pechenegs, right here goes, logs from all the above, combofix, super anti spyware and hijack this log all in order...
ComboFix 08-04-14.2 - Maria 2008-04-15 20:52:20.1 - NTFSx86 MINIMAL
Running from: C:\Documents and Settings\Maria\Desktop\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\rs.txt
C:\WINDOWS\system32\casilnky.ini
C:\WINDOWS\system32\coojapbq.ini
C:\WINDOWS\system32\fmptdpay.dll
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\pmnLcbxw.dll
C:\WINDOWS\system32\tuvvSIyW.dll
C:\WINDOWS\system32\wvUnNfDv.dll
C:\WINDOWS\system32\WyISvvut.ini
C:\WINDOWS\system32\WyISvvut.ini2
C:\WINDOWS\system32\yapdtpmf.ini
C:\WINDOWS\system32\yknlisac.dll
C:\WINDOWS\system32bdn.com
C:\WINDOWS\system32hxiwlgpm.dat
C:\WINDOWS\system32ssvchost.com
C:\WINDOWS\system32taack.dat
C:\WINDOWS\system32VBIEWER.OCX
.
((((((((((((((((((((((((( Files Created from 2008-03-15 to 2008-04-15 )))))))))))))))))))))))))))))))
.
2008-04-15 21:20 . 2008-04-15 21:20 98,304 --a------ C:\WINDOWS\system32\dgtsrmhw.exe
2008-04-15 10:55 . 2008-04-15 10:55 3,648 --a------ C:\WINDOWS\system32\ahnudvvs.dll
2008-04-15 10:52 . 2008-04-15 10:52 53,312 --a------ C:\WINDOWS\system32\fhrkewws.dll
2008-04-15 07:33 . 2008-04-15 21:20 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-04-15 07:33 . 2008-04-15 07:33 1,409 --a------ C:\WINDOWS\QTFont.for
2008-04-15 00:13 . 2008-04-15 00:13 5,132 --a------ C:\WINDOWS\system32\tmp.reg
2008-04-15 00:12 . 2008-04-15 00:09 289,144 --a------ C:\WINDOWS\system32\VCCLSID.exe
2008-04-15 00:12 . 2008-04-15 00:09 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2008-04-15 00:12 . 2008-04-15 00:09 86,528 --a------ C:\WINDOWS\system32\VACFix.exe
2008-04-15 00:12 . 2008-04-15 00:09 82,432 --a------ C:\WINDOWS\system32\IEDFix.exe
2008-04-15 00:12 . 2008-04-15 00:09 53,248 --a------ C:\WINDOWS\system32\Process.exe
2008-04-15 00:12 . 2008-04-15 00:09 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2008-04-15 00:12 . 2008-04-15 00:09 25,600 --a------ C:\WINDOWS\system32\WS2Fix.exe
2008-04-15 00:02 . 2008-04-15 00:02 <DIR> d-------- C:\Documents and Settings\Administrator
2008-04-14 20:36 . 2008-04-14 20:36 <DIR> d-------- C:\Program Files\Trend Micro
2008-04-14 20:32 . 2008-04-14 20:32 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\WinZipSE
2008-04-14 20:31 . 2008-04-14 20:31 <DIR> d-------- C:\Program Files\WinZip Self-Extractor
2008-04-14 10:54 . 2008-04-14 10:54 3,648 --a------ C:\WINDOWS\system32\lkpigjpp.dll
2008-04-14 10:52 . 2008-04-14 10:52 53,312 --a------ C:\WINDOWS\system32\qnugugnx.dll
2008-04-14 09:26 . 2008-04-14 09:26 106,496 --a------ C:\WINDOWS\system32\fahynilw.exe
2008-04-14 06:44 . 2008-04-14 09:14 264 --a------ C:\WINDOWS\wininit.ini
2008-04-14 01:10 . 2008-04-14 18:41 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy
2008-04-14 01:10 . 2008-04-14 09:55 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-04-14 00:28 . 2008-04-14 00:28 <DIR> d-------- C:\Program Files\Enigma Software Group
2008-04-13 23:11 . 2008-04-13 23:11 90,112 --a------ C:\WINDOWS\system32\etytmniv.exe
2008-04-13 23:07 . 2008-04-13 23:07 <DIR> d-------- C:\Documents and Settings\John\Application Data\TmpRecentIcons
2008-04-13 21:01 . 2008-04-13 21:04 <DIR> d-------- C:\Program Files\Windows Live Safety Center
2008-04-13 17:09 . 2002-12-06 10:21 55,936 --a------ C:\WINDOWS\system32\drivers\MpFirewall.sys
2008-04-13 17:09 . 2002-07-01 14:17 20,480 --a------ C:\WINDOWS\system32\MpfApi.dll
2008-04-13 17:00 . 2008-04-13 17:00 <DIR> d--h----- C:\WINDOWS\PIF
2008-04-13 11:37 . 2008-04-14 21:38 <DIR> d-------- C:\Documents and Settings\Maria\Application Data\TmpRecentIcons
2008-04-13 10:49 . 2008-04-13 10:49 3,648 --a------ C:\WINDOWS\system32\mtpgfcek.dll
2008-04-13 10:48 . 2008-04-13 10:49 53,312 --------- C:\WINDOWS\system32\qtrscfep.dll_old
2008-04-13 10:34 . 2008-04-13 07:06 81,920 --a------ C:\WINDOWS\spnkfwad.exe
2008-04-13 10:32 . 2008-04-13 10:32 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\yhmpszip
2008-04-13 10:32 . 2008-04-13 10:32 90,112 --a------ C:\WINDOWS\system32\yvknirof.exe
2008-03-25 22:26 . 2008-03-25 22:26 1,747 --ah----- C:\hpothb07.tif
2008-03-25 22:26 . 2008-03-25 22:26 932 --ah----- C:\hpothb07.dat
2008-03-25 22:25 . 2008-03-25 22:25 175 --ah----- C:\Documents and Settings\Maria\hpothb07.dat
2008-03-25 22:25 . 2008-03-25 22:25 0 --ah----- C:\Documents and Settings\Guest\hpothb07.dat
2008-03-25 22:24 . 2008-03-25 22:34 722 --ah----- C:\Documents and Settings\All Users\hpothb07.dat
2008-03-25 16:46 . 2008-03-25 16:47 <DIR> d-------- C:\Program Files\iTunes
2008-03-25 16:27 . 2008-03-25 16:29 <DIR> d-------- C:\Program Files\QuickTime
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-13 20:52 --------- d-----w C:\Documents and Settings\All Users\Application Data\AOL
2008-04-13 20:20 --------- d-----w C:\Program Files\Yahoo!
2008-04-13 17:22 --------- d-----w C:\Program Files\DivX
2008-04-09 14:23 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-03-25 15:47 --------- d-----w C:\Program Files\iPod
2008-03-19 09:47 1,845,248 ----a-w C:\WINDOWS\system32\win32k.sys
2008-03-19 09:47 1,845,248 ------w C:\WINDOWS\system32\dllcache\win32k.sys
2008-03-08 23:01 --------- d-----w C:\Documents and Settings\All Users\Application Data\TomTom
2008-03-08 23:00 --------- d-----w C:\Program Files\TomTom HOME 2
2008-03-08 22:50 --------- d-----w C:\Program Files\Java
2008-03-08 22:09 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-03-08 21:34 --------- d-----w C:\Documents and Settings\John\Application Data\InstallShield
2008-03-08 21:29 --------- d-----w C:\Program Files\TomTom DesktopSuite
2008-03-08 21:28 --------- d-----w C:\Documents and Settings\Maria\Application Data\TomTom
2008-03-01 17:36 3,591,680 ----a-w C:\WINDOWS\system32\dllcache\mshtml.dll
2008-02-29 08:55 70,656 ------w C:\WINDOWS\system32\dllcache\ie4uinit.exe
2008-02-29 08:55 625,664 ------w C:\WINDOWS\system32\dllcache\iexplore.exe
2008-02-22 10:00 13,824 ------w C:\WINDOWS\system32\dllcache\ieudinit.exe
2008-02-20 06:51 282,624 ----a-w C:\WINDOWS\system32\gdi32.dll
2008-02-20 06:51 282,624 ------w C:\WINDOWS\system32\dllcache\gdi32.dll
2008-02-20 05:32 45,568 ----a-w C:\WINDOWS\system32\dnsrslvr.dll
2008-02-20 05:32 45,568 ------w C:\WINDOWS\system32\dllcache\dnsrslvr.dll
2008-02-20 05:32 148,992 ------w C:\WINDOWS\system32\dllcache\dnsapi.dll
2008-02-15 05:44 161,792 ------w C:\WINDOWS\system32\dllcache\ieakui.dll
2006-02-20 21:35 863 ----a-w C:\Program Files\INSTALL.LOG
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{3CAB59B4-55A3-4737-9FD5-B93C6430BF75}]
2008-04-15 10:52 53312 --a------ C:\WINDOWS\system32\fhrkewws.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{340FFF53-1D47-41B1-93F3-CC8276227C29}"= "C:\WINDOWS\sgoblxtm.dll" [ ]
[HKEY_CLASSES_ROOT\clsid\{340fff53-1d47-41b1-93f3-cc8276227c29}]
[HKEY_CLASSES_ROOT\sgoblxtm.1]
[HKEY_CLASSES_ROOT\TypeLib\{31F44EB4-B527-4450-AE3C-DC9EDBB5D97A}]
[HKEY_CLASSES_ROOT\sgoblxtm]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 08:56 15360]
"TomTomHOME.exe"="C:\Program Files\TomTom HOME 2\HOMERunner.exe" [2008-02-18 11:58 206184]
"cqxpbyfo"="C:\WINDOWS\system32\yvknirof.exe" [2008-04-13 10:32 90112]
"sdoejpnr"="C:\WINDOWS\system32\fahynilw.exe" [2008-04-14 09:26 106496]
"txdbyphx"="C:\WINDOWS\system32\dgtsrmhw.exe" [2008-04-15 21:20 98304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="NvQTwk" []
"WCOLOREAL"="C:\Program Files\COMPAQ\Coloreal\coloreal.exe" [2002-01-22 16:46 131072]
"CPQEASYACC"="C:\Program Files\Compaq\Easy Access Button Support\StartEAK.exe" [2001-12-14 14:01 32768]
"srmclean"="C:\Cpqs\Scom\srmclean.exe" [ ]
"Smapp"="C:\Program Files\Analog Devices\SoundMAX\Smtray.exe" [2001-10-12 15:45 69632]
"AutoLogon"="" []
"Share-to-Web Namespace Daemon"="C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" [2002-04-11 04:19 69632]
"RealTray"="C:\Program Files\Real\RealPlayer\RealPlay.exe" [2005-10-01 09:24 26112]
"VSOCheckTask"="c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" [2003-08-08 18:02 122880]
"VirusScan Online"="c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe" [2003-08-17 21:50 163840]
"MCAgentExe"="c:\PROGRA~1\mcafee.com\agent\mcagent.exe" [2003-08-27 11:00 245760]
"MCUpdateExe"="C:\PROGRA~1\McAfee.com\Agent\mcupdate.exe" [2003-08-21 18:10 180224]
"HostManager"="C:\Program Files\Common Files\AOL\1131841800\ee\AOLSoftware.exe" [2006-11-17 14:21 50736]
"Camera Detector"="C:\PROGRA~1\ACDSYS~1\DEVDET~1\DEVDET~1.exe" [2002-12-09 15:35 208896]
"AOLDialer"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" [2007-12-07 16:30 71008]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25 144784]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [2005-06-06 23:46 57344]
"AOLAspSunset2"="C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\updates\aspapp\sunsetAsp2.exe" [ ]
"PCSuiteTrayApplication"="C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe" [2007-03-23 14:20 227328]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 23:16 39792]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-02-01 00:13 385024]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-02-19 14:10 267048]
"MPFExe"="C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe" [2003-08-18 18:57 1048576]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-04 08:56 15360]
"Nokia.PCSync"="C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-03-27 16:58 1744896]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run]
"xj1krMbzVP"= C:\Documents and Settings\All Users\Application Data\yhmpszip\qjqfelyh.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\wvUnNfDv]
wvUnNfDv.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli scecli
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\AOL 9.0\\waol.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"=
"C:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"=
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"C:\\Program Files\\Common Files\\AOL\\1131841800\\ee\\aolsoftware.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c8022d17-c08c-11dc-8a4a-00038a000015}]
\Shell\AutoRun\command - G:\InstallTomTomHOME.exe
.
Contents of the 'Scheduled Tasks' folder
"2008-04-15 11:37:06 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2006-03-09 22:34:54 C:\WINDOWS\Tasks\FRU Task #Hewlett-Packard#hp psc 2100 series#1128025151.job"
- C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpqfrucl.exe
"2008-04-15 20:34:00 C:\WINDOWS\Tasks\McAfee.com Update Check (PAOLODICANIO-Guest).job"
- C:\PROGRA~1\mcafee.com\agent\mcupdate.ex
- C:\PROGRA~1\mcafee.com\agent
"2008-04-15 20:35:00 C:\WINDOWS\Tasks\McAfee.com Update Check (PAOLODICANIO-Jessica).job"
- C:\PROGRA~1\mcafee.com\agent\mcupdate.ex
- C:\PROGRA~1\mcafee.com\agent
"2008-04-15 20:37:00 C:\WINDOWS\Tasks\McAfee.com Update Check (PAOLODICANIO-John).job"
- C:\PROGRA~1\mcafee.com\agent\mcupdate.ex
- C:\PROGRA~1\mcafee.com\agent
"2008-04-15 19:15:28 C:\WINDOWS\Tasks\McAfee.com Update Check (PAOLODICANIO-Maria).job"
- C:\PROGRA~1\McAfee.com\Agent\mcupdate.ex
- C:\PROGRA~1\McAfee.com\Agent
"2008-04-15 20:34:00 C:\WINDOWS\Tasks\McAfee.com Update Check (PAOLODICANIO-Paul).job"
- C:\PROGRA~1\mcafee.com\agent\mcupdate.ex
- C:\PROGRA~1\mcafee.com\agent
.
**************************************************************************
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
Rootkit scan 2008-04-15 21:23:19
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\McAfee.com\VSO\mcvsrte.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\AOL\Loader\aolload.exe
C:\PROGRA~1\McAfee.com\VSO\McShield.exe
C:\Program Files\AOL 9.0\aoltray.exe
C:\Program Files\COMPAQ\Easy Access Button Support\CpqEAKSystemTray.exe
C:\Program Files\COMPAQ\Easy Access Button Support\CPQEADM.exe
C:\PROGRA~1\McAfee.com\VSO\McVSEscn.exe
C:\COMPAQ\EAKDRV\EAUSBKBD.EXE
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\PROGRA~1\COMPAQ\EASYAC~1\BttnServ.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposts08.exe
C:\Program Files\Common Files\AOL\1131841800\ee\services\antiSpywareApp\ver2_0_32_1\AOLSP Scheduler.exe
C:\Program Files\Common Files\AOL\1131841800\ee\anotify.exe
.
**************************************************************************
.
Completion time: 2008-04-15 21:38:58 - machine was rebooted
ComboFix-quarantined-files.txt 2008-04-15 20:38:06
Pre-Run: 41,863,659,520 bytes free
Post-Run: 41,892,081,664 bytes free
.
2008-04-09 14:23:30 --- E O F ---
SUPERAntiSpyware Scan Log
Generated 04/15/2008 at 10:55 PM
Application Version : 4.0.1154
Core Rules Database Version : 3438
Trace Rules Database Version: 1430
Scan type : Complete Scan
Total Scan Time : 00:55:38
Memory items scanned : 565
Memory threats detected : 2
Registry items scanned : 4887
Registry threats detected : 10
File items scanned : 20088
File threats detected : 522
Trojan.Unclassified/Multi-Dropper (Packed)
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\YHMPSZIP\QJQFELYH.EXE
[xj1krMbzVP] C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\YHMPSZIP\QJQFELYH.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\YHMPSZIP\QJQFELYH.EXE
C:\WINDOWS\Prefetch\QJQFELYH.EXE-082E6F1E.pf
Trojan.Unclassified/Multi-Dropper
C:\WINDOWS\SYSTEM32\FAHYNILW.EXE
C:\WINDOWS\SYSTEM32\FAHYNILW.EXE
[cqxpbyfo] C:\WINDOWS\SYSTEM32\YVKNIROF.EXE
C:\WINDOWS\SYSTEM32\YVKNIROF.EXE
[sdoejpnr] C:\WINDOWS\SYSTEM32\FAHYNILW.EXE
[txdbyphx] C:\WINDOWS\SYSTEM32\DGTSRMHW.EXE
C:\WINDOWS\SYSTEM32\DGTSRMHW.EXE
C:\WINDOWS\SYSTEM32\ETYTMNIV.EXE
C:\WINDOWS\Prefetch\DGTSRMHW.EXE-32D6ACE4.pf
C:\WINDOWS\Prefetch\FAHYNILW.EXE-222C85F2.pf
C:\WINDOWS\Prefetch\YVKNIROF.EXE-15835A0D.pf
Adware.Vundo Variant
HKLM\Software\Classes\CLSID\{3CAB59B4-55A3-4737-9FD5-B93C6430BF75}
HKCR\CLSID\{3CAB59B4-55A3-4737-9FD5-B93C6430BF75}
HKCR\CLSID\{3CAB59B4-55A3-4737-9FD5-B93C6430BF75}\InprocServer32
HKCR\CLSID\{3CAB59B4-55A3-4737-9FD5-B93C6430BF75}\InprocServer32#ThreadingModel
C:\WINDOWS\SYSTEM32\FHRKEWWS.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CAB59B4-55A3-4737-9FD5-B93C6430BF75}
HKCR\CLSID\{3CAB59B4-55A3-4737-9FD5-B93C6430BF75}
Adware.Tracking Cookie
C:\Documents and Settings\Maria\Cookies\maria@server.iad.liveperson[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkysodzaco.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@home[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjlocgdzoep.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@anad.tacoda[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-bskyb.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.entrepreneur[1].txt
C:\Documents and Settings\Maria\Cookies\maria@perf.overture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjl4aodjkgo.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ar.atwola[1].txt
C:\Documents and Settings\Maria\Cookies\maria@pr.valueclick[1].txt
C:\Documents and Settings\Maria\Cookies\maria@volkswagen.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.telegraph.co[2].txt
C:\Documents and Settings\Maria\Cookies\maria@aoluk.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ad2.adnetinteractive[2].txt
C:\Documents and Settings\Maria\Cookies\maria@atdmt[2].txt
C:\Documents and Settings\Maria\Cookies\maria@www.dgm2[1].txt
C:\Documents and Settings\Maria\Cookies\maria@statcounter[1].txt
C:\Documents and Settings\Maria\Cookies\maria@mediaplex[1].txt
C:\Documents and Settings\Maria\Cookies\maria@roiservice[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wak4wlc5slo.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfliopd5cfo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@dealtime[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjl4shdzibp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjl4gjczshq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wflokldjseo.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@web-stat[1].txt
C:\Documents and Settings\Maria\Cookies\maria@anm.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wflykidpsaq.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adknowledge[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6whlococ5ifp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@sales.liveperson[3].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjl4epdpmdo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@xiti[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adopt.hbmediapro[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.aol.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-tfl.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@tradedoubler[1].txt
C:\Documents and Settings\Maria\Cookies\maria@centrica.usertracking[2].txt
C:\Documents and Settings\Maria\Cookies\maria@msnportal.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wflowjczakp.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@uk[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.smartadserver[2].txt
C:\Documents and Settings\Maria\Cookies\maria@atwola[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmisocpgho.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@server3.web-stat[1].txt
C:\Documents and Settings\Maria\Cookies\maria@targetnet[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkyohajcao.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-sonyesolutions.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@www2.mystats[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-nokiafin.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@msnaccountservices.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfliwlcpkao.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@bannersng.yell[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adviva[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.hometrack.co[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjl4amazkgp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.expedia[1].txt
C:\Documents and Settings\Maria\Cookies\maria@premiumtv.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@questionmarket[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjk4qhcjodo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@cgi-bin[1].txt
C:\Documents and Settings\Maria\Cookies\maria@amazonms.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-pcsecurityshield.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@doubleclick[1].txt
C:\Documents and Settings\Maria\Cookies\maria@indextools[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ad.yieldmanager[1].txt
C:\Documents and Settings\Maria\Cookies\maria@bs.serving-sys[1].txt
C:\Documents and Settings\Maria\Cookies\maria@s[1].txt
C:\Documents and Settings\Maria\Cookies\maria@hg1.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@advertising[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ebookers[1].txt
C:\Documents and Settings\Maria\Cookies\maria@data.coremetrics[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgk4ahd5odp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ad.theadhost[2].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[6].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6whkialdjoko.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@microsoftwga.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@gettyimages.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-yooxspa.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@phg.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ad.uk.tangozebra[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wflikmc5cdo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@belnk[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adserver.ixm.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@overture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@stat.dealtime[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-cafepress.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@protect.trustedantivirus[2].txt
C:\Documents and Settings\Maria\Cookies\maria@imrworldwide[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CAORFIMF.txt
C:\Documents and Settings\Maria\Cookies\maria@adserver.akqa[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-carphonewarehouse.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@etype.adbureau[2].txt
C:\Documents and Settings\Maria\Cookies\maria@www.burstbeacon[2].txt
C:\Documents and Settings\Maria\Cookies\maria@valueclick[3].txt
C:\Documents and Settings\Maria\Cookies\maria@insightexpresserdd[1].txt
C:\Documents and Settings\Maria\Cookies\maria@marksandspencer.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@stats.channel4[1].txt
C:\Documents and Settings\Maria\Cookies\maria@counter2.hitslink[1].txt
C:\Documents and Settings\Maria\Cookies\maria@windowsmedia[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-baa.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@hc2.humanclick[3].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgk4eid5gdo.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@bfast[2].txt
C:\Documents and Settings\Maria\Cookies\maria@media.travelera[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmikndjgdq.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@rotator.adjuggler[1].txt
C:\Documents and Settings\Maria\Cookies\maria@stats.powergen.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@aoleusearch.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@dist.belnk[2].txt
C:\Documents and Settings\Maria\Cookies\maria@stat.onestat[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjmywmd5shp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@antispywaremaster[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgliglcpwao.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkighcjilq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wflocgajeko.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjmywhcjkbp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkoslazalp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wflyohdjclp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjmygkcpwdo.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@cgi-bin[5].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjlisndzwep.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-randomhouse.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@dealtime.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.uknetguide.co[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjk4egaziao.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@tooth14.bigmouthmedia[2].txt
C:\Documents and Settings\Maria\Cookies\maria@sel.as-eu.falkag[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wflielc5wko.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@bizrate.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@msnuk.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@revenue[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgkoogc5slo.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@saletrack.co[2].txt
C:\Documents and Settings\Maria\Cookies\maria@mdlfr[1].txt
C:\Documents and Settings\Maria\Cookies\maria@stats2.clicktracks[2].txt
C:\Documents and Settings\Maria\Cookies\maria@citi.bridgetrack[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmysjcjkco.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgkokhdjmap.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.itv[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.3dstats[2].txt
C:\Documents and Settings\Maria\Cookies\maria@focalex[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-sqn.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjmigjc5oap.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@bizrate[1].txt
C:\Documents and Settings\Maria\Cookies\maria@qksrv[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjmychczcdp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@sitestats.tiscali.co[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-twi.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@netli.media.adrevolver[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmiqhazshp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-opodo.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@insightexpressai[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgkiejcjoap.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-hollywood.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@metacafe.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@247realmedia[1].txt
C:\Documents and Settings\Maria\Cookies\maria@gostats[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-logantod.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@tes[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-iwantoneofthose.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.trackingads.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjmyajdzigp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@partypoker[2].txt
C:\Documents and Settings\Maria\Cookies\maria@find-rooms[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-ghd.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@trustedantivirus[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgk4koc5cfp.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@redcats.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.wessex.trainsfares.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkyood5wdp.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmysidjmbp.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@travelexuk[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.find-rooms[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.wessextrains.co[2].txt
C:\Documents and Settings\Maria\Cookies\maria@try.starware[1].txt
C:\Documents and Settings\Maria\Cookies\maria@cpvfeed[1].txt
C:\Documents and Settings\Maria\Cookies\maria@opodo.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[10].txt
C:\Documents and Settings\Maria\Cookies\maria@test.coremetrics[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.pointroll[2].txt
C:\Documents and Settings\Maria\Cookies\maria@advert.runescape[1].txt
C:\Documents and Settings\Maria\Cookies\maria@news-international[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.guardian.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-shoes.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adv.webmd[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfliqoajsbq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkochc5wgp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkogoajifo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgkoapcpifp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@valueclick[2].txt
C:\Documents and Settings\Maria\Cookies\maria@gomyhit[4].txt
C:\Documents and Settings\Maria\Cookies\maria@www.ipcmedia[1].txt
C:\Documents and Settings\Maria\Cookies\maria@stats1.clicktracks[2].txt
C:\Documents and Settings\Maria\Cookies\maria@commission-junction[1].txt
C:\Documents and Settings\Maria\Cookies\maria@interclick[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6whlokicjeep.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@tripod[1].txt
C:\Documents and Settings\Maria\Cookies\maria@mb[2].txt
C:\Documents and Settings\Maria\Cookies\maria@franceguide[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjlikkdjkdq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@insightfirst[2].txt
C:\Documents and Settings\Maria\Cookies\maria@bravenet[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ad-creatividades.infojobs[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmiandzsho.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@tracking.webdiversity.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.amo-webstats[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wflysodzgdq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjliqpajseo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@kia-uk[1].txt
C:\Documents and Settings\Maria\Cookies\maria@server.lon.liveperson[6].txt
C:\Documents and Settings\Maria\Cookies\maria@adnetserver[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6whkoqnajego.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkiegdjkbp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@mtrcs.bizrate[1].txt
C:\Documents and Settings\Maria\Cookies\maria@mediametrics.mpsa[2].txt
C:\Documents and Settings\Maria\Cookies\maria@hometrack.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@msnportalbeetoffice2007.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@serving-sys[2].txt
C:\Documents and Settings\Maria\Cookies\maria@keywordmax[1].txt
C:\Documents and Settings\Maria\Cookies\maria@esavingsaccount.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@maxserving[1].txt
C:\Documents and Settings\Maria\Cookies\maria@banners[1].txt
C:\Documents and Settings\Maria\Cookies\maria@media.hotels[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www8.addfreestats[1].txt
C:\Documents and Settings\Maria\Cookies\maria@vodpornos[2].txt
C:\Documents and Settings\Maria\Cookies\maria@int.sitestat[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adecn[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.cartoonnetwork[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.as4x.tmcs[1].txt
C:\Documents and Settings\Maria\Cookies\maria@jprglobal.tripod[2].txt
C:\Documents and Settings\Maria\Cookies\maria@paypal.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wbl4gjdjebp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wbmyaoazolp.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@www.clash-media[2].txt
C:\Documents and Settings\Maria\Cookies\maria@redirect.qitraffic[1].txt
C:\Documents and Settings\Maria\Cookies\maria@trafficmp[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfligmdjokp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@atoc.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@tracking.summitmedia.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6whkyeidjibp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@tracking.bluebarracuda[2].txt
C:\Documents and Settings\Maria\Cookies\maria@clickbank[2].txt
C:\Documents and Settings\Maria\Cookies\maria@toplist[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-ads.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-autotrader.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjk4gicpgdq.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@cerosmedia[1].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[5].txt
C:\Documents and Settings\Maria\Cookies\maria@208.122.40[1].txt
C:\Documents and Settings\Maria\Cookies\maria@h.starware[1].txt
C:\Documents and Settings\Maria\Cookies\maria@stats.tda.gov[2].txt
C:\Documents and Settings\Maria\Cookies\maria@thomascook.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjliupc5eaq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@hoteldiscount[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgmiqndzshp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CARQAFKG.txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-debenhams.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@flightcentre.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-mgnlimited.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-youtube.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wglosld5okp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@protect.trustedantivirus[3].txt
C:\Documents and Settings\Maria\Cookies\maria@partypoker[3].txt
C:\Documents and Settings\Maria\Cookies\maria@data1.perf.overture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@data3.perf.overture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ad1.emediate[1].txt
C:\Documents and Settings\Maria\Cookies\maria@gomyhit[2].txt
C:\Documents and Settings\Maria\Cookies\maria@sources.sourcetool[2].txt
C:\Documents and Settings\Maria\Cookies\maria@drivecleaner[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgkosiajsgo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@indexstats[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CAMVPRA3.txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-bookpeople.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adserver.swebtec[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-rodale.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjkycidzmeo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6whk4enc5elq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@canadiantourismcommission.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adlegend[1].txt
C:\Documents and Settings\Maria\Cookies\maria@d0002.77tracking[1].txt
C:\Documents and Settings\Maria\Cookies\maria@findmadeleine[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ecnext.advertserve[1].txt
C:\Documents and Settings\Maria\Cookies\maria@royalmail.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@CA5SV39O.txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-pizzahut.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@archant.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@kanoodle[1].txt
C:\Documents and Settings\Maria\Cookies\maria@nextag.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@partner2profit[1].txt
C:\Documents and Settings\Maria\Cookies\maria@videoegg.adbureau[2].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[8].txt
C:\Documents and Settings\Maria\Cookies\maria@track.webgains[1].txt
C:\Documents and Settings\Maria\Cookies\maria@directtrack[1].txt
C:\Documents and Settings\Maria\Cookies\maria@carphonewarehouse.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@stats.cmarket[2].txt
C:\Documents and Settings\Maria\Cookies\maria@server.cpmstar[2].txt
C:\Documents and Settings\Maria\Cookies\maria@adserving.autotrader[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-ccbn.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.addynamix[1].txt
C:\Documents and Settings\Maria\Cookies\maria@counter.sexsuche[1].txt
C:\Documents and Settings\Maria\Cookies\maria@cneteurope.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjnyuhajoco.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-nexusmedia.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CAJJBOQE.txt
C:\Documents and Settings\Maria\Cookies\maria@sales.liveperson[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-hollywoodmedia.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@shinystat[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-associatednewmedia.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@partygaming.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@umstreet.adbureau[2].txt
C:\Documents and Settings\Maria\Cookies\maria@adrevenue[1].txt
C:\Documents and Settings\Maria\Cookies\maria@data2.perf.overture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@discountedhearingaids.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@clickair[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.planetactive[1].txt
C:\Documents and Settings\Maria\Cookies\maria@snapfish.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-thefa.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ads1.partnerlogic[1].txt
C:\Documents and Settings\Maria\Cookies\maria@countomat[1].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[7].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjl4oicjsdo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@gomyhit[3].txt
C:\Documents and Settings\Maria\Cookies\maria@webstats.thefa[1].txt
C:\Documents and Settings\Maria\Cookies\maria@cgm.adbureau[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.as4x.tmcs[2].txt
C:\Documents and Settings\Maria\Cookies\maria@enhance[2].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[9].txt
C:\Documents and Settings\Maria\Cookies\maria@kontera[1].txt
C:\Documents and Settings\Maria\Cookies\maria@gomyhit[5].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgkokgdjkdo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@counter.hitslink[2].txt
C:\Documents and Settings\Maria\Cookies\maria@aol.trymedia[1].txt
C:\Documents and Settings\Maria\Cookies\maria@CACWJCV3.txt
C:\Documents and Settings\Maria\Cookies\maria@tracker.myspacemaps[1].txt
C:\Documents and Settings\Maria\Cookies\maria@megastats[2].txt
C:\Documents and Settings\Maria\Cookies\maria@hotelinternetstrategies.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@int.sitestat[4].txt
C:\Documents and Settings\Maria\Cookies\maria@CATLBT27.txt
C:\Documents and Settings\Maria\Cookies\maria@countrycode.sitestat[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6whlokodzcgp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CAMXTOGC.txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmyuoczshp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfk4wlc5kkp.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[3].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-gucciamericainc.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@int.sitestat[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wbmygidpiao.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@try.screensavers[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-onestopinternet.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CAK1BHMO.txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjliwlajwbo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@book.clickair[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wgloepdpeep.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@emediate[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-futurepub.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@stats.endsleigh.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@quiggleystump.tripod[1].txt
C:\Documents and Settings\Maria\Cookies\maria@CAVJCQFO.txt
C:\Documents and Settings\Maria\Cookies\maria@www.searchenginetracking[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.hxtrack[1].txt
C:\Documents and Settings\Maria\Cookies\maria@CA8HHIAK.txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfliokazccq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CAIGBE91.txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfl4qlc5sap.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[11].txt
C:\Documents and Settings\Maria\Cookies\maria@secure.advancedcleaner[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adserve.v-store.co[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmigodjago.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@tracking.dc-storm[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-hobsons.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@CAXY1FNC.txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-wssuk.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@account.mp3sparks[1].txt
C:\Documents and Settings\Maria\Cookies\maria@CAZVDJ82.txt
C:\Documents and Settings\Maria\Cookies\maria@CAW4UZS3.txt
C:\Documents and Settings\Maria\Cookies\maria@tuiuk.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-equifax.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-bbc.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@stats.shareview.co[1].txt
C:\Documents and Settings\Maria\Cookies\maria@int.sitestat[3].txt
C:\Documents and Settings\Maria\Cookies\maria@4.adbrite[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.active[1].txt
C:\Documents and Settings\Maria\Cookies\maria@findskiresort[1].txt
C:\Documents and Settings\Maria\Cookies\maria@screensavers[2].txt
C:\Documents and Settings\Maria\Cookies\maria@webstat[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjk4smdzodq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-knightridder.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wak4omazeao.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CAFM4OP7.txt
C:\Documents and Settings\Maria\Cookies\maria@wolverineworldwide.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@cbs.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[4].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-toptable.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@nextag[1].txt
C:\Documents and Settings\Maria\Cookies\maria@banner.32vegas[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkyakcjado.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfkoeoczkgq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmywocjchp.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@angleinteractive.directtrack[2].txt
C:\Documents and Settings\Maria\Cookies\maria@server.lon.liveperson[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ukbingotraffic.directtrack[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.gambling[2].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-vcbs.hitbox[2].txt
C:\Documents and Settings\Maria\Cookies\maria@www.clicknow.org[1].txt
C:\Documents and Settings\Maria\Cookies\maria@track.adform[2].txt
C:\Documents and Settings\Maria\Cookies\maria@propertyfinderltd.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@web-stat[3].txt
C:\Documents and Settings\Maria\Cookies\maria@CA7P1HQO.txt
C:\Documents and Settings\Maria\Cookies\maria@CAGI1N4J.txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6whk4undjafo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@www.mynortonaccount[2].txt
C:\Documents and Settings\Maria\Cookies\maria@mobilefun.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wglyomczeep.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfloapajweo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@accsatoruism.112.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@edge.ru4[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ehg-reed.hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@a.websponsors[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjmysgd5wbp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfmyagazwfp.stats.esomniture[1].txt
C:\Documents and Settings\Maria\Cookies\maria@i.screensavers[2].txt
C:\Documents and Settings\Maria\Cookies\maria@uk.sitestat[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.gamesbannernet[1].txt
C:\Documents and Settings\Maria\Cookies\maria@yoox.77tracking[1].txt
C:\Documents and Settings\Maria\Cookies\maria@pacificpoker[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wflooicjseo.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wfk4cpcjshq.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CANL3DHM.txt
C:\Documents and Settings\Maria\Cookies\maria@server.lon.liveperson[4].txt
C:\Documents and Settings\Maria\Cookies\maria@propertyfinder[1].txt
C:\Documents and Settings\Maria\Cookies\maria@nedstat.192[1].txt
C:\Documents and Settings\Maria\Cookies\maria@hotelscom.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@e-2dj6wjlycmd5abp.stats.esomniture[2].txt
C:\Documents and Settings\Maria\Cookies\maria@stats.wpa.org[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.monster[1].txt
C:\Documents and Settings\Maria\Cookies\maria@smartadserver[2].txt
C:\Documents and Settings\Maria\Cookies\maria@as1.falkag[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www2.mystats[2].txt
C:\Documents and Settings\Maria\Cookies\maria@www.googleadservices[1].txt
C:\Documents and Settings\Maria\Cookies\maria@www.admedia365[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CA1P70K3.txt
C:\Documents and Settings\Maria\Cookies\maria@mediamgr.ugo[1].txt
C:\Documents and Settings\Maria\Cookies\maria@clicknow.org[2].txt
C:\Documents and Settings\Maria\Cookies\maria@sale.antispywaremaster[2].txt
C:\Documents and Settings\Maria\Cookies\maria@advancedcleaner[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CAIX1YTX.txt
C:\Documents and Settings\Maria\Cookies\maria@richmedia.yahoo[1].txt
C:\Documents and Settings\Maria\Cookies\maria@ads.joinaxxess[2].txt
C:\Documents and Settings\Maria\Cookies\maria@CAC42HM9.txt
C:\Documents and Settings\Maria\Cookies\maria@server.lon.liveperson[5].txt
C:\Documents and Settings\Maria\Cookies\maria@amznshopbop.122.2o7[1].txt
C:\Documents and Settings\Maria\Cookies\maria@haynet.adbureau[2].txt
C:\Documents and Settings\Maria\Cookies\maria@hitbox[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adtech[1].txt
C:\Documents and Settings\Maria\Cookies\maria@itxt.vibrantmedia[1].txt
C:\Documents and Settings\Maria\Cookies\maria@adinterax[2].txt
C:\Documents and Settings\Maria\Cookies\maria@sale.trustedantivirus[1].txt
C:\Documents and Settings\Maria\Cookies\maria@209.9.174[2].txt
C:\Documents and Settings\Guest\Cookies\guest@122.2o7[1].txt
C:\Documents and Settings\Guest\Cookies\guest@atdmt[1].txt
C:\Documents and Settings\Guest\Cookies\guest@atwola[1].txt
C:\Documents and Settings\Jessica\Cookies\jessica@atwola[2].txt
C:\Documents and Settings\Jessica\Cookies\jessica@ads.telegraph.co[1].txt
C:\Documents and Settings\Jessica\Cookies\jessica@bluestreak[1].txt
C:\Documents and Settings\Jessica\Cookies\jessica@doubleclick[1].txt
C:\Documents and Settings\Jessica\Cookies\jessica@atdmt[2].txt
C:\Documents and Settings\Jessica\Cookies\jessica@dist.belnk[2].txt
C:\Documents and Settings\Jessica\Cookies\jessica@servedby.advertising[2].txt
C:\Documents and Settings\Jessica\Cookies\jessica@advertising[1].txt
C:\Documents and Settings\Jessica\Cookies\jessica@belnk[1].txt
C:\Documents and Settings\Jessica\Cookies\jessica@112.2o7[2].txt
C:\Documents and Settings\Jessica\Cookies\jessica@122.2o7[2].txt
C:\Documents and Settings\Jessica\Cookies\jessica@ad.yieldmanager[2].txt
C:\Documents and Settings\Jessica\Cookies\jessica@casalemedia[1].txt
C:\Documents and Settings\Jessica\Cookies\jessica@serving-sys[1].txt
C:\Documents and Settings\Jessica\Cookies\jessica@questionmarket[1].txt
C:\Documents and Settings\Jessica\Cookies\jessica@valueclick[1].txt
C:\Documents and Settings\John\Cookies\john@burstnet[2].txt
C:\Documents and Settings\John\Cookies\john@ad.yieldmanager[2].txt
C:\Documents and Settings\John\Cookies\john@anat.tacoda[1].txt
C:\Documents and Settings\John\Cookies\john@adnetserver[1].txt
C:\Documents and Settings\John\Cookies\john@anad.tacoda[1].txt
C:\Documents and Settings\John\Cookies\john@apmebf[2].txt
C:\Documents and Settings\John\Cookies\john@atdmt[2].txt
C:\Documents and Settings\John\Cookies\john@mediaplex[1].txt
C:\Documents and Settings\John\Cookies\john@doubleclick[1].txt
C:\Documents and Settings\John\Cookies\john@fastclick[2].txt
C:\Documents and Settings\John\Cookies\john@indextools[2].txt
C:\Documents and Settings\John\Cookies\john@kontera[2].txt
C:\Documents and Settings\John\Cookies\john@smartweb.advertserve[1].txt
C:\Documents and Settings\John\Cookies\john@msnportal.112.2o7[1].txt
C:\Documents and Settings\John\Cookies\john@tacoda[2].txt
C:\Documents and Settings\John\Cookies\john@valueclick[2].txt
C:\Documents and Settings\John\Cookies\john@www.burstnet[2].txt
C:\Documents and Settings\John\Cookies\john@zedo[2].txt
C:\Documents and Settings\Maria\Cookies\maria@tracker2[1].txt
C:\Documents and Settings\Maria\Cookies\maria@atdmt[1].txt
Trojan.Unclassified/GTS
C:\SYSTEM VOLUME INFORMATION\_RESTORE{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP866\A0134244.DLL
Adware.Vundo-Variant/Small-A
C:\SYSTEM VOLUME INFORMATION\_RESTORE{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP866\A0136411.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP867\A0141655.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP867\A0141657.DLL
Trojan.Vundo-Variant/F
C:\SYSTEM VOLUME INFORMATION\_RESTORE{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP866\A0136412.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP867\A0141656.DLL
C:\WINDOWS\SYSTEM32\QNUGUGNX.DLL
Adware.SXGAdvisor-A
C:\SYSTEM VOLUME INFORMATION\_RESTORE{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP866\A0140505.DLL
Trojan.Unclassified/MRT-Fake
C:\WINDOWS\SYSTEM32\AHNUDVVS.DLL
C:\WINDOWS\SYSTEM32\LKPIGJPP.DLL
C:\WINDOWS\SYSTEM32\MTPGFCEK.DLL
Still working on the hijack log. Might not get it on here till tomorrow as getting late here. Thanks again for your help