Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93083 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

[Closed] Baseline


  • This topic is locked This topic is locked
14 replies to this topic

#1 anirishfool

anirishfool

    Authentic Member

  • Authentic Member
  • PipPip
  • 22 posts

Posted 01 November 2009 - 11:34 AM

Sluggish start-up, frequent freezes requiring hard boot, can't do a full system scan with NAV - freezes after 5k files. Any help would be appreciated. Thanks!

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:30:01, on 11/1/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Norton Internet Security\AddOns\Norton AddOn Pack\Engine\3.7.0.23\ccProxy.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\SanDisk\Sansa Updater\SansaSvr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\msfeedssync.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.0.1/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\IPSBHO.DLL
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe -expressboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [Power2GoExpress] NA
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.4.2\gears.dll
O9 - Extra 'Tools' menuitem: &Gears Settings - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.4.2\gears.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebo...toUploader5.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {22E5D91F-89E6-4405-AD9C-0AF27BA6F06B} (HidInputMonitorX Control) - file://E:\components\hidinputmonitorx.ocx
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photos.walmar...martActivia.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace....aceUploader.cab
O16 - DPF: {4F63D44B-6274-4D60-8AB1-CAA7116B8AF3} (A9Helper.A9) - file://E:\components\A9.ocx
O16 - DPF: {6D2EF4B4-CB62-4C0B-85F3-B79C236D702C} (ContactExtractor Class) - http://www.facebook....ls/contactx.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1170701208546
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebo...oUploader55.cab
O16 - DPF: {8A0019EB-51FA-4AE5-A40B-C0496BBFC739} (Verizon Wireless Media Upload) - http://picture.vzw.c...loadControl.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://65.40.167.144...sCamControl.ocx
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterf...ds/Uploader.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoft...free/asinst.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcaf...924/mcfscan.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Norton Internet Security\AddOns\Norton AddOn Pack\Engine\3.7.0.23\ccProxy.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Unknown owner - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
O23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sansa Updater Service (SansaService) - Unknown owner - C:\Program Files\SanDisk\Sansa Updater\SansaSvr.exe

--
End of file - 9046 bytes

    Advertisements

Register to Remove


#2 CatByte

CatByte

    Classroom Administrator

  • Classroom Admin
  • 21,060 posts
  • MVP

Posted 02 November 2009 - 05:33 PM

Hi,

Please do the following:

Please download DDS from either of these links

LINK 1
LINK 2

and save it to your desktop.
  • Disable any script blocking protection
  • Double click dds.pif to run the tool.
  • When done, two DDS.txt's will open.
  • Save both reports to your desktop.
---------------------------------------------------
Please include the contents of the following in your next reply:

DDS.txt
Attach.txt.


NEXT


Posted Image
Download GMER Rootkit Scanner from here or here.
  • Extract the contents of the zipped file to desktop.
  • Double click GMER.exe. If asked to allow gmer.sys driver to load, please consent .
  • If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO.

    Posted Image
    Click the image to enlarge it
  • In the right panel, you will see several boxes that have been checked. Uncheck the following ...
    • Sections
    • IAT/EAT
    • Drives/Partition other than Systemdrive (typically C:\)
    • Show All (don't miss this one)
  • Then click the Scan button & wait for it to finish.
  • Once done click on the [Save..] button, and in the File name area, type in "Gmer.txt" or it will save as a .log file which cannot be uploaded to your post.
  • Save it where you can easily find it, such as your desktop, and post it in your next reply.

**Caution**
Rootkit scans often produce false positives. Do NOT take any action on any "<--- ROOKIT" entries

Microsoft MVP 2010, 2011, 2012, 2013, 2014, 2015


#3 anirishfool

anirishfool

    Authentic Member

  • Authentic Member
  • PipPip
  • 22 posts

Posted 04 November 2009 - 07:40 AM

Don't close me out! I ran the dds scans and saved them, but when I did the gmer it ran for HOURS. I left the computer, and when I came back, the power settings got me. It had shut down and I couldn't retrieve the info. I have been waiting till I have time to sit through another gmer scan, then I'll post. Unless you have other instructions, I'll post all that info asap. Just making sure the topic doesn't get closed! Thanks! Chris

#4 CatByte

CatByte

    Classroom Administrator

  • Classroom Admin
  • 21,060 posts
  • MVP

Posted 04 November 2009 - 11:20 AM

No problem, I'll leave the thread open till I hear from you. Try GMER is safe mode if you are having trouble with it.

Microsoft MVP 2010, 2011, 2012, 2013, 2014, 2015


#5 anirishfool

anirishfool

    Authentic Member

  • Authentic Member
  • PipPip
  • 22 posts

Posted 04 November 2009 - 02:34 PM

dds.txt


DDS (Ver_09-10-26.01) - NTFSx86
Run by Chris at 19:47:53.73 on Mon 11/02/2009
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1014.479 [GMT -5:00]

AV: Norton Internet Security *On-access scanning disabled* (Updated) {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton Internet Security *enabled* {7C21A4C9-F61F-4AC4-B722-A6E19C16F220}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Norton Internet Security\AddOns\Norton AddOn Pack\Engine\3.7.0.23\ccProxy.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\SanDisk\Sansa Updater\SansaSvr.exe
svchost.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Chris.GATEWAY\Desktop\dds.pif

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.com
uSearch Page = hxxp://www.google.com
uInternet Connection Wizard,ShellNext = hxxp://192.168.0.1/
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn0\yt.dll
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\progra~1\yahoo!\companion\installs\cpn0\yt.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\norton internet security\engine\16.7.2.11\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files\norton internet security\engine\16.7.2.11\IPSBHO.DLL
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files\norton internet security\engine\16.7.2.11\coIEPlg.dll
TB: &Google: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar1.dll
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
uRun: [Power2GoExpress] NA
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [ehTray] c:\windows\ehome\ehtray.exe
mRun: [SynTPLpr] c:\program files\synaptics\syntp\SynTPLpr.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [IntelWireless] "c:\program files\intel\wireless\bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
mRun: [WinPatrol] c:\program files\billp studios\winpatrol\winpatrol.exe -expressboot
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\setpoint\SetPoint.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - {0B4350D1-055F-47A3-B112-5F2F2B0D6F08} - c:\program files\google\google gears\internet explorer\0.5.4.2\gears.dll
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://www.apple.com/qtactivex/qtplugin.cab
DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {22E5D91F-89E6-4405-AD9C-0AF27BA6F06B} - file://e:\components\hidinputmonitorx.ocx
DPF: {33564D57-0000-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} - hxxp://photos.walmart.com/WalmartActivia.cab
DPF: {48DD0448-9209-4F81-9F6D-D83562940134} - hxxp://lads.myspace.com/upload/MySpaceUploader.cab
DPF: {4F63D44B-6274-4D60-8AB1-CAA7116B8AF3} - file://e:\components\A9.ocx
DPF: {6D2EF4B4-CB62-4C0B-85F3-B79C236D702C} - hxxp://www.facebook.com/controls/contactx.dll
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1170701208546
DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} - hxxp://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
DPF: {8A0019EB-51FA-4AE5-A40B-C0496BBFC739} - hxxp://picture.vzw.com/activex/VerizonWirelessUploadControl.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} - hxxp://65.40.167.144/activex/AxisCamControl.ocx
DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} - hxxp://web1.shutterfly.com/downloads/Uploader.cab
DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} - hxxp://acs.pandasoftware.com/activescan/as5free/asinst.cab
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} - hxxp://office.microsoft.com/officeupdate/content/opuc4.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {DE22A7AB-A739-4C58-AD52-21F9CD6306B7} - hxxp://download.microsoft.com/download/7/E/6/7E6A8567-DFE4-4624-87C3-163549BE2704/clearadj.cab
DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} - hxxp://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,4924/mcfscan.cab
Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - c:\program files\hp\hpcoretech\comp\hpuiprot.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - c:\program files\norton internet security\engine\16.7.2.11\CoIEPlg.dll
Handler: x-excid - {9D6CC632-1337-4a33-9214-2DA092E776F4} - c:\windows\downloaded program files\mimectl.dll
Notify: igfxcui - igfxdev.dll
Notify: LBTWlgn - c:\program files\common files\logitech\bluetooth\LBTWlgn.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

============= SERVICES / DRIVERS ===============

R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\nis\1007020.00b\SymEFA.sys [2009-9-9 310320]
R1 BHDrvx86;Symantec Heuristics Driver;c:\windows\system32\drivers\nis\1007020.00b\BHDrvx86.sys [2009-9-9 259632]
R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\nis\1007020.00b\cchpx86.sys [2009-9-9 482432]
R1 IDSxpx86;IDSxpx86;c:\documents and settings\all users\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\definitions\ipsdefs\20091028.004\IDSXpx86.sys [2009-10-28 329592]
R2 LBeepKE;LBeepKE;c:\windows\system32\drivers\LBeepKE.sys [2007-4-12 3712]
R2 Norton Internet Security;Norton Internet Security;c:\program files\norton internet security\engine\16.7.2.11\ccSvcHst.exe [2009-9-9 117640]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2009-8-26 102448]
S3 NUVision;NUVision II Video Service;c:\windows\system32\drivers\nuvvid2.sys [2006-12-16 153760]
S4 AdobeActiveFileMonitor7.0;Adobe Active File Monitor V7;c:\program files\adobe\photoshop elements 7.0\PhotoshopElementsFileAgent.exe [2008-9-16 169312]
S4 gupdate1c979c7bd1cbdc0;Google Update Service (gupdate1c979c7bd1cbdc0);c:\program files\google\update\GoogleUpdate.exe [2009-1-18 133104]

=============== Created Last 30 ================

2009-11-01 16:32:48 0 d-----w- c:\program files\Norton Support
2009-10-16 07:10:15 0 d-----w- C:\0ee13df3881226c5cd62028a50626b

==================== Find3M ====================

2009-09-17 20:04:52 10874880 ----a-w- c:\program files\SketchUp.exe
2009-09-17 20:04:40 1847296 ----a-w- c:\program files\ThumbsUp.dll
2009-09-17 20:03:30 2691072 ----a-w- c:\program files\slapi.dll
2009-09-17 20:03:28 2170880 ----a-w- c:\program files\SkpWriter.dll
2009-09-17 20:02:58 196608 ----a-w- c:\program files\alchemyext.dll
2009-09-17 20:00:24 299008 ----a-w- c:\program files\libIGUtils.dll
2009-09-17 20:00:24 1359872 ----a-w- c:\program files\libIGSg.dll
2009-09-17 20:00:22 638976 ----a-w- c:\program files\libIGMath.dll
2009-09-17 20:00:20 2732032 ----a-w- c:\program files\libIGGfx.dll
2009-09-17 20:00:18 606208 ----a-w- c:\program files\libIGAttrs.dll
2009-09-17 20:00:18 1245184 ----a-w- c:\program files\libIGCore.dll
2009-09-17 19:56:50 924 ----a-w- c:\program files\drivers.ini
2009-09-17 19:56:40 8 ----a-w- c:\program files\sketchup_build
2009-09-17 19:56:40 8 ----a-w- c:\program files\installer_build
2009-09-11 14:18:39 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-04 21:03:36 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-09-04 19:18:38 46348 ----a-w- c:\windows\system32\SmrtDrive.dll
2009-08-29 08:08:21 916480 ----a-w- c:\windows\system32\wininet.dll
2009-08-26 08:00:21 247326 ----a-w- c:\windows\system32\strmdll.dll
2009-08-21 14:32:11 60808 ----a-w- c:\windows\system32\S32EVNT1.DLL
2009-08-06 23:23:46 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-08-06 23:23:46 215920 ----a-w- c:\windows\system32\muweb.dll
2009-08-05 09:01:48 204800 ----a-w- c:\windows\system32\mswebdvd.dll
2008-09-26 14:54:42 32768 --sha-w- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008092620080927\index.dat

============= FINISH: 19:48:45.50 ===============


attach.txt


UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_09-10-26.01)

Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 11/22/2006 4:17:42 PM
System Uptime: 11/2/2009 7:33:53 PM (0 hours ago)

Motherboard: Gateway | |
Processor: Genuine Intel® CPU T1350 @ 1.86GHz | uFCPGA2 | 1862/533mhz

==== Disk Partitions =========================

C: is FIXED (NTFS) - 86 GiB total, 45.777 GiB free.
D: is FIXED (FAT32) - 7 GiB total, 4.71 GiB free.
E: is CDROM ()
X: is NetworkDisk (NTFS) - 149 GiB total, 92.739 GiB free.
Z: is NetworkDisk (FAT) - 931 GiB total, 917.973 GiB free.

==== Disabled Device Manager Items =============

==== System Restore Points ===================

No restore point in system.

==== Installed Programs ======================

1ClickImageExtractor
4PLAY 4.95 for Windows 95
4PLAY 5.0
5500
5500_Help
5500Tour
5500Trb
AAC Decoder
Ad-Aware SE Personal
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Photoshop Elements 7.0
Adobe Photoshop.com Inspiration Browser
Adobe Premiere Elements 7.0
Adobe Premiere Elements 7.0 Templates
Adobe Reader 8.1.5
Adobe® Photoshop® Album Starter Edition 3.2
AiO_Scan
AIOMinimal
AiOSoftware
Amazon MP3 Downloader 1.0.3
AngelPotion Video Codec V1
Apple Mobile Device Support
Apple Software Update
AutoUpdate
BearShare
Bejeweled 2 Deluxe
BigFix
BitPim 1.0.6
BlackBerry Device Software Updater
Blackhawk Striker 2
Blasterball 2 Revolution
Bonjour
Canon Camera Access Library
Canon Camera Support Core Library
Canon Camera Window DC_DV 5 for ZoomBrowser EX
Canon Camera Window DC_DV 6 for ZoomBrowser EX
Canon Camera Window MC 6 for ZoomBrowser EX
Canon G.726 WMP-Decoder
Canon MovieEdit Task for ZoomBrowser EX
Canon RAW Image Task for ZoomBrowser EX
Canon RemoteCapture Task for ZoomBrowser EX
Canon Utilities EOS Utility
Canon Utilities PhotoStitch
Canon Utilities ZoomBrowser EX
CDDRV_Installer
Compatibility Pack for the 2007 Office system
Cool MP3 Splitter 2.2
Copy
CreativeProjects
Critical Update for Windows Media Player 11 (KB959772)
Dazzle MovieStar 5
Dazzle Photo Editor
Diner Dash
Director
DivX Codec
DivX Content Uploader
DivX Converter
DivX Player
DivX Plus DirectShow Filters
DivX Version Checker
DivX Web Player
DocProc
DVC
DVD Complete
DVD Solution
ERUNT 1.1j
FATE
Fax
Flickr Uploadr 2.5.0.15
FLV Player
Gateway Game Console
Google Earth
Google Gears
Google SketchUp 7.1
Google Toolbar for Internet Explorer
Google Update
GPL Ghostscript 8.70
gtw_logo
H.264 Decoder
High Definition Audio Driver Package - KB888111
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 10 (KB903157)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB970653-v3)
HP Image Zone 3.5
HP PSC & OfficeJet 3.5
HP Unload DLL Patch
HP Update
hpmdtab
HPSystemDiagnostics
InstantShare
Intel Matrix Storage Manager
Intel® Graphics Media Accelerator Driver
Intel® PROSet/Wireless Software
IrfanView (remove only)
iTunes
Java™ 6 Update 15
Kazaa Lite Resurrection 0.0.9
KB408682
KhalInstallWrapper
KhalSetup
LANDEX Patch xp1.0
LANDEX Remote 2.3.1
Logitech SetPoint
Malwarebytes' Anti-Malware
mCore
mDriver
mDrWiFi
Memories Disc Creator 2.0
mHelp
Microsoft .NET Framework 1.0 Hotfix (KB953295)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB953297)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Digital Image Library 9 - Blocker
Microsoft Digital Image Starter Edition 2006
Microsoft Digital Image Starter Edition 2006 Editor
Microsoft Digital Image Starter Edition 2006 Library
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Money 2006
Microsoft National Language Support Downlevel APIs
Microsoft Office Basic Edition 2003
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Outlook Web Access S/MIME
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Works
mIWA
MKV Splitter
mLogView
mMHouse
Motorola SM56 Data Fax Modem
Moyea YouTube FLV Downloader version: 2.0.8.524
mPfMgr
mPfWiz
mProSafe
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 6.0 Parser
mWlsSafe
mXML
mZConfig
Napster
Napster Burn Engine
Napster for Windows Media Player
Norton AddOn Pack
Norton Internet Security
OnDVD
OpenOffice.org 3.0
Overland
Panda ActiveScan
Penguins!
PhotoGallery
PhotoshopdotcomInspirationBrowser
Polar Bowler
Polar Golfer
Power2Go 4.0
PowerDVD
PrintScreen
QFolder
QuickProjects
QuickTime
Reader Drivers and Utilities
Readme
RealPlayer Basic
Recovery Software Suite Gateway
Rosetta Stone DEMO 2.1.5.0S
SAMSUNG Mobile Modem Driver Set
Samsung Mobile phone USB driver Software
SAMSUNG Mobile USB Modem 1.0 Software
SAMSUNG Mobile USB Modem Software
Samsung PC Studio 3 USB Driver Installer
Sansa Updater
Scan
SCRABBLE
Security Update for CAPICOM (KB931906)
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 8 (KB969897)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player 10 (KB911565)
Security Update for Windows Media Player 10 (KB917734)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows XP (KB913433)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951376)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Sexy Play 2007.9.R6
SigmaTel Audio
SkinsHP1
SkinsHP2
Skype™ 3.8
SmartSound Quicktracks for Premiere Elements
Sonic Encoders
Spybot - Search & Destroy 1.4
SpywareBlaster 4.1
Synaptics Pointing Device Driver
Texas Instruments PCIxx21/x515/xx12 drivers.
Theorica Divx ;-) Codecs (remove only)
TIPCI
Tradewinds
TrayApp
Unload
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB971180)
Update for Windows Media Player 10 (KB910393)
Update for Windows Media Player 10 (KB913800)
Update for Windows Media Player 10 (KB926251)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB973815)
Update Rollup 2 for Windows XP Media Center Edition 2005
VC80CRTRedist - 8.0.50727.762
Viewpoint Media Player
Webcast
WebFldrs XP
WebReg
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 7
Windows Internet Explorer 8
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player Firefox Plugin
Windows XP Media Center Edition 2005 KB925766
Windows XP Media Center Edition 2005 KB973768
Windows XP Service Pack 3
WinPatrol 2008
WinRAR archiver
Yahoo! Messenger
Yahoo! Toolbar

==== Event Viewer Messages From Past Week ========

11/1/2009 12:33:31 PM, error: Service Control Manager [7034] - The PrismXL service terminated unexpectedly. It has done this 1 time(s).
11/1/2009 12:33:26 PM, error: Service Control Manager [7034] - The Canon Camera Access Library 8 service terminated unexpectedly. It has done this 1 time(s).
11/1/2009 12:24:52 PM, error: Ntfs [55] - The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume C:.
10/31/2009 5:53:20 PM, error: System Error [1003] - Error code 00000077, parameter1 c00000b5, parameter2 c00000b5, parameter3 00000000, parameter4 00550000.
10/31/2009 10:44:19 AM, error: Service Control Manager [7023] - The System Restore Service service terminated with the following error: The file or directory is corrupted and unreadable.
10/31/2009 10:44:08 AM, error: SRService [104] - The System Restore initialization process failed.
10/30/2009 8:17:59 PM, error: PlugPlayManager [12] - The device 'RAS Async Adapter' (SW\{eeab7790-c514-11d1-b42b-00805fc1270e}\asyncmac) disappeared from the system without first being prepared for removal.
10/30/2009 6:18:53 PM, error: iaStor [9] - The device, \Device\Ide\iaStor0, did not respond within the timeout period.
10/30/2009 5:33:21 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Application Layer Gateway Service service to connect.
10/30/2009 5:33:21 PM, error: Service Control Manager [7000] - The Application Layer Gateway Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
10/30/2009 5:23:59 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the HTTP SSL service to connect.
10/30/2009 5:23:59 PM, error: Service Control Manager [7000] - The HTTP SSL service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
10/29/2009 9:24:08 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the COM+ System Application service to connect.
10/29/2009 9:24:08 PM, error: Service Control Manager [7000] - The COM+ System Application service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
10/29/2009 9:24:08 PM, error: DCOM [10005] - DCOM got error "%1053" attempting to start the service COMSysApp with arguments "" in order to run the server: {ECABAFBC-7F19-11D2-978E-0000F8757E2A}
10/26/2009 4:51:33 PM, error: Service Control Manager [7031] - The Norton Internet Security service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service.
10/26/2009 4:51:03 PM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the Norton Internet Security service.

==== End Of File ===========================

GMER 1.0.15.15163 - http://www.gmer.net
Rootkit scan 2009-11-04 15:25:44
Windows 5.1.2600 Service Pack 3
Running: gmer.exe; Driver: C:\DOCUME~1\CHRIS~1.GAT\LOCALS~1\Temp\kwldqpow.sys


---- System - GMER 1.0.15 ----

SSDT 859E6A20 ZwAlertResumeThread
SSDT 859E6AE0 ZwAlertThread
SSDT 859F8518 ZwAllocateVirtualMemory
SSDT 85A10F70 ZwAssignProcessToJobObject
SSDT 86427370 ZwConnectPort
SSDT \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS (Symantec Event Library/Symantec Corporation) ZwCreateKey [0xA8A44130]
SSDT 859E67D0 ZwCreateMutant
SSDT 85A10D90 ZwCreateSymbolicLinkObject
SSDT 859E7C40 ZwCreateThread
SSDT 859E6368 ZwDebugActiveProcess
SSDT \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS (Symantec Event Library/Symantec Corporation) ZwDeleteKey [0xA8A443B0]
SSDT \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS (Symantec Event Library/Symantec Corporation) ZwDeleteValueKey [0xA8A44910]
SSDT 859F86A8 ZwDuplicateObject
SSDT 859F8378 ZwFreeVirtualMemory
SSDT 859E68A0 ZwImpersonateAnonymousToken
SSDT 859E6960 ZwImpersonateThread
SSDT 86401E50 ZwLoadDriver
SSDT 859E6F70 ZwMapViewOfSection
SSDT 859E6710 ZwOpenEvent
SSDT 859F8848 ZwOpenProcess
SSDT 859F85E8 ZwOpenProcessToken
SSDT 859E6590 ZwOpenSection
SSDT 859F8778 ZwOpenThread
SSDT 85A10E80 ZwProtectVirtualMemory
SSDT 85A2D6C8 ZwResumeThread
SSDT 859E6D20 ZwSetContextThread
SSDT 859E6DE0 ZwSetInformationProcess
SSDT 859E6448 ZwSetSystemInformation
SSDT \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS (Symantec Event Library/Symantec Corporation) ZwSetValueKey [0xA8A44B60]
SSDT 859E6650 ZwSuspendProcess
SSDT 859E6BA0 ZwSuspendThread
SSDT 859E7C08 ZwTerminateProcess
SSDT 859E6C60 ZwTerminateThread
SSDT 859E6EB0 ZwUnmapViewOfSection
SSDT 859F8448 ZwWriteVirtualMemory

---- Devices - GMER 1.0.15 ----

AttachedDevice \Driver\Tcpip \Device\Ip SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Tcpip \Device\Tcp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\Udp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\RawIp SYMTDI.SYS (Network Dispatch Driver/Symantec Corporation)
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

---- Registry - GMER 1.0.15 ----

Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@DeviceNotSelectedTimeout 15
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@GDIProcessHandleQuota 10000
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@Spooler yes
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@swapdisk
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@TransmissionRetryTimeout 90
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@USERProcessHandleQuota 10000

---- Files - GMER 1.0.15 ----

File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\madden_home;ag=;tile=2;dcopt=ist;sz=300x250;ord=1250263830490[1] 3030 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\mclassic[1].gif 1545 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\mclassic[2].gif 1545 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\menu_separator[1].gif 1061 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\MonitoringEnableFeeds[1] 3786 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\monster_jdn_atlas[1].js 1909 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\mootools-1.2.1-core-more-yc[1].js 93422 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\Music-Tuesday_layered-HP_300x100[1].jpg 10024 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\myriad_web_pro_bold[1].swf 25976 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\get[1].media 259 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\glamadapt_jsrv[1].act 1726 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\glamadapt_jsrv[2].act 1729 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\glam_callback[1].act 286 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\global_ea[1].gif 1218 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\global_game_finder[1].gif 1846 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\global_worldwide[1].gif 1803 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\go[1].jpg 478 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\rollout[1].txt 6 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\rss[1].png 1768 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1008584410_191181_5615[1].jpg 6671 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1008584410_201388_7556[1].jpg 5308 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1008584410_243576_7471[1].jpg 3381 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1008584410_258782_8280[1].jpg 5152 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1029331937_264454_4546[1].jpg 5196 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1034201217_30243241_3844766[1].jpg 7640 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\defaultCA95WNXD.jpg 3575 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\defaultCABVVZ69.jpg 1797 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\defaultCAMRP8BQ.jpg 3651 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\defaultCAQOM6AY.jpg 3178 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\defaultCAW4OBI4.jpg 3695 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[10].jpg 2891 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[11].jpg 3672 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[1].jpg 3645 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[2].jpg 3349 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[3].jpg 2966 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[4].jpg 2253 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[5].jpg 2324 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[6].jpg 2324 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[7].jpg 2324 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[8].jpg 1911 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\default[9].jpg 3697 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\desktop.ini 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\dewe9i2r[1].js 62255 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\do8hi2n6[1].js 25500 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\82my23dk[1].png 5037 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\8fu2r3gs[1].png 129 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\8mtknhxw[1].js 13486 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\8n8j82o9[1].gif 130 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\8zdh3u0z[1].gif 121 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\9mtz0pt0[1].js 67873 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\9v2qmh6t[1].gif 1900 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\a1008584410_258766_5065[1].jpg 12352 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\a@x10[1].htm 1289 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\activity;src=1776986;dcnet=4591;boom=22749;sz=1x1;ord=[1].gif 43 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\adpo[1].txt 6 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\179x116FB[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\37[1].gif 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4186_81972074525_746574525_1659775_2363080_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4a85833d2f612190[1].png 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204304430159_1305067063_30574275_6118501_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204310230304_1305067063_30574410_3993273_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524645111_767715111_8097014_2517310_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002314856675_1_811f0016[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ico-print[1].jpg 460 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ico-rss[1].jpg 609 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ico-twitter[1].jpg 714 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\icon_ringtones[1].gif 812 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\imp[1] 1540 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\imp[2] 10 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\initjs[1].txt 6 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\initjs[2].txt 6 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\init[1].js 3593 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\jchlj5zu[1].png 1175 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\jquery-1.3.2.min[1].js 60821 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\jquery.functions[1].js 482 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\jr[1].ad 463 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\Justin[1].jpg 2314 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\j[1].ad 204 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\j[2].ad 220 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\leaderboard[1].htm 371 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\loneranger_300x100[1].jpg 16918 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\39[1].gif 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\3onh37me[1].css 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4-stars[1].gif 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4-stars[2].gif 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4147_77454544750_649089750_1740780_8276175_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4147_77457459750_649089750_1740803_7387824_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4147_77457474750_649089750_1740805_4733501_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4147_77457489750_649089750_1740807_7152713_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\StdBanner[1].js 15089 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\tags[1].js 8864 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\team_off[1].png 402 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\throttle=0[1].gif 43 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\tickets_off[1].png 539 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\tiger_tunnel_300x250_EU_50k2[1].swf 43453 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\trainingCampS[1].jpg 6477 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\truste[1].jpg 5559 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\typeahead_log[1].php 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\typeahead_log[2].php 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\typeahead_log[3].php 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\typeahead_log[4].php 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\typeahead_log[5].php 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\typeahead_search[1].php 151868 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\PH_BigEat_TinyPrice_160x600[1].swf 33471 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\pixel[1].gif 44 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\print_btn[1].gif 1030 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\promo3;sz=300x50,300x100;kl=N;klg=en;kt=K;kga=-1;kgg=-1;kcr=us;dc_dedup=1;kmyd=ad_creative_5;tile=5;ord=5767237368255231[1] 382 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=2[1].txt 2029 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[10].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[1].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[2].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[3].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[4].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[5].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\bg-sub[1].gif 76 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\bg_essentials[1].jpg 8803 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\bg_left_rail08[1].gif 83 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\bg_orderToday2[1].jpg 23115 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\bhgpw41h[1].gif 517 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\bite[1].gif 1868 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\BlackRose[1].jpg 5709 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\blank[1].html 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\BLV_8695_BLV_Jubilee_XML_160x600_070909[1].swf 29613 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q520382895_864[1].jpg 2821 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q521832069_3451[1].jpg 2250 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q544129402_3078[1].jpg 2702 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q546359643_2343[1].jpg 2672 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q547687544_7[1].jpg 2121 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q548642242_4826[1].jpg 2324 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q554716878_4398[1].jpg 2660 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q555955932_5547[1].jpg 2610 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q561175426_5804[1].jpg 2854 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q564633948_7816[1].jpg 2349 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q564958288_8597[1].jpg 2369 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q565513615_9275[1].jpg 2666 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q570290919_4439[1].jpg 2857 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q571762823_4567[1].jpg 2744 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5573_113065604957_577544957_2248178_4033874_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5575_1212659834837_1179026896_661956_3089085_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5575_1212660074843_1179026896_661962_2110940_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5575_1212660194846_1179026896_661965_4001239_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5575_1212660314849_1179026896_661967_5878546_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5650_114146680932_555955932_2811649_7288132_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5650_114151580932_555955932_2811708_5477861_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5815_102739067625_568507625_1936926_834706_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5815_102739102625_568507625_1936932_3673678_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5889_1093620548501_1466160215_30256667_6005089_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1394754154_3393[1].jpg 2767 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1400602409_9093[1].jpg 2404 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1410558569_7041[1].jpg 2914 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q141401105_762[1].jpg 2603 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1426904950_6625[1].jpg 2385 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1437847214_5790[1].jpg 2821 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1452390256_9185[1].jpg 2353 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1458270049_6118[1].jpg 2380 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1462410089_2387[1].jpg 2325 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1466160118_6319[1].jpg 2757 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1466160126_8196[1].jpg 2167 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1466160159_6075[1].jpg 3037 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1466160166_1529[1].jpg 2340 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1466220165_3159[1].jpg 2500 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1467210186_6503[1].jpg 2055 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[5].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[6].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[7].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[8].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[9].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\home[1].htm 32281 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\hqdefault[1].jpg 7193 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\icn_loading_animated[1].gif 433 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ico-more[1].jpg 465 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002317078738_1_5c411533[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002320452100_1_64415434[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002335800637_1_8e4f58d3[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002335995637_1_36f89eb0[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002336043637_1_794c24e1[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002336085637_1_82a04646[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002336140637_1_7502b93c[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002336188637_1_332d2161[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002336320637_1_276a5b95[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002339250054_1_fff14337[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002346329415_1_ae2c8111[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002357303407_1_5e218897[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002358774780_1_82ec73d0[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524675111_767715111_8097019_8165275_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524715111_767715111_8097023_1655987_a[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524715111_767715111_8097023_1655987_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524760111_767715111_8097030_1007115_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524805111_767715111_8097037_4434841_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524845111_767715111_8097043_2026842_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524955111_767715111_8097053_5195322_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229525020111_767715111_8097061_1164502_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA04RWFC.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA0MIU2L.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA0O2ED9.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA12U4WI.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA1A256M.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA1XAU8O.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA31TF52.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA5F5K0T.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA5VEGR8.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA6SWP6L.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA7KDDA1.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA81XF03.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1475370126_30181132_3682[1].jpg 49129 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1521699345_3718[1].jpg 5620 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1644425648_2549[1].jpg 11675 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n505957317_307806_3878[1].jpg 39463 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n505957317_521935_7705[1].jpg 48810 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n505957317_521941_9712[1].jpg 42760 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n519018251_1077801_2855[1].jpg 53197 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\aol1[1].gif 1181 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_10538587062_8363[1].gif 89 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_11435051091_6752[1].gif 373 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_13686103426_2898[1].gif 218 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_18120686907_9436[1].gif 542 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_2413267546_6706[1].gif 316 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_2451352470_2812[1].gif 662 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_32061240133_2659[1].gif 609 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_63290659713_8426[1].gif 268 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_81708710756_8743[1].gif 653 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_2_98328272993_6698[1].gif 585 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q672392112_2738[1].jpg 2559 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q678659551_4269[1].jpg 2805 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q692964250_6566[1].jpg 2793 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q697866796_2908[1].jpg 2427 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q700481599_6949[1].jpg 2748 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q703304823_1361[1].jpg 2503 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q703676886_8109[1].jpg 2566 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q704399465_1374[1].jpg 2507 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q706499813_9975[1].jpg 2851 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q711537225_9406[1].jpg 2947 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q71210520_6688[1].jpg 2360 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q719339072_9537[1].jpg 2357 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q744715480_9254[1].jpg 2317 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q746003391_1910[1].jpg 2305 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4a85833d2f612190[2].png 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4a85833d2f612190[3].png 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5-yellow[1].gif 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5098_98053688356_776803356_1915767_285150_a[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5209_1213021968092_1305067063_30603983_1838728_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5209_1213028288250_1305067063_30603991_5400611_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5209_1213035768437_1305067063_30604070_2391399_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5209_1213035808438_1305067063_30604071_4205502_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5256_138778325883_822665883_3282456_4760784_a[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5331_108194523654_723018654_2092338_1530684_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5333_100534379957_577544957_2062650_5244235_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5333_101420133356_776803356_1965673_6413602_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5333_104956843356_776803356_2014476_6287796_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5448_1210759749344_1239255006_626991_1193011_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204303790143_1305067063_30574259_1187844_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204303790143_1305067063_30574259_1187844_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204303910146_1305067063_30574262_877902_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCANP70MU.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAOGUVRT.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAOVIPAJ.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAQ6JPQZ.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCARBDKNF.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAT6X84P.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCATBF0ZG.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCATXFZB0.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAU1324J.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAW4EJEY.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAWTM9A2.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAZRZE8K.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[10].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[11].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[1].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[2].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[3].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204310470310_1305067063_30574416_7337907_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204310590313_1305067063_30574419_4016583_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204310710316_1305067063_30574422_7117524_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5492_1187570136389_1442389968_30545380_2699008_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5533_105922203356_776803356_2031604_2427252_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5533_109023033356_776803356_2075957_2944836_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5569_134032739465_620169465_3083995_98846_t[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\dref=http%253A%252F%252Fview.atdmt.com%252FAPM%252Fiview%252F112458055%252Fdirect%253Bwi.160%253Bhi[1].600%252F01%253Fclick%253D 1309 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\e3gbrsv4[1].gif 876 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\e96ee57d1bd285fbfea42084c3ce24df[1].jpg 26426 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ebrzzx6x[1].js 15658 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\elt5b32h[1].js 51438 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\eqs1f6gb[1].css 5777 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ERVCAU9YD2WCA8GUDAXCAI37C94CAA4E1M7CAI5PUDLCACO90LWCANNKU0XCATCLKN7CAGKTZ34
CAOI915ZCAZ0AWTGCAMHRBS8CA1W9NFOCA3CH1ZOCADBFF5BCAM3S2VSCAG249EXCAY57QS5CA2G4F0CC
A4F847V 617 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\escyo1h9[1].css 3160 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ewtrack[1].gif 43 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\EWTRACK_TIME[1] 3 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ewtrack_v[1].gif 43 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1045385723_9816[1].jpg 2262 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1052115684_579[1].jpg 2886 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1058774828_9417[1].jpg 2536 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1067422915_16[1].jpg 2087 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1079054941_8047[1].jpg 2857 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1093684109_5804[1].jpg 2217 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1108029478_1242[1].jpg 2669 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1114183966_4959[1].jpg 2470 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1127687806_1486[1].jpg 2856 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1132641094_5459[1].jpg 2487 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1137644266_1378[1].jpg 2704 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1140934405_2937[1].jpg 2965 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1469700016_3535[1].jpg 2918 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1469700039_9440[1].jpg 2578 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1469700069_8138[1].jpg 2740 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1469700142_2502[1].jpg 2529 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1475370126_9823[1].jpg 2498 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1476017891_6845[1].jpg 2952 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1482300439_6356[1].jpg 2294 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1492795759_5806[1].jpg 2512 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1497552927_2853[1].jpg 2896 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1500077552_8168[1].jpg 2535 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1529025942_6203[1].jpg 2045 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1615998100_7742[1].jpg 2458 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ADSAdClient31[2].txt 2331 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ADSAdClient31[3].txt 2318 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ADSAdClient31[4].txt 2331 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ADSAdClient31[5].txt 2331 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ADSAdClient31[6].txt 2318 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ADSAdClient31[7].txt 2318 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ADSAdClient31[8].txt 2318 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ad_300x250[1].jpg 31137 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ad_call[1].js 13958 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\AFEFlash[1].txt 2 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ai08yvgx[1].js 4402 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ajtlz0ax[1].css 1014 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6340_1162916466483_1034979160_30499079_1880741_n[1].jpg 40969 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110545609773_691769773_2074273_2350459_n[1].jpg 61547 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110545639773_691769773_2074278_2448566_n[1].jpg 48485 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110545684773_691769773_2074285_4756124_n[1].jpg 53585 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110551334773_691769773_2074333_1495347_n[1].jpg 44486 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110551339773_691769773_2074334_6627894_n[1].jpg 47325 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110551364773_691769773_2074338_2107619_n[1].jpg 70673 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110551399773_691769773_2074343_5549505_n[1].jpg 63103 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110551444773_691769773_2074351_7089692_n[1].jpg 35813 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA9D2EGF.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAMJMEHT.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_manager[4].html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ico-phone-right[1].gif 433 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n100000105092349_3399[1].jpg 14418 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n562684973_791247_776[1].jpg 38041 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n747638297_541929_9010[1].jpg 62607 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[6].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1141094306_8875[1].jpg 2340 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1394320045_5447[1].jpg 2530 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\Q3_DAP3_General_TagCloud_160x600_v2[1].swf 44282 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q520273666_9793[1].jpg 2394 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q752168490_9719[1].jpg 1939 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1375808852_30072451_383[1].jpg 4145 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4186_81975079525_746574525_1659801_5567891_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4195_81979353654_723018654_1725727_1198873_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4195_82078288654_723018654_1727322_4508511_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4234_1063467634697_1466160213_30179684_8005613_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4234_1063474074858_1466160213_30179705_3198713_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4309_108988475408_646960408_3042255_1014846_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4515_86251327043_761522043_1777810_3297642_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4641_1066554711872_1466160159_30186887_5790953_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4829_91670019957_577544957_1924407_1585102_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4861_90883104509_561164509_1829374_5462052_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4885_1065133796775_1478910043_30166024_4304456_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4885_1065133836776_1478910043_30166025_3444140_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\4957_93085457765_504217765_1873259_4211308_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[1].gif 290 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[1].jpg 9279 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[1].png 909 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[2].gif 2783 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[2].png 1021 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[3].gif 111 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[3].png 9549 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[4].gif 2783 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[4].png 857 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[5].png 864 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\app_full_proxy[6].png 10508 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\background_orderOverlay[1].jpg 66927 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\banner[1].flv 469555 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\bg-list[1].gif 52 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6612_100366018939_572578939_2175199_3820620_s[1].jpg 5980 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6780_98387653356_776803356_1920351_2935611_n[1].jpg 110840 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6a78u3lf[1].gif 944 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6b4u92dm[1].gif 217 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\72vdou9e[1].js 9084 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\772244[1].xml 134 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\7els5bty[1].js 37762 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\8.9_RatedPromo145[1].jpg 16650 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\19b458a6096c36e949b0a3c9f3c8fda1[1].css 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\1edtzaqo[1].gif 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\200-1x1_tracking_pixel[1].gif 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\2009q3_Instinct_BTS_yearbook_160x600[1].swf 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\2009q3_PalmPre_value_trail_of_money_160x600[1].swf 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\243364_demi_lovato_here_we_go_again[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\26d2mc00[1].js 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\2837_1146810343652_1029331937_431928_4774353_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\2837_1146821743937_1029331937_431966_4775018_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\2fsstbex[1].gif 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\2w9t7hcs[1].js 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1008584410_177571_4105[1].jpg 39936 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1008584410_23152_1117[1].jpg 40412 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1008584410_243576_7471[1].jpg 29695 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1008584410_282918_6125[1].jpg 43976 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1008584410_606[1].jpg 11965 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1029331937_264454_4546[1].jpg 60796 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1029331937_268104_3738[1].jpg 59250 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1062291455_370979_2937713[1].jpg 77702 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1062291455_373349_6673792[1].jpg 71940 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1223760963_30097744_1403[1].jpg 67158 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1289280946_30103491_6248250[1].jpg 73187 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1289280946_30104473_3718430[1].jpg 63276 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1289280946_30107237_4231900[1].jpg 66077 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n1375808852_30072450_9745[1].jpg 41683 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search 569 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[10] 439 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[11] 492 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[1] 541 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[1].htm 29386 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[2] 588 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[3] 528 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[4] 683 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[5] 677 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[6] 84 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[7] 40 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[8] 667 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\search[9] 48 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\section_header_bg08[1].gif 1116 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\set_awesome[1].xml 4835 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q761522043_1719[1].jpg 2247 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q774068342_2298[1].jpg 2725 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q778670345_8323[1].jpg 2604 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q792708479_3740[1].jpg 2722 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q801058781_5616[1].jpg 2370 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q815265553_5739[1].jpg 2829 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q8214461_2918[1].jpg 1788 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q826384847_4788[1].jpg 2865 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q827319056_9123[1].jpg 2150 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q855044770_7207[1].jpg 2297 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\quant[1].swf 4698 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\read2[1].xml 871 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\redirectiframe[1].html 428 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\retailer_logoTarget[1].gif 1853 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q581400314_489[1].jpg 2603 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q593448742_235[1].jpg 1979 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q595488769_5608[1].jpg 2853 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q632827870_4738[1].jpg 2659 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q637263222_7868[1].jpg 2471 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q638901095_2602[1].jpg 2843 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q642518422_9699[1].jpg 2305 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q646140045_757[1].jpg 2494 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q654437871_4870[1].jpg 2087 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q655050764_9503[1].jpg 2461 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q656785443_5683[1].jpg 2171 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q659799255_4757[1].jpg 2703 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q662680606_7128[1].jpg 2690 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q665012027_6054[1].jpg 2329 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q665965594_1164[1].jpg 2210 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[7].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[8].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=5[9].txt 25 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\p_691769773=6[1].txt 107 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q100000013341248_6581[1].jpg 2441 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q100000105092349_3399[1].jpg 2616 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q100000132338355_7155[1].jpg 2627 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1000007113_942[1].jpg 3253 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1008584410_606[1].jpg 3058 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1034201217_1101[1].jpg 2638 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\Q3_DAP3_General_TagCloud_300x250_v2[1].swf 43866 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q503417686_9695[1].jpg 2855 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q504852080_749[1].jpg 2393 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q505244929_6879[1].jpg 2913 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q505709848_98[1].jpg 2921 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q506331271_1001[1].jpg 2635 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q507740652_453[1].jpg 2650 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q517842755_6707[1].jpg 2326 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\header-bg[1].jpg 20150 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\header_tastykake[1].gif 2489 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\here-we-go-again-lyrics-demi-lovato[1].htm 67157 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n767715111_3885993_5063[1].jpg 51546 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n767715111_3885999_7151[1].jpg 53511 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n767715111_4317105_2050[1].jpg 56436 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n776803356_4912[1].jpg 14050 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n801470127_5245660_3199[1].jpg 59763 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n801470127_5245699_5411[1].jpg 86858 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n826564816_513056_6271[1].jpg 45406 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\nfl[1].jpg 1085 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\NoHandsPkg_post_160x600_081309[1].swf 40831 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\opensearch[1] 555 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\orsted09ig[1].gif 6614 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1142498509_1908[1].jpg 2174 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1178962566_3997[1].jpg 2476 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1179026896_9674[1].jpg 1837 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1190057713_5572[1].jpg 2610 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1202553251_6518[1].jpg 2735 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1221101894_9678[1].jpg 2535 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1236573003_4210[1].jpg 2880 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1249523778_8452[1].jpg 2174 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1253026128_2518[1].jpg 2512 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1307084807_4141[1].jpg 2785 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1316921569_1321[1].jpg 2705 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002362011201_1_3889c309[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002370441181_1_7286620f[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6133_111174013356_776803356_2100734_2889231_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6133_111174018356_776803356_2100735_2722245_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6133_115723113356_776803356_2160601_7155867_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6133_115726978356_776803356_2160636_640794_a[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6133_115726983356_776803356_2160637_1267634_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6133_115726983356_776803356_2160637_1267634_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6133_117224858356_776803356_2177845_6940943_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6240_1164571666982_1008584410_493931_5703734_s[1].jpg 5082 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6240_1177016018083_1008584410_539354_2676974_n[1].jpg 33452 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6340_1162915906469_1034979160_30499065_7652949_n[1].jpg 39533 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6340_1162916306479_1034979160_30499075_1017658_n[1].jpg 82843 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204305070175_1305067063_30574291_182727_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204305430184_1305067063_30574300_5744579_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204306150202_1305067063_30574317_7404949_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204306630214_1305067063_30574328_2914177_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204306950222_1305067063_30574336_1873857_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204307230229_1305067063_30574342_4959197_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204307710241_1305067063_30574354_4250539_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204309270280_1305067063_30574388_4298543_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5489_1204309630289_1305067063_30574397_2553921_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\U7BCA7R9FVACA2CGQDHCA3G6ZOCCA77WT48CAG4LR9LCA8S1R0PCACO5LFUCAHT3QO0CAXY3D9W
CA1430SMCAAQMO31CAPBEOX4CABMJ4GQCA4R8ZEYCAIC4D70CAZFYMFSCAXJM73RCA8K9734CAPUNZE2C
AVD09BJ 592 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\viewChannelModule[1].act 75261 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\view_message_sm[1].gif 599 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\wanlib.as2[1].swf 28435 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\watch-vfl114641[1].swf 104230 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\wrapper[1].js 635 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\www-core-vfl114886[1].css 82450 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\www-core-vfl114917[1].js 84756 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5q6e3i19[1].js 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002239893175_1_fd080aa1[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002243831861_1_789d3f6a[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002282006558_1_61bf3db4[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002296240055_1_ccdfdbf2[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002302621757_1_88379c03[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6002312917896_1_744d7aa1[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1466130096_7986[1].jpg 5493 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1466160207_6256[1].jpg 5057 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1469700018_499[1].jpg 3489 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1469700020_30085768_9865[1].jpg 4690 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1475370126_30181130_452[1].jpg 4582 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1482300439_6356[1].jpg 4982 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s1624463698_2848[1].jpg 4779 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s197288695607_5258[1].jpg 3760 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s35346978792_5057[1].jpg 4089 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s504304368_7900[1].jpg 5040 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s538992478_1053[1].jpg 4570 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s550723277_1112[1].jpg 3425 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s553363250_3357[1].jpg 3620 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s571762823_1190551_4268[1].jpg 3929 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s6288882289_4085[1].jpg 4050 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s6330149914_1903[1].jpg 2147 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s691769773_2170[1].jpg 4277 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s697635094_5228[1].jpg 1897 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s703676886_8109[1].jpg 3471 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s758831031_9447[1].jpg 4588 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s831942698_213[1].jpg 5415 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\s9381385_3046[1].jpg 3720 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\safe_image[1].jpg 2363 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\schedules_off[1].png 700 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1617331120_7759[1].jpg 2551 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1624463698_2848[1].jpg 2730 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1626262705_9868[1].jpg 2953 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1657340129_2596[1].jpg 2277 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1672115884_5173[1].jpg 2621 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1730270535_9844[1].jpg 3213 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1768795265_5527[1].jpg 2141 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1808244423_4931[1].jpg 2725 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1813826341_2498[1].jpg 2692 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q35910339_8025[1].jpg 2404 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n562684973_914006_3988[1].jpg 53186 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n568916611_7057[1].jpg 12650 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n612185816_1886165_6770[1].jpg 36255 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n613523257_792293_7675[1].jpg 76560 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n662603923_689493_9515[1].jpg 65466 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n691769773_2170[1].jpg 11655 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n703676886_512338_4421[1].jpg 46972 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\n703676886_512339_3217[1].jpg 49434 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\expand_nor[1] 2864 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\explore_popular_music_videos-vfl62249[1].gif 203 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ey4r48w2[1].js 10708 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\FlashFBJS[1].swf 1342 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\flashwrite_1_2[1].js 801 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\fluid[1].htm 2486 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\follow_twitter[1].gif 5713 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1325322366_1945[1].jpg 2984 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1351376170_2333[1].jpg 2806 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1353410948_2547[1].jpg 2397 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1353486996_4477[1].jpg 2341 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1357610093_9000[1].jpg 2440 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1364776408_4375[1].jpg 2204 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1381194106_566[1].jpg 2490 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\q1385516589_5275[1].jpg 2188 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_105451674773_691769773_1998983_186155_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_105451694773_691769773_1998986_7269903_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_105451749773_691769773_1998991_5419646_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_105451779773_691769773_1998995_3006324_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_105451864773_691769773_1999006_4396571_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_105451899773_691769773_1999011_7753236_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_107687659773_691769773_2031318_1064175_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_108717284773_691769773_2045946_687760_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_108717309773_691769773_2045950_3775733_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_108724459773_691769773_2046049_7361948_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5934_108724479773_691769773_2046050_4979723_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\bullet-01[1].gif 161 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\bxu0g1qr[1].js 46605 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\c2[1].swf 35510 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ch 569 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\clientcide-trunk-812[1].js 8369 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\collapse_nor[1] 2869 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\community_off[1].png 694 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\cpm5flbg[1].js 39937 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\CSG_JJF_PMD_20090114_flowerPick_160x600_05-05-09[1].swf 42849 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\CSG_MWG_CSG_PJ_20090513_01_ChoiceIsYours2_160x600_5-21[1].swf 41035 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6532_101337336547619_100000140603911_39706_6484063_s[1].jpg 5543 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6532_101337336547619_100000140603911_39706_6484063_t[1].jpg 2552 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6532_101337343214285_100000140603911_39708_3447134_n[1].jpg 50214 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6532_101337349880951_100000140603911_39709_7410785_n[1].jpg 46537 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6532_101337349880951_100000140603911_39709_7410785_s[1].jpg 4569 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6532_101337686547584_100000140603911_39714_7834446_n[1].jpg 48532 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6532_101337686547584_100000140603911_39714_7834446_s[1].jpg 3711 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976314773_691769773_2080403_3111988_n[1].jpg 72637 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976329773_691769773_2080406_3810878_s[1].jpg 4653 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976339773_691769773_2080408_7916444_s[1].jpg 4554 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976354773_691769773_2080411_155950_n[1].jpg 49717 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976369773_691769773_2080414_1575518_n[1].jpg 54046 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976379773_691769773_2080415_6353298_n[1].jpg 43899 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976389773_691769773_2080417_596277_s[1].jpg 4924 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976404773_691769773_2080419_6843953_n[1].jpg 60159 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976404773_691769773_2080419_6843953_s[1].jpg 5360 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6340_1162916426482_1034979160_30499078_2453694_s[1].jpg 5557 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6414_110976294773_691769773_2080399_578240_a[1].jpg 8342 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\8.9_RatedPromo640[1].jpg 158064 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ADSAdClient31[1].txt 2318 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\border[1].swf 50429 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\down-lyrics[1].jpg 1499 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\ewtrack_v[2].gif 43 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\footer_esrb[1].png 3526 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\hd_title_logo[1].png 5259 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\6133_116736853356_776803356_2172669_2270905_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCA9OUTOE.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAA8M1NT.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAAKVCUU.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCACRNOFV.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCACTI3FZ.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCADVHA2R.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAE0JGFC.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAEJH7I8.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAFBKHLO.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAFU8N3M.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAG27VN2.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAI1GD57.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAJV4TCI.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCAK0VDIK.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\history_managerCALGV0IW.html 581 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229512620111_767715111_8096748_2793202_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524530111_767715111_8096997_5621164_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524555111_767715111_8097001_2487681_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524565111_767715111_8097002_6524129_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524590111_767715111_8097005_8066998_s[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524610111_767715111_8097008_3536180_n[1].jpg 0 bytes
File C:\Documents and Settings\Kids\Local Settings\Temporary Internet Files\Content.IE5\Q0J20DS8\5972_229524625111_767715111_8097011_847131_n[1].jpg 0 bytes

---- EOF - GMER 1.0.15 ----

THANKS

#6 CatByte

CatByte

    Classroom Administrator

  • Classroom Admin
  • 21,060 posts
  • MVP

Posted 04 November 2009 - 05:46 PM

Hi,

I don't see any obvious signs of Malware in those logs, but we can do a couple of scans to be certain.

Please do the following:

  • Please open your MalwareBytes AntiMalware Program
  • Click the Update Tab and search for updates
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish, so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected. <-- very important
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.

Extra Note:If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.



NEXT

Using Internet Explorer or Firefox, visit Kaspersky On-line Scanner

1. Click Accept, when prompted to download and install the program files and database of malware definitions.
2. To optimize scanning time and produce a more sensible report for review:
  • Close any open programs
  • Turn off the real time scanner of any existing antivirus program while performing the online scan
3. Click Run at the Security prompt.
The program will then begin downloading and installing and will also update the database.
Please be patient as this can take quite a long time to download.
  • Once the update is complete, click on My Computer under the green Scan bar to the left to start the scan.
  • Once the scan is complete, it will display if your system has been infected. It does not provide an option to clean/disinfect. We only require a report from it.
  • Do NOT be alarmed by what you see in the report. Many of the finds have likely been quarantined.
  • Click View scan report at the bottom.

    Posted Image
  • Click the Save as Text button to save the file to your desktop so that you may post it in your next reply

Microsoft MVP 2010, 2011, 2012, 2013, 2014, 2015


#7 anirishfool

anirishfool

    Authentic Member

  • Authentic Member
  • PipPip
  • 22 posts

Posted 07 November 2009 - 05:39 PM

I ran the MBAM scan and the log is below. I can't seem to get Kapersky to finish. I've run the scan multiple times, but it takes so long I always have to walk away. When I return, I have always found my machine locked up. I have to shut down with the Off button. I've seen it get to 86%, but never finished. Malwarebytes' Anti-Malware 1.38 Database version: 2340 Windows 5.1.2600 Service Pack 3 11/4/2009 11:05:17 PM mbam-log-2009-11-04 (23-05-17).txt Scan type: Quick Scan Objects scanned: 188918 Time elapsed: 1 hour(s), 53 minute(s), 35 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 1 Files Infected: 8 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: C:\Program Files\Gamevance (Adware.Gamevance) -> Quarantined and deleted successfully. Files Infected: c:\program files\gamevance\ars.cfg (Adware.Gamevance) -> Quarantined and deleted successfully. c:\program files\gamevance\gamevance32.exe (Adware.Gamevance) -> Quarantined and deleted successfully. c:\program files\gamevance\gamevancelib32.dll (Adware.Gamevance) -> Quarantined and deleted successfully. c:\program files\gamevance\gvtl.dll (Adware.Gamevance) -> Quarantined and deleted successfully. c:\program files\gamevance\gvun.exe (Adware.Gamevance) -> Quarantined and deleted successfully. c:\program files\gamevance\icon.ico (Adware.Gamevance) -> Quarantined and deleted successfully. c:\program files\alchemyext.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully. c:\program files\slapi.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.

#8 CatByte

CatByte

    Classroom Administrator

  • Classroom Admin
  • 21,060 posts
  • MVP

Posted 07 November 2009 - 06:09 PM

Hi,

Try this scanner instead:

Go here to run an online scanner from ESET.

  • Note: You will need to use Internet explorer for this scan
  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activeX control to install
  • Click Start
  • Make sure that the option Remove found threats is unticked and the Scan Archives option is ticked.
  • Click on Advanced Settings, ensure the options Scan for potentially unwanted applications, Scan for potentially unsafe applications, and Enable Anti-Stealth Technology are ticked.
  • Click Scan
  • Wait for the scan to finish
  • Use notepad to open the logfile located at C:\Program Files\Eset\Eset Online Scanner\log.txt
  • Copy and paste that log as a reply to this topic and also let me know how things are now.

Microsoft MVP 2010, 2011, 2012, 2013, 2014, 2015


#9 anirishfool

anirishfool

    Authentic Member

  • Authentic Member
  • PipPip
  • 22 posts

Posted 09 November 2009 - 08:48 PM

Got the blue screen of death on the first scan. Tried another scan and got this:

Attached Thumbnails

  • eset_error.jpg


#10 CatByte

CatByte

    Classroom Administrator

  • Classroom Admin
  • 21,060 posts
  • MVP

Posted 10 November 2009 - 07:00 AM

Hi,

Please run this tool instead:

Please click here to download AVP Tool by Kaspersky.
  • Save it to your desktop.
  • Reboot your computer into SafeMode.

    You can do this by restarting your computer and continually tapping the F8 key until a menu appears.
    Use your up arrow key to highlight SafeMode then hit enter
    .

  • Double click the setup file to run it.
  • Click Next to continue.
  • It will by default install it to your desktop folder. Click Next.
  • Hit OK at the prompt for scanning in Safe Mode.
  • It will then open a box. There will be a tab that says Automatic scan.
  • Under Automatic scan make sure these are checked.

  • System Memory
  • Startup Objects
  • Disk Boot Sectors.
  • My Computer.
  • Also any other drives (Removable that you may have)


  • Then click on Scan at the top right hand Corner.
  • It will automatically Neutralize any objects found.
  • If some objects are left unneutralized then click the button that says Neutralize all
  • If it says it cannot be Neutralized then choose the delete option when prompted.
  • After that is done click on the reports button at the bottom and save it to file, name it Kas.
  • Save it to your desktop and just post only the detected Virus\malware in the report it will be at the very top under Detected post those results in your next reply.

    Note: This tool will self uninstall when you close it so please save the log before closing it.


Microsoft MVP 2010, 2011, 2012, 2013, 2014, 2015


#11 anirishfool

anirishfool

    Authentic Member

  • Authentic Member
  • PipPip
  • 22 posts

Posted 10 November 2009 - 09:06 PM

Downloading the program from http://devbuilds.kas...builds/AVPTool/

Your link was dead.

Stand by for results.

#12 CatByte

CatByte

    Classroom Administrator

  • Classroom Admin
  • 21,060 posts
  • MVP

Posted 11 November 2009 - 07:17 AM

Thank-you for the new link :) (they keep changing them on us :blush: )

Microsoft MVP 2010, 2011, 2012, 2013, 2014, 2015


#13 anirishfool

anirishfool

    Authentic Member

  • Authentic Member
  • PipPip
  • 22 posts

Posted 11 November 2009 - 07:23 PM

Roadblocks, Roadblocks. When I reboot and choose 'safe mode', the directory scrolls down to a file called agpCPQ.sys I've tried and waited several times, but to no avail. Now I'm getting a security message that one of my files is corrupt and unreadable, and it is suggested that I run the chkdsk utility. I've done that, but the file is still corrupt.

#14 CatByte

CatByte

    Classroom Administrator

  • Classroom Admin
  • 21,060 posts
  • MVP

Posted 11 November 2009 - 07:30 PM

Do you have your XP Disk?

If you do boot into the recovery console and type fixboot at the C:\ prompt

Microsoft MVP 2010, 2011, 2012, 2013, 2014, 2015


#15 CatByte

CatByte

    Classroom Administrator

  • Classroom Admin
  • 21,060 posts
  • MVP

Posted 17 November 2009 - 01:30 PM

Due to inactivity this topic will be closed. If you need help please start a new thread.

Microsoft MVP 2010, 2011, 2012, 2013, 2014, 2015

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users