Thread: video access codec v1.4 removal
- 10-03-2007 10:50 AM #1
- Join Date
- Oct 2007
- Posts
- 3
- Points
- 0
video access codec v1.4 removal
Hello, Ive downloaded this video access codec v1.4 program and it will not uninstall on my computer. I've been running my mcafee virus scan and the avg anti-spyware but it won't remove it and everytime I run them they keep finding something different every time. Please help me remove this thing from my computer.
Heres the log from avg anti-spyware
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 8:44:28 AM 10/1/2007
+ Scan result:
HKU\S-1-5-21-1886520891-2441701669-1922795456-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E99D4D0C-EB54-46AF-B62A-3AA1F31D53E5} -> Adware.Generic : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\BIT12B.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\BIT137.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\BIT148.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\BIT15E.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\BITE9.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\WINDOWS\msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@2.adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@3.adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@4.adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@clickbank[2].txt -> TrackingCookie.Clickbank : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@search.live[2].txt -> TrackingCookie.Live : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@image.masterstats[1].txt -> TrackingCookie.Masterstats : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@auto.search.msn[2].txt -> TrackingCookie.Msn : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@ssl-hints.netflame[1].txt -> TrackingCookie.Netflame : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@www.paypal[1].txt -> TrackingCookie.Paypal : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@revsci[1].txt -> TrackingCookie.Revsci : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@anad.tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@anat.tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
::Report end
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 10:33:30 AM 10/3/2007
+ Scan result:
C:\Documents and Settings\Owner\Local Settings\Temp\BIT12B.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\BIT137.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\BIT148.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\BIT15E.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\BITE9.tmp/ac8zt2/msmdev.dll -> Downloader.Agent.dag : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Cookies\owner@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@dminsite.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@marketworksinc.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[2].txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wck4epdpcdp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wclyeldjido.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkikldzkbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@counter.hitslink[1].txt -> TrackingCookie.Hitslink : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.
::Report end
- 10-03-2007 11:23 AM #2
- Join Date
- Jul 2007
- Posts
- 137
- Points
- 27
Please download HiJackThis and save the file to your Desktop.
This program will allow us to see what's going on with your system.
- Double click HJTInstall.exe.
- Click Install with the default location C:\Program Files\Trend Micro\HijackThis.
- HiJack this will install. It will be available from Start > Programs > HijackThis. There will also be a desktop shortcut.
Remember these locations, and keep this deault installation throughout the cleaning process. We will be using this tool regularly.
To avoid confusion, please delete HJTInstall.exe from your desktop.
Double click HiJackThis from your desktop (or go to Start > Programs > HiJackThis) to open it.
On the main screen, choose Do a system scan only and save a logfile.
A scan will complete and notepad will open with the results.
- Please go to Edit > Select All.
- Edit > Copy
- Creat a new post (not a new topic) in this thread and PASTE the contents of the HiJackThis results.
- 10-04-2007 12:49 AM #3
- Join Date
- Oct 2007
- Posts
- 3
- Points
- 0
video access codec v1.4 removal
Thanks for responding to my post. Here's the log from hijack this
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:45:17 AM, on 10/4/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\SiteAdvisor\6172\SAService.exe
C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Digital Media Reader\readericon45G.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\BigFix\bigfix.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.comcast.net/toolbar2.0/search/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.h...ys=DTP&M=W3506
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.comcast.net/toolbar2.0/search/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O2 - BHO: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\PROGRA~1\mcafee\VIRUSS~1\scriptcl.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [readericon] C:\Program Files\Digital Media Reader\readericon45G.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [Reminder] %WINDIR%\Creator\Remind_XP.exe
O4 - HKLM\..\Run: [ddoctorv2] "C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe" /P ddoctorv2
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Power2GoExpress] NA
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\bigfix.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/sh...1/mcinsctl.cab
O23 - Service: McAfee Application Installer Cleanup (0075441191472260) (0075441191472260mcinstcleanup) - McAfee, Inc. - C:\WINDOWS\TEMP\007544~1.EXE
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6172\SAService.exe
O23 - Service: SupportSoft Sprocket Service (ddoctorv2) (sprtsvc_ddoctorv2) - SupportSoft, Inc. - C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
--
End of file - 7345 bytes
- 10-04-2007 05:12 PM #4
HI
Your hijackthis log's clean
Download Superantispyware.
http://www.superantispyware.com/
Once downloaded and installed update the definitions
and then run a full system scan quarantine what it finds!
* Double-click SUPERAntiSypware.exe and use the default settings for installation.
* An icon will be created on your desktop. Double-click that icon to launch the program.
* If asked to update the program definitions, click "Yes". If not, update the definitions before scanning by selecting "Check for Updates". (If you encounter any problems while downloading the updates, manually download and unzip them from here.)
http://www.superantispyware.com/definitions.html
* Under "Configuration and Preferences", click the Preferences button.
* Click the Scanning Control tab.
* Under Scanner Options make sure the following are checked (leave all others unchecked):
o Close browsers before scanning.
o Scan for tracking cookies.
o Terminate memory threats before quarantining.
* Click the "Close" button to leave the control center screen.
* Back on the main screen, under "Scan for Harmful Software" click Scan your computer.
* On the left, make sure you check C:\Fixed Drive.
* On the right, under "Complete Scan", choose Perform Complete Scan.
* Click "Next" to start the scan. Please be patient while it scans your computer.
* After the scan is complete, a Scan Summary box will appear with potentially harmful items that were detected. Click "OK".
* Make sure everything has a checkmark next to it and click "Next".
* A notification will appear that "Quarantine and Removal is Complete". Click "OK" and then click the "Finish" button to return to the main menu.
* If asked if you want to reboot, click "Yes".
* To retrieve the removal information after reboot, launch SUPERAntispyware again.
o Click Preferences, then click the Statistics/Logs tab.
o Under Scanner Logs, double-click SUPERAntiSpyware Scan Log.
o If there are several logs, click the current dated log and press View log. A text file will open in your default text editor.
o Please copy and paste the Scan Log results in your next reply.
* Click Close to exit the program.
THEN ...
Please download Combofix: http://download.bleepingcomputer.com...a/ComboFix.exe
and save to the desktop.
1. Double click on combo.exe & follow the prompts.
2. When finished, it will produce a logfile located at C:\ComboFix.txt.
3. Post the contents of that log in your next reply with a new hijackthis log.
Notes:
* Do not mouseclick combofix's window while it is running. That may cause your system to stall/hang.
* Disable script blocking if you have NAV installed so it will not interfere with the fix. Trojan Hunter has been reported to detect combofix as Worm.Qiv.100.
Please remember to post :-
1. SUPERAntiSpyware Scan Log
2. C:\ComboFix.txt
steam
- 10-05-2007 02:04 AM #5
- Join Date
- Oct 2007
- Posts
- 3
- Points
- 0
video access codec v1.4 removal
Hi, I couldn't complete the combofix. Right when it got to "completed stage 21" a message pops up with 'Windows - No Disk' and under that reads " Exception Processing Message c0000013 Parameters 75b6bf9c4 75b6bfpc 75b6bf9c". Also after I rebooted my computer once I ran the superantispyware a message popped with 'Runtime Error!' Program:C\Program Files\BigFix\bigfix.exe. Then it says "This application has requested the runtime to terminate it in an unusual way. Please contact the application's support team for more info. Besides that here's the SUPERAntiSpyware Log and the updated Hijack this Log.
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 10/05/2007 at 01:23 AM
Application Version : 3.9.1008
Core Rules Database Version : 3319
Trace Rules Database Version: 1320
Scan type : Complete Scan
Total Scan Time : 00:54:38
Memory items scanned : 451
Memory threats detected : 0
Registry items scanned : 5033
Registry threats detected : 37
File items scanned : 55129
File threats detected : 351
Adware.Tracking Cookie
C:\Documents and Settings\Owner\Cookies\owner@shopping.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wbk4wgajodp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@pro-market[2].txt
C:\Documents and Settings\Owner\Cookies\owner@marketworksinc.122.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@networksolutions.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@netmonster.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjlyalcjeko.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wbl4goajkdq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@edge.ru4[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjkyooazgdo.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wgkyskc5cap.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@advertising[2].txt
C:\Documents and Settings\Owner\Cookies\owner@roiservice[1].txt
C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[6].txt
C:\Documents and Settings\Owner\Cookies\owner@1064139545[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wblouicjobo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@dealtime[2].txt
C:\Documents and Settings\Owner\Cookies\owner@free.wegcash[2].txt
C:\Documents and Settings\Owner\Cookies\owner@azjmp[1].txt
C:\Documents and Settings\Owner\Cookies\owner@247realmedia[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-legonewyorkinc.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@bs.serving-sys[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-drjays.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@server.iad.liveperson[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjlikmc5gep.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@questionmarket[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wclygnajsco.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjmiskdjmfo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@www.momspornvideo[2].txt
C:\Documents and Settings\Owner\Cookies\owner@tremor.adbureau[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfloqpc5ogq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[1].txt
C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[5].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-comcast.hitbox[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjkyuocpcfo.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@abb[2].txt
C:\Documents and Settings\Owner\Cookies\owner@realmedia[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjnyshcpahp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adserver.easyad[2].txt
C:\Documents and Settings\Owner\Cookies\owner@sales.liveperson[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adserver[1].txt
C:\Documents and Settings\Owner\Cookies\owner@bluestreak[1].txt
C:\Documents and Settings\Owner\Cookies\owner@server2.bkvtrack[2].txt
C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wcliukczogo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1072179229[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wamyenc5sco.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@clicksor[1].txt
C:\Documents and Settings\Owner\Cookies\owner@statcounter[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1072682799[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1066220476[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.traderonline[1].txt
C:\Documents and Settings\Owner\Cookies\owner@zedo[1].txt
C:\Documents and Settings\Owner\Cookies\owner@sexuality.about[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6walocjcjadp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@valueclick[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-players.hitbox[1].txt
C:\Documents and Settings\Owner\Cookies\owner@paypal.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-oreilly.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@fastclick[2].txt
C:\Documents and Settings\Owner\Cookies\owner@webpower[2].txt
C:\Documents and Settings\Owner\Cookies\owner@stat.dealtime[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wbk4uncjseo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adtech[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1071302984[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.addynamix[1].txt
C:\Documents and Settings\Owner\Cookies\owner@dminsite.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@21029[1].txt
C:\Documents and Settings\Owner\Cookies\owner@interclick[1].txt
C:\Documents and Settings\Owner\Cookies\owner@streamit.hardwarezone[1].txt
C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[2].txt
C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt
C:\Documents and Settings\Owner\Cookies\owner@anat.tacoda[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.realtechnetwork[1].txt
C:\Documents and Settings\Owner\Cookies\owner@gateway.122.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-veohnetworksinc.hitbox[1].txt
C:\Documents and Settings\Owner\Cookies\owner@volkswagen.122.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjnyumcpwfo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adbrite[1].txt
C:\Documents and Settings\Owner\Cookies\owner@statse.webtrendslive[2].txt
C:\Documents and Settings\Owner\Cookies\owner@webstat[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6whkokoczcbo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@metacafe.122.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.tarrobads[1].txt
C:\Documents and Settings\Owner\Cookies\owner@hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adopt.specificclick[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-traderelectronicmedia.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adopt.euroclick[2].txt
C:\Documents and Settings\Owner\Cookies\owner@www.pornstar[2].txt
C:\Documents and Settings\Owner\Cookies\owner@4.adbrite[1].txt
C:\Documents and Settings\Owner\Cookies\owner@burstnet[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[3].txt
C:\Documents and Settings\Owner\Cookies\owner@trafficmp[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[1].txt
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[1].txt
C:\Documents and Settings\Owner\Cookies\owner@rakuten.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@partner2profit[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-evogear.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@counter.hitslink[1].txt
C:\Documents and Settings\Owner\Cookies\owner@gostats[2].txt
C:\Documents and Settings\Owner\Cookies\owner@heavycom.122.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1071690169[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wgmiohcjofp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@xxxcounter[1].txt
C:\Documents and Settings\Owner\Cookies\owner@brightcove.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@gomyron[2].txt
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[1].txt
C:\Documents and Settings\Owner\Cookies\owner@onetoone.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[2].txt
C:\Documents and Settings\Owner\Cookies\owner@reduxads.valuead[2].txt
C:\Documents and Settings\Owner\Cookies\owner@perf.overture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@anad.tacoda[2].txt
C:\Documents and Settings\Owner\Cookies\owner@serving-sys[2].txt
C:\Documents and Settings\Owner\Cookies\owner@counter9.sextracker[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-warnerbrothers.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjlyendzweo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjnyugdzkep.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjk4khdzcdo.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@crossmediaservices[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1071767231[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjny-1icpck.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.glispa[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wbloogc5map.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@__frm4[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1072336919[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1066703266[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-reed.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@try.screensavers[1].txt
C:\Documents and Settings\Owner\Cookies\owner@banners.pictures.sprintpcs[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adecn[1].txt
C:\Documents and Settings\Owner\Cookies\owner@v7.stats.load[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjkokkazmkp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wgkyeidjckp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@media.adrevolver[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-ioffer.hitbox[1].txt
C:\Documents and Settings\Owner\Cookies\owner@saletrack.co[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wakoolc5afo.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjk4smdjabo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@www.dealtime[2].txt
C:\Documents and Settings\Owner\Cookies\owner@keywordmax[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-tigerdirect2.hitbox[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjmyagajgko.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wbk4opd5abo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1070564483[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1071695041[1].txt
C:\Documents and Settings\Owner\Cookies\owner@bannerspace[2].txt
C:\Documents and Settings\Owner\Cookies\owner@revenue[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wclowjd5sko.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjmyuicjkdo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@phg.hitbox[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6waliqmdjwao.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1059759288[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1059624170[1].txt
C:\Documents and Settings\Owner\Cookies\owner@comcast.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-y2m.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@counter5.sextracker[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wgkoagazwao.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wgmiuid5kbo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-bestbuy.hitbox[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-etoys.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkiehcpcko.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfmykncpafo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@specificclick[2].txt
C:\Documents and Settings\Owner\Cookies\owner@stats.crossmediaservices[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkyuhdpodo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@internet[1].txt
C:\Documents and Settings\Owner\Cookies\owner@screensavers[1].txt
C:\Documents and Settings\Owner\Cookies\owner@yadro[2].txt
C:\Documents and Settings\Owner\Cookies\owner@apmebf[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjkooocjwco.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wblyemcpegq.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1069444117[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wak4epdzado.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@www.amateurporn4free[2].txt
C:\Documents and Settings\Owner\Cookies\owner@sextracker[1].txt
C:\Documents and Settings\Owner\Cookies\owner@www.clickmanage[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adserver.adreactor[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjl4smazakp.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@adlegend[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkocjd5abq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@etoys.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkoapcpkaq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1070389257[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wgk4uiczsdp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wclicic5wfp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@xiti[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-lexmark.hitbox[1].txt
C:\Documents and Settings\Owner\Cookies\owner@__cns4[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wblyeodziep.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@collective-media[1].txt
C:\Documents and Settings\Owner\Cookies\owner@i.screensavers[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjnyqnd5oep.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@electronicarts.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[4].txt
C:\Documents and Settings\Owner\Cookies\owner@kaboose.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@9551721[2].txt
C:\Documents and Settings\Owner\Cookies\owner@multiply.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@counter14.sextracker[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjnyoid5sgo.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@3.adbrite[2].txt
C:\Documents and Settings\Owner\Cookies\owner@74613876[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ad[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkialcjchp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjkokndjakq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfmyqnd5oep.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@casalemedia[1].txt
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[2].txt
C:\Documents and Settings\Owner\Cookies\owner@spamblockerutility[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1070527205[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1061958121[1].txt
C:\Documents and Settings\Owner\Cookies\owner@atwola[1].txt
C:\Documents and Settings\Owner\Cookies\owner@counter.surfcounters[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wbk4ehcjado.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@www.celebritysextapes[2].txt
C:\Documents and Settings\Owner\Cookies\owner@track.bestbuy[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1068583459[1].txt
C:\Documents and Settings\Owner\Cookies\owner@stat.onestat[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfmywpazgfo.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@serif.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjlyqhcjkep.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@glumobile.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ecnext.advertserve[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkyqgc5slo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkiclcjwcp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wakiomcpmco.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.hairboutique[1].txt
C:\Documents and Settings\Owner\Cookies\owner@aff.primaryads[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wgmiuiajgko.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@mason.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wflocjdpmho.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1071035846[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjnyohajakp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@web-stat[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wclyeldjido.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@cgi-bin[3].txt
C:\Documents and Settings\Owner\Cookies\owner@www.sexkey[1].txt
C:\Documents and Settings\Owner\Cookies\owner@oasc02.247realmedia[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkiokd5mbp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1072588149[1].txt
C:\Documents and Settings\Owner\Cookies\owner@vhost.oddcast[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-adidas.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1069635435[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1069651398[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkoqncpwhq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wgkighczebo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ems.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wakoooczahp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@highbeam.122.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1060905828[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1072658259[1].txt
C:\Documents and Settings\Owner\Cookies\owner@h.starware[1].txt
C:\Documents and Settings\Owner\Cookies\owner@2.adbrite[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1072703678[1].txt
C:\Documents and Settings\Owner\Cookies\owner@qksrv[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1071285674[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfliuiajkep.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1071484650[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjk4clcpshp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@data2.perf.overture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfmyonazmgo.stats.esomniture[1].txt
C:\Documents and Settings\Owner\Cookies\owner@www.banners.paramountzone[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-mountaingear.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@clickbank[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1067821057[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1071448116[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkikldzkbo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1070929027[1].txt
C:\Documents and Settings\Owner\Cookies\owner@eas.apm.emediate[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1057242773[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1070847646[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjk4kld5afq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wgkoejd5map.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@marketlive.122.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1072134499[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1071920284[1].txt
C:\Documents and Settings\Owner\Cookies\owner@track.vivid[1].txt
C:\Documents and Settings\Owner\Cookies\owner@sonycorporate.122.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@soundtrackcollector[2].txt
C:\Documents and Settings\Owner\Cookies\owner@m1.webstats.motigo[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1059668694[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1068222286[1].txt
C:\Documents and Settings\Owner\Cookies\owner@indexstats[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfkoencpsko.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wcliwjcjelq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@hc2.humanclick[1].txt
C:\Documents and Settings\Owner\Cookies\owner@oddcast[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1063554530[2].txt
C:\Documents and Settings\Owner\Cookies\owner@linksynergy[1].txt
C:\Documents and Settings\Owner\Cookies\owner@rotator.adjuggler[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1068108903[1].txt
C:\Documents and Settings\Owner\Cookies\owner@74139060[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjnyuod5kcp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1071681163[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjnyejajeaq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-onestopinternet.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@nextag[2].txt
C:\Documents and Settings\Owner\Cookies\owner@www.trinasextape[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1071214352[1].txt
C:\Documents and Settings\Owner\Cookies\owner@spamfighter.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@servedby.adxpower[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wcliojdpeep.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wglyuoazgfo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wfl4wmc5cfo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-adidasus.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1060612932[1].txt
C:\Documents and Settings\Owner\Cookies\owner@nike.112.2o7[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjkowkczkep.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wblocndjacq.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@sixapart.adbureau[1].txt
C:\Documents and Settings\Owner\Cookies\owner@overture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1072446827[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1062059027[1].txt
C:\Documents and Settings\Owner\Cookies\owner@try.starware[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wflospdjgko.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1071583127[2].txt
C:\Documents and Settings\Owner\Cookies\owner@sex-superstore[2].txt
C:\Documents and Settings\Owner\Cookies\owner@focalex[2].txt
C:\Documents and Settings\Owner\Cookies\owner@80503492[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.associatedcontent[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-dig.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@image.masterstats[1].txt
C:\Documents and Settings\Owner\Cookies\owner@media303[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wck4epdpcdp.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wbkyejc5meo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@stats4.clicktracks[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-ripedigitalentertainment.hitbox[1].txt
C:\Documents and Settings\Owner\Cookies\owner@estat[1].txt
C:\Documents and Settings\Owner\Cookies\owner@ads.techguy[2].txt
C:\Documents and Settings\Owner\Cookies\owner@stopzilla[1].txt
C:\Documents and Settings\Owner\Cookies\owner@pubs[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1064158389[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1071685196[1].txt
C:\Documents and Settings\Owner\Cookies\owner@www.stopzilla[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1067539950[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjkoujdjwfo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@click.cashengines[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1067861984[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjlocodpcfo.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@ehg-shoes.hitbox[2].txt
C:\Documents and Settings\Owner\Cookies\owner@1070057728[1].txt
C:\Documents and Settings\Owner\Cookies\owner@1053130389[1].txt
C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjny-1kdpif.stats.esomniture[2].txt
C:\Documents and Settings\Owner\Cookies\owner@track[2].txt
Trojan.DNSChanger-Codec
HKCR\VAC.Video
HKCR\VAC.Video\CLSID
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VideoAccessCodec
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VideoAccessCodec#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VideoAccessCodec#DisplayIcon
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VideoAccessCodec#uninstallString
C:\Program Files\VideoAccessCodec\install.ico
C:\Program Files\VideoAccessCodec\Uninstall.exe
C:\Program Files\VideoAccessCodec
C:\WINDOWS\Prefetch\UNINSTALL.EXE-08261FEE.pf
Trojan.VideoCach/Gen
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\Control
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\Implemented Categories
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4}
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4}
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\InprocServer32
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\InprocServer32#ThreadingModel
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\MiscStatus
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\MiscStatus\1
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\ProgID
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\ToolboxBitmap32
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\TypeLib
HKCR\CLSID\{150EA8E7-A97C-4816-AD02-4865EEF8C5FF}\Version
HKCR\CLSID\{BABA5BDB-4EFF-48DB-B443-679651D37128}
HKCR\CLSID\{BABA5BDB-4EFF-48DB-B443-679651D37128}\InprocServer32
HKCR\TypeLib\{CDC0999C-999C-4EE1-875B-5C3542641768}
HKCR\TypeLib\{CDC0999C-999C-4EE1-875B-5C3542641768}\1.0
HKCR\TypeLib\{CDC0999C-999C-4EE1-875B-5C3542641768}\1.0\0
HKCR\TypeLib\{CDC0999C-999C-4EE1-875B-5C3542641768}\1.0\0\win32
HKCR\TypeLib\{CDC0999C-999C-4EE1-875B-5C3542641768}\1.0\FLAGS
HKCR\TypeLib\{CDC0999C-999C-4EE1-875B-5C3542641768}\1.0\HELPDIR
HKCR\Interface\{B6A3935F-8FE4-49A4-B987-A1C09E53589F}
HKCR\Interface\{B6A3935F-8FE4-49A4-B987-A1C09E53589F}\ProxyStubClsid
HKCR\Interface\{B6A3935F-8FE4-49A4-B987-A1C09E53589F}\ProxyStubClsid32
HKCR\Interface\{B6A3935F-8FE4-49A4-B987-A1C09E53589F}\TypeLib
HKCR\Interface\{B6A3935F-8FE4-49A4-B987-A1C09E53589F}\TypeLib#Version
HKCR\Interface\{EF94A58F-599B-4602-9C34-99683C5859B1}
HKCR\Interface\{EF94A58F-599B-4602-9C34-99683C5859B1}\ProxyStubClsid
HKCR\Interface\{EF94A58F-599B-4602-9C34-99683C5859B1}\ProxyStubClsid32
HKCR\Interface\{EF94A58F-599B-4602-9C34-99683C5859B1}\TypeLib
HKCR\Interface\{EF94A58F-599B-4602-9C34-99683C5859B1}\TypeLib#Version
Trojan.Net-MSQ/NMC
C:\WINDOWS\MSSQL.DLL
C:\WINDOWS\SYSCORE.DLL
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 01:51, on 2007-10-05
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\Ati2evxx.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\windows\system32\Ati2evxx.exe
C:\windows\Explorer.EXE
C:\Program Files\McAfee\MPS\mpsevh.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Digital Media Reader\readericon45G.exe
C:\Program Files\SiteAdvisor\6172\SAService.exe
C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
C:\windows\RTHDCPL.EXE
C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.comcast.net/toolbar2.0/search/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.h...ys=DTP&M=W3506
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.comcast.net/toolbar2.0/search/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O2 - BHO: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\PROGRA~1\mcafee\VIRUSS~1\scriptcl.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6172\SiteAdv.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [readericon] C:\Program Files\Digital Media Reader\readericon45G.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [Reminder] %WINDIR%\Creator\Remind_XP.exe
O4 - HKLM\..\Run: [ddoctorv2] "C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe" /P ddoctorv2
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Power2GoExpress] NA
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\bigfix.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/sh...1/mcinsctl.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\windows\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6172\SAService.exe
O23 - Service: SupportSoft Sprocket Service (ddoctorv2) (sprtsvc_ddoctorv2) - SupportSoft, Inc. - C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
--
End of file - 7389 bytes
- 10-09-2007 06:20 PM #6
- Join Date
- Jan 2003
- Posts
- 12,000
- Points
- 1191
Sorry that no one has gotten back to you...
Are you still having problems?
BG
- 10-10-2007 05:42 PM #7
HI
If you're still with us ...
run hijackthis and fix this entry :-
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\bigfix.exe
http://www.pcreview.co.uk/startup/BIGFIX.EXE.php
Reboot & try to run Combofix again
steam