[Not Curable- Virut] System Check virus help needed

By TedCorcoran
Jan 18, 2012
Topic Status:
Not open for further replies.
  1. Looks like I've contracted the System Check virus/malware -- Have studied other posts on the forum, but can't seem to run any .exes I have downloaded elsewhere and migrated to the machine via flash drive. I have successfully updated and run SuperAntiSpyware Free Edition --- but the delete function aborted and does not appear to have removed malware. Successfully ran Unhide.exe. Ran DDS -- received no log file. Could not run Malwarebytes, ComboFix, or GMER.

    Thanks in advance... --Ted


    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 01/17/2012 at 11:53 PM

    Application Version : 5.0.1108

    Core Rules Database Version : 8139
    Trace Rules Database Version: 5951

    Scan type : Complete Scan
    Total Scan Time : 01:10:15

    Operating System Information
    Windows 7 Professional 64-bit (Build 6.01.7600)
    UAC On - Limited User

    Memory items scanned : 661
    Memory threats detected : 6
    Registry items scanned : 73697
    Registry threats detected : 1
    File items scanned : 73273
    File threats detected : 767

    Adware.Tracking Cookie
    C:\Users\Ted\AppData\Roaming\Microsoft\Windows\Cookies\ted@findlaw[1].txt
    cloudfront.mediamatters.org [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    convoad.technoratimedia.net [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    crackle.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    ds.serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    ec.atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    ia.media-imdb.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    ictv-ic-ec.indieclicktv.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media.avclub.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media.cbs3springfield.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media.heavy.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media.ign.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media.kyte.tv [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media.mtvnservices.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media.mtvu.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media.oprah.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media1.clubpenguin.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    media10.washingtonpost.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    mediacast.realgravity.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    msnbcmedia.msn.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    objects.tremormedia.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    s0.2mdn.net [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    secure-it.imrworldwide.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    secure-uk.imrworldwide.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    secure-us.imrworldwide.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    sftrack.searchforce.net [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    speed.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    stat.easydate.biz [ C:\USERS\TED\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\XQZQL2AU ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .eyewonder.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .yieldmanager.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adxpose.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .247realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .fastclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .overture.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .at.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .stats.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pubads.g.doubleclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .eyewonder.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .247realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adtechus.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .yieldmanager.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .fastclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .kontera.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a.tribalfusion.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .liveperson.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .rtst.122.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    stat.onestat.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    in.getclicky.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    stat.onestat.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    stat.onestat.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .lucidmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .lucidmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .specificmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    stat.onestat.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .lfstmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .fastclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    stat.onestat.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    stat.onestat.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .burstnet.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .fastclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .getclicky.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .static.getclicky.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    stat.onestat.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .kontera.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .kontera.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .kontera.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .histats.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    stat.onestat.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ad.doubleclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .histats.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediaforge.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediaforge.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .clickfuse.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .amazon-adsystem.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    wstat.wibiya.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .amazon-adsystem.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .bonniercorp.122.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX
  2. TedCorcoran

    TedCorcoran Newcomer, in training Topic Starter Posts: 27

    \PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .network.realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    optimize.indieclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .boston.stats.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .boston.stats.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .burstnet.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .lfstmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .richmedia.yahoo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .technoratimedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    optimize.indieclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ads.saymedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediaite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediaite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .googleads.g.doubleclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .missomnimedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .missomnimedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .missomnimedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    marriner.rotator.hadj7.adjuggler.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    marriner.rotator.hadj7.adjuggler.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.findgift.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .findgift.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .findgift.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .findgift.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .workingmediagroup.aiprx.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .workingmediagroup.aiprx.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .c.gigcount.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    s06.flagcounter.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .the****ingweather.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .the****ingweather.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .s.clickability.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .game-advertising-online.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    gr.burstnet.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    advertising.sheknows.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .eyewonder.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mm.chitika.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .bs.serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ads.bridgetrack.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .hospitalityebusiness.112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .usairways.112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .s.clickability.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .nflgameday.cygnismedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .nflgameday.cygnismedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    stat.onestat.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .tracking.percentmobile.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    mediaservices-d.openxenterprise.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .clickbooth.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ox.mediabistro.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediapromoter.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediapromoter.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .liveperson.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .traveladvertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    bb.b5media.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .findthatlogo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .findthatlogo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    d.mediaforge.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atlanticmedia.122.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad2.adfarm1.adition.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .server.cpmstar.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .server.cpmstar.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .server.cpmstar.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .server.cpmstar.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .server.cpmstar.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .server.cpmstar.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .247realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.kingscountynews.ca [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.kingscountynews.ca [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .videos.mediaite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .videos.mediaite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    videos.mediaite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    testdata.coremetrics.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .steelhousemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .steelhousemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .r1-ads.ace.advertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    optimize.indieclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .steelhousemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    s06.flagcounter.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.statssheet.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .www.burstnet.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .weei.stats.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .weei.stats.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .themis-media.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .gsimedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX
    \PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .gsimedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .myweather.112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    statse.webtrendslive.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adlegend.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adlegend.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .torstardigital.122.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .accounts.google.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .accounts.google.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .petmeds.db.advertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .akamai.interclickproxy.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .eyewonder.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .eyewonder.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .overture.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .factionmedia.122.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .xiti.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .liveperson.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mtvn.112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ad.doubleclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .googleads.g.doubleclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .traveladvertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .traveladvertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ar.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    cdn.uc.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ad6media.fr [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ad6media.fr [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .premiumtv.122.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .clickfuse.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .burstnet.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media.adfrontiers.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media.adfrontiers.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .usatoday1.112.2o7.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    dc.tremormedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .harrenmedianetwork.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .at.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .at.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ar.atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atwola.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .accounts.google.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .accounts.google.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .accounts.google.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    accounts.google.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .a1.interclick.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .steelhousemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .steelhousemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    miva.cinomedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .lucidmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .bs.serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .c.atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .c.atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .c.atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .c.atdmt.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .fastclick.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.burstnet.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    www.burstnet.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .tribalfusion.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    network.realmedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    ad.velmedia.net [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    .andomedia.com [ C:\USERS\TED\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TW2LRCM1.DEFAULT\COOKIES.SQLITE ]
    crackle.com [ C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\URHZHGP2 ]
  3. TedCorcoran

    TedCorcoran Newcomer, in training Topic Starter Posts: 27

    Trojan.Agent/Gen
    (x86) HKU\S-1-5-21-2045407922-1801963932-504476861-1003\Software\Microsoft\Windows\CurrentVersion\Run#nah_Shell [ C:\Users\Ted\nah_ojea.exe ]

    Heuristic.Agent-Stream/Resident
    C:\USERS\TED\APPDATA\LOCAL\TEMP:WINUPD.EXE
    C:\USERS\TED\APPDATA\LOCAL\TEMP:WINUPD.EXE

    Trojan.Agent/Gen-Kazy
    C:\USERS\TED\APPDATA\ROAMING\8CABB\08113.EXE
    C:\USERS\TED\APPDATA\ROAMING\8CABB\08113.EXE
    C:\USERS\TED\APPDATA\ROAMING\BBC7F\LVVM.EXE
    C:\USERS\TED\APPDATA\ROAMING\BBC7F\LVVM.EXE
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\4898\6B9.EXE
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\4898\6B9.EXE
    C:\PROGRAM FILES (X86)\BBC7F\LVVM.EXE
    C:\USERS\TED\APPDATA\ROAMING\8CABB\00F86.EXE
    C:\USERS\TED\APPDATA\ROAMING\8CABB\84EBF.EXE
    C:\USERS\TED\APPDATA\ROAMING\8CABB\A6D48.EXE
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\86F8\1A1.EXE
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\86F8\CFA.EXE
    C:\Windows\Prefetch\00F86.EXE-5C973B27.pf
    C:\Windows\Prefetch\LVVM.EXE-275EC608.pf

    Trojan.Agent/Gen-FraudLoad
    C:\PROGRAMDATA\GFUOMFNVRQL.EXE
    C:\PROGRAMDATA\GFUOMFNVRQL.EXE
    C:\Windows\Prefetch\GFUOMFNVRQL.EXE-203B4CC5.pf

    Trojan.Agent/Gen-FakeAlert[Local]
    C:\PROGRAMDATA\IIMU0KPSDVR6PH.EXE
    C:\PROGRAMDATA\IIMU0KPSDVR6PH.EXE
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\SYSTEM CHECK.LNK
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\USER PINNED\TASKBAR\GFUOMFNVRQL.LNK
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\SYSTEM CHECK\SYSTEM CHECK.LNK
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\SYSTEM CHECK\UNINSTALL SYSTEM CHECK.LNK
    C:\USERS\TED\DESKTOP\SYSTEM CHECK.LNK
    C:\Windows\Prefetch\IIMU0KPSDVR6PH.EXE-7C4EB4CE.pf

    Trojan.Agent/Gen-FraudScan[Prod]
    C:\USERS\TED\APPDATA\LOCAL\TEMP\AUDIO_DRIVERS_UPDATE_UTILITY.EXE
    C:\USERS\TED\APPDATA\LOCAL\TEMP\B70D.TMP

    Heuristic.Backdoor
    C:\USERS\TED\APPDATA\LOCAL\TEMP\EXPLORER.EXE
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ACCESSORIES\WINDOWS EXPLORER.LNK

    Trojan.Agent/Gen-IEFake
    C:\USERS\TED\APPDATA\LOCAL\TEMP\IEXPLORE.EXE
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ACCESSORIES\SYSTEM TOOLS\INTERNET EXPLORER (NO ADD-ONS).LNK
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\INTERNET EXPLORER (64-BIT).LNK
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\INTERNET EXPLORER.LNK

    Trojan.Agent/Gen-Backdoor[FakeAlert]
    C:\USERS\TED\APPDATA\LOCAL\TEMP\NOTEPAD.EXE
    C:\USERS\TED\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ACCESSORIES\NOTEPAD.LNK

    Trojan.Agent/Gen-Kazy[EX]
    C:\USERS\TED\APPDATA\LOCAL\TEMP\YWERRTYERW.EXE
    C:\USERS\TED\APPDATA\ROAMING\JAVA.EXE
    C:\Windows\Prefetch\YWERRTYERW.EXE-CCDF1D53.pf

    Trojan.Dropper/Win-NV
    C:\WINDOWS\TEMP\_EX-08.EXE
    C:\Windows\Prefetch\_EX-08.EXE-0901915E.pf
  4. Bobbye

    Bobbye Helper on the Fringe Posts: 16,392   +35

    Okay, let's get you going right: First> you should never work from directions given to another member. Even though we may have you run some of the same programs, instructions are specific for that person. There is a sticky above this forum for that.

    Secondly, every forum I know of tells you not to run Combofix on your own. That includes TechSpot. There is a sticky above this forum for that.
    =====================================
    Now to your problem. The system not only has System Check but also some of the other malware that may have come with it or be loaded separately. So I am going to instruct you to do the following, in the order I give it:

    If you ran DDS successfully, there should be 2 logs: DDS.txt and Attach.txt:
    =======================================
    If you are infected with System Check it is important that you do not delete any files from your Temp folder or use any temp file cleaners
    • System Check is a fake (Rogue) computer analysis and optimization program.
    • The 'alerts' tell you the problems have lead to corrupt and missing data
    • It will display false error messages and security warnings.
    • It "hides" Icons, desktop, programs and files so that they appear to be missing and some programs can't be run
    • This can be installed through hacked sites that exploit vulnerabilities on the system or through fake online scanner pages
    • The malware is configured to automatically start when you logon to Windows.
    • It can also be started if you click on any of these alerts.
    Note: You may not experience all of the above, but it is important to tell me what problems you do have.
    ============================================
    For the exe files:
    Please download FixNCR.reg and save it to a removable media such as a CD/DVD, external Drive, or USB flash drive.
    • Insert the removable device into the infected computer and open the folder the drive letter associated with it.(Usually C)
    • Double click the FixNCR.reg file
    • You should now be able to run the .exe files.
      =========================================
      See below. Do this if needed: Press Windows+R key> type cmd> OK
      1. If your task manager is disabled,copy and run this command
      Code:
      Echo y | reg delete HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableTaskMgr
      Press Enter

      2. If you're desktop is blank and unable to right click on it ,run this command
      Code:
      Echo y | reg delete HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoDesktop[/b]
      Press Enter
      ==============================
      Please print out the following instructions. It is important that the order of the scan below be followed exactly. Please read through all of the instructions before you begin.
      --------------------------
      The following can be run first to allow you to 'see' the programs, files,etc. But it is important that you understand that this does not remove the malware, only the attribute to hide these features. So it is important that you continue with the cleaning:

      1. Download Unhide.exe and save to the desktop.
      • Double-click on Unhide.exe icon to run the program.
      • This program will remove the +H, or hidden, attribute from all the files on your hard drives.
      Note: This does not remove the malware- only the attribute that hides icons and programs. It is important that you continue.
      ================================
      2. Boot into Safe Mode with Networking
      • Restart your computer and start pressing the F8 key on your keyboard.
      • Select the Safe Mode with Networking option when the Windows Advanced Options menu appears, using your up/down arrows to reach it and then press ENTER.
      =======================================
      3. To end the processes that belong to the rogue program:
      Please click on RKill
      • At the download page, click on Download now button for iExplore.exe download link and save to the desktop
      • Double click on the iExplore.exe icon
      • Please be patient- it may take a bit.
      • The black Window will close when through and you can continue.
      Note: If you get a message that RKilll is malware, ignore it> it's from the malware.
      =======================================
      Do not reboot your computer after runningRKilll as the malware programs will start again.
      ================================
      4. This malware frequently comes with the TDSSrootkit, so do the following:
      • Download the file TDSSKiller.zip and save to the desktop.
        (If you are unable to download the file for some reason, then TDSS may be blocking it. You would then need to download it first to a clean computer and then transfer it to the infected one using an external drive or USB flash drive.)
      • Right-click the tdsskiller.zip file> Select Extract All into a folder on the infected (or potentially infected) PC.
      • Double click on TDSSKiller.exe. to run the scan
      • When the scan is over, the utility outputs a list of detected objects with description.
        The utility automatically selects an action (Cure or Delete) for malicious objects.
        The utility prompts the user to select an action to apply to suspicious objects (Skip, by default).
      • Select the action Quarantine to quarantine detected objects.
        The default quarantine folder is in the system disk root folder, e.g.: C:\TDSSKiller_Quarantine\23.07.2010_15.31.43 Save log and post in next reply.
      • After clicking Next, the utility applies selected actions and outputs the result.
      • A reboot is required after disinfection.
      ====================================
      If TDSSKiller requires you to reboot, please allow it to do so. After you reboot, reboot back into Safe Mode with Networking again
      ====================================
      5. Update and scan with Malwarebytes:
      Note on the Malwarebytes download link: They have put a box on the download site offering a trial instead of just this free scan. Please click on Decline when you see that and go on with the scan when the box closes.
      • Select Perform Full Scan on the Scanner tab
      • Click on the Scan button.
      • When scan has finished, you will see this image:
        [​IMG]
      • Click on OK to close box and continue.
      • Click on the Show Results button.
      • Click on the Remove Selected button to remove all the listed malware.
      • At end of malware removal, the scan log opens and displays in Notepad. Be sure to click on Format>Uncheckk Word Wrap before copying the log to paste in your next reply.
      ==============================
      6. Correct Display Changes if needed:
      If the desktop background is black or if the theme has been removed:
      For Windows XP: Click on Start> Control Panel> Display> change theme and/or background if needed.
      For Windows Vista or Windows 7: Click on Start> Control Panel> Appearance & Personalization> Select Change Theme or Change Desktop Background
      =====================================
      7. Some items may not show on the Start menu. To add them back:
      • Right click on Start> Properties
      • Taskbar and Start Menu Properties screen appears
      • choose Start Menu tab> Click on Customize
      • For Windows XP> Choose Advanced tab
      • Check the items you want back on the Start Menu
      • When finished> click on OK> Apply and close.
      ====================================
      You can now reboot back into Normal Mode.

      Please rerun the SAS scan. Have it remove all of the entries it found. It appears that you may not have ever cleaned up the Cookies. I will delete the excess and you can do the following to prevent a recurrence:

      Reset Cookies
      For Internet Explorer: Internet Options (through Tools or Control Panel) Privacy tab> Advanced button> CHECK 'override automatic Cookie handling'> CHECK 'accept first party Cookies'> CHECK 'Block third party Cookies'> CHECK 'allow per session Cookies'> Apply> OK.

      For Firefox: Tools> Options> Privacy> Cookies> CHECK ‘accept Cookies from Sites’> UNCHECK 'accept third party Cookies'> Set Keep until 'they expire'. This will allow you to keep Cookies for registered sites and prevent or remove others. (Note: for Firefox v3.5, after Privacy click on 'use custom settings for History.')

      I suggest using the following two add-on for Firefox. They will prevent the Tracking Cookies that come from ads and banners and other sources:
      AdBlock Plus
      Easy List

      For Chrome: Tools> Options> Under The Hood> Privacy Section> CHECK 'Restrict how third party Cookies can be used'> Close.
      (First-party and third-party cookies can be set by the website you're visiting and websites that have items embedded in the website you're visiting. But when you next visit the website, only first-party cookie information is sent to the website. Third-party cookie information isn't sent back to the websites that originally set the third-party cookies.)
      ==================================================
      Please leave logs for DDS (2), TDSSKiller, RKill, Malwarebytes in next reply. If there was a problem with any of the scan, please advise me.
      ===================================================
      My Guidelines: please read and follow:
      • Be patient. Malware cleaning takes time and I am also working with other members while I am helping you.
      • Read my instructions carefully. If you don't understand or have a problem, ask me.
      • If you have questions, or if a program doesn't work, stop and tell me about it. Don't try to get around it yourself.
      • Follow the order of the tasks I give you. Order is crucial in cleaning process.
      • File sharing programs should be uninstalled or disabled during the cleaning process..
      • Observe these:
        [o] Don't use any other cleaning programs or scans while I'm helping you.
        [o] Don't use a Registry cleaner or make any changes in the Registry.
        [o] Don't download and install new programs- except those I give you.
      • Please let me know if there is any change in the system.
      If I don't get a reply from you in 5 days, the thread will be closed. If your problem persist, you can send a PM to reopen it.
      =====================================
  5. TedCorcoran

    TedCorcoran Newcomer, in training Topic Starter Posts: 27

    DDS

    Thanks so much for the help... Roger and wilco from here on out...! --Ted

    Here is DDS:

    .
    DDS (Ver_2011-08-26.01) - NTFSAMD64
    Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_24
    Run by Ted at 12:26:00 on 2012-01-18
    Microsoft Windows 7 Professional 6.1.7600.0.1252.1.1033.18.4048.1565 [GMT -5:00]
    .
    SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    .
    ============== Running Processes ===============
    .
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\svchost.exe -k RPCSS
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_44a8c6ff8211f2d4\STacSV64.exe
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\WUDFHost.exe
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\system32\WLANExt.exe
    C:\Windows\system32\conhost.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
    C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
    c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
    C:\Windows\system32\svchost.exe -k imgsvc
    -netsvcs
    C:\Windows\system32\conhost.exe
    C:\Windows\system32\taskhost.exe
    C:\Windows\Explorer.EXE
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\taskeng.exe
    C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Windows\system32\sppsvc.exe
    C:\Windows\System32\jusched.exe
    C:\Windows\system32\wuauclt.exe
    C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Windows\system32\WUDFHost.exe
    C:\Windows\system32\DllHost.exe
    C:\Windows\system32\DllHost.exe
    C:\Windows\SysWOW64\cmd.exe
    C:\Windows\system32\conhost.exe
    C:\Windows\SysWOW64\cscript.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = hxxp://www.circle-of-fifths.net/learn.html
    uInternet Settings,ProxyOverride = *.local
    uInternet Settings,ProxyServer = http=127.0.0.1:54687
    uURLSearchHooks: UrlSearchHook Class: {00000000-6e41-4fd3-8538-502f5495e5fc} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
    mWinlogon: Userinit=userinit.exe,
    uWinlogon: Shell=explorer.exe,C:\Users\Ted\AppData\Roaming\8CABB\00F86.exe
    uWindows: Load=C:\Users\Ted\AppData\Roaming\BBC7F\lvvm.exe
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
    BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll
    BHO: Avery Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
    BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
    TB: Avery Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
    TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
    uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
    uRun: [AdobeBridge]
    uRun: [Google Update] "C:\Users\Ted\AppData\Local\Google\Update\GoogleUpdate.exe" /c
    uRun: [Facebook Update] "C:\Users\Ted\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
    uRun: [winupd] C:\Users\Ted\AppData\Local\Temp:winupd.exe
    uRun: [gfUomFNvRQL.exe] C:\ProgramData\gfUomFNvRQL.exe
    uRun: [dplaysvr] C:\Users\Ted\AppData\Local\dplaysvr.exe
    uRun: [nah_Shell] C:\Users\Ted\nah_ojea.exe
    uRun: [1A1.exe] C:\Users\Ted\AppData\Roaming\Microsoft\86F8\1A1.exe
    uRun: [6B9.exe] C:\Users\Ted\AppData\Roaming\Microsoft\4898\6B9.exe
    uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    uRun: [bcscomp] C:\ProgramData\bcscomp.exe
    uRun: [msicomp] C:\Users\Ted\AppData\Roaming\msicomp.exe
    uRun: [{F0FA13C1-4124-2F70-2097-531625D8A65E}] C:\Users\Ted\AppData\Roaming\Ceypsiy\relyito.exe
    mRun: [<NO NAME>]
    mRun: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
    mRun: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
    mRun: [PDVDDXSrv] "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
    mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    mRun: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
    mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    mRun: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
    mRun: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
    mRun: [1A1.exe] C:\Program Files (x86)\LP\86F8\1A1.exe
    mPolicies-explorer: NoActiveDesktop = 1 (0x1)
    mPolicies-explorer: HideSCAHealth = 1 (0x1)
    mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
    mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
    mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
    IE: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    IE: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
    IE: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    IE: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
    IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
    IE: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    IE: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
    TCP: DhcpNameServer = 75.75.75.75 75.75.76.76
    TCP: Interfaces\{299C23D1-D19A-44B3-801A-6128711FDE65}\2427F6164602148756 : DhcpNameServer = 68.87.77.130 68.87.72.130
    TCP: Interfaces\{299C23D1-D19A-44B3-801A-6128711FDE65}\2556471696C6022556C61697 : DhcpNameServer = 10.1.10.1
    TCP: Interfaces\{299C23D1-D19A-44B3-801A-6128711FDE65}\44F677E647F677E602D416C6C6027596D26496 : DhcpNameServer = 10.128.128.128
    TCP: Interfaces\{299C23D1-D19A-44B3-801A-6128711FDE65}\97F6F6F6F6F6F6F6F6F6F6F6F6F6F6 : DhcpNameServer = 192.168.0.1
    TCP: Interfaces\{299C23D1-D19A-44B3-801A-6128711FDE65}\D45627D61696460234166656 : DhcpNameServer = 192.168.1.1
    TCP: Interfaces\{AE02C662-8C3A-4840-8715-E5172AF0189D} : DhcpNameServer = 75.75.75.75 75.75.76.76
    Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} -
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
    LSA: Authentication Packages = msv1_0 wvauth
    BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO-X64: AcroIEHelperStub - No File
    BHO-X64: RealPlayer Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
    BHO-X64: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
    BHO-X64: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    BHO-X64: Adobe PDF Conversion Toolbar Helper: {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    BHO-X64: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    BHO-X64: SkypeIEPluginBHO - No File
    BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll
    BHO-X64: Avery Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
    BHO-X64: Ask Toolbar BHO - No File
    BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    BHO-X64: Windows Live Toolbar Helper: {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
    BHO-X64: SmartSelect Class: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    BHO-X64: SmartSelect - No File
    TB-X64: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    TB-X64: &Windows Live Toolbar: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
    TB-X64: Avery Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
    TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    mRun-x64: [(Default)]
    mRun-x64: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
    mRun-x64: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
    mRun-x64: [PDVDDXSrv] "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
    mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    mRun-x64: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
    mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    mRun-x64: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
    mRun-x64: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
    mRun-x64: [1A1.exe] C:\Program Files (x86)\LP\86F8\1A1.exe
    IE-X64: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    Hosts: 75.126.230.21 cvillesaver-test.com
    ================= FIREFOX ===================
    .
    FF - ProfilePath - C:\Users\Ted\AppData\Roaming\Mozilla\Firefox\Profiles\tw2lrcm1.default\
    FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.53\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
    FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrlui.dll
    FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
    FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
    FF - plugin: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
    FF - plugin: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
    FF - plugin: C:\Users\Ted\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
    FF - plugin: C:\Users\Ted\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
    FF - plugin: C:\Users\Ted\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
    FF - plugin: C:\Users\Ted\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
    FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
    .
    ============= SERVICES / DRIVERS ===============
    .
    R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
    R3 cvusbdrv;Dell ControlVault;C:\Windows\system32\Drivers\cvusbdrv.sys --> C:\Windows\system32\Drivers\cvusbdrv.sys [?]
    R3 e1yexpress;Intel(R) Gigabit Network Connections Driver;C:\Windows\system32\DRIVERS\e1y62x64.sys --> C:\Windows\system32\DRIVERS\e1y62x64.sys [?]
    R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;C:\Windows\system32\drivers\IntcHdmi.sys --> C:\Windows\system32\drivers\IntcHdmi.sys [?]
    R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys --> C:\Windows\system32\DRIVERS\vwifimp.sys [?]
    S2 !SASCORE;SAS Core Service;"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE" --> C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [?]
    S2 buttonsvc64;Dell ControlPoint Button Service;"C:\Program Files\Dell\Dell ControlPoint\DCPButtonSvc.exe" --> C:\Program Files\Dell\Dell ControlPoint\DCPButtonSvc.exe [?]
    S2 Credential Vault Host Control Service;Credential Vault Host Control Service;"C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe" --> C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [?]
    S2 Credential Vault Host Storage;Credential Vault Host Storage;"C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe" --> C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [?]
    S2 dcpsysmgrsvc;Dell ControlPoint System Manager;"c:\Program Files\Dell\Dell ControlPoint\System Manager\DCPSysMgrSvc.exe" --> c:\Program Files\Dell\Dell ControlPoint\System Manager\DCPSysMgrSvc.exe [?]
    S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-3-2 135664]
    S2 SMManager;Smith Micro Connection Manager Service;"C:\Program Files\Dell\Dell ControlPoint\Connection Manager\SMManager.exe" --> C:\Program Files\Dell\Dell ControlPoint\Connection Manager\SMManager.exe [?]
    S3 acpials;ALS Sensor Filter;C:\Windows\system32\DRIVERS\acpials.sys --> C:\Windows\system32\DRIVERS\acpials.sys [?]
    S3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\system32\DRIVERS\btwl2cap.sys --> C:\Windows\system32\DRIVERS\btwl2cap.sys [?]
    S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-3-2 135664]
    S3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
    S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
    S3 rimspci;rimspci;C:\Windows\system32\DRIVERS\rimspe64.sys --> C:\Windows\system32\DRIVERS\rimspe64.sys [?]
    S3 risdpcie;risdpcie;C:\Windows\system32\DRIVERS\risdpe64.sys --> C:\Windows\system32\DRIVERS\risdpe64.sys [?]
    S3 rixdpcie;rixdpcie;C:\Windows\system32\DRIVERS\rixdpe64.sys --> C:\Windows\system32\DRIVERS\rixdpe64.sys [?]
    S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
    S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
    S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
    S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
    S3 Zope-452142961;Zope instance at C:\Program Files (x86)\Plone\parts\instance;"C:\Program Files (x86)\Plone\python\PythonService.exe" --> C:\Program Files (x86)\Plone\python\PythonService.exe [?]
    .
    =============== File Associations ===============
    .
    .exe=eblc
    .
    =============== Created Last 30 ================
    .
    .
    ==================== Find3M ====================
    .
    2012-01-18 12:33:40 5062 ----a-w- C:\Windows\System32\PerfStringBackup.TMP
    2011-11-24 05:00:47 3141632 ----a-w- C:\Windows\System32\win32k.sys
    2011-11-19 15:07:41 77312 ----a-w- C:\Windows\System32\packager.dll
    2011-11-19 14:06:13 67072 ----a-w- C:\Windows\SysWow64\packager.dll
    2011-11-17 07:14:10 1739160 ----a-w- C:\Windows\System32\ntdll.dll
    2011-11-17 05:41:38 1292592 ----a-w- C:\Windows\SysWow64\ntdll.dll
    2011-11-05 05:26:29 1197568 ----a-w- C:\Windows\System32\wininet.dll
    2011-11-05 05:23:10 57856 ----a-w- C:\Windows\System32\licmgr10.dll
    2011-11-05 05:17:42 2048 ----a-w- C:\Windows\System32\tzres.dll
    2011-11-05 04:35:50 981504 ----a-w- C:\Windows\SysWow64\wininet.dll
    2011-11-05 04:34:15 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll
    2011-11-05 04:30:11 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
    2011-11-05 04:07:32 482816 ----a-w- C:\Windows\System32\html.iec
    2011-11-05 03:28:41 386048 ----a-w- C:\Windows\SysWow64\html.iec
    2011-11-05 03:25:44 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
    2011-11-05 02:55:38 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
    2011-10-26 05:22:37 366592 ----a-w- C:\Windows\System32\qdvd.dll
    2011-10-26 05:22:37 1572864 ----a-w- C:\Windows\System32\quartz.dll
    2011-10-26 05:19:07 43520 ----a-w- C:\Windows\System32\csrsrv.dll
    2011-10-26 04:28:26 1328640 ----a-w- C:\Windows\SysWow64\quartz.dll
    2011-10-26 04:28:25 514560 ----a-w- C:\Windows\SysWow64\qdvd.dll
    .
    ============= FINISH: 12:26:53.42 ===============
  6. TedCorcoran

    TedCorcoran Newcomer, in training Topic Starter Posts: 27

    DDS Attach

    The DDS Attach file:

    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2011-08-26.01)
    .
    Microsoft Windows 7 Professional
    Boot Device: \Device\HarddiskVolume2
    Install Date: 3/1/2010 8:33:24 PM
    System Uptime: 1/18/2012 8:23:15 AM (4 hours ago)
    .
    Motherboard: Dell Inc. | | 0F328M
    Processor: Intel(R) Core(TM)2 Duo CPU P8800 @ 2.66GHz | Microprocessor | 2668/266mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 218 GiB total, 62.746 GiB free.
    D: is CDROM ()
    E: is Removable
    .
    ==== Disabled Device Manager Items =============
    .
    Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}
    Description: SASDIFSV
    Device ID: ROOT\LEGACY_SASDIFSV\0000
    Manufacturer:
    Name: SASDIFSV
    PNP Device ID: ROOT\LEGACY_SASDIFSV\0000
    Service: SASDIFSV
    .
    Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}
    Description: SASKUTIL
    Device ID: ROOT\LEGACY_SASKUTIL\0000
    Manufacturer:
    Name: SASKUTIL
    PNP Device ID: ROOT\LEGACY_SASKUTIL\0000
    Service: SASKUTIL
    .
    ==== System Restore Points ===================
    .
    RP255: 1/6/2012 5:57:08 AM - Windows Update
    RP256: 1/11/2012 5:30:47 AM - Windows Update
    RP257: 1/12/2012 3:00:22 AM - Windows Update
    RP258: 1/13/2012 5:43:24 AM - Windows Update
    RP259: 1/17/2012 12:57:59 AM - Windows Update
    .
    ==== Installed Programs ======================
    .
    Update for Microsoft Office 2007 (KB2508958)
    Adobe Acrobat 9 Standard - English, Français, Deutsch
    Adobe Acrobat 9.2.0 - CPSID_50026
    Adobe AIR
    Adobe Community Help
    Adobe Creative Suite 5 Design Standard
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Media Player
    All Day Battery Life Configuration
    Apple Application Support
    Apple Software Update
    Ask Toolbar
    Avery Wizard 4.0
    Business Contact Manager for Outlook 2007 SP2
    Cisco EAP-FAST Module
    Cisco LEAP Module
    Cisco PEAP Module
    Dell ControlPoint Security Manager
    Dell Security Device Driver Pack
    Dropbox
    EMBASSY Security Center Lite
    EMBASSY Security Setup
    ESC Home Page Plugin
    Facebook Video Calling 1.0.0.8953
    FileZilla Client 3.3.4.1
    Google Earth Plug-in
    Google Talk Plugin
    Google Toolbar for Internet Explorer
    Google Update Helper
    GoToMeeting 4.5.0.457
    iRip
    Java Auto Updater
    Java(TM) 6 Update 24
    Junk Mail filter update
    Malwarebytes' Anti-Malware
    McAfee Security Scan Plus
    Memorex exPressit Label Design Studio
    MFCLOC
    Microsoft .NET Framework 1.1
    Microsoft Choice Guard
    Microsoft Office 2003 Web Components
    Microsoft Office 2007 Primary Interop Assemblies
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office Excel MUI (English) 2007
    Microsoft Office Outlook MUI (English) 2007
    Microsoft Office PowerPoint MUI (English) 2007
    Microsoft Office Proof (English) 2007
    Microsoft Office Proof (French) 2007
    Microsoft Office Proof (Spanish) 2007
    Microsoft Office Proofing (English) 2007
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Publisher MUI (English) 2007
    Microsoft Office Shared MUI (English) 2007
    Microsoft Office Shared Setup Metadata MUI (English) 2007
    Microsoft Office Small Business 2007
    Microsoft Office Small Business Connectivity Components
    Microsoft Office Word MUI (English) 2007
    Microsoft Silverlight
    Microsoft SQL Server 2005
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
    Microsoft SQL Server Setup Support Files (English)
    Microsoft Sync Framework Runtime Native v1.0 (x86)
    Microsoft Sync Framework Services Native v1.0 (x86)
    Microsoft Visual J# .NET Redistributable Package 1.1
    Microsoft_VC80_ATL_x86
    Microsoft_VC80_CRT_x86
    Microsoft_VC80_MFC_x86
    Microsoft_VC80_MFCLOC_x86
    Microsoft_VC90_ATL_x86
    Microsoft_VC90_CRT_x86
    Microsoft_VC90_MFC_x86
    Mozilla Firefox 9.0.1 (x86 en-US)
    MSVCRT
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    PDF Settings CS5
    Plone (version 4.0.2) (build 45910)
    PowerDVD DX
    QuickTime
    RealNetworks - Microsoft Visual C++ 2008 Runtime
    RealPlayer
    RealUpgrade 1.1
    Roll
    Security Update for 2007 Microsoft Office System (KB2288621)
    Security Update for 2007 Microsoft Office System (KB2288931)
    Security Update for 2007 Microsoft Office System (KB2345043)
    Security Update for 2007 Microsoft Office System (KB2553089)
    Security Update for 2007 Microsoft Office System (KB2553090)
    Security Update for 2007 Microsoft Office System (KB2584063)
    Security Update for 2007 Microsoft Office System (KB969559)
    Security Update for 2007 Microsoft Office System (KB976321)
    Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition
    Security Update for Microsoft Office InfoPath 2007 (KB979441)
    Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
    Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
    Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edition
    Security Update for Microsoft Office system 2007 (972581)
    Security Update for Microsoft Office system 2007 (KB974234)
    Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
    Security Update for Microsoft Office Word 2007 (KB2344993)
    Skype Toolbars
    Skype™ 4.2
    TextPad 5
    Update for 2007 Microsoft Office System (KB2284654)
    Update for 2007 Microsoft Office System (KB967642)
    Update for Microsoft Office 2007 suites (KB2596651) 32-Bit Edition
    Update for Microsoft Office 2007 suites (KB2596686) 32-Bit Edition
    Update for Microsoft Office 2007 suites (KB2596789) 32-Bit Edition
    Update for Microsoft Office 2007 System (KB2539530)
    Update for Microsoft Office Excel 2007 (KB2596596) 32-Bit Edition
    Update for Microsoft Office Outlook 2007 (KB2583910)
    Wave Support Software
    Windows Live Call
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Mail
    Windows Live Messenger
    Windows Live Movie Maker
    Windows Live Photo Gallery
    Windows Live Sign-in Assistant
    Windows Live Sync
    Windows Live Toolbar
    Windows Live Upload Tool
    Windows Live Writer
    .
    ==== Event Viewer Messages From Past Week ========
    .
    1/18/2012 7:07:32 AM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: SASDIFSV SASKUTIL
    1/18/2012 7:07:25 AM, Error: Service Control Manager [7000] - The TdmService service failed to start due to the following error: The system cannot find the file specified.
    1/18/2012 7:07:24 AM, Error: Service Control Manager [7000] - The SQL Server VSS Writer service failed to start due to the following error: The system cannot find the file specified.
    1/18/2012 7:07:21 AM, Error: Service Control Manager [7000] - The Bluetooth Service service failed to start due to the following error: The system cannot find the file specified.
    1/18/2012 7:07:13 AM, Error: Service Control Manager [7000] - The SAS Core Service service failed to start due to the following error: The system cannot find the file specified.
    1/18/2012 7:07:03 AM, Error: Service Control Manager [7001] - The NTRU TSS v1.2.1.29 TCS service depends on the TPM Base Services service which failed to start because of the following error: The operation completed successfully.
    1/18/2012 7:07:03 AM, Error: Service Control Manager [7000] - The Credential Vault Host Storage service failed to start due to the following error: The system cannot find the file specified.
    1/18/2012 7:07:03 AM, Error: Service Control Manager [7000] - The Credential Vault Host Control Service service failed to start due to the following error: The system cannot find the file specified.
    1/18/2012 7:07:02 AM, Error: Service Control Manager [7000] - The Dell Wireless WLAN Tray Service service failed to start due to the following error: The system cannot find the file specified.
    1/18/2012 6:07:50 AM, Error: BTHUSB [17] - The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.
    1/18/2012 12:43:37 AM, Error: Service Control Manager [7022] - The Software Protection service hung on starting.
    1/18/2012 12:17:13 AM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk1\DR3.
    1/17/2012 9:25:27 PM, Error: Service Control Manager [7001] - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: The dependency service or group failed to start.
    1/17/2012 9:25:27 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
    1/17/2012 9:25:26 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
    1/17/2012 9:25:24 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
    1/17/2012 9:25:24 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
    1/17/2012 9:25:23 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    1/17/2012 9:25:17 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
    1/17/2012 9:14:28 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD CSC DfsC discache NetBIOS NetBT nsiproxy Psched rdbss SASDIFSV SASKUTIL spldr tdx vwififlt Wanarpv6 WfpLwf
    1/17/2012 9:14:27 PM, Error: Service Control Manager [7001] - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: A device attached to the system is not functioning.
    1/17/2012 9:14:27 PM, Error: Service Control Manager [7001] - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
    1/17/2012 9:14:27 PM, Error: Service Control Manager [7001] - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
    1/17/2012 9:14:27 PM, Error: Service Control Manager [7001] - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
    1/17/2012 9:14:27 PM, Error: Service Control Manager [7001] - The Network Connections service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
    1/17/2012 9:14:27 PM, Error: Service Control Manager [7001] - The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
    1/17/2012 9:14:26 PM, Error: Service Control Manager [7001] - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
    1/17/2012 9:14:25 PM, Error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
    1/17/2012 9:14:25 PM, Error: Service Control Manager [7001] - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: A device attached to the system is not functioning.
    1/17/2012 9:14:25 PM, Error: Service Control Manager [7001] - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: A device attached to the system is not functioning.
    1/17/2012 9:14:25 PM, Error: Service Control Manager [7001] - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
    1/17/2012 9:08:01 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service MSIServer with arguments "" in order to run the server: {000C101C-0000-0000-C000-000000000046}
    1/17/2012 9:07:34 PM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.
    1/17/2012 9:05:00 PM, Error: Microsoft-Windows-WLAN-AutoConfig [10000] - WLAN Extensibility Module has failed to start. Module Path: C:\Windows\System32\bcmihvsrv64.dll Error Code: 21
    1/17/2012 9:04:41 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: discache SASDIFSV SASKUTIL spldr Wanarpv6
    1/17/2012 11:54:40 PM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk1\DR2.
    1/17/2012 10:19:19 PM, Error: Service Control Manager [7022] - The Windows Update service hung on starting.
    1/17/2012 10:12:36 PM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk1\DR1.
    .
    ==== End Of File ===========================
  7. TedCorcoran

    TedCorcoran Newcomer, in training Topic Starter Posts: 27

    Physical Memory Dump

    Ran FixNCR.reg and Unhide.exe successfully.

    When I booted into Safe Mode with Networking, received Physical Memory Dump message with blue screen. Looped to restart over and over, each time resolving to memory dump. Press on/off button until machine shut down.

    Could not run RKill.
  8. TedCorcoran

    TedCorcoran Newcomer, in training Topic Starter Posts: 27

    What next?

    Right now I cannot boot to Windows or to Safe Mode. At a loss for the next move. Any ideas?

    Thanks,

    Ted
  9. TedCorcoran

    TedCorcoran Newcomer, in training Topic Starter Posts: 27

    Hi Bobbye,

    Hope you are well -- I am posting my status mostly to keep this thread open.

    No change in my system's inability to boot into Safe Mode or Open Windows. When I turn on the machine, there is an attempt to start Windows but then I get the blue screen saying PROCESS_INITIALIZATION_FAILED followed by a dump of memory and an attempt to restart again. In order to stop this process, I push the on/off button until shut down occurs.

    I realize you are busy and there are many folks who have gotten System Check, etc. Any ideas you have about my situation would be much appreciated!

    Thanks,

    Ted.
  10. Bobbye

    Bobbye Helper on the Fringe Posts: 16,392   +35

    Ted, I suspected this when you told me of the problem with the executable files:

    Before you posted here:
    Updated and ran SuperAntiSpyware Free Edition --- did not appear to have removed malware. Malware found:
    1.Trojan.Agent/Gen> nah_ojea.exe
    2. Heuristic.Agent-Stream/Resident> TEMP:WINUPD.EXE
    3. Trojan.Agent/Gen-Kazy>
    Multiple "LVVM.EXE"> Fraudulent Security Program (packed and/or encrypted)> Added as a Registry auto start to load Program on Boot up. Also in C:\Windows\Prefetch\LVVM.EXE-275EC608.pf
    Multiple other .exe files, unidentifiable
    Multiple 6B9.EXE> ??
    Multiple 08113.exe> ??
    4. Trojan.Agent/Gen-FraudLoad
    Multiple GFUOMFNVRQL.EXE + pf files
    5. Trojan.Agent/Gen-FakeAlert[Local]> System Check entries + pf
    6. Trojan.Agent/Gen-FraudScan[Prod]
    TEMP\AUDIO_DRIVERS_UPDATE_UTILITY.EXE
    7. Heuristic.Backdoor> temp\explorer.exe
    8. Trojan.Agent/Gen-IEFake>
    Multiple Internet Explorer + (NO ADD-ONS).LNK
    9. Trojan.Agent/Gen-Backdoor[FakeAlert]> Notepad
    10.Trojan.Agent/Gen-Kazy[EX]
    JAVA.EXE
    11.Trojan.Dropper/Win-NV> Backdoor.Win32.Bifrose.
    Virut
    ----------------------------------
    I have no doubt that the system has a Virut Malware infection: These are all .exe files and they are also in prefetch.

    Virut is a Polymorphic File Infector that infects ..exe, .scr, .rar, .zip, .htm, .html. Because there are a number of bugs in its code, it may create executable files that are corrupted beyond repair resulting in an inoperative machine.
    It opens a Backdoor by connecting to a predefined IRC Server and waits for commands from the remote attacker


    Good explanation here:
    http://miekiemoes.blogspot.com/2009/02/virut-and-other-file-infectors-throwing.html


    Change all of your passwords and monitor any online transactions.

    Malware experts say that a Complete Reformat and Reinstall is the only way to clean the infection. This includes All Drives that contain .exe, .scr, .rar, .zip, .htm, .html files.

    * Backup all your documents and important items only.
    * DON'T backup any executable files (,exe .scr .html or .htm)
    * DON'T back up compressed files (zip/cab/rar) that may contain .exe or .scr files

    You will find excellent reformat/reinstall instructions here:
    http://www.tech-101.com/support/ind...and-repair-xp-vista-7/page__p__5329#entry5329
    =================================
    I wish it had been only System Check, but with what's on the system and the inability to get into Windows now leaves no choice but to reformat and reinstall. Judging by the large number of Tracking Cookies and Trojans, it appears that you may not have been doing any maintenance on the system or have acceptable security to protect the system.

    Hopefully after the R/R, you will set up some kind of schedule to delete temporary internet files and Cookies, rest the Cookies not to accept 3rd party Cookies, have a good, current, well configured antivirus, a bi-directional firewall and at least two-or more- antimalware programs.
  11. TedCorcoran

    TedCorcoran Newcomer, in training Topic Starter Posts: 27

    Thanks

    Bobbye,

    I expected it... Thanks for checking the log files and all your efforts!

    This is a family computer with -- ahem -- multiple behaviors that will need to be addressed.

    Best,

    -- Ted
     
  12. Bobbye

    Bobbye Helper on the Fringe Posts: 16,392   +35

    Best of luck Ted. I would not like raising young people in this electronic age!
Topic Status:
Not open for further replies.


Add New Comment

TechSpot Members
Login or sign up for free,
it takes about 30 seconds.
You may also...


Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.