Malwarebytes' Log
[quote]Malwarebytes' Anti-Malware 1.12
Database version: 763
Scan type: Quick Scan
Objects scanned: 34830
Time elapsed: 17 minute(s), 18 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 2
Registry Keys Infected: 27
Registry Values Infected: 12
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 17
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
C:\Users\Jimmy\AppData\Local\Temp\awtqrpqo.dll (Trojan.Vundo) -> Unloaded module successfully.
C:\Windows\System32\awtsTMed.dll (Trojan.Vundo) -> Unloaded module successfully.
Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{18f4fbd5-cde8-492c-9365-1912378eecfe} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18f4fbd5-cde8-492c-9365-1912378eecfe} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\gktxaspm.bexa (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{10b9e92f-421e-44b2-a093-9de0f3fab2bc} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\gktxaspm.toolbar.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{191bdfc1-2d14-4cc6-8c83-a4a3af9f99d2} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{191bdfc1-2d14-4cc6-8c83-a4a3af9f99d2} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{768fb233-15e7-4f97-939a-c998e8d4adf9} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{a998690b-a72f-4e3b-8aa0-be953dccef4b} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2c1f0e45-4584-4553-bc12-21a5b990958b} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{4b0089ad-66fc-4333-9206-d293399fba5a} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{dcd8d419-f10f-43e3-9b62-40fdd7837350} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{74475532-2e19-454f-9e68-f7b6bc88833d} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7a67c084-a290-4f3d-9c40-50edb5721e2c} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{279a1421-296b-4652-b7e2-be3c6b624384} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{0f394784-85a4-4704-ae9e-be4e3ad8e9ad} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{cfc31a7c-3bd8-412c-84f8-705543cce3f9} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{bbe38f1f-ee80-4319-83cc-d27bc063637f} (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{27525231-c619-45a4-a953-8817c7745d26} (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{ce6f7222-cfbd-4b8b-a38a-7e3029d4933d} (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{831c798d-f9ad-4659-8625-63f2a439f439} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{831c798d-f9ad-4659-8625-63f2a439f439} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webvideo (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{19e2062c-1bb6-4003-8998-7f7a5624a0b2} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{34693cdd-9ef7-42b4-8367-4203b4d175a0} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\MSServer (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{18f4fbd5-cde8-492c-9365-1912378eecfe} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\MSServer (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{10b9e92f-421e-44b2-a093-9de0f3fab2bc} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\pxgdslro (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\MonAlrt (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\RamBoot (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\WinSetup (Trojan.Clicker) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cmds (Trojan.Agent) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\1ce7fc2d (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\advap32 (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\gnowmebk (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\Users\Jimmy\AppData\Local\Temp\awtqrpqo.dll (Trojan.Vundo) -> Delete on reboot.
C:\Windows\System32\awtsTMed.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Windows\gktxaspm.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Windows\nldfmtapgpv.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Windows\System32\cbXqopQg.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Windows\System32\pmnkhIay.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Windows\pxgdslro.dll (Trojan.Zlob) -> Quarantined and deleted successfully.
C:\Windows\Resources\MonAlrt.dll (Trojan.Clicker) -> Quarantined and deleted successfully.
C:\Windows\Resources\RamBoot.dll (Trojan.Clicker) -> Quarantined and deleted successfully.
C:\Windows\Resources\WinSetup.dll (Trojan.Clicker) -> Quarantined and deleted successfully.
C:\Users\Jimmy\AppData\Local\Temp\xXPFyyxx.dll (Trojan.Agent) -> Delete on reboot.
C:\Users\Jimmy\AppData\Local\Temp\qsngjafw.dll (Trojan.Vundo) -> Delete on reboot.
C:\Windows\rs.txt (Malware.Trace) -> Quarantined and deleted successfully.
C:\Windows\esta.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Windows\nldfmtappek.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Windows\mdtgkswr.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Windows\gnowmebk.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.[/quote]
SUPERAntiSpyware Logs
[quote]SUPERAntiSpyware Scan Log
Generated 05/19/2008 at 02:23 AM
Application Version : 3.6.1000
Core Rules Database Version : 3463
Trace Rules Database Version: 1454
Scan type : Complete Scan
Total Scan Time : 06:04:52
Memory items scanned : 740
Memory threats detected : 0
Registry items scanned : 7877
Registry threats detected : 2
File items scanned : 146078
File threats detected : 357
Adware.Vundo Variant/Rel
HKU\S-1-5-21-165562352-2377708643-16634805-1000\Software\Microsoft\Windows\CurrentVersion\Run#MSServer [ rundll32.exe C:\Users\Jimmy\AppData\Local\Temp\awtqrpqo.dll,#1 ]
HKU\S-1-5-21-165562352-2377708643-16634805-1000\Software\Microsoft\Windows\CurrentVersion\Run#cmds [ rundll32.exe C:\Users\Jimmy\AppData\Local\Temp\xXPFyyxx.dll,c ]
Adware.Tracking Cookie
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@2o7[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@adbrite[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@adinterax[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@adlegend[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@adrevolver[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@adtech[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@adultadworld[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@advertising[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@advertising[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@apmebf[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@arbitrack[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@atdmt[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@atwola[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@azjmp[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@bfast[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@bluestreak[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@burstnet[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@casalemedia[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@clicksor[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@doubleclick[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@easy-xxx[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@easycracks[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@entrepreneur[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@eyewonder[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@fastclick[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@freepornsite[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@hitbox[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@hornymatches[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@imrworldwide[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@insightexpressai[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@interclick[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][3].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@media6degrees[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@mediaplex[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@mothers[bleep]sons[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@mrxxxsex[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@overture[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@partner2profit[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@partypoker[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@porntube[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@questionmarket[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@realmedia[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@revsci[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@serving-sys[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@sextracker[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@slingmedia[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@specificclick[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@statcounter[2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@superstats[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@tacoda[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@trafficmp[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@tribalfusion[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@valueclick[1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][10].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][11].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][3].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][4].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][5].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][6].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][7].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][8].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][9].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@zedo[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@2o7[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@adbrite[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@adinterax[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@adlegend[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@adrevolver[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@adtech[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@adultadworld[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@advertising[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@advertising[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@apmebf[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@arbitrack[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@atdmt[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@atwola[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@azjmp[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@bfast[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@bluestreak[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@burstnet[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@casalemedia[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@clicksor[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@doubleclick[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@easy-xxx[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@easycracks[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@entrepreneur[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@eyewonder[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@fastclick[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@freepornsite[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@hitbox[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@hornymatches[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@imrworldwide[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@insightexpressai[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@interclick[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][3].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@media6degrees[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@mediaplex[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@mothers[bleep]sons[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@mrxxxsex[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@overture[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@partner2profit[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@partypoker[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@porntube[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@questionmarket[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@realmedia[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@revsci[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@serving-sys[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@sextracker[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@slingmedia[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@specificclick[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@statcounter[2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@superstats[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@tacoda[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@trafficmp[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@tribalfusion[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@valueclick[1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][10].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][11].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][3].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][4].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][5].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][6].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][7].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][8].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][9].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Application Data\Microsoft\Windows\Cookies\Low\jimmy@zedo[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@2o7[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@adbrite[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@adinterax[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@adlegend[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@adrevolver[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@adtech[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@adultadworld[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@advertising[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@advertising[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@apmebf[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@arbitrack[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@atdmt[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@atwola[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@azjmp[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@bfast[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@bluestreak[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@burstnet[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@casalemedia[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@clicksor[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@doubleclick[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@easy-xxx[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@easycracks[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@entrepreneur[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@eyewonder[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@fastclick[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@freepornsite[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@hitbox[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@hornymatches[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@imrworldwide[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@insightexpressai[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@interclick[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][3].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@media6degrees[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@mediaplex[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@mothers[bleep]sons[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@mrxxxsex[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@overture[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@partner2profit[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@partypoker[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@porntube[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@questionmarket[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@realmedia[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@revsci[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@serving-sys[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@sextracker[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@slingmedia[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@specificclick[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@statcounter[2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@superstats[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@tacoda[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@trafficmp[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@tribalfusion[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@valueclick[1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][10].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][11].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][1].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][3].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][4].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][5].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][6].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][7].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][8].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][9].txt
C:\Documents and Settings\Jimmy\Cookies\Low\[email protected][2].txt
C:\Documents and Settings\Jimmy\Cookies\Low\jimmy@zedo[1].txt[/quote]
[quote]SUPERAntiSpyware Scan Log
Generated 05/19/2008 at 10:32 PM
Application Version : 3.6.1000
Core Rules Database Version : 3463
Trace Rules Database Version: 1454
Scan type : Complete Scan
Total Scan Time : 20:00:34
Memory items scanned : 705
Memory threats detected : 0
Registry items scanned : 7880
Registry threats detected : 2
File items scanned : 1282100
File threats detected : 7
Adware.Tracking Cookie
C:\Users\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\jimmy@doubleclick[1].txt
C:\Users\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\jimmy@revsci[1].txt
C:\Users\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt
C:\Users\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\jimmy@atwola[1].txt
C:\Users\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\jimmy@atdmt[1].txt
C:\Users\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt
C:\Users\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\jimmy@advertising[2].txt
Adware.Vundo Variant/Rel
HKU\S-1-5-21-165562352-2377708643-16634805-1000\Software\Microsoft\Windows\CurrentVersion\Run#MSServer [ rundll32.exe C:\Users\Jimmy\AppData\Local\Temp\awtqrpqo.dll,#1 ]
HKU\S-1-5-21-165562352-2377708643-16634805-1000\Software\Microsoft\Windows\CurrentVersion\Run#cmds [ rundll32.exe C:\Users\Jimmy\AppData\Local\Temp\xXPFyyxx.dll,c ][/quote]
Panda Activescan Log
[quote];*******************************************************************************
*********************************************************************************
*******************
ANALYSIS: 2008-05-20 00:49:17
PROTECTIONS: 1
MALWARE: 36
SUSPECTS: 32
;*******************************************************************************
*********************************************************************************
*******************
PROTECTIONS
Description Version Active Updated
;===============================================================================
=================================================================================
===================
Symantec AntiVirus 10.2.0.276 Yes Yes
;===============================================================================
=================================================================================
===================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===============================================================================
=================================================================================
===================
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Users\Jimmy\AppData\Roaming\Mozilla\Firefox\Profiles\o59obu6m.default\cookies.txt[.trafficmp.com/]
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Users\Jimmy\AppData\Roaming\Mozilla\Firefox\Profiles\o59obu6m.default\cookies.txt[.trafficmp.com/]
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Users\Jimmy\AppData\Roaming\Microsoft\Windows\Cookies\Low\jimmy@trafficmp[1].txt
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Users\Jimmy\AppData\Roaming\Mozilla\Firefox\Profiles\o59obu6m.default\cookies.txt[.trafficmp.com/]
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Users\Jimmy\AppData\Roaming\Mozilla\Firefox\Profiles\o59obu6m.default\cookies.txt[.trafficmp.com/]
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Users\Jimmy\AppData\Roaming\Mozilla\Firefox\Profiles\o59obu6m.default\cookies.txt[.trafficmp.com/]
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Users\Jimmy\AppData\Roaming\Mozilla\Firefox\Profiles\o59obu6m.default\cookies.txt[.trafficmp.com/]
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No C:\Users\Jimmy\AppData\Roaming\Mozilla\Firefox\Profiles\o59obu6m.default\cookies.