Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Please Help....I Can't Browse...

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Please Help....I Can't Browse...

Unread postby rdkyut29 » October 25th, 2008, 11:23 am

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:22:33 PM, on 10/25/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\Program Files\AVG\AVG8\avgrsx.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system\svchost.exe
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: MXPLAY - {0444D43C-3E29-40DC-916B-E5680566AE38} - C:\Program Files\MXPLAY Web\mxtension.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: MEGAUPLOADTOOLBAR - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\avgtoolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O2 - BHO: AL2Spy Class - {DC200356-0864-4F66-8964-5D43A19300F5} - (no file)
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\avgtoolbar.dll
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra button: MXPLAY - {4f9eeb23-f783-459b-8a5a-6c88e4ea6e96} - C:\Program Files\MXPLAY Web\mxtension.dll
O9 - Extra 'Tools' menuitem: MXPLAY - {4f9eeb23-f783-459b-8a5a-6c88e4ea6e96} - C:\Program Files\MXPLAY Web\mxtension.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 8747069465
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O18 - Protocol: AutorunsDisabled - (no CLSID) - (no file)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: AutorunsDisabled - (no CLSID) - (no file)
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O20 - AppInit_DLLs: avgrsstx.dll

--
End of file - 7538 bytes
rdkyut29
Active Member
 
Posts: 8
Joined: October 25th, 2008, 11:19 am
Advertisement
Register to Remove

Re: Please Help....I Can't Browse...

Unread postby askey127 » October 30th, 2008, 7:07 am

rdkyut29,
Sorry for the delay in answering your request.
We have had more logs than we could handle in a timely manner.
If you still need help and are not receiving it elsewhere, please proceed as follows:

Don't know for sure here whether this system can be rescued without Reformatting and Re-installing Windows. Do you have an original Windows CD?
If you cannot download anything, you may have to use a separate computer for downloads, and transfer the downloaded files to this computer each time, via a CD or flash drive.
Let's try this first. Please don't remove, install, or change any settings on anything except what I request
-----------------------------------------------------------
Remove log items with HighjackThis. Start HijackThis.
Click Do System Scan Only. When the Scan is complete, Check the following entries:
(Some of these lines may be missing)
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system\svchost.exe
O2 - BHO: AL2Spy Class - {DC200356-0864-4F66-8964-5D43A19300F5} - (no file)
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O18 - Protocol: AutorunsDisabled - (no CLSID) - (no file)
O18 - Filter: AutorunsDisabled - (no CLSID) - (no file)
O18 - Filter hijack: text/html - (no CLSID) - (no file)

Make sure Every other window except HJT is closed (No other tabs showing in the bottom tray), and Click Fix Checked
Click the "X" in the upper right corner of the HiJackThis window to close it.

Have you checked any items on your own using HiJackThis?

-----------------------------------------------
Run the RSIT Scanner
Please download the scanner from here : http://images.malwareremoval.com/random/RSIT.exe and save it to your desktop. The icon will be named RSIT.exe
Doubleclick the RSIT icon.
When the scan is complete, two text files will open
log.txt <- this one will be maximized
info.txt <- this one will be minimized
( Default location for both files is C:\rsit\ )
Copy/Paste the contents of both log.txt and info.txt into your next post please, along with a new HiJackThis log. Use multiple posts if you prefer.
Also please answer about any removals of HJT log items.
askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Re: Please Help....I Can't Browse...

Unread postby rdkyut29 » October 30th, 2008, 2:31 pm

info.txt logfile of random's system information tool 1.04 2008-10-31 02:26:44

======Uninstall list======

-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
-->C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
-->C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
-->C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNRecode.exe /UNINSTALL
-->MsiExec.exe /I{9A346205-EA92-4406-B1AB-50379DA3F057}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
-->VTUninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3Timer'
Abexo Free Registry Cleaner-->C:\Program Files\Abexo\afrc\uninst.exe
Ad-Aware-->MsiExec.exe /I{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}
Adobe Bridge 1.0-->MsiExec.exe /I{B74D4E10-6884-0000-0000-000000000103}
Adobe Common File Installer-->MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5B39}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Help Center 1.0-->MsiExec.exe /I{E9787678-1033-0000-8E67-000000000001}
Adobe Photoshop CS2-->msiexec /I {236BB7C4-4419-42FD-0409-1E257A25E34D}
Adobe Reader 7.1.0-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A71000000002}
Advanced WindowsCare Personal-->"C:\Program Files\IObit\Advanced WindowsCare V2\unins000.exe"
AutoCAD 2008 - English-->C:\Program Files\AutoCAD 2008\Setup\Setup.exe /P {5783F2D7-6001-0409-0002-0060B0CE6BBA} /M ACAD
Autodesk DWF Viewer 7-->MsiExec.exe /I{9A346205-EA92-4406-B1AB-50379DA3F057}
AVG Free 8.0-->C:\Program Files\AVG\AVG8\setup.exe /UNINSTALL
BlueSoleil-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B9F499B8-D1F0-42FC-84BE-CC552123CCCB}\Setup.exe" -l0x9
Canon Camera Access Library-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\CAL\Uninst.ini"
Canon Camera Support Core Library-->"C:\Program Files\Common Files\Canon\UIW\1.2.0.0\Uninst.exe" "C:\Program Files\Canon\CSCLIB\Uninst.ini"
Canon Camera Window DC_DV 5 for ZoomBrowser EX-->"C:\Program Files\Common Files\Canon\UIW\1.2.0.0\Uninst.exe" "C:\Program Files\Canon\CameraWindow\CameraWindowDVC\Uninst.ini"
Canon EOS 5D WIA Driver-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{BB3AB664-D92B-4CB5-8B3E-D841841F4E68} /l1033
Canon EOS Kiss_N REBEL_XT 350D WIA Driver-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{33CF7CDF-9805-4500-9CC7-D19D52AD63C4} /l1033
Canon EOS-1Ds Mark II WIA Driver-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{652C4ADF-0A29-4B02-9211-EE61675847DE}
Canon RAW Image Task for ZoomBrowser EX-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\RAW Image Task\Uninst.ini"
Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\CameraWindow\CameraWindowDVC6\Uninst.ini"
Canon Utilities CameraWindow-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\CameraWindow\CameraWindowLauncher\Uninst.ini"
Canon Utilities Digital Photo Professional 3.3-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\Digital Photo Professional\Uninst.ini"
Canon Utilities EOS Utility-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\EOS Utility\Uninst.ini"
Canon Utilities MyCamera-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\CameraWindow\MyCamera\Uninst.ini"
Canon Utilities Original Data Security Tools-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\Original Data Security Tools\Uninst.ini"
Canon Utilities PhotoStitch-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\PhotoStitch\Uninst.ini"
Canon Utilities Picture Style Editor-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\Picture Style Editor\Uninst.ini"
Canon Utilities RemoteCapture Task for ZoomBrowser EX-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\CameraWindow\RemoteCaptureTask DC\Uninst.ini"
Canon Utilities WFT-E1/E2/E3 Utility-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\WFT Utility\Uninst.ini"
Canon Utilities ZoomBrowser EX-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\ZoomBrowser EX\Program\Uninst.ini"
Canon ZoomBrowser EX Memory Card Utility-->"C:\Program Files\Common Files\Canon\UIW\1.4.0.0\Uninst.exe" "C:\Program Files\Canon\ZoomBrowser EX MCU\Uninst.ini"
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
C-Media 3D Audio-->C:\WINDOWS\CMIUnInstall.exe
C-Media WDM Audio Driver-->C:\WINDOWS\system32\cmirmdrv.exe
Compatibility Pack for the 2007 Office system-->MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
DID's Total Air War-->C:\WINDOWS\uninst.exe -f"e:\program files\DID\TAW\DeIsL1.isu"
DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
FLV SPLITTER-->"C:\Program Files\GNU\FLVSPLITTER\Uninstall.exe"
Free Registry Defrag-->"C:\Program Files\Registry Clean Expert\unins000.exe"
GOM Player-->"C:\Program Files\GRETECH\GomPlayer\Uninstall.exe"
Google Earth-->MsiExec.exe /I{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}
Google Earth-->MsiExec.exe /I{407B9B5C-DAC5-4F44-A756-B57CAB4E6A8B}
Google Gears-->MsiExec.exe /I{552171BC-30F8-3B29-9C4F-E3FE590B7CAC}
Google Toolbar for Firefox-->MsiExec.exe /X{2CCBABCB-6427-4A55-B091-49864623C43F}
Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar2.dll"
HighMAT Extension to Microsoft Windows XP CD Writing Wizard-->MsiExec.exe /X{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}
HighStreet 5 - 0.17 - PH-->"C:\Program Files\HighStreet 5\unins000.exe"
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Hotfix for Windows XP (KB915800-v4)-->"C:\WINDOWS\$NtUninstallKB915800-v4$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
HP PrecisionScan LT Software-->C:\SCANJET\PrecisionScanLT\uninstal.exe C:\SCANJET\PrecisionScanLT\uninstal.cfg
HP Software Update-->MsiExec.exe /X{15EE79F4-4ED1-4267-9B0F-351009325D7D}
IL-2 Sturmovik 1946-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{79438F1E-DEC3-443D-9DCD-FECE2D68C605} /l1033
Image Transfer-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{564A8DD3-70BC-4018-A5C3-7CEB10BBB6E9}\Setup.exe" UNINSTALL
iTunes-->MsiExec.exe /I{02DFB3FD-CF52-4183-8BCA-2A127D4888F4}
J2SE Runtime Environment 5.0 Update 11-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150110}
J2SE Runtime Environment 5.0 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150030}
Java DB 10.2.2.0-->MsiExec.exe /X{0ECB59D5-A3FC-4D61-AD3B-6CE679B3F852}
Java(TM) 6 Update 2-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
Java(TM) 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Java(TM) SE Development Kit 6 Update 2-->MsiExec.exe /I{32A3A4F4-B792-11D6-A78A-00B0D0160020}
Java(TM) SE Runtime Environment 6 Update 1-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}
Macromedia Extension Manager-->MsiExec.exe /I{5546CDB5-2CE2-498B-B059-5B3BF81FC41F}
Macromedia Flash 8 Video Encoder-->MsiExec.exe /X{8BF2C401-02CE-424D-BC26-6C4F9FB446B6}
Macromedia Flash Player 8 Plugin-->MsiExec.exe /X{91057632-CA70-413C-B628-2D3CDBBB906B}
Macromedia Flash Player 8-->MsiExec.exe /X{6815FCDD-401D-481E-BA88-31B4754C2B46}
MaxBlast 4-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{639858DD-4966-40F3-A706-7C838BCF3A2B}\Setup.exe"
MFZ0 codec (Remove Only)-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\MFZ0Vfw.INF
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft .NET Framework 3.5-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5\setup.exe
Microsoft .NET Framework 3.5-->MsiExec.exe /I{2FC099BD-AC9B-33EB-809C-D332E1B27C40}
Microsoft ActiveSync-->MsiExec.exe /I{99052DB7-9592-4522-A558-5417BBAD48EE}
Microsoft Combat Flight Simulator 3.0-->"E:\Program Files\Microsoft Games\Combat Flight Simulator 3\UNINSTAL.EXE" /runtemp /addremove
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office XP Professional-->MsiExec.exe /I{90110409-6000-11D3-8CFE-0050048383C9}
Microsoft Silverlight-->MsiExec.exe /I{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft User-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWudf01005$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Web Publishing Wizard 1.52-->RunDll32 ADVPACK.DLL,LaunchINFSection C:\WINDOWS\INF\wpie4x86.inf,WebPostUninstall
Mozilla Firefox (3.0.3)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
Nero 7 Ultra Edition-->MsiExec.exe /I{43FFE159-3199-4188-A1CD-629166AD1033}
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
Nokia Connectivity Cable Driver-->MsiExec.exe /X{972B1D9B-0EAD-49E8-B7D6-3B83FD5665B1}
Nokia PC Suite-->C:\Documents and Settings\All Users\Application Data\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Nokia_PC_Suite_683_rel_14_1_wu_eng_us.exe /LANG="1033"
Nokia PC Suite-->MsiExec.exe /I{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}
NVIDIA Drivers-->C:\WINDOWS\system32\nvudisp.exe UninstallGUI
Opanda IExif 2.3-->"C:\Program Files\Opanda\IExif 2.3\unins000.exe"
Opanda PowerExif 1.2 Professional Trial-->"C:\Program Files\Opanda\PowerExif 1.2\unins000.exe"
Panda ActiveScan 2.0-->C:\Program Files\Panda Security\ActiveScan 2.0\as2uninst.exe
PC Connectivity Solution-->MsiExec.exe /I{066D65EA-ED53-44E4-A96A-F81B6E409D2E}
PIF DESIGNER2.1-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0A7124DF-F8A4-405B-904F-CFD3D3DFB5AE}\SETUP.EXE" -l0x9 anything
PowerDVD-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
PowerISO-->"C:\Program Files\PowerISO\uninstall.exe"
RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Rhapsody Player Engine-->MsiExec.exe /I{22DE1881-9D24-4981-B5CC-EC7E9F2F4D52}
Rhapsody Player Engine-->MsiExec.exe /I{30C2FCD0-FF7B-4FFA-8DDE-43A22E01A1E7}
Risk Shield-->C:\Program Files\Microsoft ActiveSync\Risk Shield\Uninstall.exe Risk Shield
Rooks Revenge for Pocket PC-->C:\PROGRA~1\ASTRAW~1\Rooks Revenge for Pocket PC\UNWISE.EXE C:\PROGRA~1\ASTRAW~1\Rooks Revenge for Pocket PC\INSTALL.LOG
S3 S3Display-->vtuninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3Display'
S3 S3Gamma2-->vtuninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3Gamma2'
S3 S3Info2-->vtuninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3Info2'
S3 S3Overlay-->vtuninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3Overlay'
S3 S3TrayPlus-->vtuninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3TrayPlus'
S3Display-->s3uninst.exe -reg 5 'HKLM\Software\S3\S3Uninst\S3Display'
S3Gamma2-->s3uninst.exe -reg 5 'HKLM\Software\S3\S3Uninst\S3Gamma2'
S3Info2-->s3uninst.exe -reg 5 'HKLM\Software\S3\S3Uninst\S3Info2'
S3Overlay-->s3uninst.exe -reg 5 'HKLM\Software\S3\S3Uninst\S3Overlay'
ScanToWeb-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5}\SETUP.EXE" ADDREMOVEDLG
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft .NET Framework 2.0 (KB928365)-->C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {8056AC9E-49C5-4375-9ADE-B2F862C9DF51} /package {7131646D-CD3C-40F4-97B9-CD9E4E6262EF}
Security Update for Windows Internet Explorer 7 (KB928090)-->"C:\WINDOWS\ie7updates\KB928090-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB929969)-->"C:\WINDOWS\ie7updates\KB929969\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB931768)-->"C:\WINDOWS\ie7updates\KB931768-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB933566)-->"C:\WINDOWS\ie7updates\KB933566-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB937143)-->"C:\WINDOWS\ie7updates\KB937143-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB939653)-->"C:\WINDOWS\ie7updates\KB939653-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Security Update for Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Security Update for Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Security Update for Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Skype™ 3.6-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
Smart Defrag 1.0-->"C:\Program Files\IObit\IObit SmartDefrag\unins000.exe"
SompyPlayer-->C:\Program Files\Microsoft ActiveSync\SompyPlayer\Uninstall.exe SompyPlayer
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
System Requirements Lab-->C:\Program Files\SystemRequirementsLab\Uninstall.exe
TablEdit 2.64-->"C:\Program Files\TablEdit\unins000.exe"
TranCreative Remote Keyboard (Desktop and Pocket PC)-->"C:\Program Files\Remote Keyboard\unins000.exe"
Unlocker 1.8.5-->C:\Program Files\Unlocker\uninst.exe
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Update for Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
USB-IrDA Adapter-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{10F5D9BB-E2F2-4B18-A65D-928B73D22E6F}\Setup.exe" -l0x9
VeohTV BETA-->C:\Program Files\InstallShield Installation Information\{97A96172-A963-4A37-9FFB-DA6805BB915A}\setup.exe -runfromtemp -l0x0409
VIA Rhine-Family Fast Ethernet Adapter-->Rundll32.exe vuins32.dll,vuins32Ex $Rhine $VIA
Viewpoint Media Player-->C:\Program Files\Viewpoint\Viewpoint Media Player\mtsAxInstaller.exe /u
Windows Genuine Advantage v1.3.0254.0-->MsiExec.exe /I{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer Clean Up-->MsiExec.exe /X{121634B0-2F4B-11D3-ADA3-00C04F52DD52}
Windows Live installer-->MsiExec.exe /X{A7E4ECCA-4A8E-4258-8EC8-2DCCF5B11320}
Windows Live Photo Gallery-->MsiExec.exe /X{2D4F6BE3-6FEF-4FE9-9D01-1406B220D08C}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
Word Mojo for Pocket PC-->C:\PROGRA~1\ASTRAW~1\Word Mojo\UNWISE.EXE C:\PROGRA~1\ASTRAW~1\Word Mojo\INSTALL.LOG
Yahoo! Browser Services-->C:\PROGRA~1\Yahoo!\Common\UNIN_Y~1.EXE /S
Yahoo! Messenger-->C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
Yahoo! Toolbar-->C:\PROGRA~1\Yahoo!\Common\unyt.exe
YEmoteMArchive-->MsiExec.exe /I{AC9272B2-1820-45AE-BCDF-8FDB105BA581}
ZOOM ASIO Driver-->ZoomUnin.exe

=====HijackThis Backups=====

O2 - BHO: MEGAUPLOADTOOLBAR - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O2 - BHO: AL2Spy Class - {DC200356-0864-4F66-8964-5D43A19300F5} - (no file)
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O23 - Service: Windows Search (WSearch) - Unknown owner - C:\WINDOWS\system32\SearchIndexer.exe (file missing)
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O23 - Service: Btsot3 - Unknown owner - (no file)
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system\svchost.exe,
O18 - Filter: AutorunsDisabled - (no CLSID) - (no file)
O18 - Protocol: AutorunsDisabled - (no CLSID) - (no file)
O18 - Filter hijack: text/html - (no CLSID) - (no file)
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)

======Hosts File======

127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com

======Security center information======

AV: AVG Anti-Virus Free
FW: Norton Internet Worm Protection (disabled)

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"NUMBER_OF_PROCESSORS"=1
"OS"=Windows_NT
"Path"=C:\Program Files\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Adobe\AGL;C:\Program Files\Common Files\Teleca Shared;C:\Program Files\Java\jdk1.6.0_02\bin
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.JAVA
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 44 Stepping 2, AuthenticAMD
"PROCESSOR_LEVEL"=15
"PROCESSOR_REVISION"=2c02
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"windir"=%SystemRoot%

-----------------EOF-----------------
rdkyut29
Active Member
 
Posts: 8
Joined: October 25th, 2008, 11:19 am

Re: Please Help....I Can't Browse...

Unread postby rdkyut29 » October 30th, 2008, 2:32 pm

Logfile of random's system information tool 1.04 (written by random/random)
Run by Rush at 2008-10-31 02:26:33
Microsoft Windows XP Professional Service Pack 3
System drive C: has 9 GB (24%) free of 39 GB
Total RAM: 767 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:26:41 AM, on 10/31/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\PROGRA~1\MICROS~1\rapimgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Documents and Settings\Rush\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Rush.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: MXPLAY - {0444D43C-3E29-40DC-916B-E5680566AE38} - C:\Program Files\MXPLAY Web\mxtension.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: (no name) - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - (no file)
O2 - BHO: (no name) - {DC200356-0864-4F66-8964-5D43A19300F5} - (no file)
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra button: MXPLAY - {4f9eeb23-f783-459b-8a5a-6c88e4ea6e96} - C:\Program Files\MXPLAY Web\mxtension.dll
O9 - Extra 'Tools' menuitem: MXPLAY - {4f9eeb23-f783-459b-8a5a-6c88e4ea6e96} - C:\Program Files\MXPLAY Web\mxtension.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 8747069465
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O18 - Protocol: AutorunsDisabled - (no CLSID) - (no file)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NetCom3 Service (Netcom3) - Unknown owner - E:\Program Files\Netcom3 Cleaner\PSCMonitor.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

--
End of file - 9709 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\GoogleUpdateTaskUser.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll [2007-09-06 816400]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0444D43C-3E29-40DC-916B-E5680566AE38}]
MXPLAY - C:\Program Files\MXPLAY Web\mxtension.dll [2008-08-07 274432]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-12-18 59032]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-02-09 370296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2008-10-28 455960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll [2008-07-07 1562448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}]
Yahoo! IE Services Button - C:\Program Files\Yahoo!\Common\yiesrvc.dll [2006-11-01 198136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar2.dll [2008-05-11 2549368]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll [2008-10-13 737776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B56A7D7D-6927-48C8-A975-17DF180C71AC}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DC200356-0864-4F66-8964-5D43A19300F5}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{D0943516-5076-4020-A3B5-AEFAF26AB263} - Veoh Browser Plug-in - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll [2007-11-13 352256]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll [2007-09-06 816400]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar2.dll [2008-05-11 2549368]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-10-22 7700480]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-02-04 267048]
"Cmaudio"=RunDll32 cmicnfg.cpl []
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2008-10-28 1234712]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-02-09 185896]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"=C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE [2007-08-30 4670704]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-05-01 68856]
"H/PC Connection Agent"=C:\Program Files\Microsoft ActiveSync\wcescomm.exe [2006-11-13 1289000]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="avgrsstx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-09-05 241704]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, zwebauth.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoResolveSearch"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:*:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgnsx.exe"="C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\Veoh Networks\Veoh\VeohClient.exe"="C:\Program Files\Veoh Networks\Veoh\VeohClient.exe:*:Disabled:Veoh Client"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4269d8a0-4f9b-11dc-8b9b-00138f554f92}]
shell\AutoRun\command - Auto.exe %1
shell\Explore\command - Auto.exe %1
shell\Open\command - Auto.exe %1


======File associations======

.js - edit -
.scr - open - "C:\WINDOWS\system32\notepad.exe" "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 months======

2008-10-31 02:26:33 ----DC---- C:\rsit
2008-10-28 03:17:58 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2008-10-27 10:08:55 ----D---- C:\Documents and Settings\Rush\Application Data\Malwarebytes
2008-10-27 10:08:48 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-10-27 09:18:43 ----D---- C:\WINDOWS\$regcmp$
2008-10-26 21:02:01 ----A---- C:\WINDOWS\imsins.BAK
2008-10-26 11:36:33 ----D---- C:\WINDOWS\SoftwareDistribution
2008-10-26 10:33:21 ----HD---- C:\Program Files\WindowsUpdate
2008-10-26 02:06:42 ----D---- C:\Program Files\Panda Security
2008-10-25 22:29:35 ----D---- C:\Program Files\Trend Micro
2008-10-25 14:05:16 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-10-25 02:12:56 ----A---- C:\WINDOWS\ntbtlog.txt
2008-10-24 14:29:33 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2008-10-17 13:41:55 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2008-10-17 13:41:46 ----HDC---- C:\WINDOWS\$NtUninstallKB956391$
2008-10-17 13:41:38 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2008-10-17 13:40:31 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2008-10-17 13:39:36 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2008-10-13 16:45:32 ----D---- C:\WINDOWS\system32\QuickTime
2008-10-13 16:45:32 ----D---- C:\Program Files\Macromedia
2008-10-02 12:17:21 ----D---- C:\Documents and Settings\Rush\Application Data\Windows Search

======List of files/folders modified in the last 1 months======

2008-10-31 02:26:40 ----D---- C:\WINDOWS\Temp
2008-10-31 00:39:23 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-10-31 00:39:05 ----D---- C:\WINDOWS\Prefetch
2008-10-31 00:39:03 ----D---- C:\Program Files\Mozilla Firefox
2008-10-31 00:37:54 ----AC---- C:\WINDOWS\ModemLog_Bluetooth Fax Modem.txt
2008-10-31 00:37:54 ----AC---- C:\WINDOWS\ModemLog_Bluetooth DUN Modem.txt
2008-10-31 00:37:48 ----AC---- C:\WINDOWS\ModemLog_SoftV92 Data Fax Modem.txt
2008-10-28 16:06:41 ----D---- C:\WINDOWS\system32\CatRoot2
2008-10-28 03:17:58 ----D---- C:\WINDOWS\system32
2008-10-28 03:17:57 ----D---- C:\WINDOWS\system32\drivers
2008-10-28 03:17:42 ----D---- C:\Documents and Settings\All Users\Application Data\avg8
2008-10-28 03:17:10 ----SHD---- C:\WINDOWS\Installer
2008-10-28 03:17:10 ----SHD---- C:\Config.Msi
2008-10-28 03:16:47 ----D---- C:\WINDOWS
2008-10-28 01:13:31 ----D---- C:\Program Files
2008-10-27 21:23:05 ----HD---- C:\WINDOWS\inf
2008-10-27 17:11:13 ----D---- C:\Program Files\HighStreet 5
2008-10-27 13:18:39 ----RSD---- C:\WINDOWS\Fonts
2008-10-27 03:31:09 ----D---- C:\Documents and Settings\Rush\Application Data\Adobe
2008-10-27 01:17:19 ----D---- C:\WINDOWS\system32\en-US
2008-10-27 01:17:19 ----D---- C:\Program Files\Windows Desktop Search
2008-10-27 01:14:34 ----D---- C:\WINDOWS\system32\wbem
2008-10-26 22:50:48 ----RSHC---- C:\boot.ini
2008-10-26 22:50:48 ----AC---- C:\WINDOWS\win.ini
2008-10-26 22:50:48 ----AC---- C:\WINDOWS\system.ini
2008-10-26 22:50:43 ----D---- C:\WINDOWS\pss
2008-10-26 15:45:12 ----SHD---- C:\System Volume Information
2008-10-26 15:45:12 ----D---- C:\WINDOWS\system32\Restore
2008-10-26 13:31:56 ----SHD---- C:\RECYCLER
2008-10-26 12:32:17 ----RSHD---- C:\WINDOWS\system32\dllcache
2008-10-26 11:47:57 ----D---- C:\WINDOWS\network diagnostic
2008-10-26 08:26:11 ----D---- C:\Program Files\Common Files
2008-10-26 08:24:59 ----D---- C:\Program Files\Kuma Games
2008-10-26 08:24:56 ----D---- C:\Program Files\DivX
2008-10-25 16:14:59 ----D---- C:\WINDOWS\Debug
2008-10-25 13:08:10 ----D---- C:\Program Files\Spyware Doctor
2008-10-25 11:02:23 ----D---- C:\Program Files\Lavasoft
2008-10-24 23:50:21 ----D---- C:\WINDOWS\system32\config
2008-10-24 23:03:58 ----D---- C:\WINDOWS\Help
2008-10-24 14:28:47 ----HD---- C:\WINDOWS\$hf_mig$
2008-10-22 01:06:26 ----AC---- C:\WINDOWS\NeroDigital.ini
2008-10-22 00:02:29 ----D---- C:\Program Files\Microsoft Silverlight
2008-10-21 00:12:05 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-10-18 06:42:49 ----D---- C:\Program Files\Outlook Express
2008-10-17 13:41:21 ----D---- C:\Program Files\Internet Explorer
2008-10-17 13:41:03 ----D---- C:\WINDOWS\ie7updates
2008-10-16 00:34:24 ----A---- C:\WINDOWS\system32\netapi32.dll
2008-10-15 02:51:44 ----D---- C:\WINDOWS\system32\FxsTmp
2008-10-13 18:02:33 ----D---- C:\WINDOWS\Registration
2008-10-13 12:57:59 ----D---- C:\Program Files\Google
2008-10-13 12:57:28 ----D---- C:\Program Files\DAEMON Tools Toolbar
2008-10-13 12:56:00 ----D---- C:\Documents and Settings
2008-10-13 12:55:46 ----SD---- C:\WINDOWS\Tasks
2008-10-13 12:54:26 ----DC---- C:\WINDOWS\system32\DRVSTORE
2008-10-13 03:57:55 ----D---- C:\WINDOWS\system32\CatRoot
2008-10-12 04:58:42 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-10-12 04:16:46 ----D---- C:\Program Files\Windows Media Player
2008-10-07 12:19:42 ----AC---- C:\WINDOWS\system32\MRT.exe
2008-10-04 01:41:15 ----A---- C:\WINDOWS\system32\ieframe.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK8;AMD Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-05-10 36864]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2008-10-28 97928]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2008-10-28 26824]
R1 ikhfile;File Security Kernel Anti-Spyware Driver; C:\WINDOWS\system32\drivers\ikhfile.sys [2006-07-10 30592]
R1 ikhlayer;Kernel Anti-Spyware Driver; C:\WINDOWS\system32\drivers\ikhlayer.sys [2006-08-24 51072]
R1 NPPTNT;NPPTNT; \??\C:\WINDOWS\System32\npptNT.sys []
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2008-01-20 33292]
R1 Tcpip6;Microsoft IPv6 Protocol Driver; C:\WINDOWS\system32\DRIVERS\tcpip6.sys [2008-06-20 225856]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2002-08-29 12032]
R2 AvgTdiX;AVG Free8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2008-10-28 76040]
R2 irda;IrDA Protocol; C:\WINDOWS\System32\DRIVERS\irda.sys [2008-04-14 88192]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2004-08-04 11868]
R3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2005-05-31 20480]
R3 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\system32\DRIVERS\vbtenum.sys [2005-04-30 11860]
R3 cmuda;C-Media WDM Audio Interface; C:\WINDOWS\system32\drivers\cmuda.sys [2005-12-15 1368000]
R3 FETND5BV;VIA Rhine-Family Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys [2005-11-16 42496]
R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2004-08-04 1041536]
R3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2004-08-04 220032]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-10-22 3994624]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\System32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2002-08-29 5888]
R3 tunmp;Microsoft Tun Miniport Adapter Driver; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-14 12288]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys [2004-10-19 61312]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys [2005-03-25 82148]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2004-08-04 685056]
R3 ZSMC301b;A4 Tech USB PC Camera; C:\WINDOWS\System32\Drivers\usbVM31b.sys [2004-08-17 91263]
S1 AmdK7;AMD K7 Processor Driver; C:\WINDOWS\System32\DRIVERS\amdk7.sys [2008-04-14 37760]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S2 MASPINT;MASPINT; C:\WINDOWS\system32\drivers\MASPINT.sys []
S2 PPSCAN;PPSCAN; C:\WINDOWS\system32\drivers\PPSCAN.sys [2002-03-29 91520]
S3 ap7b526v;ap7b526v; C:\WINDOWS\system32\drivers\ap7b526v.sys []
S3 basic2;basic2; C:\WINDOWS\System32\DRIVERS\HSF_BSC2.sys []
S3 Bridge;MAC Bridge; C:\WINDOWS\System32\DRIVERS\bridge.sys [2008-04-14 71552]
S3 BridgeMP;MAC Bridge Miniport; C:\WINDOWS\System32\DRIVERS\bridge.sys [2008-04-14 71552]
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2005-04-30 10804]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys [2005-05-31 23000]
S3 BTNetFilter;Bluetooth Network Filter; \??\C:\WINDOWS\system32\drivers\BTNetFilter.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys []
S3 EagleNT;EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys []
S3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [2001-08-17 27165]
S3 FETNDISB;VIA Rhine Family Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\fetnd5b.sys [2003-11-11 41984]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2006-12-03 15440]
S3 HCF_MSFT;HCF_MSFT; C:\WINDOWS\System32\DRIVERS\HCF_MSFT.sys [2001-08-17 907456]
S3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 hsf_msft;hsf_msft; C:\WINDOWS\System32\DRIVERS\HSF_MSFT.sys []
S3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\System32\DRIVERS\irsir.sys [2001-08-17 18688]
S3 k600bus;Sony Ericsson 600i driver (WDM); C:\WINDOWS\system32\DRIVERS\k600bus.sys [2005-05-11 52384]
S3 k600mdfl;Sony Ericsson 600i USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\k600mdfl.sys [2005-05-11 6096]
S3 k600mdm;Sony Ericsson 600i USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\k600mdm.sys [2005-05-11 87456]
S3 k600mgmt;Sony Ericsson 600i USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\k600mgmt.sys [2005-05-11 79248]
S3 k600obex;Sony Ericsson 600i USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\k600obex.sys [2005-05-11 77072]
S3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2002-08-29 12160]
S3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-17 2944]
S3 MSIRCOMM;Microsoft IR Communications Driver; C:\WINDOWS\system32\DRIVERS\MSIRCOMM.sys [2008-04-14 22016]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\nmwcd.sys [2007-02-22 137216]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\nmwcdc.sys [2007-02-22 8320]
S3 nmwcdcj;Nokia USB Port; C:\WINDOWS\system32\drivers\nmwcdcj.sys [2007-02-22 12288]
S3 nmwcdcm;Nokia USB Modem; C:\WINDOWS\system32\drivers\nmwcdcm.sys [2007-02-22 12288]
S3 npkcrypt;npkcrypt; \??\E:\Program Files\Gravity\RagnarokOnline\npkcrypt.sys []
S3 NTSIM;NTSIM; \??\C:\WINDOWS\system32\ntsim.sys []
S3 Rksample;Rksample; C:\WINDOWS\System32\DRIVERS\HSF_SAMP.sys []
S3 S3Psddr;S3Psddr; C:\WINDOWS\System32\DRIVERS\s3gnbm.sys [2004-03-02 167040]
S3 s816bus;Sony Ericsson Device 816 driver (WDM); C:\WINDOWS\system32\DRIVERS\s816bus.sys [2007-06-19 81832]
S3 s816mdfl;Sony Ericsson Device 816 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\s816mdfl.sys [2007-06-19 13864]
S3 s816mdm;Sony Ericsson Device 816 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\s816mdm.sys [2007-06-19 107304]
S3 s816mgmt;Sony Ericsson Device 816 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\s816mgmt.sys [2007-06-19 99112]
S3 s816nd5;Sony Ericsson Device 816 USB Ethernet Emulation SEMCMR7 (NDIS); C:\WINDOWS\system32\DRIVERS\s816nd5.sys [2007-06-19 21928]
S3 s816obex;Sony Ericsson Device 816 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\s816obex.sys [2007-06-19 97320]
S3 s816unic;Sony Ericsson Device 816 USB Ethernet Emulation SEMCMR7 (WDM); C:\WINDOWS\system32\DRIVERS\s816unic.sys [2007-06-19 97704]
S3 SE2Fbus;Sony Ericsson Device 047 Driver driver (WDM); C:\WINDOWS\system32\DRIVERS\SE2Fbus.sys [2006-05-15 61600]
S3 SE2Fmdfl;Sony Ericsson Device 047 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\SE2Fmdfl.sys [2006-05-15 9360]
S3 SE2Fmdm;Sony Ericsson Device 047 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\SE2Fmdm.sys [2006-05-15 97184]
S3 SE2Fmgmt;Sony Ericsson Device 047 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\SE2Fmgmt.sys [2006-05-15 88688]
S3 se2Fnd5;Sony Ericsson Device 047 USB Ethernet Emulation SEMC47 (NDIS); C:\WINDOWS\system32\DRIVERS\se2Fnd5.sys [2006-05-15 18704]
S3 SE2Fobex;Sony Ericsson Device 047 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\SE2Fobex.sys [2006-05-15 86560]
S3 se2Funic;Sony Ericsson Device 047 USB Ethernet Emulation SEMC47 (WDM); C:\WINDOWS\system32\DRIVERS\se2Funic.sys [2006-05-15 90800]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 StillCam;Still Serial Digital Camera Driver; C:\WINDOWS\System32\DRIVERS\serscan.sys [2001-08-17 6784]
S3 STIrUsb;STIrUsb.sys USB-IrDA Adapter; C:\WINDOWS\system32\DRIVERS\irstusb.sys [2001-08-17 26624]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2008-04-14 12800]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 VHidMinidrv;Bluetooth HID Device Service; C:\WINDOWS\system32\drivers\VHIDMini.sys [2005-04-30 11736]
S3 viagfx;viagfx; C:\WINDOWS\system32\DRIVERS\vtmini.sys [2004-12-07 172672]
S3 VIAudio;Vinyl AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\vinyl97.sys [2005-11-25 203776]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-15 82688]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-10-25 611664]
R2 avg8emc;AVG Free8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-10-28 875288]
R2 avg8wd;AVG Free8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-10-28 231704]
R2 BlueSoleil Hid Service;BlueSoleil Hid Service; C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe [2005-04-06 110592]
R2 CCALib8;Canon Camera Access Library 8; C:\Program Files\Canon\CAL\CALMAIN.exe [2007-01-31 96370]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2003-06-19 322120]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-22 159810]
R2 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-02-04 504104]
S2 6to4;IPv6 Helper Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 267776]
S2 Irmon;Infrared Monitor; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2007-04-30 72704]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2008-02-25 85096]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-05-08 137200]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-03-14 779824]
S3 Netcom3;NetCom3 Service; E:\Program Files\Netcom3 Cleaner\PSCMonitor.exe []
S3 p2pgasvc;Peer Networking Group Authentication; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 p2pimsvc;Peer Networking Identity Manager; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 p2psvc;Peer Networking; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 PNRPSvc;Peer Name Resolution Protocol; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2007-03-26 292864]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
S4 Akamai;Akamai; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S4 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]

-----------------EOF-----------------
rdkyut29
Active Member
 
Posts: 8
Joined: October 25th, 2008, 11:19 am

Re: Please Help....I Can't Browse...

Unread postby rdkyut29 » October 30th, 2008, 2:33 pm

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:30:25 AM, on 10/31/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\PROGRA~1\MICROS~1\rapimgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Mozilla Firefox\firefox.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: MXPLAY - {0444D43C-3E29-40DC-916B-E5680566AE38} - C:\Program Files\MXPLAY Web\mxtension.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: (no name) - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - (no file)
O2 - BHO: (no name) - {DC200356-0864-4F66-8964-5D43A19300F5} - (no file)
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra button: MXPLAY - {4f9eeb23-f783-459b-8a5a-6c88e4ea6e96} - C:\Program Files\MXPLAY Web\mxtension.dll
O9 - Extra 'Tools' menuitem: MXPLAY - {4f9eeb23-f783-459b-8a5a-6c88e4ea6e96} - C:\Program Files\MXPLAY Web\mxtension.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 8747069465
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O18 - Protocol: AutorunsDisabled - (no CLSID) - (no file)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NetCom3 Service (Netcom3) - Unknown owner - E:\Program Files\Netcom3 Cleaner\PSCMonitor.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

--
End of file - 9722 bytes
rdkyut29
Active Member
 
Posts: 8
Joined: October 25th, 2008, 11:19 am

Re: Please Help....I Can't Browse...

Unread postby rdkyut29 » October 30th, 2008, 2:45 pm

Thank you for replying... I already had help with a technician that I know with regards to what to check in HiJackThis. However, I still did what you have told me to do...

When I encountered this problem I was able to do chat and games but I cannot browse. The error page says "Connection Interrupted" on Mozilla as well as in Internet Explorer. When I disabled the services and startup on msconfig I was able to browse. I run avg, highjackthis, stinger, adaware, and active scan.

;***********************************************************************************************************************************************************************************
ANALYSIS: 2008-10-26 07:58:47
PROTECTIONS: 1
MALWARE: 14
SUSPECTS: 1
;***********************************************************************************************************************************************************************************
PROTECTIONS
Description Version Active Updated
;===================================================================================================================================================================================
AVG Anti-Virus 8.0 Yes Yes
;===================================================================================================================================================================================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===================================================================================================================================================================================
00013869 adware/cydoor Adware No 0 Yes No c:\windows\cdmxtras
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\Rush\Cookies\rush@doubleclick[1].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Rush\Cookies\rush@atdmt[1].txt
00152401 Cookie/Belnk TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Cookies\guest@belnk[1].txt
00162730 Cookie/Belnk TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Cookies\guest@dist.belnk[2].txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Rush\Cookies\rush@ad.yieldmanager[1].txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Rush\Cookies\rush@serving-sys[1].txt
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Rush\Cookies\rush@bs.serving-sys[1].txt
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5D2C5018E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5BE7B0188).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5D2C5018E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5D2C5018E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775402393007A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775402393007A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775402393007A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775403050007D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775403050007D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775403050007D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754034D8007F).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754034D8007F).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754034D8007F).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754043550084).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754043550084).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754043550084).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775404D650087).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775404D650087).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775404D650087).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77540544C0089).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77540544C0089).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77540544C0089).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775406654008E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775406654008E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775406654008E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775406BBF0090).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775406BBF0090).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775406BBF0090).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754079A80093).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754079A80093).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754079A80093).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775408ECB0096).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775408ECB0096).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775408ECB0096).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754093F90098).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754093F90098).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754093F90098).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775409C5A0099).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775409C5A0099).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775409C5A0099).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775417FCE00CC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775417FCE00CC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775417FCE00CC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77541833C00CE).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77541833C00CE).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77541833C00CE).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775418FBF00CF).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775418FBF00CF).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775418FBF00CF).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775419EB300D2).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775419EB300D2).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775419EB300D2).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542001F00DA).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542001F00DA).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542001F00DA).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542083C00DD).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542083C00DD).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542083C00DD).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775424C9C00E4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775424C9C00E4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775424C9C00E4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775425A9300E8).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775425A9300E8).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775425A9300E8).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754261AF00E9).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754261AF00E9).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754261AF00E9).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542676D00EA).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542676D00EA).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542676D00EA).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775426E5B00EC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775426E5B00EC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775426E5B00EC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542C79500EF).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542C79500EF).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77542C79500EF).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77544280900FA).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77544280900FA).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77544280900FA).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754428D800FD).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754428D800FD).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7754428D800FD).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775753095021B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775753095021B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775753095021B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757535C3021E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757535C3021E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757535C3021E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757545C00223).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757545C00223).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757545C00223).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757551250226).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757551250226).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757551250226).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775756359022A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775756359022A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775756359022A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575755D0232).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575755D0232).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575755D0232).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757590EB0237).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757590EB0237).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757590EB0237).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757595A5023D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757595A5023D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757595A5023D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575A82E023F).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575A82E023F).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575A82E023F).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575ADE40242).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575ADE40242).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575ADE40242).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575B7780246).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575B7780246).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575B7780246).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575C070024A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575C070024A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575C070024A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575D3C2024C).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575D3C2024C).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575D3C2024C).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575DDDF0251).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575DDDF0251).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575DDDF0251).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575E4260253).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575E4260253).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575E4260253).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575E9BC0256).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575E9BC0256).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575E9BC0256).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575F31D0258).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575F31D0258).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77575F31D0258).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576017B025C).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576017B025C).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576017B025C).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576060C025E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576060C025E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576060C025E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775760A580260).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775760A580260).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775760A580260).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757611030263).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757611030263).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757611030263).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775761B2F0265).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775761B2F0265).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775761B2F0265).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576274D0268).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576274D0268).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576274D0268).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576331D026B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576331D026B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77576331D026B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775768EB20273).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775768EB20273).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C775768EB20273).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757709950352).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757709950352).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C7757709950352).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABA703F008A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABA703F008A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABA703F008A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABA9B670092).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABA9B670092).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABA9B670092).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABAD513009B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABAD513009B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABAD513009B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABADE09009D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABADE09009D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABADE09009D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABAE9CA00A0).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABAE9CA00A0).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABAE9CA00A0).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB009D00A3).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB009D00A3).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB009D00A3).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB14CD00A7).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB14CD00A7).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB14CD00A7).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB199300A8).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB199300A8).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB199300A8).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB209A00AB).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB209A00AB).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB209A00AB).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB241200AC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB241200AC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB241200AC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB723E00BB).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB723E00BB).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB723E00BB).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB795900BD).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB795900BD).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB795900BD).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB83F300C0).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB83F300C0).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB83F300C0).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB8AD500C2).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB8AD500C2).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB8AD500C2).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB9C1500C5).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB9C1500C5).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABB9C1500C5).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABBE9D100D0).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABBE9D100D0).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABBE9D100D0).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABBFD5300D4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABBFD5300D4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABBFD5300D4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC51A900E1).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC51A900E1).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC51A900E1).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC594700E3).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC594700E3).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC594700E3).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC65EA00E4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC65EA00E4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC65EA00E4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC703B00E6).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC703B00E6).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC703B00E6).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC76C700E8).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC76C700E8).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC76C700E8).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC7B5300E9).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC7B5300E9).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC7B5300E9).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC832B00EC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC832B00EC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC832B00EC).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC90A600EF).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC90A600EF).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABC90A600EF).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABCA8F200F2).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABCA8F200F2).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABCA8F200F2).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABCB0E300F4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABCB0E300F4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABCB0E300F4).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABCC3EF00F6).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABCC3EF00F6).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77ABCC3EF00F6).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2799000FB).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2799000FB).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2799000FB).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC289EE00FE).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC289EE00FE).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC289EE00FE).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC293680101).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC293680101).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC293680101).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC298FA0103).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC298FA0103).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC298FA0103).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC29F680105).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC29F680105).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC29F680105).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2A7800107).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2A7800107).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2A7800107).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2ABDB0109).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2ABDB0109).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2ABDB0109).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2B2EE010B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2B2EE010B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2B2EE010B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2BA63010E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2BA63010E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2BA63010E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2C11A0110).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2C11A0110).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2C11A0110).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2C7CF0111).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2C7CF0111).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2C7CF0111).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2F7370115).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2F7370115).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC2F7370115).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC359230126).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC359230126).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC359230126).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3625F0128).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3625F0128).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3625F0128).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC36C14012A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC36C14012A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC36C14012A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC375D2012D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC375D2012D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC375D2012D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC383230130).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC383230130).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC383230130).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC38BE90132).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC38BE90132).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC38BE90132).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC397000135).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC397000135).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC397000135).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3A3600138).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3A3600138).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3A3600138).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3AEC2013B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3AEC2013B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3AEC2013B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3E591013E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3E591013E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3E591013E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3EFC30140).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3EFC30140).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3EFC30140).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3FEA40143).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3FEA40143).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC3FEA40143).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4068D0146).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4068D0146).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4068D0146).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC416C3014A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC416C3014A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC416C3014A).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC41C3A014C).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC41C3A014C).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC41C3A014C).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC42352014E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC42352014E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC42352014E).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC429E60151).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC429E60151).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC429E60151).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC42DE20152).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC42DE20152).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC42DE20152).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC485FB015F).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC485FB015F).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC485FB015F).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC48CBC0161).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC48CBC0161).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC48CBC0161).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC49BBE0165).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC49BBE0165).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC49BBE0165).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4AB4F0167).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4AB4F0167).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4AB4F0167).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4B3300169).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4B3300169).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4B3300169).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4B803016B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4B803016B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4B803016B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4C1B7016D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4C1B7016D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC4C1B7016D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC504220171).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC504220171).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC504220171).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC50AF70173).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC50AF70173).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC50AF70173).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5133F0175).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5133F0175).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5133F0175).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC520CF0177).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC520CF0177).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC520CF0177).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC52E030179).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC52E030179).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC52E030179).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5478B017B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5478B017B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5478B017B).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC54AEA017D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC54AEA017D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC54AEA017D).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC557160180).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC557160180).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC557160180).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC55C290181).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC55C290181).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC55C290181).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC57F640184).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC57F640184).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC57F640184).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5B2340186).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5B2340186).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5B2340186).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5B8B10187).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5B8B10187).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5B8B10187).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5BE7B0188).moztmp[.ads.pointroll.com/]
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\RecoveryBin\Volume-ae0a14ec-57d5-45a2-aa7e-146564341bfc\Documents and Settings\Ruth Navea\Application Data\Mozilla\Firefox\Profiles\dbn9z6g4.default\cookies.txt(01C77AC5BE7B0188).moztmp[.ads.pointroll.com/]
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Rush\Cookies\rush@overture[1].txt
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Documents and Settings\Rush\Cookies\rush@questionmarket[2].txt
00184846 Cookie/Adrevolver TrackingCookie No 0 Yes No C:\Documents and Settings\Rush\Cookies\rush@adrevolver[1].txt
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Documents and Settings\Guest\Cookies\guest@go[1].txt
03738696 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{BB3FEE3F-3C64-4EE7-A661-557B7ACDC4E8}\RP831\A0337331.exe
;===================================================================================================================================================================================
SUSPECTS
Sent Location l
;===================================================================================================================================================================================
No C:\Program Files\Common Files\Akamai\AdminTool.exe l
;===================================================================================================================================================================================
VULNERABILITIES
Id Severity Description l
;===================================================================================================================================================================================
;===================================================================================================================================================================================


Before your reply, I was able to browse already. I think it was due to my free avg anti-virus. I thought of uninstall and re-installing it and there!!! I was able to browse again.

Thanks for your help...I have also posted the log and info in separate posts.

If there is any problem that you may have found I gladly appreciate your help...

Thank you very much
rdkyut29
Active Member
 
Posts: 8
Joined: October 25th, 2008, 11:19 am

Re: Please Help....I Can't Browse...

Unread postby askey127 » October 30th, 2008, 3:23 pm

rdkyut29,
Good. Please do the following, in the order stated.
-----------------------------------------------------------
Disable Ad-Aware Service
This will work for either version 2007 or 2008
Go to Start, Run OR Start, Programs, Accessories, Command Prompt and type services.msc and click OK.
Under the Extended Tab, find one of these services, depending on which version you have:
Ad-Aware 2007 Service or Lavasoft Ad-Aware Service
Click once on the service to highlight it.
Right-Click on the service. Click on Properties
Select the General tab.
Next to Service Status, click Stop.
Click the Arrow-down tab on the right-hand side of the Start-up Type box.
From the drop-down menu, click on Disabled
Click Apply , then OK
-----------------------------------------------------------
Remove log items with HighjackThis. Start HijackThis.
Click Do System Scan Only. When the Scan is complete, Check the following entries:
(Some of these lines may be missing)
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - (no file)
O2 - BHO: (no name) - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - (no file)
O2 - BHO: (no name) - {DC200356-0864-4F66-8964-5D43A19300F5} - (no file)
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
O18 - Protocol: AutorunsDisabled - (no CLSID) - (no file)
O18 - Filter hijack: text/html - (no CLSID) - (no file)

Make sure Every other window except HJT is closed (No other tabs showing in the bottom tray), and Click Fix Checked
Click the "X" in the upper right corner of the HiJackThis window to close it.
-----------------------------------------------------------
File Deletion
In Windows Explorer (My Computer), navigate to the files shown below, select View, Details, highlight each listed file only, one at a time, and press Delete. Be careful not to delete any file without double-checking the exact spelling of the filename.

C:\Windows\cdmextras <==this could be a file or folder. Delete it.

If you have any problem deleting a file, right click the file and choose Properties to see if it's read-only. Uncheck the read-only box, click Apply and OK. Then retry Delete.
If a message pops up saying "File in use", or something like that, hit Ctrl-Alt-Delete and look under the Processes tab. If the exact filename is in there, highlight it and click End Process, then retry Delete.
Please Note if you cannot delete, or if not found.
----------------------------------------------------------------------------------
Run MalwareBytes' Anti-Malware
Please download the Installer and save to your desktop.
  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to both Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • If necessary, start Malwarebytes Anti-Malware again.
  • Once the program has loaded, select Perform Quick Scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad. Please save it to a convenient location, and post the contents in your reply.
  • The log can also be found here if you need it : Start, All Programs, Malwarebytes' Anti-Malware, Logs
    The logs are named by date stamp
-----------------------------------------------------------
Post a New HiJackThis Log
Reboot your computer. Start HijackThis
Click Do System Scan and Save a Log File.
When the Scan is complete, select the whole log (Ctrl-A), copy and paste the log contents in a reply.

So we are looking for the log from Malwarebytes Anti-Malware, and a fresh HiJackThis log.
askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Re: Please Help....I Can't Browse...

Unread postby rdkyut29 » November 1st, 2008, 3:13 am

Here is the log for the new scan of HiJackThis and Malwarebyte....

However, the file you asked me to delete which is C:/Windows/cdmextras was not in the file directory....

Thanks again for your help....



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:09:49 PM, on 11/1/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\PROGRA~1\MICROS~1\rapimgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: MXPLAY - {0444D43C-3E29-40DC-916B-E5680566AE38} - C:\Program Files\MXPLAY Web\mxtension.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~1\INetRepl.dll
O9 - Extra button: MXPLAY - {4f9eeb23-f783-459b-8a5a-6c88e4ea6e96} - C:\Program Files\MXPLAY Web\mxtension.dll
O9 - Extra 'Tools' menuitem: MXPLAY - {4f9eeb23-f783-459b-8a5a-6c88e4ea6e96} - C:\Program Files\MXPLAY Web\mxtension.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 8747069465
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O18 - Protocol: AutorunsDisabled - (no CLSID) - (no file)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NetCom3 Service (Netcom3) - Unknown owner - E:\Program Files\Netcom3 Cleaner\PSCMonitor.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

--
End of file - 9126 bytes




Malwarebytes' Anti-Malware 1.30
Database version: 1349
Windows 5.1.2600 Service Pack 3

11/1/2008 2:21:11 PM
mbam-log-2008-11-01 (14-21-11).txt

Scan type: Quick Scan
Objects scanned: 69521
Time elapsed: 21 minute(s), 37 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 3
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)
rdkyut29
Active Member
 
Posts: 8
Joined: October 25th, 2008, 11:19 am

Re: Please Help....I Can't Browse...

Unread postby askey127 » November 1st, 2008, 6:50 am

rdkyut29
-----------------------------------------------------------
Please download the Registry Search Tool from here (scroll down-there are also other tools on the page):
http://www.billsway.com/vbspage/
Unzip it to a convenient location such as your Desktop.
Make sure that your Antivirus / OS allows the use of the .vbs scripts. If prompted, make sure to allow the script.
Double click regsearch.vbs
Copy / Paste the following line into the Search Box:

AutorunsDisabled

then hit Ok
It may take a while to run.
If it finds any entries, it will tell you when it's done and offer to have you look at the file.
Say Yes, and when it opens copy/paste the content in your reply.
-----------------------------------------------------------
Enable Ad-Aware Service
This will work for either version 2007 or 2008
Go to Start, Run OR Start, Programs, Accessories, Command Prompt and type services.msc and click OK.
Under the Extended Tab, find one of these services, depending on which version you have:
Ad-Aware 2007 Service or Lavasoft Ad-Aware Service
Click once on the service to highlight it.
Right-Click on the service. Click on Properties
Select the General tab.
Next to Service Status, click Start.
Click the Arrow-down tab on the right-hand side of the Start-up Type box.
From the drop-down menu, click on Automatic
Click Apply , then OK
-----------------------------------------------------------
Download ATF Cleaner by Atribune © from here : http://www.atribune.org/ccount/click.php?id=1
It is a stand-alone program that does not need to be "installed". Save it to a convenient location and make a shortcut on your desktop.
Double-click ATF-Cleaner.exe or your shortcut to run the program.
Under Main, choose Select All
Click Empty Selected

If you use Firefox,
Click Firefox in the top bar, and choose Select All
Click on Empty Selected
NOTE: If you would like to keep any saved passwords, please click No at the prompt.

When it tells you how much has been removed, click Exit from the Main window.
After you run this process, your browser will be a bit slower the first few times you use it.
-----------------------------------------------------------
Reset System Restore Points
  • Click Start > Help and Support
  • Click on ->Undo changes to your computer with System Restore.
  • Click Create A Restore Point then click Next. Give it a name it and then click Create, then Close.
  • Close Help and Support Center.
  • Click Start | Run and type Cleanmgr
  • Select (C: ) then click OK.
  • Click the More Options tab.
  • Click Clean Up in the System Restore Section.
This will remove all previous restore points except the newly created one.
This System Restore sequence is not to be done regularly, but only as a Special Case after the removal of malware.

Let me know how it goes. Please post back the results of the RegSearch, (if there are any results).
askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Re: Please Help....I Can't Browse...

Unread postby rdkyut29 » November 1st, 2008, 7:32 am

I have done what you have enumerated in your last post. Below is the results when I run RegSrch....


REGEDIT4
; RegSrch.vbs © Bill James

; Registry search results for string "AutorunsDisabled" 11/1/2008 7:13:50 PM

; NOTE: This file will be deleted when you close WordPad.
; You must manually save this file to a new location if you want to refer to it again later.
; (If you save the file with a .reg extension, you can use it to restore any Registry changes you make to these values.)


[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled\cdo]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled\mctp]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled\ms-itss]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\AutorunsDisabled]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\AutorunsDisabled\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\AutorunsDisabled]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\AutorunsDisabled]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\AutorunsDisabled]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Print\Monitors\AutorunsDisabled]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Print\Monitors\AutorunsDisabled\Lexmark Network Port]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\SecurityProviders\AutorunsDisabled]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\a347bus]
"AutorunsDisabled"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\a347scsi]
"AutorunsDisabled"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ACPI]
"AutorunsDisabled"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\DMusic]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\drmkaud]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\dtscsi]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\EagleNT]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ikhfile]
"AutorunsDisabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ikhlayer]
"AutorunsDisabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\LexBceS]
"AutorunsDisabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\LogWatch]
"AutorunsDisabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MSKSSRV]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MSPCLOCK]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MSPQM]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\npkcrypt]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\NPPTNT]
"AutorunsDisabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\NTSIM]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\PCI]
"AutorunsDisabled"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\PxHelp20]
"AutorunsDisabled"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\rdpdr]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Rksample]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\serenum]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Serial]
"AutorunsDisabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd]
"AutorunsDisabled"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\STIrUsb]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\swenum]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sysaudio]
"AutorunsDisabled"=dword:00000003

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\TermDD]
"AutorunsDisabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\viaagp]
"AutorunsDisabled"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ZSMC301b]
"AutorunsDisabled"=dword:00000003
rdkyut29
Active Member
 
Posts: 8
Joined: October 25th, 2008, 11:19 am

Re: Please Help....I Can't Browse...

Unread postby askey127 » November 1st, 2008, 9:23 am

Copy/paste the following quote box into a new notepad (not wordpad) document.
regedit /e look.txt "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled"
notepad look.txt
del /q look.txt

Save it to your Desktop as look.bat. Save it as File Type: All Files (not as a text document or it wont work).

Locate look.bat on your Desktop and double-click it.
When Notepad opens, copy/paste the content in your reply.
When you close Notepad, the CMD window will close automatically and the text file will be deleted.
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Re: Please Help....I Can't Browse...

Unread postby rdkyut29 » November 2nd, 2008, 2:03 am

Note : When I open my computer an svchost.exe error window appears says svchost.exe error: "0x00000000" referenced memory at "0x00000000"...

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled\cdo]
@="cdo: Asychronous KnowledgePluggable Protocol Handler"
"CLSID"="{CD00020A-8B95-11D1-82DB-00C04FB1625D}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled\mctp]
@="mctp: Asynchronous Pluggable Protocol Handler"
"CLSID"="{d7b95390-b1c5-11d0-b111-0080c712fe82}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\AutorunsDisabled\ms-itss]
@="ms-itss: Asynchronous Pluggable Storage Protocol Handler"
"CLSID"="{0A9007C0-4076-11D3-8789-0000F8105754}"
rdkyut29
Active Member
 
Posts: 8
Joined: October 25th, 2008, 11:19 am

Re: Please Help....I Can't Browse...

Unread postby askey127 » November 3rd, 2008, 7:21 am

Those entries show that the protocols necessary for Shared Web Folders, Mobile Active Sync, and the Microsoft InfoTech Library have been disabled from starting automatically.
Did you or someone else do that?
These items are not normally affected by malware.
We can restore those if you care about using them .

I don't know at this point what could be causing the svchost error message on startup, but I don't see any malware in your system.
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Re: Please Help....I Can't Browse...

Unread postby NonSuch » November 14th, 2008, 11:17 pm

Due to lack of response, this topic is now closed.

If you still require help, please open a new thread in the Infected? Virus, malware, adware, ransomware, oh my! forum, include a fresh FRST log, and wait for a new helper.
User avatar
NonSuch
Administrator
Administrator
 
Posts: 28747
Joined: February 23rd, 2005, 7:08 am
Location: California
Advertisement
Register to Remove


Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 495 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware