Page 1 of 3 123 LastLast
Results 1 to 10 of 24
  1. #1
    Member
    Join Date
    Mar 2006
    Posts
    47
    Points
    1

    Default Can't always find networks after running SuperAnti & MalewareBytes...

    The Mrs. has an old Compaq Desktop running Vista. It has 3 GB of memory and there is 60.7 GB free out of 221 GB on the hard drive. It's been pretty slow for awhile so I finally ran SuperAntiSpyware, MalewareBytes, and HJT a couple of days ago. Nothing outrageous was found in any of the three scans, but I can post them if necessary. After running scans, I had to restart it once to see any networks, then it ran ok, then it unexpectedly shut down, then I again had to restart it for it to find any networks.

    Thanks for the help.

  2. #2
    Member Spyware Fighter DonnaB's Avatar
    Join Date
    Apr 2009
    Location
    Illiana, Ill. USA
    Posts
    3,521
    Points
    563

    Default

    Hi MarkMohr,

    I do apologize for the long wait.

    Yes. Could you please post the logs that were generated from the SuperAntiSpyware, MalwareBytes, and HJT scans so I can have a look. Once they are posted, I may move your thread to the removal forum so I can run more indepth scans.

    Thank you,
    Donna
    If you think you might be infected with malware or have recently cleansed your computer of malware without the help of an expert, please read and follow the instructions in How to Start Removing Viruses and Spyware from your Computer. This can alleviate time consumed in trouble shooting your current computer problems.

    If your problem is solved, here's how to say thanks!

    Very proud parent of a U.S. Navy "CB"



    "People may forget what you say,
    People may forget what you did,
    but People will never forget how you made them feel!"

  3. #3
    Member
    Join Date
    Mar 2006
    Posts
    47
    Points
    1

    Lightbulb

    I appreciate the help, Donna. Just to give a bit more info, the computer has randomly reset itself a couple times in the last 24 hours. It wouldn't let me release or renew the IP address after it couldn't find any networks. On restart, it starts working again. I'm thinking it could be an issue where once it goes to sleep, it can't find networks after it wakes back up, but not sure why running these three programs and deleting a second anti virus program would have started this. Thanks again!


    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 8:07:48 PM, on 5/22/2014
    Platform: Windows Vista SP2 (WinNT 6.00.1906)
    MSIE: Internet Explorer v9.00 (9.00.8112.16545)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
    C:\Windows\system32\taskeng.exe
    C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
    C:\Windows\WindowsMobile\wmdc.exe
    C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe
    C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
    C:\Program Files\AVG Secure Search\vprot.exe
    C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe
    C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe
    C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Microsoft Security Client\msseces.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
    C:\Program Files\Verizon V CAST Media Manager\V CAST Backup Scheduler.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Logitech\Vid HD\Vid.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\Logitech\LWS\Webcam Software\CameraHelperShell.exe
    C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Program Files\Microsoft Office\Office12\EXCEL.EXE
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = AOL.com - News, Sports, Weather, Entertainment, Stocks & Local
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = AOL.com - News, Sports, Weather, Entertainment, Stocks & Local
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = AOL.com - News, Sports, Weather, Entertainment, Stocks & Local
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;192.168.*.*
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O2 - BHO: Microsoft Live Search Toolbar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O3 - Toolbar: Microsoft Live Search Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll
    O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
    O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
    O4 - HKLM\..\Run: [UpdateP2GoShortCut] "c:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "c:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
    O4 - HKLM\..\Run: [UpdatePDIRShortCut] "c:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "c:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "SOFTWARE\CyberLink\PowerDirector\7.0"
    O4 - HKLM\..\Run: [UpdatePSTShortCut] "c:\Program Files\CyberLink\CyberLink DVD Suite Deluxe\MUITransfer\MUIStartMenu.exe" "c:\Program Files\CyberLink\CyberLink DVD Suite Deluxe" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
    O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [hpbdfawep] C:\Program Files\HP\Dfawep\bin\hpbdfawep.exe 1
    O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
    O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
    O4 - HKLM\..\Run: [DVDAgent] "c:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe"
    O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
    O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
    O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
    O4 - HKLM\..\Run: [Monitor] "C:\Program Files\LeapFrog\LeapFrog Connect\Monitor.exe"
    O4 - HKLM\..\Run: [VMM Mode Selection] C:\Program Files\HTC\ModeSelection\VMMModeSelection.exe
    O4 - HKLM\..\Run: [LWS] C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe -hide
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [AgentMonitor] C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
    O4 - HKLM\..\RunOnce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedback-appf?lic=NFVWSzItQUxZTUYtU0xLTFUtQVoyVUItNkdPS0ItSkhGTkg"&"inst=NzctNzc5Njg2MzAwLUZQOSs2LUJBUjlHKzEtVEI5KzItRkwrOS1RSVgxKzQtWDIwMTArMi1GMTBNKzUtRjEwTTEwRCsyLUxJQys3Ny1TUDErMS1TVUQrMS1TMUkrMS1TVTMrMS1GTDEwKzEtVFVHKzMtRERUKzM5MDM0LUREMTBGKzEtU1QxMEZBUFArMS1GMTBNMTJBVCszLUYxME0xMkErMS1GMTBNMTJBQisxLVUxMCsxLUYxME0xMkFUQisxLVNUMTJGT0krMS1GMTBNMTJBVSsx"&"prod=90"&"ver=10.0.1432
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW
    O4 - HKCU\..\Run: [HLBackupScheduler] C:\Program Files\Verizon V CAST Media Manager\V CAST Backup Scheduler.exe
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [Logitech Vid] "C:\Program Files\Logitech\Vid HD\Vid.exe" -bootmode
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
    O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    O4 - Global Startup: PictureMover.lnk = C:\Program Files\PictureMover\Bin\PictureMover.exe
    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
    O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
    O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
    O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} (JuniperSetupClientControl Class) - https://juniper.net/dana-cached/sc/J...etupClient.cab
    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.0\ViProtocol.dll
    O20 - AppInit_DLLs:
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
    O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe (file missing)
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
    O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LeapFrog Connect Device Service - LeapFrog Enterprises, Inc. - C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: Motorola Device Manager Service (Motorola Device Manager) - Motorola Mobility LLC - C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe
    O23 - Service: PST Service - Motorola - C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe
    O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
    O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
    O23 - Service: VTechUSBSocketService - VTech - C:\Program Files\VTech\DownloadManager\Applications\AppAccessory\12051\VTechUSBSocketService\VTechServiceInstaller.exe
    O23 - Service: vToolbarUpdater18.1.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe
    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

    --
    End of file - 12509 bytes


    SUPERAntiSpyware Scan Log
    SUPERAntiSpyware | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware, AntiAdware!

    Generated 05/22/2014 at 01:06 PM

    Application Version : 5.7.1018

    Core Rules Database Version : 11251
    Trace Rules Database Version: 9063

    Scan type : Complete Scan
    Total Scan Time : 02:51:09

    Operating System Information
    Windows Vista Home Premium 32-bit, Service Pack 2 (Build 6.00.6002)
    UAC On - Limited User (Administrator User)

    Memory items scanned : 784
    Memory threats detected : 0
    Registry items scanned : 35957
    Registry threats detected : 0
    File items scanned : 126023
    File threats detected : 881

    Adware.Tracking Cookie
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\jessica@casalemedia[2].txt [ /casalemedia ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\OWYNA428.txt [ /imrworldwide.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\H9HYM10C.txt [ /at.atwola.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\W503XNVF.txt [ /ads.pointroll.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\GE0731RV.txt [ /adtechus.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\LM5Z8IOD.txt [ /a1.interclick.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\9ZHEFQ45.txt [ /c.atdmt.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\YFADBUIG.txt [ /ad.yieldmanager.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\RI46M07L.txt [ /advertising.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\LI6ROD3K.txt [ /bs.serving-sys.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\17W580B4.txt [ /pointroll.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\URDVUYTS.txt [ /apmebf.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\4P17ZW7N.txt [ /ads.yahoo.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\L615977D.txt [ /adform.net ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\182SX9GL.txt [ /doubleclick.net ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\V4ZK30EQ.txt [ /fastclick.net ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\D0IZ53S0.txt [ /c1.adform.net ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\JSH0VFTV.txt [ /questionmarket.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\UFLDC9QO.txt [ /serving-sys.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\737ABGIB.txt [ /casalemedia.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\1CS6QK95.txt [ /mediaplex.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\MT6YSAS3.txt [ /smartadserver.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\MAWO7PQG.txt [ /interclick.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\0SXNMJQM.txt [ /ru4.com ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@msnportal.112.2o7[1].txt [ Cookie:jessica@msnportal.112.2o7.net/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\EBSNK2H9.txt [ Cookie:jessica@data.coremetrics.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@a1.interclick[1].txt [ Cookie:jessica@a1.interclick.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\C9ZMMJWZ.txt [ Cookie:jessica@c.atdmt.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\WDHONII3.txt [ Cookie:jessica@ad.yieldmanager.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@content.yieldmanager[1].txt [ Cookie:jessica@content.yieldmanager.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\6PYVK9WE.txt [ Cookie:jessica@advertising.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@adinterax[1].txt [ Cookie:jessica@adinterax.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\OH1JIMK0.txt [ Cookie:jessica@doubleclick.net/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\ETZME700.txt [ Cookie:jessica@fastclick.net/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@avgtechnologies.112.2o7[1].txt [ Cookie:jessica@avgtechnologies.112.2o7.net/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\R9IO8GH0.txt [ Cookie:jessica@revsci.net/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@questionmarket[2].txt [ Cookie:jessica@questionmarket.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\PGLQIEP8.txt [ Cookie:jessica@adbrite.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@tacoda[2].txt [ Cookie:jessica@tacoda.net/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@ehg-eset.hitbox[1].txt [ Cookie:jessica@ehg-eset.hitbox.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\17BN2I41.txt [ Cookie:jessica@mediaplex.com/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@saxoomahaworldherald.122.2o7[1].txt [ Cookie:jessica@saxoomahaworldherald.122.2o7.net/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@specificclick[1].txt [ Cookie:jessica@specificclick.net/ ]
    C:\USERS\JESSICA\AppData\Roaming\Microsoft\Windows\Cookies\Low\DTMPV3SQ.txt [ Cookie:jessica@ru4.com/ ]
    C:\USERS\JESSICA\Cookies\LM5Z8IOD.txt [ Cookie:jessica@a1.interclick.com/ ]
    C:\USERS\JESSICA\Cookies\9ZHEFQ45.txt [ Cookie:jessica@c.atdmt.com/ ]
    C:\USERS\JESSICA\Cookies\YFADBUIG.txt [ Cookie:jessica@ad.yieldmanager.com/ ]
    C:\USERS\JESSICA\Cookies\RI46M07L.txt [ Cookie:jessica@advertising.com/ ]
    C:\USERS\JESSICA\Cookies\LI6ROD3K.txt [ Cookie:jessica@bs.serving-sys.com/ ]
    C:\USERS\JESSICA\Cookies\182SX9GL.txt [ Cookie:jessica@doubleclick.net/ ]
    C:\USERS\JESSICA\Cookies\V4ZK30EQ.txt [ Cookie:jessica@fastclick.net/ ]
    C:\USERS\JESSICA\Cookies\JSH0VFTV.txt [ Cookie:jessica@questionmarket.com/ ]
    C:\USERS\JESSICA\Cookies\UFLDC9QO.txt [ Cookie:jessica@serving-sys.com/ ]
    C:\USERS\JESSICA\Cookies\737ABGIB.txt [ Cookie:jessica@casalemedia.com/ ]
    C:\USERS\JESSICA\Cookies\1CS6QK95.txt [ Cookie:jessica@mediaplex.com/ ]
    C:\USERS\JESSICA\Cookies\0SXNMJQM.txt [ Cookie:jessica@ru4.com/ ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\1KQHKT2V.txt [ /at.atwola.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\WPYITNBL.txt [ /imrworldwide.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\THIT7DBG.txt [ /h.atdmt.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@ads.nba[2].txt [ /ads.nba.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@hitbox[2].txt [ /hitbox.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@zedo[2].txt [ /zedo.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@insightexpressai[1].txt [ /insightexpressai.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\N7UQV2XZ.txt [ /apmebf.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\EHSD9IWR.txt [ /ads.pubmatic.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\1GZ8K423.txt [ /ad.wsod.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\jessica@interclick[1].txt [ /interclick.com ]
    C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\Low\RBLN7MXB.txt [ /atdmt.com ]
    .imrworldwide.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .imrworldwide.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .mediaplex.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .imp.bid.ace.advertising.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ad.mlnadvertising.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .amazon-adsystem.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .amazon-adsystem.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .doubleclick.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .dmtracker.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .uac.advertising.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .adtechus.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .doubleclick.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .mediaplex.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .mediaplex.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .yieldmanager.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .yieldmanager.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .clickbooth.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .img-cdn.mediaplex.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    server.iad.liveperson.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    server.iad.liveperson.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .doubleclick.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    in.getclicky.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .adtechus.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .pro-market.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .pro-market.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ad.doubleclick.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .serving-sys.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .histats.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .histats.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.doubleclick.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    adserve.postrelease.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .eyeviewads.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .eyeviewads.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .alliancedata.122.2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .geconsumerfinance.112.2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .citi.bridgetrack.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .citi.bridgetrack.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .e-2dj6wfk4ugdzklp.stats.esomniture.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .liveperson.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    traffic.prod.cobaltgroup.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .a1.interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .msnbc.112.2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    tracking.waterfrontmedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .kontera.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .hearstmagazines.112.2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .cbstelevisiondistribution.112.2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .adlegend.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .liveperson.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .247realmedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .247realmedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .serving-sys.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .realmedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .clickbank.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .clickbank.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .adxpose.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .googleadservices.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .educationcom.112.2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .liveperson.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .superstats.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .elitedaily.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .elitedaily.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .elitedaily.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .elitedaily.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .tacoda.at.atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .tacoda.at.atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .target.122.2o7.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .liveperson.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .liveperson.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .at.atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .tacoda.at.atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .tacoda.at.atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ar.atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ar.atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ar.atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .serving-sys.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .adlegend.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    c1.adform.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .adform.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .pro-market.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .pro-market.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .bs.serving-sys.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .specificclick.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .a1.interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    advertising.forumexcellence.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .mediaplex.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .at.atwola.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .a1.interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .stats.complex.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .stats.complex.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .tribalfusion.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .a1.interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .a1.interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .a1.interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .serving-sys.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .burstnet.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .interclick.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .fastclick.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .doubleclick.net [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .serving-sys.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .serving-sys.com [ C:\USERS\JESSICA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    adimages.scrippsnetworks.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    cdn.eyewonder.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    cdn.insights.gravity.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    cdn4.specificclick.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    content.oddcast.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    core.insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    ds.serving-sys.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    ec.atdmt.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    ictv-ic-ec.indieclicktv.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    imagec17.247realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    img-cdn.mediaplex.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    interclick.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    m1.2mdn.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    picayune.uclick.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    s0.2mdn.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    s1.2mdn.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    secure-uk.imrworldwide.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    secure-us.imrworldwide.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    speed.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    stat.easydate.biz [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    static.2mdn.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    www.uclick.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    yahoo.serving-sys.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\69TA4XPA ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .247realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .dmtracker.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .247realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .amazon-adsystem.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .amazon-adsystem.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .at.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .adtechus.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    insight.torbit.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .network.realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .googleads.g.doubleclick.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .googleads.g.doubleclick.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ad.doubleclick.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ad.mlnadvertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    data.coremetrics.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .247realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .adtechus.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .bizrate.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .clickbooth.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    insight-beacon.torbit.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .histats.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .histats.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .overture.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ewscripps.112.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .overture.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    testdata.coremetrics.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .eyeviewads.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .adxpose.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .kontera.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .server.cpmstar.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .medhelpinternational.112.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .coxnet.112.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .s.clickability.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .geconsumerfinance.112.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .alliancedata.122.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ar.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .traveladvertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .traveladvertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .s.clickability.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .saxoomahaworldherald.122.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .e-2dj6wdkiohczsbo.stats.esomniture.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    statse.webtrendslive.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .timeinc.122.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .thatagency.112.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .flagcounter.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    track.adform.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .adform.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ww251.smartadserver.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .network.realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .network.realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    tracking.waterfrontmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .mpstat.us [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .yieldmanager.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .liveperson.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    tracking.reedge.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .liveperson.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .nhtsa.122.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .getclicky.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    in.getclicky.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .warnerbros.112.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .liveperson.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .liveperson.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .wileypublishing.112.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .yadro.ru [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .yadro.ru [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .medseek.112.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .fastclick.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .server.cpmstar.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    uac.advertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .network.realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .stats.paypal.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .tribalfusion.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .network.realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .network.realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    network.realmedia.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .at.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .at.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ar.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ar.atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .atwola.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .cbstelevisiondistribution.112.2o7.net [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\COOKIES.SQLITE ]



    Malwarebytes Anti-Malware
    Malwarebytes | Free Anti-Malware & Internet Security Software

    Scan Date: 5/22/2014
    Scan Time: 5:54:39 PM
    Logfile:
    Administrator: Yes

    Version: 2.00.2.1012
    Malware Database: v2014.05.22.12
    Rootkit Database: v2014.05.21.01
    License: Free
    Malware Protection: Disabled
    Malicious Website Protection: Disabled
    Self-protection: Disabled

    OS: Windows Vista Service Pack 2
    CPU: x86
    File System: NTFS
    User: Jessica

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 286051
    Time Elapsed: 50 min, 59 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 0
    (No malicious items detected)

    Modules: 0
    (No malicious items detected)

    Registry Keys: 1
    PUP.Optional.Conduit.A, HKU\S-1-5-21-451324376-1745640537-2698504042-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\CONDUIT\FF, Quarantined, [0e66db793a41e4529fe03a859f6406fa],

    Registry Values: 1
    PUP.Optional.Conduit, HKU\S-1-5-21-451324376-1745640537-2698504042-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|TBHostSupport, "C:\Windows\system32\Rundll32.exe" "C:\Users\Jessica\AppData\Local\TBHostSupport\TBHostSupport.dll",DLLRunTBHostSupportPlugin, Quarantined, [f97b4a0a3645ef47fbc99835da29956b]

    Registry Data: 1
    PUP.Optional.Conduit, HKU\S-1-5-21-451324376-1745640537-2698504042-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, Search, Good: (Google), Bad: (Search,[a4d02e26c3b88caafdf886cd3bc9c43c]

    Folders: 12
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\plugins, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\xpi, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\xpi\defaults, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\xpi\defaults\preferences, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\ProgramData\Conduit\IE, Quarantined, [dc98f85cf38849ed356125506b97cb35],
    PUP.Optional.Conduit.A, C:\ProgramData\Conduit\IE\CT3317127, Quarantined, [dc98f85cf38849ed356125506b97cb35],
    PUP.Optional.Conduit, C:\Users\Jessica\AppData\Local\TBHostSupport, Quarantined, [492b9abadf9c5bdbbcc664128b77867a],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\NativeMessaging\CT3317127, Quarantined, [066eed67f18a63d3b09f6d0e2ed4ec14],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\NativeMessaging\CT3317127\nativeMessaging, Quarantined, [066eed67f18a63d3b09f6d0e2ed4ec14],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\TestIfExeExist\CT3317127, Quarantined, [f77df95b5724e94d9bcd92ea828015eb],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\TestIfExeExist\CT3317127\nativeMessaging, Quarantined, [f77df95b5724e94d9bcd92ea828015eb],

    Files: 50
    PUP.Optional.Conduit, C:\Users\Jessica\AppData\Local\Temp\tbWhit.dll, Quarantined, [88ec0c48ee8d90a687f7939c738df010],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\nsj3CE.exe, Quarantined, [90e4f262cab15cdae4b7f42a926fd22e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\nsk9785.exe, Quarantined, [90e4a8acb7c41422e4b7b965b64bce32],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\nsoCB31.exe, Quarantined, [eb893321d8a37cbae3b8bc6216eb7090],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\nssDC9F.exe, Quarantined, [6e0685cf72093600a1fa78a6fa0727d9],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\nsuB2E4.exe, Quarantined, [8ce8163ea1da60d68a11d64802ffee12],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\nsz4ED5.exe, Quarantined, [185c3f155823fc3a4e4da876e8191fe1],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\nszDAAF.exe, Quarantined, [93e1e3717a012d099dfe8896fb065aa6],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\SPStub.exe, Quarantined, [7202f85cbcbf79bd4f8825f7936ee31d],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\chLogic.exe, Quarantined, [fe76292b7803b18525b250cc09f8c937],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\ctbe.exe, Quarantined, [b6be4e06ec8fed493352c9552dd304fc],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\ffLogic.exe, Quarantined, [700461f33e3d2610a92e68b410f118e8],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\ieLogic.exe, Quarantined, [452f7fd52e4d2a0c6f68e537a06142be],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\spch.exe, Quarantined, [eb8962f2572438fe34a32defc33e6997],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\spff.exe, Quarantined, [a2d2a8acb1ca162017c077a53dc4fa06],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\statisticsStub.exe, Quarantined, [c6ae361ee695ea4c1943f90e61a05ba5],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\stub.exe, Quarantined, [9ed61b39e992989e11afa97fc33da858],
    PUP.Optional.OptimumInstaller.A, C:\Users\Jessica\Downloads\Media_Player_Setup (1).exe, Quarantined, [a7cd6ee66e0d6fc7ef10311ca45dcb35],
    PUP.Optional.OptimumInstaller.A, C:\Users\Jessica\Downloads\Media_Player_Setup (2).exe, Quarantined, [ff75dc786516e94dd02f70dd43be26da],
    PUP.Optional.OptimumInstaller.A, C:\Users\Jessica\Downloads\Media_Player_Setup.exe, Quarantined, [df956be9d4a7cb6b6699d17cbd44619f],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_app.mam.conduit.com_0.localstorage, Quarantined, [a3d10450b2c963d3affa3852e81a1fe1],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_app.mam.conduit.com_0.localstorage-journal, Quarantined, [0f65173d2b500630efba5b2f42c08f71],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fastcontent.conduit.com_0.localstorage, Quarantined, [5e16a9ab5b202b0b87238208a45e2fd1],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fastcontent.conduit.com_0.localstorage-journal, Quarantined, [86ee9cb84a311f178624c1c9ba482fd1],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_storage.conduit.com_0.localstorage, Quarantined, [bfb5d57f07740a2c911afb8f649e629e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_storage.conduit.com_0.localstorage-journal, Quarantined, [1163aea61368ec4a307b4e3cab57c838],
    PUP.Optional.Superfish.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, Quarantined, [3143094b186306300efac9c202005ba5],
    PUP.Optional.Superfish.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, Quarantined, [e78d77dd512a54e2f117197235cdb14f],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.conduit.com_0.localstorage, Quarantined, [492b83d17cffb5814da81477867c8977],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.conduit.com_0.localstorage-journal, Quarantined, [1163bb996417ea4ccc29a4e7d62c48b8],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\searchplugins\conduit.xml, Quarantined, [086c381cc0bba88e7e8e6b2eca38a060],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\chromeid.txt, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\conduit.xml, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\CT3317127.txt, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\CT3317127.xpi, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\initdata.json, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\manifest.json, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\setup.ini.txt, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\version.txt, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\xpi\install.rdf, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\ct3317127\xpi\defaults\preferences\defaults.js, Quarantined, [96ded0848bf0d75f3f4343329a68f20e],
    PUP.Optional.Conduit.A, C:\ProgramData\Conduit\IE\CT3317127\UninstallerUI.exe, Quarantined, [dc98f85cf38849ed356125506b97cb35],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\NativeMessaging\CT3317127\nativeMessaging\nmHostConfig.json, Quarantined, [066eed67f18a63d3b09f6d0e2ed4ec14],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\NativeMessaging\CT3317127\nativeMessaging\nmHostManifest.json, Quarantined, [066eed67f18a63d3b09f6d0e2ed4ec14],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\NativeMessaging\CT3317127\nativeMessaging\TBMessagingHost.exe, Quarantined, [066eed67f18a63d3b09f6d0e2ed4ec14],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Temp\TestIfExeExist\CT3317127\nativeMessaging\TBMessagingHost.exe, Quarantined, [f77df95b5724e94d9bcd92ea828015eb],
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "homepage": "http://search.conduit.com/?ctid=CT3317127&SearchSource=48&CUI=UN47118797618580467&UM=2",), Replaced,[b2c257fd27546ec8c11af48d25df35cb]
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\prefs.js, Good: (), Bad: (user_pref("browser.startup.homepage", "http://search.conduit.com/?ctid=CT3317127&octid=CT3317127&SearchSource=61&CUI=UN30019520001176120&UM=2&UP=SP2182D91C-EB36-465C-B009-85D5D6F36349&SSPV="), Replaced,[32422f25413a62d44f1f037e24e0d828]
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\prefs.js, Good: (), Bad: (user_pref("keyword.URL", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3317127&SearchSource=2&CUI=UN30019520001176120&UM=2&q="), Replaced,[0b69f2626912290dfcad2160e71d38c8]
    PUP.Optional.Conduit.A, C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\prefs.js, Good: (), Bad: (user_pref("browser.search.defaulturl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3317127&CUI=UN30019520001176120&UM=2&SearchSource=3&q={searchTerms}"), Replaced,[393ba0b4eb90f046d0ee126f12f2f907]

    Physical Sectors: 0
    (No malicious items detected)


    (end)

  4. #4
    Member Spyware Fighter DonnaB's Avatar
    Join Date
    Apr 2009
    Location
    Illiana, Ill. USA
    Posts
    3,521
    Points
    563

    Default

    Hi MarkMohr,

    I moved your thread to the removal forum. We will need to run more indepth scans.

    I'm thinking it could be an issue where once it goes to sleep, it can't find networks after it wakes back up, but not sure why running these three programs and deleting a second anti virus program would have started this.
    I can see where having 2 Anti-virus (AV)programs installed causing this, but not the running of the 3 programs above.

    Never have more than 1 AV running in real time because the real-time protection of two or more antivirus programs may conflict with each other and cause the following:
    • False Alarms: When the anti virus software tells you that your PC has a virus when it actually doesn't.
    • Conflicts: Your system may lock up due to both products attempting to access the same file at the same time.
    • Performance: More that one antivirus will cause your PC to become slow and it may even crash or blue screen.
    • Less protection: Two antivirus trying to scan the same file may interfere with the process and allow a malicious file onto the computer without notice to you.


    It appears that you uninstalled AVG. Am I correct? If so, you will need to use the AVG removal tool to ensure all residual files are removed as well to prevent conflict. Please download and run the tool from the link below:

    AVG Removal tool

    Take your time performing the following tasks. The scans shouldn't take more than a few minutes each. If you would like, go ahead and post each log generated as the scans complete. I don't think all four logs will fit in the same post.

    Next:

    Please download AdwCleaner by Xplode and save to your Desktop.
    • Double-click AdwCleaner.exe to run the tool.
      Note: Windows Vista, Windows 7/8 users right-click and select Run As Administrator.
    • Click the Scan button.
    • AdwCleaner will begin. Be patient as the scan may take some time to complete.
    • The contents of the scan results may be confusing. If you see a program name that you know should not be removed, uncheck the results and please let me know about it.
    • Click the Clean button.
    • Press OK when asked to close all programs and follow the onscreen prompts.
    • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
    • After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
    • Copy and paste the contents of that logfile in your next reply.
    • A copy of that logfile will also be saved in the C:\AdwCleaner folder.


    Next:

    Please download Junkware Removal Tool to your desktop.

    • Disable your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking on XP. Or right click and select Run as Administrator Vista/Win7 and above.
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.


    And last:

    Please download OTL to your Desktop
    • Double click on the to run the program. On Vista/Win7 or 8 right click select Run As Administrator to start the program. If prompted by UAC, please allow it.
    • Make sure all other windows are closed and to let it run uninterrupted.
    • Click the Scan All Users checkbox
      and
    • Check the option for All under the Extra Registry section
    • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan won't take long.
      • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
      • Please copy (Edit->Select All, Edit->Copy) the contents of these files and post them in your topic

    • OTL.txt <-- Will be opened, maximized
    • Extras.txt <-- Will be minimized on task bar.



    In your next reply, please post the contents of the following logs:

    AdwCleaner[S0].txt
    JRT.txt
    OTL.txt
    Extras.txt
    If you think you might be infected with malware or have recently cleansed your computer of malware without the help of an expert, please read and follow the instructions in How to Start Removing Viruses and Spyware from your Computer. This can alleviate time consumed in trouble shooting your current computer problems.

    If your problem is solved, here's how to say thanks!

    Very proud parent of a U.S. Navy "CB"



    "People may forget what you say,
    People may forget what you did,
    but People will never forget how you made them feel!"

  5. The Following User Says Thank You to DonnaB For This Useful Post:


  6. #5
    Member
    Join Date
    Mar 2006
    Posts
    47
    Points
    1

    Default

    I did remove AVG previously, so I ran the AVG remover tool. Here are the first two logs:

    # AdwCleaner v3.211 - Report created 26/05/2014 at 17:42:57
    # Updated 26/05/2014 by Xplode
    # Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
    # Username : Jessica - JESSICA-PC
    # Running from : C:\Users\Jessica\Desktop\AdwCleaner.exe
    # Option : Clean

    ***** [ Services ] *****


    ***** [ Files / Folders ] *****

    Folder Deleted : C:\ProgramData\Conduit
    Folder Deleted : C:\Program Files\Conduit
    Folder Deleted : C:\Users\Jessica\AppData\Local\AVG Security Toolbar
    Folder Deleted : C:\Users\Jessica\AppData\Local\Conduit
    Folder Deleted : C:\Users\Jessica\AppData\Local\NativeMessaging
    Folder Deleted : C:\Users\Jessica\AppData\Local\SwvUpdater
    Folder Deleted : C:\Users\Jessica\AppData\Local\Temp\NativeMessaging
    Folder Deleted : C:\Users\Jessica\AppData\LocalLow\AVG Secure Search
    Folder Deleted : C:\Users\Jessica\AppData\LocalLow\AVG Security Toolbar
    Folder Deleted : C:\Users\Jessica\AppData\LocalLow\Conduit
    Folder Deleted : C:\Users\Jessica\AppData\Roaming\iWin
    Folder Deleted : C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\CT3317127
    Folder Deleted : C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
    Folder Deleted : C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\Extensions\{5f520d40-805b-4169-bb2b-40e37ee57701}
    File Deleted : C:\END
    File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
    File Deleted : C:\Users\Jessica\AppData\Local\Temp\Uninstall.exe
    File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml

    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****

    Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
    Key Deleted : HKLM\SOFTWARE\Classes\S
    Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3317127
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
    Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
    Key Deleted : HKCU\Software\Conduit
    Key Deleted : HKCU\Software\YahooPartnerToolbar
    Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
    Key Deleted : HKCU\Software\AppDataLow\Software
    Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
    Key Deleted : HKLM\Software\Conduit
    Key Deleted : HKLM\Software\Software
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG Secure Search

    ***** [ Browsers ] *****

    -\\ Internet Explorer v9.0.8112.16545


    -\\ Mozilla Firefox v23.0.1 (en-US)

    [ File : C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\prefs.js ]

    Line Deleted : user_pref("CT3317127.FF19Solved", "true");
    Line Deleted : user_pref("CT3317127.UserID", "UN30019520001176120");
    Line Deleted : user_pref("CT3317127.browser.search.defaultthis.engineName", "true");
    Line Deleted : user_pref("CT3317127.fullUserID", "UN30019520001176120.IN.20131113212758");
    Line Deleted : user_pref("CT3317127.installDate", "13/11/2013 21:28:02");
    Line Deleted : user_pref("CT3317127.installSessionId", "{E83C119F-8B51-4D03-86F4-1EEA6FC22375}");
    Line Deleted : user_pref("CT3317127.installSp", "TRUE");
    Line Deleted : user_pref("CT3317127.installerVersion", "1.8.0.14");
    Line Deleted : user_pref("CT3317127.keyword", "true");
    Line Deleted : user_pref("CT3317127.originalHomepage", "hxxp://www.google.com/");
    Line Deleted : user_pref("CT3317127.originalSearchAddressUrl", "");
    Line Deleted : user_pref("CT3317127.originalSearchEngine", "Google");
    Line Deleted : user_pref("CT3317127.originalSearchEngineName", "");
    Line Deleted : user_pref("CT3317127.searchRevert", "true");
    Line Deleted : user_pref("CT3317127.searchUserMode", "2");
    Line Deleted : user_pref("CT3317127.smartbar.homepage", "true");
    Line Deleted : user_pref("CT3317127.toolbarInstallDate", "13-11-2013 21:27:59");
    Line Deleted : user_pref("CT3317127.versionFromInstaller", "10.21.1.7");
    Line Deleted : user_pref("CT3317127.xpeMode", "0");
    Line Deleted : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
    Line Deleted : user_pref("browser.search.defaultenginename", "WhiteSmoke New V.13 Customized Web Search");
    Line Deleted : user_pref("browser.search.defaultthis.engineName", "WhiteSmoke New V.13 Customized Web Search");
    Line Deleted : user_pref("browser.search.selectedEngine", "WhiteSmoke New V.13 Customized Web Search");
    Line Deleted : user_pref("smartbar.addressBarOwnerCTID", "CT3317127");
    Line Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT3317127&CUI=UN30019520001176120&UM=2&SearchSource=13,hxxp://search.conduit.com/?ctid=CT3317127&octid=CT3317127&SearchSource[...]
    Line Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3317127&SearchSource=2&CUI=UN30019520001176120&UM=2&q=");
    Line Deleted : user_pref("smartbar.defaultSearchOwnerCTID", "CT3317127");
    Line Deleted : user_pref("smartbar.homePageOwnerCTID", "CT3317127");
    Line Deleted : user_pref("smartbar.machineId", "NPNTPLG0MMNTHXS2DKWCLTDRMB6GBIHBORBUI0NCJ6VSC85OHGVLA4XNDEJVHFCQVBJWOE+ECQDCKSBO/M3IRW");
    Line Deleted : user_pref("smartbar.originalHomepage", "hxxp://search.conduit.com/?ctid=CT3317127&CUI=UN30019520001176120&UM=2&SearchSource=13");

    -\\ Google Chrome v35.0.1916.114

    [ File : C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\preferences ]

    Deleted [Search Provider] : hxxp://search.aol.com/aol/search?query={searchTerms}
    Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
    Deleted [Search Provider] : hxxp://search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&CUI=UN47118797618580467&ctid=CT3317127&UM=2
    Deleted [Homepage] : hxxp://search.conduit.com/?ctid=CT3317127&SearchSource=48&CUI=UN47118797618580467&UM=2
    Deleted [Extension] : bopakagnckmlgajfccecajhnimjiiedh
    Deleted [Extension] : ndibdjnfmopecpmkdieinmbadjfpblof

    *************************

    AdwCleaner[R0].txt - [7364 octets] - [26/05/2014 17:31:59]
    AdwCleaner[S0].txt - [7267 octets] - [26/05/2014 17:42:57]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7327 octets] ##########



    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Junkware Removal Tool (JRT) by Thisisu
    Version: 6.1.3 (03.23.2014:1)
    OS: Windows Vista (TM) Home Premium x86
    Ran by Jessica on Mon 05/26/2014 at 18:00:35.70
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




    ~~~ Services



    ~~~ Registry Values




    ~~~ Registry Keys

    Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{232C1C20-0DED-40E2-868E-E64E011CDB91}
    Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{D3D0EAB6-820D-4A67-AC7D-5594C487C670}



    ~~~ Files



    ~~~ Folders

    Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
    Successfully deleted: [Folder] "C:\Users\Jessica\Local Settings\Application Data\cre"
    Successfully deleted: [Folder] "C:\Program Files\coupons"



    ~~~ FireFox

    Failed to delete: [File] "C:\Program Files\Mozilla Firefox\searchplugins\avg_igeared.xml"
    Emptied folder: C:\Users\Jessica\AppData\Roaming\mozilla\firefox\profiles\aseec21d.default\minidumps [160 files]



    ~~~ Event Viewer Logs were cleared





    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on Mon 05/26/2014 at 18:05:32.94
    Computer was rebooted
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

  7. #6
    Member
    Join Date
    Mar 2006
    Posts
    47
    Points
    1

    Default

    And Both the OTL scans:

    OTL logfile created on: 5/26/2014 6:20:33 PM - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jessica\Desktop
    Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

    2.87 Gb Total Physical Memory | 1.85 Gb Available Physical Memory | 64.34% Memory free
    5.97 Gb Paging File | 5.00 Gb Available in Paging File | 83.71% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 221.63 Gb Total Space | 60.90 Gb Free Space | 27.48% Space Free | Partition Type: NTFS
    Drive D: | 11.25 Gb Total Space | 1.54 Gb Free Space | 13.70% Space Free | Partition Type: NTFS

    Computer Name: JESSICA-PC | User Name: Jessica | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - [2014/05/26 18:17:39 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jessica\Desktop\OTL.exe
    PRC - [2014/03/11 10:13:24 | 000,022,216 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe
    PRC - [2014/03/11 10:13:14 | 000,951,576 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
    PRC - [2013/10/10 17:54:44 | 000,120,088 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe
    PRC - [2013/10/09 10:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
    PRC - [2013/07/23 16:39:14 | 007,391,232 | ---- | M] (LeapFrog Enterprises, Inc.) -- C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
    PRC - [2013/03/28 20:17:40 | 000,191,880 | ---- | M] (VTech) -- C:\Program Files\VTech\DownloadManager\Applications\AppAccessory\12051\VTechUSBSocketService\VTechUSBSocketService.exe
    PRC - [2013/03/28 20:17:39 | 000,082,824 | ---- | M] (VTech) -- C:\Program Files\VTech\DownloadManager\Applications\AppAccessory\12051\VTechUSBSocketService\VTechServiceInstaller.exe
    PRC - [2013/03/25 14:45:52 | 000,694,584 | ---- | M] (Motorola Mobility LLC) -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
    PRC - [2013/03/25 14:45:52 | 000,121,144 | ---- | M] (Motorola Mobility LLC) -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
    PRC - [2012/01/18 01:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe
    PRC - [2011/11/11 14:08:06 | 000,205,336 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe
    PRC - [2011/11/11 14:07:54 | 000,265,240 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\CameraHelperShell.exe
    PRC - [2011/09/02 16:06:38 | 000,065,657 | ---- | M] (Motorola) -- C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe
    PRC - [2011/08/12 12:19:40 | 000,680,984 | ---- | M] () -- C:\Program Files\Common Files\LogiShrd\LQCVFX\COCIManager.exe
    PRC - [2011/02/14 08:55:16 | 000,043,520 | R--- | M] () -- C:\Program Files\HTC\ModeSelection\VMMModeSelection.exe
    PRC - [2010/03/24 16:42:10 | 000,599,328 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
    PRC - [2009/10/24 04:18:54 | 000,360,224 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe
    PRC - [2009/04/11 01:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
    PRC - [2007/08/06 13:41:06 | 000,069,632 | ---- | M] (Software 2000 Limited) -- C:\Windows\System32\spool\drivers\w32x86\3\HP1006MC.EXE


    ========== Modules (No Company Name) ==========

    MOD - [2014/05/14 03:47:19 | 000,774,656 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\fbf434299b068c463296945c12845734\System.Runtime.Remoting.ni.dll
    MOD - [2014/05/14 03:43:49 | 006,621,696 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\1a1d6e829a5d4cb2fc68f207ac115496\System.Data.ni.dll
    MOD - [2014/02/12 04:47:01 | 000,187,904 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\b01fbd25bd6023d6b2d960d7bda323af\UIAutomationTypes.ni.dll
    MOD - [2014/02/12 04:46:44 | 000,998,400 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\c5213af29d521ee19cc55983f8c2037c\System.Management.ni.dll
    MOD - [2014/02/12 04:44:02 | 000,978,944 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\d17ceca243fabda73eefb21d9bd072df\System.Configuration.ni.dll
    MOD - [2014/02/12 04:42:29 | 005,462,016 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f87e71868aedbc6c4e8fe7160d17c4ab\System.Xml.ni.dll
    MOD - [2014/02/12 04:41:59 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\8e6265a54260bddfc05951e764f5bc48\System.Drawing.ni.dll
    MOD - [2014/02/12 04:41:27 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\71e362b114f878201540696b6d66bf45\PresentationFramework.Aero.ni.dll
    MOD - [2014/02/12 04:41:25 | 014,329,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\b46f1c203d1e4bec4597adf684ec1d41\PresentationFramework.ni.dll
    MOD - [2014/02/12 04:41:06 | 012,218,880 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\07d57714fff9db216537473f4a777f22\PresentationCore.ni.dll
    MOD - [2014/02/12 04:40:52 | 003,325,440 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d981bccab40fbbdc1d35bf2a58c947b7\WindowsBase.ni.dll
    MOD - [2014/02/12 04:40:46 | 007,977,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\957628d9dd7b3bf370a56dca7835a997\System.ni.dll
    MOD - [2014/02/12 04:40:30 | 011,497,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\694a37a84dee2cd2609a1dfab27c0433\mscorlib.ni.dll
    MOD - [2011/11/11 14:09:20 | 000,336,408 | ---- | M] () -- C:\Program Files\Common Files\LogiShrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll
    MOD - [2011/11/11 14:07:54 | 000,265,240 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\CameraHelperShell.exe
    MOD - [2011/08/12 12:19:40 | 000,680,984 | ---- | M] () -- C:\Program Files\Common Files\LogiShrd\LQCVFX\COCIManager.exe
    MOD - [2011/02/14 08:55:16 | 000,043,520 | R--- | M] () -- C:\Program Files\HTC\ModeSelection\VMMModeSelection.exe
    MOD - [2010/06/30 00:12:54 | 000,061,440 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\Pillars\PCAlerts\PCAlertsPillar.dll
    MOD - [2010/06/30 00:12:52 | 000,131,072 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\Pillars\ECenter\ECLibrary.dll
    MOD - [2010/06/30 00:12:42 | 000,040,960 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingServer.dll
    MOD - [2010/06/30 00:12:40 | 000,036,864 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingClients.dll
    MOD - [2010/06/30 00:12:40 | 000,007,680 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\RemotingClient.dll
    MOD - [2010/06/30 00:12:40 | 000,005,632 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingInterface.dll
    MOD - [2010/06/30 00:12:36 | 000,018,944 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingMessages.dll
    MOD - [2010/06/30 00:12:18 | 000,028,672 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\Microsoft.Practices.EnterpriseLibrary.ExceptionHandling.Logging.dll
    MOD - [2010/05/07 18:37:40 | 000,126,808 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\ImageFormats\QJpeg4.dll
    MOD - [2010/05/07 18:37:40 | 000,027,480 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\ImageFormats\QGif4.dll
    MOD - [2010/05/07 18:36:54 | 000,340,824 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\QTXml4.dll
    MOD - [2010/05/07 18:35:56 | 007,954,776 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\QTGui4.dll
    MOD - [2010/05/07 18:35:44 | 002,143,576 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\QTCore4.dll
    MOD - [2009/03/29 23:42:17 | 002,933,760 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
    MOD - [2008/11/13 05:48:19 | 000,098,304 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\HP.ActiveSupportLibrary\2.0.0.1__01a974bc1760f423\HP.ActiveSupportLibrary.dll


    ========== Services (SafeList) ==========

    SRV - [2014/05/14 06:47:23 | 000,257,712 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
    SRV - [2014/03/11 10:13:24 | 000,279,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
    SRV - [2014/03/11 10:13:24 | 000,022,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
    SRV - [2013/10/23 09:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
    SRV - [2013/10/10 17:54:44 | 000,120,088 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore.exe -- (!SASCORE)
    SRV - [2013/10/09 10:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
    SRV - [2013/08/17 09:25:21 | 000,117,656 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
    SRV - [2013/07/23 16:39:14 | 007,391,232 | ---- | M] (LeapFrog Enterprises, Inc.) [Auto | Running] -- C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe -- (LeapFrog Connect Device Service)
    SRV - [2013/03/28 20:17:39 | 000,082,824 | ---- | M] (VTech) [Auto | Running] -- C:\Program Files\VTech\DownloadManager\Applications\AppAccessory\12051\VTechUSBSocketService\VTechServiceInstaller.exe -- (VTechUSBSocketService)
    SRV - [2013/03/25 14:45:52 | 000,121,144 | ---- | M] (Motorola Mobility LLC) [Auto | Running] -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe -- (Motorola Device Manager)
    SRV - [2012/01/18 01:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
    SRV - [2011/09/02 16:06:38 | 000,065,657 | ---- | M] (Motorola) [Auto | Running] -- C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe -- (PST Service)
    SRV - [2009/10/24 04:18:54 | 000,360,224 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)
    SRV - [2008/01/20 21:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
    SRV - [2007/05/31 09:21:24 | 000,379,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
    SRV - [2007/05/31 09:21:18 | 000,183,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)


    ========== Driver Services (SafeList) ==========

    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
    DRV - [2014/04/24 12:12:18 | 000,028,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\PerformanceTest\DirectIo32.sys -- (DIRECTIO)
    DRV - [2014/03/11 09:52:30 | 000,104,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
    DRV - [2012/06/11 10:56:32 | 000,020,864 | ---- | M] (Motorola Mobility Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motccgp.sys -- (motccgp)
    DRV - [2012/06/08 15:09:10 | 000,023,808 | ---- | M] (Motorola Mobility Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Motousbnet.sys -- (Motousbnet)
    DRV - [2012/06/08 15:08:52 | 000,006,656 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motswch.sys -- (MotoSwitchService)
    DRV - [2012/01/25 13:57:46 | 000,008,448 | ---- | M] (Motorola Mobility Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motccgpfl.sys -- (motccgpfl)
    DRV - [2012/01/18 01:44:52 | 004,332,960 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\lvuvc.sys -- (LVUVC)
    DRV - [2012/01/18 01:44:28 | 000,312,096 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\lvrs.sys -- (LVRS)
    DRV - [2011/11/08 12:59:04 | 000,011,008 | ---- | M] (Motorola Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motusbdevice.sys -- (motusbdevice)
    DRV - [2011/07/22 11:27:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
    DRV - [2011/07/12 16:55:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
    DRV - [2010/05/07 18:43:30 | 000,025,824 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LVPr2Mon.sys -- (LVPr2Mon)
    DRV - [2009/01/29 17:11:20 | 000,006,016 | ---- | M] (Motorola Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motfilt.sys -- (BTCFilterService)
    DRV - [2008/09/27 01:51:00 | 007,478,496 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
    DRV - [2008/09/10 07:48:20 | 000,266,752 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSXHWBS2.sys -- (HSXHWBS2)
    DRV - [2008/09/10 07:46:22 | 000,980,992 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_DP.sys -- (HSF_DP)
    DRV - [2008/09/04 06:34:34 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
    DRV - [2008/08/01 07:51:14 | 001,052,704 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVENETFD)
    DRV - [2008/07/21 11:12:50 | 000,133,152 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\nvrd32.sys -- (nvrd32)
    DRV - [2008/07/21 11:12:22 | 000,145,952 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\nvstor32.sys -- (nvstor32)
    DRV - [2008/05/22 04:39:34 | 000,015,360 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\nvsmu.sys -- (nvsmu)
    DRV - [2007/07/03 02:59:10 | 000,086,824 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdserd.sys -- (sscdserd)
    DRV - [2007/07/03 02:58:20 | 000,106,792 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdmdm.sys -- (sscdmdm)
    DRV - [2007/07/03 02:57:24 | 000,011,944 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdmdfl.sys -- (sscdmdfl)
    DRV - [2007/07/03 02:54:24 | 000,080,552 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdbus.sys -- (sscdbus)
    DRV - [2007/03/12 10:12:00 | 000,256,000 | ---- | M] (Ralink Technology Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\WUSB54GCx86.sys -- (netr73)
    DRV - [2005/11/24 19:51:38 | 000,245,248 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rt73.sys -- (RT73)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
    IE - HKLM\..\SearchScopes,DefaultScope =
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\..\SearchScopes\{1C6FD81D-6C8D-41E4-988D-BF5F45FC3D3A}: "URL" = http://www.ask.com/web?q={searchTerms}&l=dis&o=uscqd


    IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
    IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
    IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

    IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Upgrade to Google Chrome
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Upgrade to Google Chrome
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN.com
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0A 34 1F 9F 6F CF CE 01 [binary data]
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Upgrade to Google Chrome
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Upgrade to Google Chrome
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\..\SearchScopes,DefaultScope =
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\..\SearchScopes\{1C6FD81D-6C8D-41E4-988D-BF5F45FC3D3A}: "URL" = http://www.ask.com/web?q={searchTerms}&l=dis&o=uscqd
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searc}
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\..\SearchScopes\{961CFB77-3921-4802-8B65-5FFF26F33582}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\..\SearchScopes\{D3D0EAB6-820D-4A67-AC7D-5594C487C670}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=HPDTDF&pc=HPDTDF&src=IE-SearchBox
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
    IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;192.168.*.*

    ========== FireFox ==========

    FF - prefs.js..browser.search.param.yahoo-fr: "moz2-ytff-"
    FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "moz2-ytff-"
    FF - prefs.js..extensions.enabledAddons: moveplayer%40movenetworks.com:7
    FF - prefs.js..extensions.enabledAddons: %7B635abd67-4fe9-1b23-4f01-e679fa7484c1%7D:2.6.0.20130418072822
    FF - prefs.js..extensions.enabledAddons: avg%40toolbar:15.5.0.2
    FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:23.0.1
    FF - prefs.js..extensions.enabledItems: moveplayer@movenetworks.com:7
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
    FF - prefs.js..extensions.enabledItems: {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1423
    FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.3.5.20110120033202
    FF - prefs.js..extensions.enabledItems: avg@toolbar:9.0.0.18.1
    FF - user.js - File not found

    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
    FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
    FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
    FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users\Jessica\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
    FF - HKCU\Software\MozillaPlugins\@movenetworks.com/Quantum Media Player: C:\Users\Jessica\AppData\Roaming\Move Networks\plugins\npqmp071705000014.dll (Move Networks)
    FF - HKCU\Software\MozillaPlugins\@yahoo.com/BrowserPlus,version=2.9.2: C:\Users\Jessica\AppData\Local\Yahoo!\BrowserPlus\2.9.2\Plugins\npybrowserplus_2.9.2.dll (Yahoo! Inc.)
    FF - HKCU\Software\MozillaPlugins\@zoom.us/ZoomVideoPlugin: C:\Users\Jessica\AppData\Roaming\Zoom\bin\npzoomplugin.dll (Zoom Video Communications, Inc.)
    FF - HKCU\Software\MozillaPlugins\amazon.com/AmazonMP3DownloaderPlugin: C:\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101710.dll (Amazon.com, Inc.)

    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013/08/17 09:25:08 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013/08/18 09:57:49 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\moveplayer@movenetworks.com: C:\Users\Jessica\AppData\Roaming\Move Networks [2010/01/22 19:27:58 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013/08/17 09:25:08 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013/08/18 09:57:49 | 000,000,000 | ---D | M]

    [2009/06/25 20:18:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jessica\AppData\Roaming\Mozilla\Extensions
    [2014/05/26 17:43:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\extensions
    [2012/05/08 11:45:34 | 000,020,591 | ---- | M] () (No name found) -- C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi
    [2013/08/17 09:25:08 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
    [2013/10/14 03:46:05 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
    [2013/08/17 09:25:06 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
    [2013/10/14 03:46:05 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
    [2013/08/17 09:25:22 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
    File not found (No name found) -- C:\PROGRAMDATA\AVG SECURE SEARCH\FIREFOXEXT\17.0.1.12
    [2010/01/22 19:27:58 | 000,000,000 | ---D | M] (Move Media Player) -- C:\USERS\JESSICA\APPDATA\ROAMING\MOVE NETWORKS
    File not found (No name found) -- C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\EXTENSIONS\{635ABD67-4FE9-1B23-4F01-E679FA7484C1}
    [2012/05/14 21:47:32 | 000,466,944 | ---- | M] (Catalina Marketing Corporation) -- C:\Program Files\mozilla firefox\plugins\NPcol400.dll
    [2010/08/14 01:50:16 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll

    ========== Chrome ==========

    CHR - default_search_provider: Google (Enabled)
    CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{googleriginalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{googlemniboxStartMarginParameter}ie={inputEncoding}
    CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{googleageClassification}sugkey={google:suggestAPIKeyParameter},
    CHR - homepage: Google
    CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
    CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll
    CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\35.0.1916.114\pdf.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\35.0.1916.114\gcswf32.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
    CHR - plugin: AVG Internet Security (Enabled) = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll
    CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
    CHR - plugin: Java Deployment Toolkit 6.0.210.7 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
    CHR - plugin: Java(TM) Platform SE 6 U21 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
    CHR - plugin: E-centives Coupon Activator Netscape Plugin v. 4.0.0.0 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPcol400.dll
    CHR - plugin: Coupons Inc., Coupon Printer Manager (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npCouponPrinter.dll
    CHR - plugin: Coupons Inc., Coupon Printer Manager (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npMozCouponPrinter.dll
    CHR - plugin: Windows Genuine Advantage (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
    CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
    CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
    CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
    CHR - plugin: BrowserPlus (from Yahoo!) v2.9.2 (Enabled) = C:\Users\Jessica\AppData\Local\Yahoo!\BrowserPlus\2.9.2\Plugins\npybrowserplus_2.9.2.dll
    CHR - plugin: Facebook Plugin (Enabled) = C:\Users\Jessica\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll
    CHR - plugin: Move Streaming Media Player (Enabled) = C:\Users\Jessica\AppData\Roaming\Move Networks\plugins\npqmp071705000014.dll
    CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\npctrl.1.0.30716.0.dll
    CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
    CHR - Extension: Google Voice Search Hotword (Beta) = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5019_0\
    CHR - Extension: YouTube = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
    CHR - Extension: Google Search = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
    CHR - Extension: Skype Click to Call = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.2.15747.10003_0\
    CHR - Extension: Google Wallet = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
    CHR - Extension: Gmail = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

    O1 HOSTS File: ([2006/09/18 16:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 localhost
    O1 - Hosts: ::1 localhost
    O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll (Microsoft Corp.)
    O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll (Microsoft Corp.)
    O3 - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
    O4 - HKLM..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
    O4 - HKLM..\Run: [hpbdfawep] C:\Program Files\HP\Dfawep\bin\hpbdfawep.exe ()
    O4 - HKLM..\Run: [LWS] C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
    O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
    O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation)
    O4 - HKLM..\Run: [VMM Mode Selection] C:\Program Files\HTC\ModeSelection\VMMModeSelection.exe ()
    O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [Windows Mobile-based device management] C:\Windows\WindowsMobile\wmdSync.exe (Microsoft Corporation)
    O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
    O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
    O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\Windows\System32\cmd.exe (Microsoft Corporation)
    O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.)
    O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
    O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
    O13 - gopher Prefix: missing
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_21)
    O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_07)
    O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_21)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_21)
    O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/J...etupClient.cab (JuniperSetupClientControl Class)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 205.171.3.26 205.171.2.26
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6833C076-BA5F-4888-A2E1-48E67F821251}: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{78683FED-885A-40FE-ACB4-D9E6979A5405}: DhcpNameServer = 192.168.0.1 205.171.3.26 205.171.2.26
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B1C57204-5091-4C47-8EED-2FA742EAA100}: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
    O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: GinaDLL - (GTGina.dll) - File not found
    O24 - Desktop WallPaper: C:\Users\Jessica\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
    O24 - Desktop BackupWallPaper: C:\Users\Jessica\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
    O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2006/09/18 16:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
    O33 - MountPoints2\{6808b94b-7df5-11e2-90c3-002511e2f58f}\Shell - "" = AutoRun
    O33 - MountPoints2\{6808b94b-7df5-11e2-90c3-002511e2f58f}\Shell\AutoRun\command - "" = H:\MotoCastSetup.exe -a
    O33 - MountPoints2\{8a908b6c-e1a2-11df-ada2-002511e2f58f}\Shell - "" = AutoRun
    O33 - MountPoints2\{8a908b6c-e1a2-11df-ada2-002511e2f58f}\Shell\AutoRun\command - "" = H:\TL-Bootstrap.exe
    O33 - MountPoints2\{d51754b0-bd39-11e2-a480-002511e2f58f}\Shell - "" = AutoRun
    O33 - MountPoints2\{d51754b0-bd39-11e2-a480-002511e2f58f}\Shell\AutoRun\command - "" = F:\MotorolaDeviceManagerSetup.exe -a
    O33 - MountPoints2\{ffd32ceb-6029-11de-8a2a-002511e2f58f}\Shell\AutoRun\command - "" = F:\wd_windows_tools\WDSetup.exe
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*
    O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
    O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

    ========== Files/Folders - Created Within 30 Days ==========

    [2014/05/26 18:17:38 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Jessica\Desktop\OTL.exe
    [2014/05/26 17:55:34 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
    [2014/05/26 17:49:39 | 001,016,261 | ---- | C] (Thisisu) -- C:\Users\Jessica\Desktop\JRT.exe
    [2014/05/26 17:32:23 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\Windows\System32\sqlite3.dll
    [2014/05/26 17:31:11 | 000,000,000 | ---D | C] -- C:\AdwCleaner
    [2014/05/24 10:07:47 | 000,000,000 | ---D | C] -- C:\Users\Jessica\Documents\PassMark
    [2014/05/24 10:07:42 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\PassMark
    [2014/05/24 10:06:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PerformanceTest
    [2014/05/24 10:06:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Passmark
    [2014/05/24 10:06:41 | 000,000,000 | ---D | C] -- C:\Program Files\PerformanceTest
    [2014/05/22 17:53:19 | 000,110,296 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
    [2014/05/22 10:15:31 | 000,000,000 | ---D | C] -- C:\SUPERDelete
    [2014/05/22 10:13:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    [2014/05/22 10:12:56 | 000,074,456 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
    [2014/05/22 10:12:55 | 000,051,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
    [2014/05/22 10:12:55 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
    [2014/05/22 10:12:55 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
    [2014/05/22 10:12:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
    [2014/05/22 10:02:03 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\SUPERAntiSpyware.com
    [2014/05/22 10:01:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
    [2014/05/22 10:01:40 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
    [2014/05/22 10:01:40 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
    [2014/05/22 08:44:23 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\TuneUp Software
    [2014/05/22 08:44:12 | 000,000,000 | -HSD | C] -- C:\Config.Msi
    [2014/05/14 03:08:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
    [2014/05/14 03:05:11 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
    [4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

    ========== Files - Modified Within 30 Days ==========

    [2014/05/26 18:17:39 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jessica\Desktop\OTL.exe
    [2014/05/26 18:02:00 | 000,000,888 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
    [2014/05/26 17:59:07 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
    [2014/05/26 17:59:07 | 000,000,350 | ---- | M] () -- C:\Windows\tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
    [2014/05/26 17:58:36 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
    [2014/05/26 17:58:36 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
    [2014/05/26 17:58:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2014/05/26 17:58:27 | 3085,385,728 | -HS- | M] () -- C:\hiberfil.sys
    [2014/05/26 17:57:21 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
    [2014/05/26 17:50:00 | 001,016,261 | ---- | M] (Thisisu) -- C:\Users\Jessica\Desktop\JRT.exe
    [2014/05/26 17:46:53 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
    [2014/05/26 17:29:39 | 001,327,971 | ---- | M] () -- C:\Users\Jessica\Desktop\AdwCleaner.exe
    [2014/05/26 10:04:08 | 000,110,296 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
    [2014/05/26 09:51:54 | 266,289,266 | ---- | M] () -- C:\Windows\MEMORY.DMP
    [2014/05/25 12:47:20 | 000,001,356 | ---- | M] () -- C:\Users\Jessica\AppData\Local\d3d9caps.dat
    [2014/05/25 10:38:44 | 000,010,141 | ---- | M] () -- C:\Users\Jessica\Desktop\hijackthis2
    [2014/05/24 20:22:09 | 000,000,330 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForJessica.job
    [2014/05/24 10:06:51 | 000,000,936 | ---- | M] () -- C:\Users\Jessica\Desktop\PerformanceTest.lnk
    [2014/05/22 10:13:08 | 000,000,905 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2014/05/22 10:01:48 | 000,001,806 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
    [2014/05/22 08:09:14 | 000,666,326 | ---- | M] () -- C:\Windows\System32\perfh009.dat
    [2014/05/22 08:09:14 | 000,129,906 | ---- | M] () -- C:\Windows\System32\perfc009.dat
    [2014/05/14 06:47:10 | 000,692,400 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
    [2014/05/14 06:47:10 | 000,070,832 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
    [2014/05/12 07:26:04 | 000,051,928 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
    [2014/05/12 07:25:58 | 000,074,456 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
    [2014/05/12 07:25:54 | 000,023,256 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
    [2014/05/05 18:14:12 | 002,382,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
    [4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

    ========== Files Created - No Company Name ==========

    [2014/05/26 17:29:24 | 001,327,971 | ---- | C] () -- C:\Users\Jessica\Desktop\AdwCleaner.exe
    [2014/05/25 12:49:36 | 3085,385,728 | -HS- | C] () -- C:\hiberfil.sys
    [2014/05/25 10:38:44 | 000,010,141 | ---- | C] () -- C:\Users\Jessica\Desktop\hijackthis2
    [2014/05/24 10:06:51 | 000,000,936 | ---- | C] () -- C:\Users\Jessica\Desktop\PerformanceTest.lnk
    [2014/05/22 10:13:08 | 000,000,905 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2014/05/22 10:01:48 | 000,001,806 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
    [2014/05/22 08:58:19 | 000,000,426 | ---- | C] () -- C:\AVScanner.ini
    [2013/07/16 12:07:26 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\cookies.ini
    [2011/03/08 16:21:53 | 001,758,846 | ---- | C] () -- C:\Users\Jessica\For You.bmp
    [2010/05/30 15:44:10 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\prvlcl.dat
    [2010/04/14 17:05:35 | 000,001,356 | ---- | C] () -- C:\Users\Jessica\AppData\Local\d3d9caps.dat
    [2009/12/02 21:20:30 | 000,024,064 | ---- | C] () -- C:\Users\Jessica\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

    ========== ZeroAccess Check ==========

    [2006/11/02 07:54:22 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

    [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

    [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
    "" = %SystemRoot%\system32\shell32.dll -- [2014/03/25 08:26:04 | 011,587,584 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
    "" = %systemroot%\system32\wbem\fastprox.dll -- [2009/04/11 01:28:19 | 000,614,912 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Free

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
    "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/04/11 01:28:25 | 000,347,648 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Both

    < End of report >




    OTL Extras logfile created on: 5/26/2014 6:20:33 PM - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jessica\Desktop
    Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

    2.87 Gb Total Physical Memory | 1.85 Gb Available Physical Memory | 64.34% Memory free
    5.97 Gb Paging File | 5.00 Gb Available in Paging File | 83.71% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 221.63 Gb Total Space | 60.90 Gb Free Space | 27.48% Space Free | Partition Type: NTFS
    Drive D: | 11.25 Gb Total Space | 1.54 Gb Free Space | 13.70% Space Free | Partition Type: NTFS

    Computer Name: JESSICA-PC | User Name: Jessica | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Extra Registry (All) ==========


    ========== File Associations ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .bat [@ = batfile] -- "%1" %*
    .chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
    .cmd [@ = cmdfile] -- "%1" %*
    .com [@ = comfile] -- "%1" %*
    .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
    .exe [@ = exefile] -- "%1" %*
    .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
    .hta [@ = htafile] -- C:\Windows\System32\mshta.exe (Microsoft Corporation)
    .html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
    .inf [@ = inffile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation)
    .ini [@ = inifile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation)
    .url [@ = InternetShortcut] -- C:\Windows\System32\rundll32.exe (Microsoft Corporation)
    .js [@ = JSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
    .jse [@ = JSEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
    .pif [@ = piffile] -- "%1" %*
    .reg [@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation)
    .scr [@ = scrfile] -- "%1" /S
    .txt [@ = txtfile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation)
    .vbe [@ = VBEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
    .vbs [@ = VBSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
    .wsf [@ = WSFFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
    .wsh [@ = WSHFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)

    [HKEY_USERS\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Classes\<extension>]
    .html [@ = ChromeHTML] -- Reg Error: Key error. File not found

    ========== Shell Spawning ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
    batfile [open] -- "%1" %*
    batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
    chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
    cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
    cmdfile [open] -- "%1" %*
    cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
    htafile [open] -- C:\Windows\system32\mshta.exe "%1" %* (Microsoft Corporation)
    htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
    htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
    http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
    https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
    inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
    inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
    inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
    InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
    InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
    jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
    jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
    jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
    jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
    jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
    jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
    regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
    regfile [merge] -- Reg Error: Key error.
    regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
    txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
    txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
    vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
    vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
    vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
    vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
    vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
    vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
    wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
    wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
    wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
    wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~4\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
    Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
    Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

    ========== Security Center Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0
    "VistaSp1" = Reg Error: Unknown registry data type -- File not found
    "VistaSp2" = Reg Error: Unknown registry data type -- File not found

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

    ========== Firewall Settings ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0

    ========== Authorized Applications List ==========


    ========== Vista Active Open Ports Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{03F33C66-6CF1-4A6E-B713-4828F5861ED8}" = lport=445 | protocol=6 | dir=in | app=system |
    "{0C6FA57C-96FF-4729-8217-ABF6F4C2FED5}" = lport=137 | protocol=17 | dir=in | app=system |
    "{13636833-E1AE-4B6E-8824-5A4B83812735}" = rport=1723 | protocol=6 | dir=out | app=system |
    "{22274022-047D-44AA-A90A-CFFFC4E37568}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{2920533D-2C0E-4223-A2D8-632F69789F3D}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{3BDD4321-FA33-4946-BF5E-D2678182F06E}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{43E430EA-0415-446B-B274-794FCDEAE99D}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{479CBF28-6B68-44DB-B2C1-892AFBF1F279}" = rport=1701 | protocol=17 | dir=out | app=system |
    "{5F95230D-05BB-44F1-BD40-CC4666B35FF1}" = rport=138 | protocol=17 | dir=out | app=system |
    "{6ABE095C-E165-4E99-942F-C0417193C169}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{6B196BD7-D795-4B49-B1D1-6C3B6C6A3924}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{6CD41EA8-398A-4614-9D26-62F59D325629}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{88AEC95F-F7DA-450C-B6BC-6E8ABF35E96D}" = lport=10243 | protocol=6 | dir=in | app=system |
    "{92AD294F-0457-4332-B91D-CF512F5E4AFA}" = rport=445 | protocol=6 | dir=out | app=system |
    "{9BBCD1FB-B787-46CD-BDAA-8AA9E66E0029}" = lport=2869 | protocol=6 | dir=in | app=system |
    "{9ECEC966-A443-4763-918C-8A230F145188}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=file and printer sharing (spooler service - rpc-epmap) |
    "{A538787D-A1A4-40CD-BEF7-C0BB03284021}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{A57C79AD-7C67-4617-9843-9BD7282160CB}" = lport=1723 | protocol=6 | dir=in | app=system |
    "{B0E085DB-63E1-4594-AA96-02C210330EEF}" = lport=990 | protocol=6 | dir=in | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{B49CEA8F-D35F-43A2-843E-6D58CC6EE9A6}" = rport=137 | protocol=17 | dir=out | app=system |
    "{BA67B10B-2104-4880-AB26-B10932FCDC1F}" = lport=1701 | protocol=17 | dir=in | app=system |
    "{C95E46D2-F363-4AD3-93B7-60A65D54ABC3}" = rport=5679 | protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{CABADC65-1DE5-4794-BCAB-35C974505938}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=c:\windows\system32\spoolsv.exe |
    "{CB5DEBA9-F436-4582-AE60-BC3F83B8308A}" = lport=138 | protocol=17 | dir=in | app=system |
    "{CF169B97-0829-4CEF-AF44-93593BF46F38}" = rport=10243 | protocol=6 | dir=out | app=system |
    "{FD7415B0-7C67-4598-BBA4-49BC8EA4C2DD}" = lport=139 | protocol=6 | dir=in | app=system |
    "{FFCBADA4-39C9-4890-8DC5-C076AFDB4B50}" = rport=139 | protocol=6 | dir=out | app=system |

    ========== Vista Active Application Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{057953FA-84B7-49C4-92CE-BBEDB459D260}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\hp1006mc.exe |
    "{08244F94-0A66-4F02-9C9E-0FE292E354C1}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{0A633206-6C62-403C-9C25-D0E0A644557E}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\hp1006mc.exe |
    "{0D0CC8DD-8014-44EE-A2D9-9A4517BDB3CB}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
    "{0FFA8CEA-8AF9-450D-AB3C-16A95CE7399A}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
    "{100A7FB6-95FA-493B-A5B9-A41833AC6BA5}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{1252C16A-3FBC-4CAB-BCD2-3433EC269630}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{13875A02-07E2-41BF-9D55-C94FB1BC2E7E}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{154FAD33-6301-4EFD-82A2-278EA9C4FA87}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
    "{17B9DE01-3445-42E9-AF5B-BCC73CA90652}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\hp1006mc.exe |
    "{200FA249-EB9B-4BA4-A833-8467601E074D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{202BD316-7599-4154-A82A-D7D920AA5BEB}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{20930086-1ACA-4F2D-A18D-75A227D5FE93}" = dir=in | app=c:\program files\skype\phone\skype.exe |
    "{22C419CD-AC12-4558-805D-92258DE64F69}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{25E6355E-8C6B-44C4-8E8F-3283DB92EA30}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{27BDA2D3-6D91-46F7-816B-EAF6763DCA73}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{2924C52D-9C94-4558-B97E-68F25867D216}" = protocol=1 | dir=out | name=file and printer sharing (echo request - icmpv4-out) |
    "{2983BC1E-AA25-4C73-BCED-8A6967067F2C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
    "{2C750AB3-67F9-4599-8C28-183BE3B00DFD}" = dir=in | app=c:\program files\itunes\itunes.exe |
    "{34B4A298-E659-4E02-B080-A429149351E7}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{49685742-B83A-49E0-9FEA-25690B9DE062}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\hptouchsmartphoto.exe |
    "{4E45633D-08BF-4E0B-A6A9-21099148217A}" = protocol=6 | dir=out | app=system |
    "{50562C54-5957-4541-90DB-12071E7525B6}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{533C4BFD-F1BC-4B4B-A74D-E78EEF53014F}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
    "{5EADFCAC-8E7B-4C34-B7D6-819BF722C310}" = dir=in | app=c:\users\jessica\appdata\roaming\zoom\bin\zoom.exe |
    "{5F6543D2-8541-4A82-8FED-A0FF50B7382F}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\hp1006mc.exe |
    "{68B86437-1C78-4E7A-BB89-76AA74F41BE7}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{6F53C8B5-CE63-4279-ABC6-62E3ED6B334A}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{715E547C-F4BA-4AF2-85F2-9DE2C93CDF0C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{785F3AB8-4239-445D-A2AB-846D7BFABD04}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{7A3DFDD3-49B5-4288-9564-7A7EA0DFCBFC}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\hptouchsmartvideo.exe |
    "{81F3F03B-35C2-4285-AD57-08E95F5D66A3}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{858E1661-2953-42F8-B3CB-70DFAD7981E3}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{87487CD4-56E5-4ED4-A6DA-26F8FAEF9B86}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{88ADD765-2116-44A2-B0FE-8A9BAC316F57}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{8F9AAAC6-5A36-4918-A4D8-D2C9A00C575A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
    "{982A9753-25D3-4909-B2F8-8CA82012136B}" = dir=in | app=c:\program files\leapfrog\leapfrog connect\leapfrogconnect.exe |
    "{9EFCCC84-1099-4D97-86A8-A6D0C1110553}" = protocol=58 | dir=out | name=file and printer sharing (echo request - icmpv6-out) |
    "{B40EB2D9-25CF-4385-AC11-1265D35227DD}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\hpdvdsmart.exe |
    "{BC58FB67-2431-4977-9EF0-DD2C6DF78536}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{C06CABE9-0446-457A-B736-A81C68939124}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\tsmagent.exe |
    "{C08468F5-9DC4-4A27-90B2-88E0426E9CF0}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
    "{C520C890-47E5-4244-8309-8860958E4BE5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
    "{C673AEC0-63AA-4DD6-BCCE-59ADE4A276B6}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{CC6D99BB-D5AB-42B6-93C9-2A85A4BB55E5}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{CC7137FA-25A7-4131-91E8-441633E92F99}" = protocol=1 | dir=in | name=file and printer sharing (echo request - icmpv4-in) |
    "{D635280C-0EEC-486E-BE93-9B142C6B30CB}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{F811C909-0245-4215-B86A-435418392B12}" = protocol=58 | dir=in | name=file and printer sharing (echo request - icmpv6-in) |
    "{F94E426B-1053-4C2D-A551-343AFFE93271}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\hptouchsmartmusic.exe |
    "{FE225A10-ABBB-4AAE-BD4D-D9243F1ACC8E}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr.exe |
    "{FEF1C35D-5E6C-440F-B618-D63F076ABE2C}" = dir=in | app=c:\program files\hewlett-packard\media\dvd\kernel\clml\clmlsvc.exe |
    "TCP Query User{68EC0688-0E30-42A4-9E79-CCDCEE10E1C1}C:\program files\logitech\vid hd\vid.exe" = protocol=6 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |
    "TCP Query User{74398671-3961-4B07-A341-DE9123D4E797}C:\program files\logitech\vid hd\vid.exe" = protocol=6 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |
    "UDP Query User{A730979E-26AC-4595-ACA4-E1FF412FE92A}C:\program files\logitech\vid hd\vid.exe" = protocol=17 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |
    "UDP Query User{E27F3811-DE5C-4793-A0ED-E31E8F8A64A9}C:\program files\logitech\vid hd\vid.exe" = protocol=17 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |

    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video
    "{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects
    "{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi
    "{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
    "{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main
    "{16AAD75A-9E2B-459D-949C-11AA1A2A6B9F}" = LeapFrog Connect
    "{174A3B31-4C43-43DD-866F-73C9DB887B48}" = LWS Twitter
    "{1896E712-2B3D-45eb-BCE9-542742A51032}" = PictureMover
    "{19506BDB-4EA7-491F-E8AB-E97109FDB296}" = muvee Reveal
    "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe
    "{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin
    "{237FB6DF-B351-4567-9226-4CE4A9CBBEA8}" = zoom.us
    "{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library
    "{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 21
    "{28DB8373-C1BB-444F-A427-A55585A12ED7}" = Motorola Device Manager
    "{2CD352BA-1F8A-4302-B972-2529E82A5679}" = Microsoft Live Search Toolbar
    "{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7
    "{352310C3-E46B-42D3-8F32-54721FDD72D9}" = NetZero Preloader
    "{36A345C9-0691-45A1-AEEF-29ECEC8B5014}" = Microsoft Security Client
    "{38058455-8C21-4C2F-B2F6-14ED166039CB}" = HP Total Care Setup
    "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT
    "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
    "{40C4903E-EDFB-4CAE-A611-41FEBA585921}" = VTech Download Agent Library
    "{40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B}" = HP Advisor
    "{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
    "{48BF4489-0C58-4E80-BB17-94A673CE310A}" = HP Demo
    "{4903D172-DCCB-392F-93A3-34CA9D47FE3D}" = Microsoft .NET Framework 4.5.1
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}" = Google Earth
    "{5BD0CB24-11AF-4BA8-A198-38D25257C656}" = LightScribe Template Labeler
    "{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support
    "{6423EF83-6E1D-4D22-A36F-689CD19FD4D2}" = Juno Preloader
    "{64B9E2F5-558E-4C56-B419-A1679518F6E7}" = HP Customer Experience Enhancements
    "{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library
    "{6B976ADF-8AE8-434E-B282-A06C7F624D2F}" = Python 2.5.2
    "{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery
    "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
    "{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection
    "{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
    "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.14
    "{7B02BF60-796D-4616-908B-B31A63CFDEFB}" = HPCarePackCore
    "{7B15D70E-9449-4CFB-B9BC-798465B2BD5C}" = Norton Internet Security
    "{7F10292C-A190-4176-A665-A1ED3478DF86}" = LightScribe System Software
    "{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher
    "{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
    "{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
    "{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
    "{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
    "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
    "{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
    "{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
    "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
    "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
    "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
    "{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
    "{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
    "{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
    "{904CCF62-818D-4675-BC76-D37EB399F917}" = Windows Mobile Device Center
    "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
    "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
    "{91FD46D2-4FB7-4A51-8637-556E1BE1DB7C}" = iTunes
    "{925F1DB6-E86E-4378-9091-D1F68B0583C9}" = iCloud
    "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
    "{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin
    "{A0640EC2-B97E-4FC1-AD14-227C9E386BB4}" = HP Recovery Manager RSS
    "{A47362E8-CDF6-4347-9984-07D8066D4195}" = LeapFrog My Pals Plugin
    "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
    "{AC76BA86-7AD7-1033-7B44-A95000000001}" = Adobe Reader 9.5.5
    "{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
    "{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}" = PMB
    "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
    "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
    "{C6579A65-9CAE-4B31-8B6B-3306E0630A66}" = Apple Software Update
    "{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
    "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
    "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
    "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
    "{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}" = HP Active Support Library
    "{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software
    "{D732E36A-B0C2-4DFF-8C60-4AC06233B2BC}" = Motorola Mobile Drivers Installation 6.0.0
    "{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
    "{DEAD13D3-BC70-4AAE-AEF9-BE6297E106D1}" = Motorola Device Software Update
    "{E14ADE0E-75F3-4A46-87E5-26692DD626EC}" = Apple Mobile Device Support
    "{E7044E25-3038-4A76-9064-344AC038043E}" = Windows Mobile Device Center Driver Update
    "{ECA31632-C2AD-4774-A3CA-2813D47E4DD0}" = HPCarePackProducts
    "{ECEE0279-785F-4CB3-9F28-E69813234BF8}" = SPORE Creature Creator Trial Edition
    "{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker
    "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
    "{F855C3AE-992D-4B84-A09D-07103CDCDAC2}" = Compact Wireless-G USB Adapter
    "{FE57DE70-95DE-4B64-9266-84DA811053DB}" = HP Update
    "{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook
    "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
    "8F14F2ECEDE68D26EA515B48DC25B39103C4FE8D" = Windows Driver Package - Leapfrog (Leapfrog-USBLAN) Net (09/10/2009 02.03.05.012)
    "Adobe Flash Player ActiveX" = Adobe Flash Player 13 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin
    "Amazon MP3 Downloader" = Amazon MP3 Downloader 1.0.17
    "CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_200C14F1" = Soft Data Fax Modem with SmartCP
    "Coupon Printer for Windows5.0.0.3" = Coupon Printer for Windows
    "ffdshow_is1" = ffdshow [rev 2527] [2008-12-19]
    "Google Chrome" = Google Chrome
    "HOMESTUDENTR" = Microsoft Office Home and Student 2007
    "HTC_WModemDriver" = WModem Driver Installer
    "InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe
    "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
    "InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
    "InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
    "InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
    "Juniper_Setup_Client Activex Control" = Juniper Networks, Inc. Setup Client Activex Control
    "Logitech Vid" = Logitech Vid HD
    "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.2.1012
    "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
    "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
    "Microsoft Security Client" = Microsoft Security Essentials
    "Mozilla Firefox 23.0.1 (x86 en-US)" = Mozilla Firefox 23.0.1 (x86 en-US)
    "MozillaMaintenanceService" = Mozilla Maintenance Service
    "MyPalsPlugin" = Use the entry named LeapFrog Connect to uninstall (LeapFrog My Pals Plugin)
    "NVIDIA Drivers" = NVIDIA Drivers
    "OfficeTrial" = Microsoft Office Home and Student 60 day trial
    "PC-Doctor for Windows" = Hardware Diagnostic Tools
    "PerformanceTest 8_is1" = PerformanceTest v8.0
    "Picasa 3" = Picasa 3
    "SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
    "ServiceInstaller" = ServiceInstaller
    "sp44626" = sp44626
    "UPCShell" = LeapFrog Connect
    "Verizon V CAST Media Manager" = Verizon V CAST Media Manager
    "VTechDownloadManager" = Learning Lodge™
    "WildTangent hp Master Uninstall" = My HP Games

    ========== HKEY_USERS Uninstall List ==========

    [HKEY_USERS\S-1-5-21-451324376-1745640537-2698504042-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "Facebook Plug-In" = Facebook Plug-In
    "Juniper_Setup_Client" = Juniper Networks, Inc. Setup Client
    "Juniper_Term_Services" = Juniper Terminal Services Client
    "Move Media Player" = Move Media Player
    "Neoteris_Host_Checker" = Juniper Networks Host Checker
    "Yahoo! BrowserPlus" = Yahoo! BrowserPlus 2.9.2

    ========== Last 20 Event Log Errors ==========

    [ OSession Events ]
    Error - 10/11/2013 10:37:19 PM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
    12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 128337
    seconds with 1020 seconds of active time. This session ended with a crash.

    Error - 10/17/2013 11:41:12 AM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 577167
    seconds with 420 seconds of active time. This session ended with a crash.

    Error - 11/3/2013 7:14:57 PM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
    12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1055108
    seconds with 2160 seconds of active time. This session ended with a crash.

    Error - 11/3/2013 11:34:21 PM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 378641
    seconds with 0 seconds of active time. This session ended with a crash.

    Error - 12/8/2013 11:53:37 PM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
    12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2892
    seconds with 1740 seconds of active time. This session ended with a crash.

    Error - 12/11/2013 6:20:05 PM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
    12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 11012
    seconds with 180 seconds of active time. This session ended with a crash.

    Error - 1/5/2014 9:32:20 AM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
    12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1402
    seconds with 900 seconds of active time. This session ended with a crash.

    Error - 2/16/2014 6:57:22 PM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 372459
    seconds with 60 seconds of active time. This session ended with a crash.

    Error - 4/25/2014 5:48:05 PM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 271560
    seconds with 1380 seconds of active time. This session ended with a crash.

    Error - 5/3/2014 1:05:24 AM | Computer Name = Jessica-PC | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 113
    seconds with 60 seconds of active time. This session ended with a crash.


    < End of report >

  8. #7
    Member Spyware Fighter zep516's Avatar
    Join Date
    Dec 2005
    Location
    Pittsburgh, Pa
    Posts
    7,158
    Points
    1301

    Default

    Hello,
    Donna's internet is down, can you follow instructions below:

    We need to do a fix to delete some files using OTL

    • Double click on the to open the program. On Vista/Win7/Win8 right click select Run As Administrator to start the program. If prompted by UAC, please allow it.
    • Under the Custom Scans/Fixes box at the bottom, paste in the following

      Code:
      :COMMANDS
      [CREATERESTOREPOINT]
      
      :OTL
      IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
      IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
      IE - HKU\S-1-5-21-451324376-1745640537-2698504042-1000\..\SearchScopes\{1C6FD81D-6C8D-41E4-988D-BF5F45FC3D3A}: "URL" = http://www.ask.com/web?q={searchTerms}&l=dis&o=uscqd
      FF - prefs.js..extensions.enabledAddons: avg%40toolbar:15.5.0.2
      FF - prefs.js..extensions.enabledItems: avg@toolbar:9.0.0.18.1
      FF - user.js - File not found
      File not found (No name found) -- C:\PROGRAMDATA\AVG SECURE SEARCH\FIREFOXEXT\17.0.1.12
      File not found (No name found) -- C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\EXTENSIONS\{635ABD67-4FE9-1B23-4F01-E679FA7484C1}
      O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\Windows\System32\cmd.exe (Microsoft Corporation)
      O13 - gopher Prefix: missing
      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_21)
      O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_07)
      O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_21)
      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_21)
      [2014/05/26 17:59:07 | 000,000,350 | ---- | M] () -- C:\Windows\tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
      
      :Files
      netsh int ip reset c:\resetlog.txt /c
      ipconfig /flushdns /c
      ipconfig /release /c
      ipconfig /renew /c 
      netsh advfirewall reset /c
      netsh advfirewall set allprofiles state on /c 
      
      :Commands
      
      [emptytemp]
      [resethosts]
    • Make sure all other windows are closed.
    • Click the Run Fix button at the top
    • Let the program run uninterrupted. The computer should reboot when the scan is done. If not, please reboot the computer.
    • Post the log that is found in C:\_OTL\Moved Files in your next reply.
    • Open OTL again and click the Quick Scan button.


    Next
    I see Norton Internet security listed in your programs and features list, it may be a good Idea to run the:
    Norton removal tool Here.
    Just in case there are any left over Norton files.

    In your next reply post.
    1 The OTL Fix log, the log should pop up after you run fix.
    2 A New OTL Log after quick scan.
    3 Tell us how things are?

    Joe

  9. The Following User Says Thank You to zep516 For This Useful Post:


  10. #8
    Member
    Join Date
    Mar 2006
    Posts
    47
    Points
    1

    Default

    I had to reboot after running the code you gave me. Here's that file:


    Files\Folders moved on Reboot...
    File move failed. C:\Windows\System32\cmd.exe scheduled to be moved on reboot.
    C:\Users\Jessica\AppData\Local\Temp\VGX6279.tmp moved successfully.

    PendingFileRenameOperations files...

    Registry entries deleted on Reboot...


    Here'e the Quick Scan file:

    OTL logfile created on: 5/27/2014 8:44:23 AM - Run 2
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jessica\Desktop
    Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

    2.87 Gb Total Physical Memory | 1.40 Gb Available Physical Memory | 48.65% Memory free
    5.95 Gb Paging File | 4.50 Gb Available in Paging File | 75.69% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 221.63 Gb Total Space | 63.70 Gb Free Space | 28.74% Space Free | Partition Type: NTFS
    Drive D: | 11.25 Gb Total Space | 1.54 Gb Free Space | 13.70% Space Free | Partition Type: NTFS

    Computer Name: JESSICA-PC | User Name: Jessica | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user | Quick Scan
    Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - [2014/05/26 18:17:39 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jessica\Desktop\OTL.exe
    PRC - [2014/05/13 18:40:56 | 000,860,488 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
    PRC - [2014/03/11 10:13:24 | 000,022,216 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe
    PRC - [2014/03/11 10:13:14 | 000,951,576 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
    PRC - [2013/10/10 17:54:44 | 000,120,088 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe
    PRC - [2013/10/09 10:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
    PRC - [2013/07/23 16:39:14 | 007,391,232 | ---- | M] (LeapFrog Enterprises, Inc.) -- C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
    PRC - [2013/03/28 20:17:40 | 000,191,880 | ---- | M] (VTech) -- C:\Program Files\VTech\DownloadManager\Applications\AppAccessory\12051\VTechUSBSocketService\VTechUSBSocketService.exe
    PRC - [2013/03/28 20:17:39 | 000,082,824 | ---- | M] (VTech) -- C:\Program Files\VTech\DownloadManager\Applications\AppAccessory\12051\VTechUSBSocketService\VTechServiceInstaller.exe
    PRC - [2013/03/25 14:45:52 | 000,694,584 | ---- | M] (Motorola Mobility LLC) -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
    PRC - [2013/03/25 14:45:52 | 000,121,144 | ---- | M] (Motorola Mobility LLC) -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
    PRC - [2012/01/18 01:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe
    PRC - [2011/11/11 14:08:06 | 000,205,336 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe
    PRC - [2011/11/11 14:07:54 | 000,265,240 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\CameraHelperShell.exe
    PRC - [2011/09/02 16:06:38 | 000,065,657 | ---- | M] (Motorola) -- C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe
    PRC - [2011/08/12 12:19:40 | 000,680,984 | ---- | M] () -- C:\Program Files\Common Files\LogiShrd\LQCVFX\COCIManager.exe
    PRC - [2011/02/14 08:55:16 | 000,043,520 | R--- | M] () -- C:\Program Files\HTC\ModeSelection\VMMModeSelection.exe
    PRC - [2010/03/24 16:42:10 | 000,599,328 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
    PRC - [2009/10/24 04:18:54 | 000,360,224 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe
    PRC - [2009/04/11 01:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
    PRC - [2007/08/06 13:41:06 | 000,069,632 | ---- | M] (Software 2000 Limited) -- C:\Windows\System32\spool\drivers\w32x86\3\HP1006MC.EXE
    PRC - [2007/04/25 14:28:34 | 000,954,368 | ---- | M] () -- C:\Program Files\HP\Dfawep\bin\hpbdfawep.exe


    ========== Modules (No Company Name) ==========

    MOD - [2014/05/14 03:47:19 | 000,774,656 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\fbf434299b068c463296945c12845734\System.Runtime.Remoting.ni.dll
    MOD - [2014/05/14 03:43:49 | 006,621,696 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\1a1d6e829a5d4cb2fc68f207ac115496\System.Data.ni.dll
    MOD - [2014/05/13 18:40:54 | 000,414,536 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\35.0.1916.114\ppgooglenaclpluginchrome.dll
    MOD - [2014/05/13 18:40:50 | 004,217,672 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\35.0.1916.114\pdf.dll
    MOD - [2014/05/13 18:40:43 | 001,732,424 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll
    MOD - [2014/02/12 04:47:01 | 000,187,904 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\b01fbd25bd6023d6b2d960d7bda323af\UIAutomationTypes.ni.dll
    MOD - [2014/02/12 04:46:44 | 000,998,400 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\c5213af29d521ee19cc55983f8c2037c\System.Management.ni.dll
    MOD - [2014/02/12 04:44:02 | 000,978,944 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\d17ceca243fabda73eefb21d9bd072df\System.Configuration.ni.dll
    MOD - [2014/02/12 04:42:29 | 005,462,016 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f87e71868aedbc6c4e8fe7160d17c4ab\System.Xml.ni.dll
    MOD - [2014/02/12 04:41:59 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\8e6265a54260bddfc05951e764f5bc48\System.Drawing.ni.dll
    MOD - [2014/02/12 04:41:27 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\71e362b114f878201540696b6d66bf45\PresentationFramework.Aero.ni.dll
    MOD - [2014/02/12 04:41:25 | 014,329,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\b46f1c203d1e4bec4597adf684ec1d41\PresentationFramework.ni.dll
    MOD - [2014/02/12 04:41:06 | 012,218,880 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\07d57714fff9db216537473f4a777f22\PresentationCore.ni.dll
    MOD - [2014/02/12 04:40:52 | 003,325,440 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d981bccab40fbbdc1d35bf2a58c947b7\WindowsBase.ni.dll
    MOD - [2014/02/12 04:40:46 | 007,977,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\957628d9dd7b3bf370a56dca7835a997\System.ni.dll
    MOD - [2014/02/12 04:40:30 | 011,497,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\694a37a84dee2cd2609a1dfab27c0433\mscorlib.ni.dll
    MOD - [2011/11/11 14:09:20 | 000,336,408 | ---- | M] () -- C:\Program Files\Common Files\LogiShrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll
    MOD - [2011/11/11 14:07:54 | 000,265,240 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\CameraHelperShell.exe
    MOD - [2011/08/12 12:19:40 | 000,680,984 | ---- | M] () -- C:\Program Files\Common Files\LogiShrd\LQCVFX\COCIManager.exe
    MOD - [2011/02/14 08:55:16 | 000,043,520 | R--- | M] () -- C:\Program Files\HTC\ModeSelection\VMMModeSelection.exe
    MOD - [2010/06/30 00:12:54 | 000,061,440 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\Pillars\PCAlerts\PCAlertsPillar.dll
    MOD - [2010/06/30 00:12:52 | 000,131,072 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\Pillars\ECenter\ECLibrary.dll
    MOD - [2010/06/30 00:12:42 | 000,040,960 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingServer.dll
    MOD - [2010/06/30 00:12:40 | 000,036,864 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingClients.dll
    MOD - [2010/06/30 00:12:40 | 000,007,680 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\RemotingClient.dll
    MOD - [2010/06/30 00:12:40 | 000,005,632 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingInterface.dll
    MOD - [2010/06/30 00:12:36 | 000,018,944 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\MessagingMessages.dll
    MOD - [2010/06/30 00:12:18 | 000,028,672 | ---- | M] () -- C:\Program Files\Hewlett-Packard\HP Advisor\Microsoft.Practices.EnterpriseLibrary.ExceptionHandling.Logging.dll
    MOD - [2010/05/07 18:37:40 | 000,126,808 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\ImageFormats\QJpeg4.dll
    MOD - [2010/05/07 18:37:40 | 000,027,480 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\ImageFormats\QGif4.dll
    MOD - [2010/05/07 18:36:54 | 000,340,824 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\QTXml4.dll
    MOD - [2010/05/07 18:35:56 | 007,954,776 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\QTGui4.dll
    MOD - [2010/05/07 18:35:44 | 002,143,576 | ---- | M] () -- C:\Program Files\Logitech\LWS\Webcam Software\QTCore4.dll
    MOD - [2009/03/29 23:42:17 | 002,933,760 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
    MOD - [2008/11/13 05:48:19 | 000,098,304 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\HP.ActiveSupportLibrary\2.0.0.1__01a974bc1760f423\HP.ActiveSupportLibrary.dll
    MOD - [2007/04/25 14:28:34 | 000,954,368 | ---- | M] () -- C:\Program Files\HP\Dfawep\bin\hpbdfawep.exe


    ========== Services (SafeList) ==========

    SRV - [2014/05/14 06:47:23 | 000,257,712 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
    SRV - [2014/03/11 10:13:24 | 000,279,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
    SRV - [2014/03/11 10:13:24 | 000,022,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
    SRV - [2013/10/23 09:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
    SRV - [2013/10/10 17:54:44 | 000,120,088 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore.exe -- (!SASCORE)
    SRV - [2013/10/09 10:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
    SRV - [2013/08/17 09:25:21 | 000,117,656 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
    SRV - [2013/07/23 16:39:14 | 007,391,232 | ---- | M] (LeapFrog Enterprises, Inc.) [Auto | Running] -- C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe -- (LeapFrog Connect Device Service)
    SRV - [2013/03/28 20:17:39 | 000,082,824 | ---- | M] (VTech) [Auto | Running] -- C:\Program Files\VTech\DownloadManager\Applications\AppAccessory\12051\VTechUSBSocketService\VTechServiceInstaller.exe -- (VTechUSBSocketService)
    SRV - [2013/03/25 14:45:52 | 000,121,144 | ---- | M] (Motorola Mobility LLC) [Auto | Running] -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe -- (Motorola Device Manager)
    SRV - [2012/01/18 01:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
    SRV - [2011/09/02 16:06:38 | 000,065,657 | ---- | M] (Motorola) [Auto | Running] -- C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe -- (PST Service)
    SRV - [2009/10/24 04:18:54 | 000,360,224 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)
    SRV - [2008/01/20 21:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
    SRV - [2007/05/31 09:21:24 | 000,379,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
    SRV - [2007/05/31 09:21:18 | 000,183,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)


    ========== Driver Services (SafeList) ==========

    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
    DRV - [2014/04/24 12:12:18 | 000,028,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\PerformanceTest\DirectIo32.sys -- (DIRECTIO)
    DRV - [2014/03/11 09:52:30 | 000,104,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
    DRV - [2012/06/11 10:56:32 | 000,020,864 | ---- | M] (Motorola Mobility Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motccgp.sys -- (motccgp)
    DRV - [2012/06/08 15:09:10 | 000,023,808 | ---- | M] (Motorola Mobility Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Motousbnet.sys -- (Motousbnet)
    DRV - [2012/06/08 15:08:52 | 000,006,656 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motswch.sys -- (MotoSwitchService)
    DRV - [2012/01/25 13:57:46 | 000,008,448 | ---- | M] (Motorola Mobility Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motccgpfl.sys -- (motccgpfl)
    DRV - [2012/01/18 01:44:52 | 004,332,960 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\lvuvc.sys -- (LVUVC)
    DRV - [2012/01/18 01:44:28 | 000,312,096 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\lvrs.sys -- (LVRS)
    DRV - [2011/11/08 12:59:04 | 000,011,008 | ---- | M] (Motorola Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motusbdevice.sys -- (motusbdevice)
    DRV - [2011/07/22 11:27:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
    DRV - [2011/07/12 16:55:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
    DRV - [2010/05/07 18:43:30 | 000,025,824 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LVPr2Mon.sys -- (LVPr2Mon)
    DRV - [2009/01/29 17:11:20 | 000,006,016 | ---- | M] (Motorola Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motfilt.sys -- (BTCFilterService)
    DRV - [2008/09/27 01:51:00 | 007,478,496 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
    DRV - [2008/09/10 07:48:20 | 000,266,752 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSXHWBS2.sys -- (HSXHWBS2)
    DRV - [2008/09/10 07:46:22 | 000,980,992 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_DP.sys -- (HSF_DP)
    DRV - [2008/09/04 06:34:34 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
    DRV - [2008/08/01 07:51:14 | 001,052,704 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVENETFD)
    DRV - [2008/07/21 11:12:50 | 000,133,152 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\nvrd32.sys -- (nvrd32)
    DRV - [2008/07/21 11:12:22 | 000,145,952 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\nvstor32.sys -- (nvstor32)
    DRV - [2008/05/22 04:39:34 | 000,015,360 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\nvsmu.sys -- (nvsmu)
    DRV - [2007/07/03 02:59:10 | 000,086,824 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdserd.sys -- (sscdserd)
    DRV - [2007/07/03 02:58:20 | 000,106,792 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdmdm.sys -- (sscdmdm)
    DRV - [2007/07/03 02:57:24 | 000,011,944 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdmdfl.sys -- (sscdmdfl)
    DRV - [2007/07/03 02:54:24 | 000,080,552 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdbus.sys -- (sscdbus)
    DRV - [2007/03/12 10:12:00 | 000,256,000 | ---- | M] (Ralink Technology Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\WUSB54GCx86.sys -- (netr73)
    DRV - [2005/11/24 19:51:38 | 000,245,248 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rt73.sys -- (RT73)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
    IE - HKLM\..\SearchScopes,DefaultScope =
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\..\SearchScopes\{1C6FD81D-6C8D-41E4-988D-BF5F45FC3D3A}: "URL" = http://www.ask.com/web?q={searchTerms}&l=dis&o=uscqd

    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Upgrade to Google Chrome
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Upgrade to Google Chrome
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN.com
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0A 34 1F 9F 6F CF CE 01 [binary data]
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Upgrade to Google Chrome
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Upgrade to Google Chrome
    IE - HKCU\..\SearchScopes,DefaultScope =
    IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searcSearchScopes
    IE - HKCU\..\SearchScopes\{961CFB77-3921-4802-8B65-5FFF26F33582}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
    IE - HKCU\..\SearchScopes\{D3D0EAB6-820D-4A67-AC7D-5594C487C670}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=HPDTDF&pc=HPDTDF&src=IE-SearchBox
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;192.168.*.*

    ========== FireFox ==========

    FF - prefs.js..browser.search.param.yahoo-fr: "moz2-ytff-"
    FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "moz2-ytff-"
    FF - prefs.js..extensions.enabledAddons: moveplayer%40movenetworks.com:7
    FF - prefs.js..extensions.enabledAddons: %7B635abd67-4fe9-1b23-4f01-e679fa7484c1%7D:2.6.0.20130418072822
    FF - prefs.js..extensions.enabledAddons:
    FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:23.0.1
    FF - prefs.js..extensions.enabledItems: moveplayer@movenetworks.com:7
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
    FF - prefs.js..extensions.enabledItems: {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1423
    FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.3.5.20110120033202
    FF - prefs.js..extensions.enabledItems:
    FF - user.js - File not found

    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
    FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
    FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
    FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users\Jessica\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
    FF - HKCU\Software\MozillaPlugins\@movenetworks.com/Quantum Media Player: C:\Users\Jessica\AppData\Roaming\Move Networks\plugins\npqmp071705000014.dll (Move Networks)
    FF - HKCU\Software\MozillaPlugins\@yahoo.com/BrowserPlus,version=2.9.2: C:\Users\Jessica\AppData\Local\Yahoo!\BrowserPlus\2.9.2\Plugins\npybrowserplus_2.9.2.dll (Yahoo! Inc.)
    FF - HKCU\Software\MozillaPlugins\@zoom.us/ZoomVideoPlugin: C:\Users\Jessica\AppData\Roaming\Zoom\bin\npzoomplugin.dll (Zoom Video Communications, Inc.)
    FF - HKCU\Software\MozillaPlugins\amazon.com/AmazonMP3DownloaderPlugin: C:\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101710.dll (Amazon.com, Inc.)

    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013/08/17 09:25:08 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013/08/18 09:57:49 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\moveplayer@movenetworks.com: C:\Users\Jessica\AppData\Roaming\Move Networks [2010/01/22 19:27:58 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013/08/17 09:25:08 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013/08/18 09:57:49 | 000,000,000 | ---D | M]

    [2009/06/25 20:18:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jessica\AppData\Roaming\Mozilla\Extensions
    [2014/05/26 17:43:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\extensions
    [2012/05/08 11:45:34 | 000,020,591 | ---- | M] () (No name found) -- C:\Users\Jessica\AppData\Roaming\Mozilla\Firefox\Profiles\aseec21d.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi
    [2013/08/17 09:25:08 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
    [2013/10/14 03:46:05 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
    [2013/08/17 09:25:06 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
    [2013/10/14 03:46:05 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
    [2013/08/17 09:25:22 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
    File not found (No name found) -- C:\PROGRAMDATA\AVG SECURE SEARCH\FIREFOXEXT\17.0.1.12
    [2010/01/22 19:27:58 | 000,000,000 | ---D | M] (Move Media Player) -- C:\USERS\JESSICA\APPDATA\ROAMING\MOVE NETWORKS
    File not found (No name found) -- C:\USERS\JESSICA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ASEEC21D.DEFAULT\EXTENSIONS\{635ABD67-4FE9-1B23-4F01-E679FA7484C1}
    [2012/05/14 21:47:32 | 000,466,944 | ---- | M] (Catalina Marketing Corporation) -- C:\Program Files\mozilla firefox\plugins\NPcol400.dll
    [2010/08/14 01:50:16 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll

    ========== Chrome ==========

    CHR - default_search_provider: Google (Enabled)
    CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{googleriginalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{googlemniboxStartMarginParameter}ie={inputEncoding}
    CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{googleageClassification}sugkey={google:suggestAPIKeyParameter},
    CHR - homepage: Google
    CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
    CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll
    CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\35.0.1916.114\pdf.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\35.0.1916.114\gcswf32.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
    CHR - plugin: AVG Internet Security (Enabled) = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll
    CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
    CHR - plugin: Java Deployment Toolkit 6.0.210.7 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
    CHR - plugin: Java(TM) Platform SE 6 U21 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
    CHR - plugin: E-centives Coupon Activator Netscape Plugin v. 4.0.0.0 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPcol400.dll
    CHR - plugin: Coupons Inc., Coupon Printer Manager (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npCouponPrinter.dll
    CHR - plugin: Coupons Inc., Coupon Printer Manager (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npMozCouponPrinter.dll
    CHR - plugin: Windows Genuine Advantage (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
    CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
    CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
    CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
    CHR - plugin: BrowserPlus (from Yahoo!) v2.9.2 (Enabled) = C:\Users\Jessica\AppData\Local\Yahoo!\BrowserPlus\2.9.2\Plugins\npybrowserplus_2.9.2.dll
    CHR - plugin: Facebook Plugin (Enabled) = C:\Users\Jessica\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll
    CHR - plugin: Move Streaming Media Player (Enabled) = C:\Users\Jessica\AppData\Roaming\Move Networks\plugins\npqmp071705000014.dll
    CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\npctrl.1.0.30716.0.dll
    CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
    CHR - Extension: Google Voice Search Hotword (Beta) = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5019_0\
    CHR - Extension: YouTube = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
    CHR - Extension: Google Search = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
    CHR - Extension: Skype Click to Call = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.2.15747.10003_0\
    CHR - Extension: Google Wallet = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
    CHR - Extension: Gmail = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

    O1 HOSTS File: ([2006/09/18 16:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 localhost
    O1 - Hosts: ::1 localhost
    O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll (Microsoft Corp.)
    O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll (Microsoft Corp.)
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
    O4 - HKLM..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
    O4 - HKLM..\Run: [hpbdfawep] C:\Program Files\HP\Dfawep\bin\hpbdfawep.exe ()
    O4 - HKLM..\Run: [LWS] C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
    O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
    O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation)
    O4 - HKLM..\Run: [VMM Mode Selection] C:\Program Files\HTC\ModeSelection\VMMModeSelection.exe ()
    O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [Windows Mobile-based device management] C:\Windows\WindowsMobile\wmdSync.exe (Microsoft Corporation)
    O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.)
    O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
    O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
    O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/J...etupClient.cab (JuniperSetupClientControl Class)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 205.171.3.26 205.171.2.26
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6833C076-BA5F-4888-A2E1-48E67F821251}: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{78683FED-885A-40FE-ACB4-D9E6979A5405}: DhcpNameServer = 192.168.0.1 205.171.3.26 205.171.2.26
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B1C57204-5091-4C47-8EED-2FA742EAA100}: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
    O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: GinaDLL - (GTGina.dll) - File not found
    O24 - Desktop WallPaper: C:\Users\Jessica\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
    O24 - Desktop BackupWallPaper: C:\Users\Jessica\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
    O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2006/09/18 16:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
    O33 - MountPoints2\{6808b94b-7df5-11e2-90c3-002511e2f58f}\Shell - "" = AutoRun
    O33 - MountPoints2\{6808b94b-7df5-11e2-90c3-002511e2f58f}\Shell\AutoRun\command - "" = H:\MotoCastSetup.exe -a
    O33 - MountPoints2\{8a908b6c-e1a2-11df-ada2-002511e2f58f}\Shell - "" = AutoRun
    O33 - MountPoints2\{8a908b6c-e1a2-11df-ada2-002511e2f58f}\Shell\AutoRun\command - "" = H:\TL-Bootstrap.exe
    O33 - MountPoints2\{d51754b0-bd39-11e2-a480-002511e2f58f}\Shell - "" = AutoRun
    O33 - MountPoints2\{d51754b0-bd39-11e2-a480-002511e2f58f}\Shell\AutoRun\command - "" = F:\MotorolaDeviceManagerSetup.exe -a
    O33 - MountPoints2\{ffd32ceb-6029-11de-8a2a-002511e2f58f}\Shell\AutoRun\command - "" = F:\wd_windows_tools\WDSetup.exe
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*
    O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
    O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

    ========== Files/Folders - Created Within 30 Days ==========

    [2014/05/27 08:15:13 | 000,000,000 | ---D | C] -- C:\_OTL
    [2014/05/26 18:17:38 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Jessica\Desktop\OTL.exe
    [2014/05/26 17:55:34 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
    [2014/05/26 17:49:39 | 001,016,261 | ---- | C] (Thisisu) -- C:\Users\Jessica\Desktop\JRT.exe
    [2014/05/26 17:32:23 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\Windows\System32\sqlite3.dll
    [2014/05/26 17:31:11 | 000,000,000 | ---D | C] -- C:\AdwCleaner
    [2014/05/24 10:07:47 | 000,000,000 | ---D | C] -- C:\Users\Jessica\Documents\PassMark
    [2014/05/24 10:07:42 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\PassMark
    [2014/05/24 10:06:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PerformanceTest
    [2014/05/24 10:06:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Passmark
    [2014/05/24 10:06:41 | 000,000,000 | ---D | C] -- C:\Program Files\PerformanceTest
    [2014/05/22 17:53:19 | 000,110,296 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
    [2014/05/22 10:15:31 | 000,000,000 | ---D | C] -- C:\SUPERDelete
    [2014/05/22 10:13:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    [2014/05/22 10:12:56 | 000,074,456 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
    [2014/05/22 10:12:55 | 000,051,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
    [2014/05/22 10:12:55 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
    [2014/05/22 10:12:55 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
    [2014/05/22 10:12:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
    [2014/05/22 10:02:03 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\SUPERAntiSpyware.com
    [2014/05/22 10:01:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
    [2014/05/22 10:01:40 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
    [2014/05/22 10:01:40 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
    [2014/05/22 08:44:23 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\TuneUp Software
    [2014/05/22 08:44:12 | 000,000,000 | -HSD | C] -- C:\Config.Msi
    [2014/05/14 03:08:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
    [4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

    ========== Files - Modified Within 30 Days ==========

    [2014/05/27 08:46:16 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
    [2014/05/27 08:40:14 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
    [2014/05/27 08:40:05 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
    [2014/05/27 08:40:05 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
    [2014/05/27 08:40:00 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2014/05/27 08:39:57 | 3085,332,480 | -HS- | M] () -- C:\hiberfil.sys
    [2014/05/27 08:38:52 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
    [2014/05/27 08:02:00 | 000,000,888 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
    [2014/05/26 18:17:39 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jessica\Desktop\OTL.exe
    [2014/05/26 17:50:00 | 001,016,261 | ---- | M] (Thisisu) -- C:\Users\Jessica\Desktop\JRT.exe
    [2014/05/26 17:29:39 | 001,327,971 | ---- | M] () -- C:\Users\Jessica\Desktop\AdwCleaner.exe
    [2014/05/26 10:04:08 | 000,110,296 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
    [2014/05/26 09:51:54 | 266,289,266 | ---- | M] () -- C:\Windows\MEMORY.DMP
    [2014/05/25 12:47:20 | 000,001,356 | ---- | M] () -- C:\Users\Jessica\AppData\Local\d3d9caps.dat
    [2014/05/25 10:38:44 | 000,010,141 | ---- | M] () -- C:\Users\Jessica\Desktop\hijackthis2
    [2014/05/24 20:22:09 | 000,000,330 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForJessica.job
    [2014/05/24 10:06:51 | 000,000,936 | ---- | M] () -- C:\Users\Jessica\Desktop\PerformanceTest.lnk
    [2014/05/22 10:13:08 | 000,000,905 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2014/05/22 10:01:48 | 000,001,806 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
    [2014/05/22 08:09:14 | 000,666,326 | ---- | M] () -- C:\Windows\System32\perfh009.dat
    [2014/05/22 08:09:14 | 000,129,906 | ---- | M] () -- C:\Windows\System32\perfc009.dat
    [2014/05/12 07:26:04 | 000,051,928 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
    [2014/05/12 07:25:58 | 000,074,456 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
    [2014/05/12 07:25:54 | 000,023,256 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
    [4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

    ========== Files Created - No Company Name ==========

    [2014/05/26 17:29:24 | 001,327,971 | ---- | C] () -- C:\Users\Jessica\Desktop\AdwCleaner.exe
    [2014/05/25 12:49:36 | 3085,332,480 | -HS- | C] () -- C:\hiberfil.sys
    [2014/05/25 10:38:44 | 000,010,141 | ---- | C] () -- C:\Users\Jessica\Desktop\hijackthis2
    [2014/05/24 10:06:51 | 000,000,936 | ---- | C] () -- C:\Users\Jessica\Desktop\PerformanceTest.lnk
    [2014/05/22 10:13:08 | 000,000,905 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2014/05/22 10:01:48 | 000,001,806 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
    [2014/05/22 08:58:19 | 000,000,426 | ---- | C] () -- C:\AVScanner.ini
    [2013/07/16 12:07:26 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\cookies.ini
    [2011/03/08 16:21:53 | 001,758,846 | ---- | C] () -- C:\Users\Jessica\For You.bmp
    [2010/05/30 15:44:10 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\prvlcl.dat
    [2010/04/14 17:05:35 | 000,001,356 | ---- | C] () -- C:\Users\Jessica\AppData\Local\d3d9caps.dat
    [2009/12/02 21:20:30 | 000,024,064 | ---- | C] () -- C:\Users\Jessica\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

    ========== ZeroAccess Check ==========

    [2006/11/02 07:54:22 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

    [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

    [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
    "" = %SystemRoot%\system32\shell32.dll -- [2014/03/25 08:26:04 | 011,587,584 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
    "" = %systemroot%\system32\wbem\fastprox.dll -- [2009/04/11 01:28:19 | 000,614,912 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Free

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
    "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/04/11 01:28:25 | 000,347,648 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Both

    ========== LOP Check ==========

    [2009/11/05 22:59:06 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\Amazon
    [2012/05/14 21:47:32 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\Catalina Marketing Corp
    [2010/07/24 11:43:55 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\E-centives
    [2010/05/18 17:39:51 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\Facebook
    [2012/10/13 12:07:56 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\Juniper Networks
    [2012/06/08 14:46:56 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\Leadertech
    [2013/02/27 22:22:36 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\MotoCast
    [2013/05/20 11:20:10 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\Motorola
    [2013/05/20 11:27:54 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\Motorola Mobility
    [2009/06/23 14:27:53 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\PictureMover
    [2014/05/22 08:44:23 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\TuneUp Software
    [2010/03/29 19:04:05 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\WildTangent
    [2009/11/25 19:05:53 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\WinBatch
    [2012/11/05 11:45:35 | 000,000,000 | ---D | M] -- C:\Users\Jessica\AppData\Roaming\Zoom

    ========== Purity Check ==========



    < End of report >


    Everything seems to be good. Performance seems better, no restarts, and it hasn't lost its network. I'll confirm success later in the week. Thanks again.

  11. #9
    Member Spyware Fighter DonnaB's Avatar
    Join Date
    Apr 2009
    Location
    Illiana, Ill. USA
    Posts
    3,521
    Points
    563

    Default

    Hi MarkMohr,

    It appears that not all of the OTL Moved files log was posted. Could you please look in the following folder. copy and paste the contents in anothe reply?

    C:\_OTL\MovedFiles

    In the meantime, I'll have a look at the 2nd OTL log posted above.

    Thank you,
    Donna
    If you think you might be infected with malware or have recently cleansed your computer of malware without the help of an expert, please read and follow the instructions in How to Start Removing Viruses and Spyware from your Computer. This can alleviate time consumed in trouble shooting your current computer problems.

    If your problem is solved, here's how to say thanks!

    Very proud parent of a U.S. Navy "CB"



    "People may forget what you say,
    People may forget what you did,
    but People will never forget how you made them feel!"

  12. #10
    Member
    Join Date
    Mar 2006
    Posts
    47
    Points
    1

    Default

    Donna,

    This is the extent of the moved files log. When I was running it, I went away from my computer. When I came back, all of my desktop icons were gone and the program was closed. I rebooted at that point.


    Files\Folders moved on Reboot...
    File move failed. C:\Windows\System32\cmd.exe scheduled to be moved on reboot.
    C:\Users\Jessica\AppData\Local\Temp\VGX6279.tmp moved successfully.

    PendingFileRenameOperations files...

    Registry entries deleted on Reboot...

Page 1 of 3 123 LastLast