Advertisement

There's no such thing as a stupid question, but they're the easiest to answer.
Login
Search

Advertisement

Windows XP Windows XP
Search Search
Search for:
Tech Support Guy > > >

internet browsers like ie and firefox not working in selective startup


(!)

YL123's Avatar
YL123 YL123 is offline
Junior Member with 5 posts.
THREAD STARTER
 
Join Date: Jul 2010
Experience: Beginner
05-Jul-2010, 03:11 PM #1
Question internet browsers like ie and firefox not working in selective startup
Recently I heard that you can disable startup applications from msgconfig. I removed a couple of useless programs, but the next time I start my computer, it's in selective startup mode and IE won't work, though firefox does. After a couple of times, firefox stopped working too. I got worried, so I enabled most of the programs, only leaving out iTunesHelper, but the browsers still won't work after I restart my computer. Only when I start it in normal startup did they work again. There are many useless startup programs on my computer, but I'm hesitant to delete them from the registry in case I deleted something vital, so msgconfig seemed to be the best. Still, I need the internet browsers. Does anyone know what the problem is? Thanks.
blues_harp28's Avatar
Trusted Advisor with 15,691 posts.
 
Join Date: Jan 2005
Location: London England
05-Jul-2010, 06:31 PM #2
Hi and welcome.
Can you post the list of Startup Items.
Did you change anything under Services while in msconfig?
flavallee's Avatar
flavallee   (Frank) flavallee is offline flavallee is a Trusted Advisor with special permissions. flavallee has a Profile Picture
Computer Specs
Trusted Advisor with 56,956 posts.
 
Join Date: May 2002
Location: Hillsborough county, Florida
Experience: Advanced
05-Jul-2010, 06:36 PM #3
Unchecking and disabling startup entries isn't going to prevent Internet Explorer or Firefox from working properly.

You classify yourself as a "Beginner", so I'm assuming that you're not very computer knowledgeable.

And messing around in the registry is definitely something that you don't need to be doing.

----------------------------------------------------------------

Go here and click the installer link in version 2.0.4 to download and save HiJackThis 2.0.4.

Close all open windows first, then double-click the saved file to install it. Allow it to install in its default location.

After it's installed, start it and then click "Do a system scan and save a log file".

When the scan is finished in less than 30 seconds, a log file will appear. Save the log file.

Return here to your thread, then copy-and-paste the entire log file here.

The log will show us what's installed and what's auto-loading and running in the background, and of any other problems that we need to be aware of.

-----------------------------------------------------------------
YL123's Avatar
YL123 YL123 is offline
Junior Member with 5 posts.
THREAD STARTER
 
Join Date: Jul 2010
Experience: Beginner
06-Jul-2010, 01:21 AM #4
By the way, the computer is in normal startup now and I don't remember what process I unchecked last time. Hope it doesn't make a difference. Anyway, here's the log:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:30:04, on 05/07/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17055)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Lexmark 2500 Series\lxddmon.exe
C:\Program Files\Lexmark 2500 Series\lxddamon.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\lxddcoms.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\mqsvc.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\mqtgsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\weiwen\My Documents\Downloads\HijackThis.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Messenger\msmsgs.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Hans TTS - {4647E382-520B-11D2-A0D0-004033D0645D} - C:\Program Files\Creative\HansVision\HansTools\HansTTS\plugin\mybands.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: Veoh Web Player Video Finder - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll
O3 - Toolbar: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O4 - HKLM\..\Run: [RecGuard] C:\Windows\SMINST\RecGuard.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [lxddmon.exe] "C:\Program Files\Lexmark 2500 Series\lxddmon.exe"
O4 - HKLM\..\Run: [lxddamon] "C:\Program Files\Lexmark 2500 Series\lxddamon.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [cdoosoft] C:\DOCUME~1\weiwen\LOCALS~1\Temp\herss.exe
O4 - HKCU\..\Run: [VeohPlugin] "C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe"
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_SG&c=64&bd=presario&pf=laptop
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/...x/qtplugin.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/ge...sh/swflash.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Norton Internet Security\comHost.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: lxddCATSCustConnectService - Lexmark International, Inc. - C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxddserv.exe
O23 - Service: lxdd_device - - C:\WINDOWS\system32\lxddcoms.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

--
End of file - 12126 bytes

Last edited by YL123; 06-Jul-2010 at 01:31 AM..
flavallee's Avatar
flavallee   (Frank) flavallee is offline flavallee is a Trusted Advisor with special permissions. flavallee has a Profile Picture
Computer Specs
Trusted Advisor with 56,956 posts.
 
Join Date: May 2002
Location: Hillsborough county, Florida
Experience: Advanced
06-Jul-2010, 08:52 AM #5
Use the below links to download and save the free version of

Malwarebytes Anti-Malware 1.46

SUPERAntiSpyware 4.40.0.1002

Close all open windows first, then install them both.

Restart your computer after they're both installed.

Follow these instructions carefully:

Start Malwarebytes Anti-Malware.

Click "Updates(tab) - Check for Updates".

When the definition files have updated, click "OK".

Click "Scanner(tab) - Perform quick scan - Scan".

If infections are found during the scan, the number of infections will be highlighted in red.

When the scan is finished, click "Show Results".

Make sure that everything is selected, then click "Remove Selected".

If you're prompted to restart to finish the removal process, click "Yes".

Start Malwarebytes Anti-Malware again.

Click "Logs"(tab).

Highlight the scan log entry, then click "Open".

When the scan log appears in Notepad, copy-and-paste it here.

Start SUPERAntiSpyware.

Click "Check for Updates".

When the definition files have updated, click "Close".

Click "Scan your Computer - Perform Quick Scan - Next".

If infections or problems are found during the scan, a list will appear.

When the scan is finished and the scan summary window appears, click "OK".

Make sure that everything in the list is selected, then click "Next".

If you're prompted to restart to finish the removal process, click "Yes".

Start SUPERAntiSpyware again.

Click "Preferences - Statistics/Logs"(tab).

Highlight the scan log entry, then click "View Log".

When the scan log appears in Notepad, copy-and-paste it here.

------------------------------------------------------------------

The accumulation of temp files needs to be cleaned out and the SP3 upgrade to Windows XP needs to be installed, but that can wait until later.

Most of the startup entries don't need to auto-load and run in the background, but we can deal with that later too.

------------------------------------------------------------------
YL123's Avatar
YL123 YL123 is offline
Junior Member with 5 posts.
THREAD STARTER
 
Join Date: Jul 2010
Experience: Beginner
06-Jul-2010, 01:35 PM #6


Close all open windows first, then install them both.


Restart your computer after they're both installed.

Follow these instructions carefully:

Start Malwarebytes Anti-Malware.

Click "Updates(tab) - Check for Updates".



------------------------------------------------------------------

------------------------------------------------------------------[/QUOTE]
I'm using firefox, so I kept the download window open while downloading Malwarebytes Anti-Malware so that I could download the next one. Is that ok?

Also, is it ok to open firefox after I restart?

After I restarted the computer, and tried to find updates with Malwarebytes Anti-Malware, this error came up: MBA_ERROR_UPDATING (12150,0,WinHttpQueryHeaders).

I proceeded to the next step without updating, and this is the log:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4052

Windows 5.1.2600 Service Pack 2
Internet Explorer 7.0.5730.11

06/07/2010 11:58:44
mbam-log-2010-07-06 (11-58-44).txt

Scan type: Quick scan
Objects scanned: 150694
Time elapsed: 15 minute(s), 17 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 1
Registry Data Items Infected: 3
Folders Infected: 0
Files Infected: 33

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\MADOWN (Worm.Magania) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cdoosoft (Spyware.OnlineGames) -> Quarantined and deleted successfully.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advan ced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.

Folders Infected:
(No malicious items detected)

Files Infected:
C:\Documents and Settings\weiwen\Local Settings\Temp\herss.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\1a1dndah.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\1di1w.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\3yalgc.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\6ruaqx.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\9b9w3.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\autorun.inf (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\9g86.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\a2g21.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\b00ijwpu.exe (Worm.Taterf) -> Quarantined and deleted successfully.
C:\bycfht.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\eexyv.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\g12g.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\hjvjte.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\l61yyp.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\mb9x.exe (Worm.Magania) -> Quarantined and deleted successfully.
C:\mranjm.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\mwfubaob.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\ucivd6xi.bat (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\vlvtdflx.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\wcgswa.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\ycvvj.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\pbudsara.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\qbr2q.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\r2g20.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Documents and Settings\shiyiliang\Local Settings\Temp\cvasds0.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Documents and Settings\shiyiliang\Local Settings\Temp\cvasds1.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Documents and Settings\shiyiliang\Local Settings\Temp\herss.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\mje12tni.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Documents and Settings\weiwen\Local Settings\Temp\cvasds0.dll (Spyware.OnlineGames) -> Delete on reboot.
C:\Documents and Settings\weiwen\Local Settings\Temp\cvasds1.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\opdux.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\gcq6.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.

the one from superAntiSpyware is attached cause it's too long.

I find it really hard to believe that there are almost 500 items detected on my computer. Surely some of those cookies are just false alarms. Anyway, thanks for guiding me through this.
Attached Files
File Type: log SUPERAntiSpyware Scan Log - 07-06-2010 - 12-47-48.log (68.3 KB, 18 views)

Last edited by YL123; 06-Jul-2010 at 03:16 PM..
flavallee's Avatar
flavallee   (Frank) flavallee is offline flavallee is a Trusted Advisor with special permissions. flavallee has a Profile Picture
Computer Specs
Trusted Advisor with 56,956 posts.
 
Join Date: May 2002
Location: Hillsborough county, Florida
Experience: Advanced
06-Jul-2010, 05:34 PM #7
You submitted the SUPERAniSpyware scan log as an attachment, and it can't be viewed that way, so I'm copying-and-pasting it here.

While Malwarebytes Anti-Malware and SUPERAntiSpyware are scanning, don't browse with Mozilla Firefox or do anything else with that computer. Once the scanning and removal process is finished, then you can use it.

You did select and remove everything that SUPERAntiSpyware found, correct?

----------------------------------------------------------------

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 07/06/2010 at 12:47 PM

Application Version : 4.40.1002

Core Rules Database Version : 5161
Trace Rules Database Version: 2973

Scan type : Quick Scan
Total Scan Time : 00:31:20

Memory items scanned : 676
Memory threats detected : 0
Registry items scanned : 2185
Registry threats detected : 0
File items scanned : 11933
File threats detected : 831

Adware.Tracking Cookie
C:\Documents and Settings\weiwen\Cookies\weiwen@casalemedia[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.admaxasia[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@serving-sys[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@weborama[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad.yieldmanager[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@i.screensavers[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@burstnet[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@perf.overture[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adinterax[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@tribalfusion[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@revsci[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cneteurope.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@tacoda[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@advertising[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www4.addfreestats[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adbrite[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cb.adbureau[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adserver.traffictrack[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@eb.adbureau[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@targetnet[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.cnn[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@questionmarket[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-wizardsofthecoast.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@doubleclick[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@banners.battleon[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www3.addfreestats[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@partygaming.122.2o7[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@bluestreak[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@server.cpmstar[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-gaddispartners.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@msnportalbeetoffice2007.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@bs.serving-sys[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cz4.clickzs[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cz7.clickzs[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad.adsalliance[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.cartoonnetwork[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@screensavers[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@4.adbrite[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@revenue[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@anad.tacoda[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@imrworldwide[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@as-eu.falkag[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@as-us.falkag[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@statcounter[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-dig.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@mediaplex[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adlegend[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad.zanox[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.pointroll[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@linksynergy[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@try.starware[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@count.rbc[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@konjure.opensystemsmedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@metacafe.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@atdmt[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-greendot.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.freeonlinegames[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@fastclick[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adrevolver[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.people.com[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@statse.webtrendslive[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@zedo[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@try.starware[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@theadultschannel[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@thinkmedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@kontera[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@partypoker[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@specificclick[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@tradedoubler[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@msnportal.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad.uk.tangozebra[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@sys.hongqimedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@zbox.zanox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@insightexpressai[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@realmedia[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@nextag[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@edge.ru4[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@stat.onestat[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adopt.euroclick[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@tripod[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@bfast[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-nokiafin.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@stat.ppstream[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg.hitbox[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@counter.hitslink[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adultadworld[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@mentorgraphics.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@media.hotels[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@try.screensavers[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@server.iad.liveperson[4].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.beautycounterdirect.co[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@counter12.sextracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adserver.easyad[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@pro-market[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adserver.toptenreviews[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@dbs.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@richmedia.yahoo[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-youtube.hitbox[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.realtechnetwork[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.halstats[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@micron.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@server.iad.liveperson[6].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.harperteen[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adopt.specificclick[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cnetasiapacific.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@beautycounterdirect.co[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@media.adrevolver[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@smartmedia.allyes[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@mediaconverter[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@data.coremetrics[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@counter5.sextracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@3.adbrite[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@sextracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@lstat.youku[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@prospect.adbureau[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@findarticles[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.cartoonnetworkya[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@counter7.sextracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@sexlist[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad1.adpolestar[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.statssheet[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.burstbeacon[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@azjmp[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@mediacorp[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.asia1.com[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@northwestairlines.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@stat.youku[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-penguingroupusa.hitbox[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.w3counter[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@yadro[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@toplist[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@tracking.dc-storm[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@go.globaladsales[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@msnbc.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@list[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@media6degrees[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@publicfind[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@network.realmedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@affiliates.commissionaccount[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@banners.iop[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@bellglobemediapublishing.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@web4.realtracker[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ibibo.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@bsch.serving-sys[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad.op-networks[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@degree-finder[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@microsoftwlcashback.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@eyewonder[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.veoh[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@rotator.adjuggler[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@viacom.adbureau[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@interclick[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-reed.hitbox[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@stat.dealtime[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@standardcharteredbank.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@dmtracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@clickshift[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@trafficmp[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-traderelectronicmedia.hitbox[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@serw.clicksor[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@rambler[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cmpmedica.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@classifiedventures1.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@webstat[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@qnsr[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.mediamayhemcorp[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-veohnetworksinc.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adx.bixee[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@yieldmanager[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@account.live[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@iacas.adbureau[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@meetupcom.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@overture[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@server.iad.liveperson[3].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adtech[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.bridgetrack[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@dominionenterprises.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.beautyencounter[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@utahcountyrealestatenews[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@247realmedia[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.drgnetwork[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.monster[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@uob.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@americancancersocietyinc.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@nitropayouts.directtrack[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@media-convert[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ihc.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@server.iad.liveperson[5].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@mediacorp.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@skyscanner[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.scientificcommons[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@valueclick[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.addynamix[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@feed.validclick[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@kelleybluebook.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@msnaccountservices.112.2o7[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@hotlog[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-morningstar.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@uk.sitestat[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@iwebtracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-allegisgroup.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adviva[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@a1.interclick[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.bootcampmedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@dealtime[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@custom21cntraffic.allyes[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@videoegg.adbureau[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@traveladvertising[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@specificmedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@sitestats.ets[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@macu.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.us.e-planning[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@borders.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad-plus[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@server.iad.liveperson[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.vr-zone[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@mmstat[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@usatoday1.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@l1.qsstats[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@yieldmanager[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.skyscanner[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@collective-media[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@myroitracking[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@banners2.battleon[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@richter7.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@snap9.advertserve[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cookscountry[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad.fed.msn[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@tracking.quisma[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@greatschools.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.undertone[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@burstbeacon[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@media.medhelp[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adbureau[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@isleadvertise[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@beavercountyblue[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad.wsod[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@content.yieldmanager[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@veohnetwork.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cvhs.adbureau[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@hardwarezone.com[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@gostats[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@sitestats.ets[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@sonypanasia.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cdn4.specificclick[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.shorttail[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ljfind[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@beautyencounter[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www7.addfreestats[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@superpages.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@homefinder[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.versiontracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@medhelpinternational.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.burstnet[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adserver.adtechus[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@media.angloinfo[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-jetstarairways.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@at.atwola[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@serv.clicksor[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@carfax.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@media.ziprealty[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-sistic.hitbox[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@leeenterprises.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.findandrent[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@forums.hardwarezone.com[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@clickbank[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@tracking.admarketplace[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@f2network.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@medialand.relax[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@media.adfrontiers[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@trvlnet.adbureau[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@chitika[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@hardwarezone[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.ljfind[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@medialand[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.ad4game[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.myaxxess[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@bonneville.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.albawaba[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-zoom.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@bannertgt[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.telegraph.co[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@affiliate.oastracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@spylog[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@versiontracker[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@eas.apm.emediate[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@asianmedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@invitemedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-lexmark.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.mediaconverter[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@target.db.advertising[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@zillow.adbureau[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@stats.townnews[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@pointroll[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@d.isleadvertise[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@smartadserver[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.netlog[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.googleadservices[3].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@count.pcbaby.com[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adserving.autotrader[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@pluckit.demandmedia[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@lfstmedia[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@mediaonenetwork[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@lucidmedia[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@affiliate.itatracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@a.websponsors[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@mediav[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@d.precisionadnetwork[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@schaeffers.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-sportingbet.hitbox[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@content.yieldmanager[3].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@trafficking.nabbr[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ad.epochtimes[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adecn[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@google.lucidmedia[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@affiliate.gwmtracker[3].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@acronymfinder[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@advertisingplug[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ru4[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@intermundomedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@surveymonkey.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@mediacorptv[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@healthgrades.112.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.gmodules[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@count.pclady.com[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@servedby.adxpower[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@track.tester-rewards[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.googleadservices[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@legolas-media[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@xiti[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@affiliate.itatracker[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cct.clickable[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ehg-futurepub.hitbox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@rapidsharewarezmegaupload[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@oasn04.247realmedia[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@progrexion.122.2o7[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.redorbit[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@affiliate.gwmtracker[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.redorbit[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@zanox[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@uk.sitestat[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@atwola[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.xy7track[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@citi.bridgetrack[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adxpose[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@cdn1.trafficmp[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@adserver.iprointeractive[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@www.about-teen-depression[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@ads.bcserving[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@kanoodle[2].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@redorbit[1].txt
C:\Documents and Settings\weiwen\Cookies\weiwen@apmebf[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@mediaonenetwork[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@eyewonder[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@ads.undertone[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@viacom.adbureau[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@adserver.adtechus[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@zedo[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@burstbeacon[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@a1.interclick[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@msnportal.112.2o7[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@invitemedia[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@ad.wsod[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@mediaplex[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@linksynergy[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@questionmarket[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@d.isleadvertise[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@rotator.adjuggler[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@specificclick[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@realmedia[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@casalemedia[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@edge.ru4[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@fastclick[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@revsci[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@adserving.autotrader[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@content.yieldmanager[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@at.atwola[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@content.yieldmanager[3].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@lfstmedia[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@trafficmp[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@network.realmedia[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@tacoda[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@ads.pointroll[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@asianmedia[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@tribalfusion[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@mediacorp.112.2o7[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@serving-sys[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@oasn04.247realmedia[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@mediacorp[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@pointroll[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@www.burstnet[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@findarticles[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@burstnet[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@media.adfrontiers[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@2o7[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@ad-plus[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@specificmedia[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@isleadvertise[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@ads.bridgetrack[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@advertising[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@media6degrees[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@cdn4.specificclick[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@ad.yieldmanager[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@ads.ad4game[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@imrworldwide[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@atdmt[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@247realmedia[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@www.burstbeacon[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@interclick[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@doubleclick[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@volkswagen.122.2o7[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@apmebf[2].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@bs.serving-sys[1].txt
C:\Documents and Settings\shiyiliang\Cookies\shiyiliang@adtech[1].txt
C:\Documents and Settings\shiyiliang\Local Settings\Temp\Cookies\shiyiliang@imrworldwide[2].txt
C:\Documents and Settings\shiyiliang\Local Settings\Temp\Cookies\shiyiliang@atdmt[1].txt
a.ads2.msads.net [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
acvs.mediaonenetwork.net [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
ads1.msn.com [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
ads2.msads.net [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
b.ads2.msads.net [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
cdn4.specificclick.net [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
convoad.technoratimedia.com [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
googleads.g.doubleclick.net [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
interclick.com [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
media1.break.com [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
msnbcmedia.msn.com [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
msntest.serving-sys.com [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
objects.tremormedia.com [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
s0.2mdn.net [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]
video.redorbit.com [ C:\Documents and Settings\weiwen\Application Data\Macromedia\Flash Player\#SharedObjects\VWZSQ7EG ]

Adware.Flash Tracking Cookie
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\MSNTEST.SERVING-SYS.COM
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\ACVS.MEDIAONENETWORK.NET
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\CONVOAD.TECHNORATIMEDIA.COM
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\MEDIA1.BREAK.COM
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\MSNBCMEDIA.MSN.COM
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\OBJECTS.TREMORMEDIA.COM
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\INTERCLICK.COM
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\ADS1.MSN.COM
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\A.ADS2.MSADS.NET
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\ADS2.MSADS.NET
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\B.ADS2.MSADS.NET
C:\Documents and Settings\weiwen\Application Data\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\VWZSQ7EG\S0.2MDN.NET

Trojan.Agent/Gen-FakeAlert
D:\3YALGC.EXE
D:\UCIVD6XI.BAT
D:\BYCFHT.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP302\A0133841.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP302\A0133857.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP305\A0134279.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP305\A0134293.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP306\A0134308.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP306\A0134322.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP306\A0134353.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP306\A0134367.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP306\A0134381.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP307\A0134389.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP307\A0134405.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP310\A0134653.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP310\A0134672.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP317\A0136318.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP317\A0136332.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP317\A0136355.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP318\A0136365.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP318\A0136396.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP318\A0136409.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP319\A0136415.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP319\A0136430.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP319\A0136444.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP320\A0136450.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP320\A0136495.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP320\A0136510.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP320\A0136524.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP327\A0137907.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP327\A0137935.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP327\A0137974.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0137986.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138099.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138124.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138146.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138172.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138192.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138215.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138236.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138262.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138282.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138303.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138325.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138353.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138378.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138399.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138423.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138444.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138470.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP328\A0138488.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138500.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138517.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138535.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138558.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138578.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138600.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138633.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138655.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138675.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138727.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138746.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138769.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138791.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138811.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138840.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138871.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP329\A0138891.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP330\A0138917.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP330\A0138941.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP330\A0138964.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP330\A0138984.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP330\A0139003.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139036.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139059.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139080.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139103.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139125.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139147.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139172.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139194.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139216.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP331\A0139239.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP301\A0133808.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP301\A0133822.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP301\A0133836.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP303\A0133902.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP303\A0133956.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP303\A0133971.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP304\A0134123.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP304\A0134139.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP304\A0134234.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP308\A0134504.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP308\A0134537.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP308\A0134551.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP309\A0134556.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP309\A0134570.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP309\A0134584.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP311\A0134737.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP311\A0134751.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP311\A0134765.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP311\A0134778.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP311\A0134809.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP311\A0134823.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP311\A0134838.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP312\A0134843.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP313\A0134951.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0134957.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0134978.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0134992.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0135006.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0135022.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0135036.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0135050.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0135067.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0135080.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0136081.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0136096.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0136139.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0136155.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0136182.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP315\A0136186.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP315\A0136206.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP315\A0136254.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP316\A0136262.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP316\A0136276.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP316\A0136314.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP321\A0136533.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP321\A0136552.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP321\A0136566.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP322\A0136571.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP322\A0136586.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP322\A0136602.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP323\A0136613.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP323\A0137601.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP324\A0137669.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP325\A0137752.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP325\A0137772.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP325\A0137787.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP325\A0137802.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP325\A0137815.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP326\A0137820.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP326\A0137836.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP326\A0137851.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP326\A0137865.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP326\A0137886.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP326\A0137902.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP332\A0139254.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP332\A0139278.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP332\A0139299.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP332\A0139319.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP332\A0139348.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139368.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139385.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139415.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139449.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139470.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139506.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139538.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139558.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139578.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139597.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139660.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139681.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139690.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139790.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139813.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139833.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139851.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139874.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139893.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139912.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139933.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0139959.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140002.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140026.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140046.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140069.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140094.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140115.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140138.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140161.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140191.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140213.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140247.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140268.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140301.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140321.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140410.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140439.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140470.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140492.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140510.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140547.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140573.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140594.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140617.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140636.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140693.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140711.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140731.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140751.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140772.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140793.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140833.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140855.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP334\A0140886.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141022.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141042.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141093.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141114.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141136.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141157.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141177.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141196.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141218.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141247.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141267.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141287.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141309.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141358.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141377.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141411.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP335\A0141429.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP336\A0141440.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP336\A0141463.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP336\A0141492.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP336\A0141521.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP336\A0141539.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP336\A0141567.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP336\A0141592.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP336\A0141612.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP336\A0141632.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141743.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141761.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141781.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141803.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141826.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141858.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141877.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141899.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141918.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141941.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0141963.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0142004.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0142023.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0142053.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0142083.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0142115.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP338\A0142398.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP338\A0142425.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP338\A0142467.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP338\A0142500.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP338\A0142523.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP338\A0142547.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP338\A0142582.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0142647.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0142668.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0142689.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0142711.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0142732.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0142765.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0142804.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0142914.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0142950.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0142968.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0142991.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0143991.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144012.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144041.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144070.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144100.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144173.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144202.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144230.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144263.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144297.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144327.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0144354.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP341\A0144371.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP342\A0144378.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP342\A0144395.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP343\A0144415.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP343\A0144439.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP343\A0144459.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP344\A0144463.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP345\A0144471.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP346\A0144545.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP346\A0144581.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP347\A0144585.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP347\A0144595.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP347\A0144606.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP347\A0144639.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP348\A0145210.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP348\A0145233.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP348\A0145244.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145322.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145332.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145353.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145364.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145375.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145386.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145408.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145437.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145449.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145467.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145478.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145495.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145516.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145533.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP349\A0145544.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP350\A0145566.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP350\A0145611.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP350\A0145625.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP350\A0145644.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP350\A0145655.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP350\A0145667.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP351\A0145681.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP351\A0145703.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP351\A0145731.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP351\A0145746.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP351\A0145767.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0145775.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0145785.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0145805.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0145822.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0145848.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0145866.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0145933.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0145964.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0146008.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP352\A0146018.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP353\A0146039.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP354\A0146087.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP354\A0146107.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP354\A0146119.EXE
D:\MRANJM.EXE
D:\R2G20.EXE
D:\1DI1W.EXE
D:\VLVTDFLX.EXE
D:\MJE12TNI.EXE
D:\YCVVJ.EXE
D:\QBR2Q.EXE
D:\WCGSWA.EXE
D:\B00IJWPU.EXE
D:\HJVJTE.EXE
D:\A2G21.EXE
D:\GCQ6.EXE
D:\9B9W3.EXE
D:\MWFUBAOB.EXE
D:\1A1DNDAH.EXE
D:\G12G.EXE
D:\PBUDSARA.EXE
D:\OPDUX.EXE
D:\9G86.EXE

Trojan.Dropper/Gen-NV
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP302\A0133871.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP305\A0134249.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP306\A0134337.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP307\A0134431.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP307\A0134452.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP310\A0134636.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP318\A0136381.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP320\A0136464.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP299\A0132609.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP300\A0132616.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP300\A0133580.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP301\A0133587.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP301\A0133789.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP303\A0133918.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP303\A0133985.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP303\A0134072.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP304\A0134153.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP308\A0134457.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP308\A0134474.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP308\A0134488.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP308\A0134520.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP309\A0134610.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP311\A0134793.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP313\A0134933.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP314\A0136110.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP315\A0136237.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP316\A0136297.EXE
D:\SYSTEM VOLUME INFORMATION\_RESTORE{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP333\A0139498.EXE
D:\L61YYP.EXE
D:\6RUAQX.EXE

Trojan.Agent/Gen-FraudLoad
D:\EEXYV.EXE

---------------------------------------------------------------------
flavallee's Avatar
flavallee   (Frank) flavallee is offline flavallee is a Trusted Advisor with special permissions. flavallee has a Profile Picture
Computer Specs
Trusted Advisor with 56,956 posts.
 
Join Date: May 2002
Location: Hillsborough county, Florida
Experience: Advanced
06-Jul-2010, 05:42 PM #8
Make sure all open windows are closed first, then start Malwarebytes Anti-Malware and try to update its definition files again. If you're successful, do another "quick scan", select and remove everything that's found, then submit that new scan log here.

Having the definition files updated may find new problems that weren't found during the first scan.

-----------------------------------------------------------------

I've requested a gold shield malware expert to look at your thread and assist, if needed.

-----------------------------------------------------------------
YL123's Avatar
YL123 YL123 is offline
Junior Member with 5 posts.
THREAD STARTER
 
Join Date: Jul 2010
Experience: Beginner
06-Jul-2010, 07:19 PM #9
Yes, I removed everything that both programs found. I tried to do the update again, but it still didn't work. I then reinstalled it completely, but the same error persists. When I did the scan, I left the browser on, but did not browse or anything else. I guess my original problem with startup is caused by the virus on my computer? Is it safe to try fiddling with msgconfig again now?

Last edited by YL123; 06-Jul-2010 at 08:30 PM..
flavallee's Avatar
flavallee   (Frank) flavallee is offline flavallee is a Trusted Advisor with special permissions. flavallee has a Profile Picture
Computer Specs
Trusted Advisor with 56,956 posts.
 
Join Date: May 2002
Location: Hillsborough county, Florida
Experience: Advanced
07-Jul-2010, 08:45 AM #10
What exactly do you want to "fiddle with" in MSCONFIG?

If you're wanting to trim down the startup load so your computer doesn't have so many unnecessary programs auto-loading, I can assist you with that.

-----------------------------------------------------------------

Let's see what's in that computer.

Start HijackThis, but don't run a scan.

Click on the "Open The Misc Tools Section" button.

Click on the "Open Uninstall Manager" button.

Click on the "Save List" button.

Save the "uninstall_list.txt" file somewhere. It'll then open in Notepad.

Return here to your thread, then copy-and-paste the entire file here.

-----------------------------------------------------------------
Cookiegal's Avatar
Administrator & Malware Removal Specialist with 96,526 posts.
 
Join Date: Aug 2003
07-Jul-2010, 10:50 AM #11
Please post the log that flavallee requested.

Then after doing that proceed with the following:

Please visit Combofix Guide & Instructions for instructions for installing the recovery console and downloading and running ComboFix.

The only thing different from the instructions there is that when downloading and saving the ComboFix.exe I would like you to rename it to puppy.exe please.

Post the log from ComboFix when you've accomplished that along with a new HijackThis log.

Important notes regarding ComboFix:

ComboFix may reset a number of Internet Explorer's settings, including making it the default browser. This can easily be changed once we're finished.

ComboFix also prevents autorun of ALL CDs, floppies and USB devices to assist with malware removal & increase security. If this is an issue or makes it difficult for you, please let me know. This can be undone manually when we're finished. Read HERE for an article written by dvk01 on why we disable autoruns.

Note: During this process, it would help a great deal and be very much appreciated if you would refrain from installing any new software or hardware on this machine, unless absolutely necessary, until the clean up process is finished as it makes our job more tedious, with additional new files that may have to be researched, which is very time consuming.

Also, please do not run any security programs or fixes on your own as doing so may compromise what we will be doing. It is important that you wait for instructions.
__________________
Microsoft MVP - Consumer Security
YL123's Avatar
YL123 YL123 is offline
Junior Member with 5 posts.
THREAD STARTER
 
Join Date: Jul 2010
Experience: Beginner
07-Jul-2010, 02:44 PM #12
Would the files from Combofix allow people to view the content of the files on the computer? I am sharing the computer with my dad, and he need to use files on the computer up till friday, and it would be problematic if those files became visible to everyone, or if using comboFix cause problems with the functionality of the computer. He asked me to try to make start up faster, but we didn't expect there to be so many malware on the computer. Since he needs to use the computer, I would also be unable to touch it till friday, in case what I do mess everything up.
Sorry for wasting your time.

Last edited by YL123; 07-Jul-2010 at 02:51 PM..
Cookiegal's Avatar
Administrator & Malware Removal Specialist with 96,526 posts.
 
Join Date: Aug 2003
07-Jul-2010, 02:56 PM #13
It won't show the contents of the files but it can show their names, depending on when they were created.

These files should be backed up to some external media unless they are on another computer somewhere else already and could be retrieved. An infected computer is very unstable and even a healthy computer could crash at any time, resulting in data loss if it's not backed up.

Having said that, it would be best if we waited and continued this on the weekend but you should still back up the files as the infection may worsen and cause greater instability or even total failure.
As Seen On

BBC, Reader's Digest, PC Magazine, Today Show, Money Magazine
WELCOME TO TECH SUPPORT GUY!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.


(clock)
THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools


Similar Threads
Title Thread Starter Forum Replies Last Post
IE and FireFox won't start, RelevantKnowledge Found smportis Virus & Other Malware Removal 3 08-Jul-2010 11:47 AM
Solved: Firefox NOT WORKING, but IE is swimupstream Web & Email 2 24-May-2009 07:52 PM
IE and FireFox don't work. Arsinal Web & Email 5 11-Feb-2009 11:38 AM
Solved: Microphone doesnt work in CS and CS:S Please help thrash_til_death Games 1 09-Nov-2008 10:53 PM
IE and Firefox not working girlangela Virus & Other Malware Removal 1 17-Aug-2008 01:26 AM

WELCOME
You Are Using: Server ID
Trusted Website Back to the Top ↑