Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Retrieval facebook problem,no recieve code to my email

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Retrieval facebook problem,no recieve code to my email

Unread postby strayker@rock.com » July 7th, 2010, 4:56 pm

I can't recieve any send code from facebook getting at step 3 (verify my account). no security code recieve even i send and resend it 100times ..nothing recieve to my email account..

here's the hijackthis.log and the uninstall_list.log

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 4:22:42 AM, on 7/8/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17055)
Boot mode: Normal

Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe
C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\windows\System32\svchost.exe
C:\windows\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\windows\Explorer.EXE
C:\windows\system32\spoolsv.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\windows\system32\ctfmon.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Warkeys\AutoWarkey\AutoHotkey\AutoHotkey.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\windows\system32\svchost.exe
C:\windows\system32\svchost.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\User\My Documents\Downloads\msgr10us.exe
C:\DOCUME~1\User\LOCALS~1\Temp\nsr7F.tmp\ymsgr_suite_setup.exe
C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
C:\DOCUME~1\User\LOCALS~1\Temp\nsx83.tmp\flash_inst.exe
C:\DOCUME~1\User\LOCALS~1\Temp\nsvBB.tmp\flash_setup.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... =CT2418376
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/def ... earch.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
R3 - URLSearchHook: Shareware.Pro-EN Toolbar - {da21bd13-ca22-42e3-a071-98f08f1ca1e7} - C:\Program Files\Peer2Peer-EN\tbPee0.dll
R3 - URLSearchHook: PageRage Toolbar - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPag0.dll
O2 - BHO: Tensons.Application.DownloadAcceleratorManager.BHO - {00000003-1118-11da-8cd6-0800200c9888} - mscoree.dll (file missing)
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: facemoods Helper - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\Facemoods.com\FacemoodsToolbar\1.3.30.1\escort.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: PageRage Toolbar - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPag0.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Shareware.Pro-EN Toolbar - {da21bd13-ca22-42e3-a071-98f08f1ca1e7} - C:\Program Files\Peer2Peer-EN\tbPee0.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo Layers Client\YontooIEClient.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Webshots Toolbar - {C17590D2-ECB4-4b15-8820-F58798DCC118} - C:\Program Files\Webshots\WSToolbar4IE.dll
O3 - Toolbar: Shareware.Pro-EN Toolbar - {da21bd13-ca22-42e3-a071-98f08f1ca1e7} - C:\Program Files\Peer2Peer-EN\tbPee0.dll
O3 - Toolbar: PageRage Toolbar - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPag0.dll
O3 - Toolbar: facemoods Toolbar - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\Facemoods.com\FacemoodsToolbar\1.3.30.1\escorTlbr.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [MSSE] "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [ctfmon.exe] C:\windows\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: My_AutoWarkey_Script.lnk = C:\Program Files\Warkeys\AutoWarkey\AutoHotkey\AutoHotkey.exe
O4 - Startup: Webshots.lnk = C:\Program Files\Webshots\Launcher.exe
O8 - Extra context menu item: &Download with DAM - C:\Program Files\Tensons\Download Accelerator Manager\\addUrl.htm
O8 - Extra context menu item: &Webshots Photo Search - res://C:\Program Files\Webshots\WSToolbar4IE.dll/MENUSEARCH.HTM
O8 - Extra context menu item: Download &All with DAM - C:\Program Files\Tensons\Download Accelerator Manager\\addAllUrls.htm
O8 - Extra context menu item: Download FLV &Video with DAM - C:\Program Files\Tensons\Download Accelerator Manager\\addDocUrl.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O8 - Extra context menu item: Run DAM Media&Grabber - C:\Program Files\Tensons\Download Accelerator Manager\\runMg.htm
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - E:\Nick\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - E:\Nick\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: PokerTime - {00000000-0000-0000-0000-000000000000} - C:\MicroGaming\Poker\PokerTimeMPP\MPPoker.exe (file missing) (HKCU)
O10 - Broken Internet access because of LSP provider 'c:\program files\bonjour\mdnsnsp.dll' missing
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\program,files\relevantknowledge\rlai.dll,C:\program files\relevantknowledge\rlai.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\windows\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\windows\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bonjour Service - Unknown owner - C:\Program Files\Bonjour\mDNSResponder.exe (file missing)
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\windows\system32\GameMon.des.exe (file missing)
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O24 - Desktop Component 1: (no name) - http://www.yahoo.com/

--
End of file - 11710 bytes

-----------------

Acrobat.com
Acrobat.com
Adobe AIR
Adobe AIR
Adobe Bridge 1.0
Adobe Common File Installer
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Help Center 1.0
Adobe Photoshop CS2
Adobe Reader 9.3.3
Adobe Shockwave Player
Apple Software Update
Ask Toolbar
AutoCAD 2004
AutoCAD Express Tools Volumes 1-9
Autodesk Express Viewer
avast! Free Antivirus
Bonjour
BootSkin
CCleaner (remove only)
Cheat Engine 5.5
Digital Video
Download Accelerator Manager
Dynamic Targeting Fruttinet
Facemoods toolbar
FLV Player 2.0 (build 25)
Free RAR Extract Frog
Garena
GOM Player
Half-Life
High Definition Audio Driver Package - KB888111
HiJackThis
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB981793)
HyperCam 2
Intel(R) Graphics Media Accelerator Driver
Java(TM) 6 Update 20
Keenfinder 1.0 build 132
LightScribe System Software 1.12.37.1
LogonStudio
Malwarebytes' Anti-Malware
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1
Microsoft Antimalware
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
Microsoft National Language Support Downlevel APIs
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Security Essentials
Microsoft Security Essentials
Microsoft User-Mode Driver Framework Feature Pack 1.7
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox (3.6.3)
MSVC80_x86
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6 Service Pack 2 (KB973686)
Nero 8 Essentials
neroxml
Nokia Connectivity Cable Driver
Nokia PC Suite
Nokia PC Suite
PageRage Toolbar
Pando Media Booster
PC Connectivity Solution
Peer2Peer-EN Toolbar
Power MP3 WMA Converter 1.15
PowerDVD
Professor Teaches Photoshop CS3
REALTEK GbE & FE Ethernet PCI-E NIC Driver
Realtek High Definition Audio Driver
Rohan_USA
SafeCast Shared Components
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for 2007 Microsoft Office System (KB982312)
Security Update for 2007 Microsoft Office System (KB982331)
Security Update for Microsoft Office Excel 2007 (KB982308)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office Outlook 2007 (KB972363)
Security Update for Microsoft Office PowerPoint 2007 (KB982158)
Security Update for Microsoft Office Publisher 2007 (KB982124)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB969613)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB982135)
Security Update for Windows Internet Explorer 7 (KB938127-v2)
Security Update for Windows Internet Explorer 7 (KB982381)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB978695)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956390)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB981349)
Security Update for Windows XP (KB982381)
Sierra Utilities
Skype™ 4.2
SUPERAntiSpyware
Uniblue RegistryBooster
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Outlook 2007 Junk Email Filter (kb983486)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
VCRedistSetup
Warkeys 1.14.1.0b
Webshots Desktop
Webshots Toolbar
Winamp
Windows Driver Package - Nokia Modem (05/22/2008 3.8)
Windows Driver Package - Nokia Modem (06/01/2009 4.1)
Windows Driver Package - Nokia Modem (06/01/2009 7.01.0.3)
Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0)
Windows Imaging Component
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows XP Service Pack 3
WorldUnlock Codes Calculator
Yahoo! Messenger
Yahoo! Search Protection
Yahoo! Software Update
Yahoo! Toolbar
Yontoo Layers Client 1.10.01
strayker@rock.com
Active Member
 
Posts: 6
Joined: July 7th, 2010, 3:42 pm
Advertisement
Register to Remove

Re: Retrieval facebook problem,no recieve code to my email

Unread postby MWR 3 day Mod » July 10th, 2010, 10:21 pm

Hi,

We are sorry to see your topic is over three days old and no one has yet been able to respond and offer help.

If you still require assistance, please post a link to your topic in our Waiting for help with malware removal? forum, and our staff will make an effort to assist you as promptly as possible. Only post a LINK to this topic, DO NOT post your DDS log!

Please do not reply to this topic.

If you haven't posted within two days in the "Waiting for help with malware removal?" forum, we will assume you have been able to get assistance in other ways and this topic will be closed.
MWR 3 day Mod
MRU Undergrad
MRU Undergrad
 
Posts: 2534
Joined: April 4th, 2008, 8:40 am

Re: Retrieval facebook problem,no recieve code to my email

Unread postby askey127 » July 12th, 2010, 6:58 am

strayker,
I can help check your machine for malware and infections, but I may not be able or willing to debug your Facebook problems.
If you want to try making your machine more safe and secure you can begin as follows:

I am giving you quite a few things to do here, but each is pretty straightforward. Just take one step at a time.

You have a lot of toolbars, some of which may not have thoroughly debugged code, and could screw up your machine..
You can read some ranting and instructions about PageRage and Yontoo Layers here: http://freedownload1.com/faq2/221813.htm
It's your call whether you want to uninstall them.

(We won't work on machines with Keygens or cracked licenses present, unless they are removed)
-----------------------------------------------------------
Remove Registry items with HighjackThis. Start HijackThis.
Click Do System Scan Only. When the Scan is complete, Check the following entries:
(Some of these lines may be missing)
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Shareware.Pro-EN Toolbar - {da21bd13-ca22-42e3-a071-98f08f1ca1e7} - C:\Program Files\Peer2Peer-EN\tbPee0.dll
O2 - BHO: Tensons.Application.DownloadAcceleratorManager.BHO - {00000003-1118-11da-8cd6-0800200c9888} - mscoree.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Shareware.Pro-EN Toolbar - {da21bd13-ca22-42e3-a071-98f08f1ca1e7} - C:\Program Files\Peer2Peer-EN\tbPee0.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O8 - Extra context menu item: &Download with DAM - C:\Program Files\Tensons\Download Accelerator Manager\\addUrl.htm
O8 - Extra context menu item: Download &All with DAM - C:\Program Files\Tensons\Download Accelerator Manager\\addAllUrls.htm
O8 - Extra context menu item: Download FLV &Video with DAM - C:\Program Files\Tensons\Download Accelerator Manager\\addDocUrl.htm
O8 - Extra context menu item: Run DAM Media&Grabber - C:\Program Files\Tensons\Download Accelerator Manager\\runMg.htm
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - E:\Nick\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - E:\Nick\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: PokerTime - {00000000-0000-0000-0000-000000000000} - C:\MicroGaming\Poker\PokerTimeMPP\MPPoker.exe (file missing) (HKCU)
O20 - AppInit_DLLs: C:\program,files\relevantknowledge\rlai.dll,C:\program files\relevantknowledge\rlai.dll

Make sure Every other window except HJT is closed (No other tabs showing in the bottom tray), and Click Fix Checked
Click the "X" in the upper right corner of the HiJackThis window to close it.
-----------------------------------------------------------
Remove Programs Using Control Panel
From Start, Settings, Control Panel or Start, Control Panel, click Add/Remove Programs.
Highlight each Entry, as follows, one by one, if it exists, and choose Remove :
Ask Toolbar
Cheat Engine 5.5
Peer2Peer-EN Toolbar
Uniblue RegistryBooster
Relevant Knowledge

Take extra care in answering questions posed by any Uninstaller.
----------------------------------------------
Run Temp File Cleaner
Download Temp File Cleaner and save it to your desktop.
Double click to run it.
If it asks to Reboot, choose to do so. This will remove files that could not be removed while Windows was running.
After Restart, log back in to your usual account.
-----------------------------------------------------------
Post a New HiJackThis Log
Start HijackThis
Click Do System Scan and Save a Log File.
When the Scan is complete, select the whole log (Ctrl-A), copy and paste the log contents in a reply.
-----------------------------------------------------------
Retrieve the List of Installed programs Using HJT
Open HijackThis, click Open The Misc Tools Section. Then scroll down the list if you need to, click Open Uninstall Manager and Save List...
The List of installed programs will automatically be saved as uninstall_list.txt in your HiJackThis folder.
In addition, the list opens in Notepad so you can also save as another name in another location if you wish.
Please paste the contents into your next reply.
---------------------------------------------
Run CKScanner
Download CKScanner from HERE
Important - Save it to your desktop.
Doubleclick CKScanner.exe and click Search For Files.
After a couple minutes or less, when the cursor hourglass disappears, click Save List To File.
A message box will verify the file saved.
Double-click the CKFiles.txt icon on your desktop and copy/paste the contents in your next reply.

So we are looking for a fresh HiJackThis log, a new Installed programs list, and the output file contents fron CKFiles.txt
askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 13903
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Re: Retrieval facebook problem,no recieve code to my email

Unread postby strayker@rock.com » July 12th, 2010, 11:35 am

thanks

here's the new hijacklist.log, uninstall_list, and ckfiles.txt

hijacklist:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:30:42 PM, on 7/12/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17055)
Boot mode: Normal

Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\windows\Explorer.EXE
C:\windows\system32\spoolsv.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\windows\system32\ctfmon.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Warkeys\AutoWarkey\AutoHotkey\AutoHotkey.exe
C:\PROGRA~1\Webshots\Webshots.scr
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\windows\system32\svchost.exe
C:\windows\system32\svchost.exe
C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\windows\system32\wuauclt.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\PROGRA~1\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Microsoft Office\Office12\WINWORD.EXE
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.windowsxlive.net
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/def ... earch.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
R3 - URLSearchHook: PageRage Toolbar - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPag0.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: YSPManager - {25BC7718-0BFA-40EA-B381-4B2D9732D686} - C:\Program Files\Yahoo!\Search Protection\ysp.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll
O2 - BHO: facemoods Helper - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\Facemoods.com\FacemoodsToolbar\1.3.30.1\escort.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: PageRage Toolbar - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPag0.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: Webshots Toolbar - {C17590D2-ECB4-4b15-8820-F58798DCC118} - C:\Program Files\Webshots\WSToolbar4IE.dll
O3 - Toolbar: PageRage Toolbar - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPag0.dll
O3 - Toolbar: facemoods Toolbar - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\Facemoods.com\FacemoodsToolbar\1.3.30.1\escorTlbr.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [ctfmon.exe] C:\windows\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: My_AutoWarkey_Script.lnk = C:\Program Files\Warkeys\AutoWarkey\AutoHotkey\AutoHotkey.exe
O4 - Startup: Webshots.lnk = C:\Program Files\Webshots\Launcher.exe
O8 - Extra context menu item: &Webshots Photo Search - res://C:\Program Files\Webshots\WSToolbar4IE.dll/MENUSEARCH.HTM
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: &Virtual keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BBF74FB9-ABCD-4678-880A-2511DAABB5E1} - C:\Program Files\Yahoo!\Search Protection\ysp.dll
O9 - Extra 'Tools' menuitem: Yahoo! Search Protection - {BBF74FB9-ABCD-4678-880A-2511DAABB5E1} - C:\Program Files\Yahoo!\Search Protection\ysp.dll
O9 - Extra button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Broken Internet access because of LSP provider 'c:\program files\bonjour\mdnsnsp.dll' missing
O16 - DPF: {D6FCA8ED-4715-43DE-9BD2-2789778A5B09} (NPKCX Control) - https://my.levelupgames.ph/keycrypt/npkcx.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\windows\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\windows\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
O23 - Service: Bonjour Service - Unknown owner - C:\Program Files\Bonjour\mDNSResponder.exe (file missing)
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\windows\system32\GameMon.des.exe (file missing)
O23 - Service: npkcsvc - INCA Internet Co., Ltd. - C:\windows\system32\npkcsvc.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
O24 - Desktop Component 1: (no name) - http://www.yahoo.com/

--
End of file - 10973 bytes

-----------

uninstall_list:

Acrobat.com
Acrobat.com
Adobe AIR
Adobe AIR
Adobe Bridge 1.0
Adobe Common File Installer
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Help Center 1.0
Adobe Photoshop CS2
Adobe Reader 9.3.3
Adobe Shockwave Player
Apple Software Update
AutoCAD 2004
AutoCAD Express Tools Volumes 1-9
Autodesk Express Viewer
avast! Free Antivirus
Bonjour
BootSkin
CCleaner (remove only)
Digital Video
Dynamic Targeting Fruttinet
Facemoods toolbar
FLV Player 2.0 (build 25)
Free RAR Extract Frog
Garena 2010
GOM Player
Half-Life
High Definition Audio Driver Package - KB888111
HiJackThis
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB981793)
HyperCam 2
Intel(R) Graphics Media Accelerator Driver
Java(TM) 6 Update 20
Kaspersky Anti-Virus 2010
Kaspersky Anti-Virus 2010
Keenfinder 1.0 build 132
LightScribe System Software 1.12.37.1
LogonStudio
Malwarebytes' Anti-Malware
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
Microsoft National Language Support Downlevel APIs
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft User-Mode Driver Framework Feature Pack 1.7
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox (3.6.3)
MSVC80_x86
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6 Service Pack 2 (KB973686)
Nero 8 Essentials
neroxml
Nokia Connectivity Cable Driver
Nokia PC Suite
Nokia PC Suite
nProtect KeyCrypt
PageRage Toolbar
Pando Media Booster
PC Connectivity Solution
Power MP3 WMA Converter 1.15
PowerDVD
Professor Teaches Photoshop CS3
REALTEK GbE & FE Ethernet PCI-E NIC Driver
Realtek High Definition Audio Driver
Rohan_USA
SafeCast Shared Components
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for 2007 Microsoft Office System (KB982312)
Security Update for 2007 Microsoft Office System (KB982331)
Security Update for Microsoft Office Excel 2007 (KB982308)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office Outlook 2007 (KB972363)
Security Update for Microsoft Office PowerPoint 2007 (KB982158)
Security Update for Microsoft Office Publisher 2007 (KB982124)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB969613)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB982135)
Security Update for Windows Internet Explorer 7 (KB938127-v2)
Security Update for Windows Internet Explorer 7 (KB982381)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB978695)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956390)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB981349)
Security Update for Windows XP (KB982381)
Sierra Utilities
Skype™ 4.2
SUPERAntiSpyware
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Outlook 2007 Junk Email Filter (kb983486)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
VCRedistSetup
Warkeys 1.14.1.0b
Webshots Desktop
Webshots Toolbar
Winamp
Windows Driver Package - Nokia Modem (05/22/2008 3.8)
Windows Driver Package - Nokia Modem (06/01/2009 4.1)
Windows Driver Package - Nokia Modem (06/01/2009 7.01.0.3)
Windows Imaging Component
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows XP Service Pack 3
WorldUnlock Codes Calculator
Yahoo! Messenger
Yahoo! Search Protection
Yahoo! Software Update
Yahoo! Toolbar

-----
ckfiles.exe

CKScanner - Additional Security Risks - These are not necessarily bad
c:\program files\garena\plugins\ui\avoidcrackplugin.dll
c:\program files\power mp3 wma converter\power.mp3.wma.converter.1.15.crack-rev.exe
scanner sequence 3.AA.11
----- EOF -----
strayker@rock.com
Active Member
 
Posts: 6
Joined: July 7th, 2010, 3:42 pm

Re: Retrieval facebook problem,no recieve code to my email

Unread postby askey127 » July 12th, 2010, 2:19 pm

strayker,
Please do not Install, Remove, or Scan with anything while we are working on this, unless I ask you to.
-----------------------------------------------------------
Remove Programs Using Control Panel
From Start, Settings, Control Panel or Start, Control Panel, click Add/Remove Programs.
Highlight each Entry, as follows, one by one, if it exists, and choose Remove :

Power MP3 WMA Converter 1.15
Pando Media Booster
avast! Free Antivirus
<== ONLY uninstall this if you paid for Kaspersky
Kaspersky Anti-Virus 2010 <== Uninstall this IF it's a trial and you didn't pay for it yet.

Take extra care in answering questions posed by any Uninstaller.
----------------------------------------------
Disable CD Emulator(s)
We need to use powerful tools to investigate your system. *If* you are are using a CD Emulator (Daemon Tools, Alcohol 120%, Astroburn, AnyDVD) be aware that they use hidden drivers with rootkit-like techniques to hide from other applications. When dealing with a malware infections, CD Emulators can interfere with investigative tools producing misleading or inaccurate scan results, false detection of legitimate files, cause unexpected crashes, BSODs, and general 'dross' which often makes it hard to differentiate between malicious rootkits and the legitimate drivers used by Emulators. Since CD Emulators use a hidden driver which can be seen as a rootkit and can interfere with investigative tools or cause other problems, we need to remove or disable them until disinfection is completed.

Please download DeFogger by jpshortstuff and save it to your desktop.
  • Double click DeFogger.exe to run the tool.
  • The application window will appear.
  • Click the Disable button to disable your CD Emulation drivers
  • Click Yes to continue.
  • A 'Finished!' message will appear.
  • Click OK...DeFogger will now ask to reboot the machine...click OK. If not, reboot manually.
  • Do not re-enable these drivers until instructed or your system has been cleaned.
IMPORTANT! If you receive an error message while running DeFogger, please post the log defogger_disable which will appear on your desktop.
------------------------------------------------
Download and Run Rkill
Please download Rkill from one of the following links and save to your Desktop:
One, Two,Three or Four
  • Double click on Rkill.
  • A command window will open, then disappear upon completion, this is normal.
  • Please leave Rkill on the Desktop until otherwise advised.
Note: If your security software warns about Rkill, please ignore and allow the download to continue. If you cannot get one of the downloads to work for you, let me know.
If you cannot get Rkill to run without being stopped, don't proceed further, and post back to tell me about it.
------------------------------------------------------------
Please download the GMER Rootkit Scanner from Here.
  • XP : Double click the .exe file. If asked to allow gmer.sys driver to load, please consent
  • VISTA/Win7: Right click the .exe file and chose Run as Administrator. If asked to allow gmer.sys driver to load, please consent
  • If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO
  • In the right panel, you will see several boxes that have been checked. Uncheck the following ...
    • IAT/EAT
    • Drives/Partition other than the System drive (which is typically C:\)
    • Show All (don't miss this one)
      See image below
      Image
  • Then click the Scan button & wait for it to finish
    **Caution** Rootkit scans often produce false positives. Do NOT take any action on any "<--- ROOKIT" entries
  • Once done click on the [Save..] button, and in the File name area, type in "Gmer.txt" or it will save as a .log file
  • Save it where you can easily find it, such as your desktop, and post it in your next reply
Note: Do not run any other programs while Gmer is running.

Please post the contents of Gmer.txt
askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 13903
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Re: Retrieval facebook problem,no recieve code to my email

Unread postby strayker@rock.com » July 13th, 2010, 11:36 am

thanks.

Here's the contents of Gmer.txt


GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-07-13 23:29:42
Windows 5.1.2600 Service Pack 3
Running: shoxbhp2.exe; Driver: C:\DOCUME~1\User\LOCALS~1\Temp\afadqfoc.sys


---- System - GMER 1.0.15 ----

SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwClose [0xA9950CD2]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateKey [0xA9950B8E]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteKey [0xA9951142]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteValueKey [0xA995106C]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDuplicateObject [0xA9950764]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenKey [0xA9950C68]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenProcess [0xA99506A4]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenThread [0xA9950708]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwQueryValueKey [0xA9950D88]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRenameKey [0xA9951210]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRestoreKey [0xA9950D48]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwSetValueKey [0xA9950EC8]
SSDT \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SASKUTIL.SYS/SUPERAdBlocker.com and SUPERAntiSpyware.com) ZwTerminateProcess [0xA9A14620]

Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateProcessEx [0xA995DB9C]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateSection [0xA995D9C0]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwLoadDriver [0xA995DAFA]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) NtCreateSection
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObInsertObject
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObMakeTemporaryObject

---- Kernel code sections - GMER 1.0.15 ----

PAGE ntoskrnl.exe!ObInsertObject 8056DA64 5 Bytes JMP A995AF6C \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!NtCreateSection 8056DB66 7 Bytes JMP A995D9C4 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ZwCreateProcessEx 8059056D 7 Bytes JMP A995DBA0 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ZwLoadDriver 805AEDE2 7 Bytes JMP A995DAFE \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntoskrnl.exe!ObMakeTemporaryObject 805E74E6 5 Bytes JMP A99595B4 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)

---- Devices - GMER 1.0.15 ----

Device \FileSystem\Ntfs \Ntfs aswSP.SYS (avast! self protection module/ALWIL Software)

AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)

---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0xD4 0xC3 0x97 0x02 ...
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0xE3 0x48 0xB8 0x9B ...
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x8B 0xB7 0x6C 0x26 ...
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0x90 0xEB 0xC8 0x7A ...
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0xD4 0xC3 0x97 0x02 ...
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x4C 0xAE 0x37 0x07 ...
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x8B 0xB7 0x6C 0x26 ...
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0x90 0xEB 0xC8 0x7A ...
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0xD4 0xC3 0x97 0x02 ...
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x73 0xDC 0x09 0x60 ...
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x8B 0xB7 0x6C 0x26 ...
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0x90 0xEB 0xC8 0x7A ...
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0xD4 0xC3 0x97 0x02 ...
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x21 0x78 0x80 0x29 ...
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x8B 0xB7 0x6C 0x26 ...
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0x90 0xEB 0xC8 0x7A ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0xD4 0xC3 0x97 0x02 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x26 0xF1 0x06 0x93 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x8B 0xB7 0x6C 0x26 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0x90 0xEB 0xC8 0x7A ...
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0xD4 0xC3 0x97 0x02 ...
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x26 0xF1 0x06 0x93 ...
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x8B 0xB7 0x6C 0x26 ...
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet009\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0x90 0xEB 0xC8 0x7A ...
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL@
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL@Installed 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI@
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI@Installed 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI@NoChange 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS@
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS@Installed 1
Reg HKLM\SOFTWARE\Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}@scansk 0x3D 0xA3 0xB0 0x4D ...
Reg HKLM\SOFTWARE\Classes\CLSID\{8ec6e1be-e6de-4599-9cbc-df0349bfb8f5}@Model 25
Reg HKLM\SOFTWARE\Classes\CLSID\{8ec6e1be-e6de-4599-9cbc-df0349bfb8f5}@Therad 30
Reg HKLM\SOFTWARE\Classes\CLSID\{8ec6e1be-e6de-4599-9cbc-df0349bfb8f5}@MData 0x2B 0x8F 0x78 0x29 ...

---- Files - GMER 1.0.15 ----

File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\dir.fod 8 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\file.fod 4710 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\ps.fod 18 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652} 0 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\01012008(001).JPG 158792 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\01012008(011).jpg 143530 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\01122008(005).jpg 240045 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\01122008(006).jpg 194808 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\01192008(002).jpg 197314 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\01192008(005).jpg 110351 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\01192008.jpg 224274 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\02022008(008).jpg 66158 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\02022008(010).jpg 132802 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\02232008(001).jpg 258309 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\02242008(002).jpg 378969 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03092007(003).jpg 76584 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03102007.jpg 61769 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03192007.jpg 55854 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03242007(001).jpg 69933 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03242007(002).jpg 83622 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03242007(003).jpg 54182 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03242007(004).jpg 105820 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03242007(006).jpg 62993 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03242007.jpg 68226 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\03272007(002).jpg 31409 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04012008(005).jpg 409246 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04012008(006).jpg 126141 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04022007(001).jpg 60373 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04062007(004).jpg 63665 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04072007(011).jpg 25797 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04072007(012).jpg 44038 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04072007(013).jpg 61751 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04072007(018).jpg 42090 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04072007.jpg 66394 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04102008(001).jpg 265683 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04102008.jpg 220128 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04112008(001).jpg 263229 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04112008.jpg 249447 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04122008(001).jpg 426187 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04122008(002).jpg 409629 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04122008.jpg 453389 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04202007(003).jpg 24950 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04282007(004).jpg 63869 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04282007(006).jpg 49394 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\02032008.jpg 403017 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04282007(007).jpg 50991 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05122007.jpg 92409 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(005).jpg 52261 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08142007(002).jpg 61231 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09052007(007).jpg 46883 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10192007(023).jpg 68500 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11152008.jpg 157545 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\7306rnadms_2222090.jpg 18425 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Guitarman.jpg 251398 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(245).jpg 144463 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Len&kat.jpg 457203 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\PW080223154411.jpg 17018 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\rag4a.jpg 115457 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04282007(008).jpg 44302 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04282007(009).jpg 51960 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04282007(010).jpg 54634 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\04282007.jpg 52552 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05022008(023).jpg 417298 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05022008(028).jpg 412750 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05032008(002).jpg 415095 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05032008(004).jpg 338449 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05032008.jpg 49736 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05062008(001).jpg 448166 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05062008(004).jpg 460492 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05062008(009).jpg 452075 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05062008(010).jpg 452746 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05062008.jpg 295122 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05122007(001).jpg 71918 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05122007(002).jpg 93081 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05122007(003).jpg 80105 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05122007(004).jpg 52511 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05122007(005).jpg 23151 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05122007(006).jpg 29232 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05122007(007).jpg 37583 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05132007(001).jpg 59969 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05132007(004).jpg 65494 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05202008.jpg 197510 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05232007(001).jpg 64716 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05242008(014).jpg 204211 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05242008(015).jpg 153477 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\05242008(017).jpg 190068 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06012008(012).jpg 210863 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06122008(001).jpg 308901 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06122008(002).jpg 300151 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06122008(003).jpg 408939 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06122008(004).jpg 336070 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06122008(006).jpg 225943 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06122008(007).jpg 230377 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06122008.jpg 311854 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06222008(001).jpg 193414 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\06222008.jpg 251022 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07052008(002).jpg 204409 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07102007(003).jpg 45214 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07132008(002).jpg 213946 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07132008(003).jpg 218618 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07132008(005).jpg 204230 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07132008.jpg 205994 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07142008.jpg 352257 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07202008(003).jpg 383000 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07232007724.jpg 104565 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07242007733.jpg 101788 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07262007.jpg 84814 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07272007(001).jpg 45908 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07272007(002).jpg 54695 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07272007.jpg 72993 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07292008(002).jpg 353738 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07292008.jpg 348217 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07302007762.jpg 94656 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\07302007763.jpg 83279 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(002).jpg 53166 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(004).jpg 54984 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(006).jpg 58407 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(007).jpg 52581 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(008).jpg 61467 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(010).jpg 41436 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(011).jpg 59176 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(014).jpg 40516 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(015).jpg 43191 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(016).jpg 31548 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(019).jpg 26857 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(020).jpg 49988 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(021).jpg 41058 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007(023).jpg 52146 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08022007009.jpg 248312 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08082006(005).jpg 47240 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08092007034.jpg 126745 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08092007036.jpg 105237 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08092007037.jpg 100714 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08092007038.jpg 102269 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08092007039.jpg 103522 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08092007042.jpg 333981 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08102008(001).jpg 216491 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08102008(003).jpg 235009 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08102008(004).jpg 222319 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08112008(002).jpg 175412 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08112008(005).jpg 177294 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08112008(013).jpg 181499 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08112008(014).jpg 175102 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08112008(015).jpg 182607 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08112008(017).jpg 180280 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08122007(001).jpg 46419 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08122007(012).jpg 63950 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08142007(001).jpg 60129 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08142007(003).jpg 58999 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08142007(005).jpg 75444 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08142007.jpg 54530 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08182007(003).jpg 38603 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08182007.jpg 39714 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\08272007.jpg 67979 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09032007(001).jpg 55156 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09032007(002).jpg 53420 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09032007(003).jpg 66324 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09052007(002).jpg 35796 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09052007(003).jpg 49102 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09052007(004).jpg 59740 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09052007(006).jpg 57930 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09052007(009).jpg 59684 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09052007(010).jpg 80760 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09052007(011).jpg 43729 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09052007(012).jpg 39359 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09222008.jpg 232010 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09302007(001).jpg 71999 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09302007(005).jpg 114491 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09302007(006).jpg 109479 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09302007(008).jpg 86832 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\09302007(013).jpg 66103 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10062008.jpg 231687 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10092008(001).jpg 170713 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10092008(002).jpg 182049 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10192007(002).jpg 139585 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10192007(004).jpg 79758 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10192007(006).jpg 113717 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10192007(010).jpg 120671 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10192007(013).jpg 91950 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\10192007(016).jpg 44381 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11022008.jpg 422302 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11042008(001).jpg 246531 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11042008(002).jpg 192375 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11042008(003).jpg 206271 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11042008(004).jpg 430928 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11092008.jpg 131798 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11192008.jpg 298347 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11212007.jpg 326931 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11242008(002).jpg 280676 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\11242008.jpg 279055 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008(001).jpg 377973 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008(003).jpg 418626 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008(004).jpg 388562 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008(007).jpg 403903 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008(011).jpg 422873 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008(016).jpg 408875 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008(017).jpg 411754 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008(019).jpg 418896 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008(020).jpg 409479 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12022008.jpg 392325 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12242007(001).jpg 107657 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12242007(003).jpg 186744 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12242007(004).jpg 135466 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12252007(007).jpg 477351 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12262007(007).jpg 441592 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12262007(023).jpg 254511 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\12262007(025).jpg 239338 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\26.gif 29240 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\26122006(011).jpg 72784 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\29 (1).JPG 1961826 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\29.JPG 1830813 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\29102007(014).jpg 67734 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\30092007260.jpg 274509 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\30092007269.jpg 320770 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\30092007270.jpg 268473 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\30092007271.jpg 256194 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Airplane.jpg 89311 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\angel.jpg 8281 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\ani_mickey.gif 7515 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Bangag 11-7 duty.jpg 248545 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Battle_Realms_006.jpg 140419 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Bweeh.jpg 122343 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Cuty006.jpg 390434 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Eiw.jpg 161518 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\FE_img 0 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\FE_img\FEscr(018).jpg 19606 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\FE_img\FEscr(019).jpg 15694 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\FE_img\Thumbs.db 6144 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Gene and i.jpg 43204 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Go! ELM0'dàncé.gif 8827 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Grrr.jpg 119852 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(088).jpg 239494 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(092).jpg 232433 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(102).jpg 312630 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(105).jpg 324837 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(108).jpg 225073 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(110).jpg 261424 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(111).jpg 254019 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(117).jpg 286502 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(133).jpg 198259 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(243).jpg 153616 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(244).jpg 126012 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image(246).jpg 232620 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image002.jpg 10197 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Image009.jpg 32872 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\IMG_2940.jpg 1852074 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Inoy2.jpg 54448 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Joey Lisa.jpg 10058 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Jow & dragon.jpg 14375 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Macha.jpg 16963 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Mahangin s labas.jpg 61670 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\misc44-1024.jpg 143362 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Mother&chel.jpg 379654 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Mr. bean.gif 22243 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\new 002.jpg 2832192 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\new 003.jpg 2465553 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Onel .jpg 114380 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Picture(47).jpg 13518 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Psssh.jpg 101914 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\PW080301134357.jpg 8947 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\PW080301135346.jpg 15634 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\PW080503153513.jpg 18126 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\PW080503153723.jpg 18268 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\PW080505113004.jpg 16950 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\PW080505113544.jpg 21603 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\PW081108212601.jpg 17034 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\PW081108213155.jpg 10057 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\sakuragnat.gif 11940 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\sc2-1024.jpg 78564 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\sylvester...gif 14493 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Tsing.jpg 159655 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Ugly Baby.jpg 5563 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Wakeboarding.jpg 347245 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Wakeboarding2.jpg 346763 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Wala lng.jpg 281515 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\wc2-1024.jpg 166721 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\wc3-1024.jpg 104680 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\Wla ila.jpg 54987 bytes
File C:\Documents and Settings\User\My Documents\My Pictures\Images\Thumbs.db\sysúøúø\system.\Thumbs.db.{d3e34b21-9d75-101a-8c3d-00aa001a1652}\X.gif 252678 bytes

---- EOF - GMER 1.0.15 ----
strayker@rock.com
Active Member
 
Posts: 6
Joined: July 7th, 2010, 3:42 pm

Re: Retrieval facebook problem,no recieve code to my email

Unread postby askey127 » July 13th, 2010, 4:43 pm

strayker,
Looks good.
-----------------------------------------------------------
Folder Deletion
In Windows Explorer (My Computer), navigate to the folder shown below, highlight if found, and press Delete.
C:\Program Files\power mp3 wma converter\ <== this folder only
You may have to first open the folder, choose View, Details, and delete all the underlying files and folders before an entire folder can be deleted.
If you need to delete underlying files in a folder and are unable to do so:
Right click the file set for deletion, and check Properties to see if it's read-only. Uncheck the read-only box, click Apply and OK. Then retry Delete.
If a message pops up saying "File in use", or something like that,, note the name of the file, hit Ctrl-Alt-Delete and look under the Processes tab. If the exact filename is in there, highlight it and click End Process, then retry Delete.
Please Note the name and location of any item you cannot delete, or any file not found.
-----------------------------------------------
Run Eset NOD32 Online AntiVirus
Note: You can use either Internet Explorer or Mozilla FireFox for this scan.

  • Please go Here then click on: Image
    Note: If using Mozilla Firefox you will need to download esetsmartinstaller_enu.exe when prompted then double click on it to install.
    All of the below instructions are compatible with either Internet Explorer or Mozilla FireFox.
  • Select the option YES, I accept the Terms of Use then click on: Image
  • When prompted allow the Add-On/Active X to install.
  • Make sure that the option Remove found threats is NOT checked, and the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Now click on: Image
  • The virus signature database... will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • When completed select Uninstall application on close if you so wish, make sure you copy the logfile first!
  • Now click on: Image
  • Use notepad to open the logfile located at C:\Program Files\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic.

askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 13903
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Re: Retrieval facebook problem,no recieve code to my email

Unread postby strayker@rock.com » July 14th, 2010, 9:39 am

ESETSmartInstaller@High as downloader log:
all ok
# version=7
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6211
# api_version=3.0.2
# EOSSerial=7cd8e1312e08864bade9c6bce961122c
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2010-07-14 01:28:24
# local_time=2010-07-14 09:28:24 (+0800, China Standard Time)
# country="United States"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=512 16777215 100 0 575169 575169 0 0
# compatibility_mode=768 16777215 100 0 3802167 3802167 0 0
# compatibility_mode=8192 67108863 100 0 3612 3612 0 0
# scanned=78801
# found=5
# cleaned=0
# scan_time=4933
C:\Program Files\Facemoods.com\FacemoodsToolbar\1.3.30.1\escortApp.dll a variant of Win32/BHO.NWL trojan 00000000000000000000000000000000 I
E:\installers\ValidWinPir_torblog[1].com.ar_.exe Win32/PSWTool.PWDump2 application 00000000000000000000000000000000 I
E:\installers\Windows XP Crack.zip Win32/HackTool.WpaKill.C application 00000000000000000000000000000000 I
E:\installers\PowerConverter\Power MP3 WMA Converter v.1.15 crack\CRACK-LOCATOR[1].COM-Power_MP3_WMA_Converter_v1.15.zip a variant of Win32/Tool.TPE.A application 00000000000000000000000000000000 I
E:\installers\PowerConverter\Power MP3 WMA Converter v.1.15 crack\power.mp3.wma.converter.1.15.crack-rev.exe a variant of Win32/Tool.TPE.A application 00000000000000000000000000000000 I
strayker@rock.com
Active Member
 
Posts: 6
Joined: July 7th, 2010, 3:42 pm

Re: Retrieval facebook problem,no recieve code to my email

Unread postby askey127 » July 14th, 2010, 5:44 pm

strayker,
All these are infected and need to be deleted:
E:\installers\ValidWinPir_torblog[1].com.ar_.exe
E:\installers\Windows XP Crack.zip
E:\installers\PowerConverter\ <== this folder

These kinds of files are loaded with "planted" infections. See my earlier comments.
-----------------------------------------------------------
To re-enable your Emulation drivers, double click DeFogger to run the tool.
  • The application window will appear
  • Click the Re-enable button to re-enable your CD Emulation drivers
  • Click Yes to continue
  • A 'Finished!' message will appear
  • Click OK
  • DeFogger will now ask to reboot the machine - click OK
IMPORTANT! If you receive an error message while running DeFogger, please post the log defogger_enable which will appear on your desktop.

Your Emulation drivers are now re-enabled.
-----------------------------------------------------------
Delete Rkill, zzz.exe, Defogger and Gmer from your desktop.
-----------------------------------------------------------
Reset System Restore Points
  • Click Start > Help and Support
  • Click on ->Undo changes to your computer with System Restore.
  • Click Create A Restore Point then click Next. Give it a name and then click Create, then Close.
  • Close Help and Support Center.
  • Click Start | Run and type Cleanmgr
  • Select (C: ) then click OK.
  • Click the More Options tab.
  • Click Clean Up in the System Restore Section.
This will remove all previous restore points except the newly created one.
This System Restore sequence is not to be done regularly, but only as a Special Case after the removal of malware.

You should be good to go.
askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 13903
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Re: Retrieval facebook problem,no recieve code to my email

Unread postby strayker@rock.com » July 15th, 2010, 5:46 am

Thankyou so much ! :D
your the best support i ever experienced
thankyou for the supports
God bless us all.
:D
strayker@rock.com
Active Member
 
Posts: 6
Joined: July 7th, 2010, 3:42 pm

Re: Retrieval facebook problem,no recieve code to my email

Unread postby askey127 » July 15th, 2010, 7:44 am

this topic is now closed.

We are pleased we could help you resolve your computer's malware issues.

If you would like to make a comment or leave a compliment regarding the help you have received, please see Feedback for Our Helpers - Say "Thanks" Here.
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 13903
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA
Advertisement
Register to Remove


  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 61 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware