.

I'll see if it will delete on reboot

Link to post
Share on other sites

I noticed SuperAntiSpyware had an update so I did a new scan with that and quarentined what it found ~Should I remove these items instead?:

SuperAntiSpyware scan log:

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

Generated 12/08/2008 at 11:08 PM

Application Version : 4.22.1014

Core Rules Database Version : 3668

Trace Rules Database Version: 1642

Scan type : Quick Scan

Total Scan Time : 01:32:06

Memory items scanned : 430

Memory threats detected : 1

Registry items scanned : 740

Registry threats detected : 0

File items scanned : 12247

File threats detected : 31

Adware.Gudmun/Resident

C:\WINDOWS\SYSTEM32\GUPAWOGE.DLL

C:\WINDOWS\SYSTEM32\GUPAWOGE.DLL

Adware.Tracking Cookie

C:\Documents and Settings\Angela\Cookies\angela@pop.webfile[1].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.bauerpublishing[2].txt

C:\Documents and Settings\Angela\Cookies\angela@overture[1].txt

C:\Documents and Settings\Angela\Cookies\angela@2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@msnbc.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@advertising[1].txt

C:\Documents and Settings\Angela\Cookies\angela@tqstats[1].txt

C:\Documents and Settings\Angela\Cookies\angela@bizrate[2].txt

C:\Documents and Settings\Angela\Cookies\angela@ads4.slickdeals[1].txt

C:\Documents and Settings\Angela\Cookies\angela@media.photobucket[2].txt

C:\Documents and Settings\Angela\Cookies\angela@atdmt[2].txt

C:\Documents and Settings\Angela\Cookies\angela@mydiscountdomains.shopco[1].txt

C:\Documents and Settings\Angela\Cookies\angela@hitbox[2].txt

C:\Documents and Settings\Angela\Cookies\angela@thestreet.112.2o7[1].txt

C:\Documents and Settings\Angela\Cookies\angela@ads.cartoondollemporium[1].txt

Adware.Vundo Variant/DRM

C:\WINDOWS\SYSTEM32\BAWUYOPU.DLL

C:\WINDOWS\SYSTEM32\GIDONEKA.DLL

C:\WINDOWS\SYSTEM32\HUWUFATE.DLL

C:\WINDOWS\SYSTEM32\JELAWOTO.DLL

C:\WINDOWS\SYSTEM32\KAGOHAKU.DLL

C:\WINDOWS\SYSTEM32\KORAVULU.DLL

C:\WINDOWS\SYSTEM32\KUWALOBE.DLL

C:\WINDOWS\SYSTEM32\NELETOKI.DLL

C:\WINDOWS\SYSTEM32\PEHEDUKE.DLL

C:\WINDOWS\SYSTEM32\PUZATUWI.DLL

C:\WINDOWS\SYSTEM32\RILIHOKI.DLL

C:\WINDOWS\SYSTEM32\WILUDUBU.DLL

Adware.Vundo Variant/HAL

C:\WINDOWS\SYSTEM32\HANIKUNU.DLL

C:\WINDOWS\SYSTEM32\JOTIVIZA.DLL

C:\WINDOWS\SYSTEM32\ZUPIZUMA.DLL

Link to post
Share on other sites

Hi I am hoping that one of you very intelligent and wonderful Computer Techies can help me. I have run the scans asked for and continue to run them incase their are important updates that may catch more of those nasty viruses. I am running my thrid Panda Scan now and will post it when it's done. Here are the main problems that I Have

Problem One:

still getting those annoying pop ups when using Internet Explorer (if that's what they are ~ a new screen is automatically opened) It tries to open the pop up but at least now my computer won't actually show what is on their webpage. I think it may be being blocked. This was the web address it tried to send me to: http://cowresti.com/r_cmtp?u=http%3A%2F%2F...&rid=945401

However when using MSN don't have that problem.

Problem Two:

Logging onto internet is intially extremely slow and checking email. Not sure if its a virus or if I accidently changed a setting when trying to deal with these computer viruses/trojans/etc

Problem Three:

Malwarebytes will not update from the program option itself. It states that I'm not connected to the Internet or that there is a Firewall blocking it.

I added Malewarebytes to my firewall exception list. However when I was first dealing with the virus problem I reset my firewall to its default setting and thought I could just add in what I wanted and it would work. Not sure if there is a setting I am missing.

Problem Four:

Need help elimitating all viruses/trojans/etc from my computer.

Thanks you in advance for your help!

Link to post
Share on other sites

Panda Scan #3

;*******************************************************************************

********************************************************************************

*

*******************

ANALYSIS: 2008-12-09 11:59:15

PROTECTIONS: 2

MALWARE: 33

SUSPECTS: 0

;*******************************************************************************

********************************************************************************

*

*******************

PROTECTIONS

Description Version Active Updated

;===============================================================================

================================================================================

=

===================

COMODO Antivirus 3.5 Yes Yes

avast! antivirus 4.8.1229 [VPS 081130-0] 4.8.1229 Yes No

;===============================================================================

================================================================================

=

===================

MALWARE

Id Description Type Active Severity Disinfectable Disinfected Location

;===============================================================================

================================================================================

=

===================

00027660 adware/savenow Adware No 0 Yes No hkey_local_machine\software\microsoft\windows\currentversion\app management\arpcache\savenow

00029258 application/altnet HackTools No 0 Yes No c:\hasbro\programs\altnet

00029258 application/altnet HackTools No 0 Yes No c:\windows\temp\altnet

00029258 application/altnet HackTools No 0 Yes No c:\program files\altnet

00029258 application/altnet HackTools No 0 Yes No hkey_local_machine\software\microsoft\windows\currentversion\app management\arpcache\altnetdm

00029258 application/altnet HackTools No 0 Yes No hkey_local_machine\software\classes\appid\adm.exe

00029258 application/altnet HackTools No 0 Yes No hkey_local_machine\software\classes\appid\altnet signing module.exe

00029258 application/altnet HackTools No 0 Yes No hkey_classes_root\appid\adm.exe

00041446 application/myway HackTools No 0 Yes No HKEY_LOCAL_MACHINE\software\classes\CLSID\{66FC8717-EFA7-4546-8C4A-E224F3A80C76}

00041446 application/myway HackTools No 0 Yes No hkey_classes_root\clsid\{66fc8717-efa7-4546-8c4a-e224f3a80c76}

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.trafficmp.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.casalemedia.com/]

00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.doubleclick.net/]

00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.atdmt.com/]

00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.tradedoubler.com/]

00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.tribalfusion.com/]

00145869 Cookie/SpyLog TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.spylog.com/]

00167642 Cookie/Com.com TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@com[1].txt

00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.xiti.com/]

00167749 Cookie/Toplist TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.toplist.cz/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statcounter.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[ad.yieldmanager.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.serving-sys.com/]

00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.bs.serving-sys.com/]

00168097 Cookie/BurstBeacon TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.www.burstbeacon.com/]

00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.server.iad.liveperson.net/hc/90874191]

00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.server.iad.liveperson.net/]

00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.server.iad.liveperson.net/hc/79635536]

00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.advertising.com/]

00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statse.webtrendslive.com/S005-01-7-9-261046-87881]

00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.statse.webtrendslive.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ads.pointroll.com/]

00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.overture.com/]

00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.overture.com/]

00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.overture.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.questionmarket.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.zedo.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.go.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.go.com/]

00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@go[1].txt

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.target.com/]

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.target.com/]

00207338 Cookie/Target TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Cookies\angela@target[1].txt

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Angela\Application Data\Flock\Browser\Profiles\y1ygh6gs.default\cookies.txt[.ehg-dig.hitbox.com/]

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1538\A0262258.dll

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1538\A0262257.dll

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1538\A0262253.dll

00466989 Spyware/Virtumonde Spyware No 1 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1538\A0262251.dll

00471635 Trj/Agent.LBD Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1534\A0262088.dll

00471760 Trj/Agent.LBD Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1534\A0262087.dll

00527204 Application/PRScheduler HackTools No 0 Yes No C:\HASBRO\Programs\Startup\PowerReg Scheduler V3.exe

03839851 Trj/Downloader.MDW Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP1538\A0262185.sys

;===============================================================================

================================================================================

=

===================

SUSPECTS

Sent Location c

;===============================================================================

================================================================================

=

===================

;===============================================================================

================================================================================

=

===================

VULNERABILITIES

Id Severity Description c

;===============================================================================

================================================================================

=

===================

;===============================================================================

================================================================================

=

===================

Link to post
Share on other sites

Ahh Ha so that's what is causing those annoying pop ups! How do I get rid of these?

Common name: Virtumonde

Technical name: Spyware/Virtumonde

Threat level: Low

Alias: Monder,Vundo,, InetAdpt, NewtonKnows, Vundo

Type: Spyware

Effects: It logs keystrokes and displays advertising messages periodically. It does not spread automatically by its own means.

Affected platforms: Windows 2003/XP/2000/NT/ME/98/95

First detected on: Oct. 8, 2004

Detection updated on: Dec. 2, 2008

Statistics Yes

Proactive protection: Yes, using TruPrevent Technologies

but this causes pop ups too and it's apparently on my computer.

SaveNow

Technical name: Adware/SaveNow

Threat level: Low

Type: Spyware

Subtype: Adware

Effects: It provides information about the weather forecast and displays advertising pop-up windows.

Affected platforms: Windows 2003/XP/2000/NT/ME/98/95

First detected on: Sept. 11, 2003

Detection updated on: Nov. 5, 2008

Statistics Yes

Proactive protection: Yes, using TruPrevent Technologies

Link to post
Share on other sites

and there is this: Jeeeesh !

Common name: PRScheduler

Technical name: Application/PRScheduler

Threat level: Medium

Type: Potentially Unwanted Program (PUP)

Effects: It is a Potentially Unwanted Program, which can affect the users' consent, awarenes or control over the program. It displays pop-up messages when it runs, distracting users and affecting productivity. It does not spread automatically using its own means.

Affected platforms: Windows 2003/XP/2000/NT/ME/98/95

First detected on: May 18, 2006

Detection updated on: May 7, 2007

Statistics No

Proactive protection: Yes, using TruPrevent Technologies

ok off to run another Hijack scan

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.