PUM.Bad.Proxy / Registery Value Infected

Page 2 of 2 Previous  1, 2

View previous topic View next topic Go down

Solved PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Sun 20 Nov 2011, 12:47 pm

First topic message reminder :

I was having a problem with computer freezing and at the time it did not have a virus. I was getting help in another forum. Now I have a virus and scanned with Malwarebytes. They advised me to get help with this problem before proceeding. Please advise. Thank you.

Malwarebytes' Anti-Malware 1.51.2.1300
[You must be registered and logged in to see this link.]

Database version: 8197

Windows 6.0.6002 Service Pack 2 (Safe Mode)
Internet Explorer 8.0.6001.19154

11/19/2011 8:33:36 PM
mbam-log-2011-11-19 (20-33-36).txt

Scan type: Quick scan
Objects scanned: 157617
Time elapsed: 4 minute(s), 10 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer (PUM.Bad.Proxy) -> Value: ProxyServer -> Quarantined and deleted successfully.

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down


Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Wed 30 Nov 2011, 3:37 am

Well, after over an hour of scanning Eset it crashed again. Did Rkill again and the scan came up = processess terminated by RKill : c:\windows\System32\grpconv.exe
Going to try to Eset scan again.
UPDATE: IT IS NOW 9:43 pm and I am still trying to Eset scan after all day. It does not seem to complete through the scan. I am going to give up now.Can I try something else? Let me know your thoughts.

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Superdave on Thu 01 Dec 2011, 6:33 am

Please try the Kaspersky scanner.

Superdave
Tech Staff


Tech Staff

Posts : 4193
Joined : 2010-02-01
Operating System : Windows 8.1 and a dual-boot with XP Home SP3

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Thu 01 Dec 2011, 12:13 pm

Kaspersky website link is invalid. says 404 Error Can I go to another site?

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Superdave on Thu 01 Dec 2011, 1:36 pm

That's weird. Let's try this just to see if we can get something to work.

Please download Malwarebytes Anti-Malware from here.
Double Click mbam-setup.exe to install the application.

  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Full Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • Please save the log to a location you will remember.
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the entire report in your next reply.

Extra Note:

If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.

Superdave
Tech Staff


Tech Staff

Posts : 4193
Joined : 2010-02-01
Operating System : Windows 8.1 and a dual-boot with XP Home SP3

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Fri 02 Dec 2011, 11:33 am

Malware did scan. Results are as follows.
Malwarebytes' Anti-Malware 1.51.2.1300
[You must be registered and logged in to see this link.]

Database version: 8281

Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.19154

12/1/2011 1:07:23 AM
mbam-log-2011-12-01 (01-07-23).txt

Scan type: Full scan (C:\|D:\|)
Objects scanned: 308987
Time elapsed: 1 hour(s), 53 minute(s), 45 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Superdave on Sat 03 Dec 2011, 6:14 am

Let's see if this will work.

Scan your computer with Panda ActiveScan

* Once you are on the Panda site click the Scan your PC now button.
* A new window will open...click the Scan Now button.
* If it wants to install an ActiveX component allow it.
* It will start downloading the files it requires for the scan. (Note: It may take a couple of minutes)
* You may get a warning from Internet Explorer that Panda is ready to install, please allow it.
* The scan will begin. Please be patient as it can take an hour or more to complete.
* When the scan completes, if anything malicious is detected, click the Export to: button (looks like a little Notepad).
* Save the ActiveScan.txt to a convenient location like your desktop.
* Note: You do not need to select any of the Disinfect options. We will remove any threats manually.

* Post the contents of the ActiveScan report in your next reply.

Superdave
Tech Staff


Tech Staff

Posts : 4193
Joined : 2010-02-01
Operating System : Windows 8.1 and a dual-boot with XP Home SP3

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Sun 04 Dec 2011, 2:29 pm

Tried to scan the Panda Active Scan several times and it did scan to 25% and it showed 216 infected files. After that it froze up and had to shut down. \Not sure what I should do next.

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Superdave on Mon 05 Dec 2011, 5:39 am

Save these instructions so you can have access to them while in Safe Mode.

Please click here to download AVP Tool by Kaspersky.

  • Save it to your desktop.
  • Reboot your computer into SafeMode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight SafeMode then hit enter.
  • Double click the setup file to run it.
  • Click Next to continue.
  • Accept the License agreement and click on next.
  • It will, by default, install it to your desktop folder. Click Next.
  • It will then open a box There will be a tab that says Automatic scan.
  • Under Automatic scan make sure these are checked.

  • Hidden Startup Objects
  • System Memory
  • Disk Boot Sectors.
  • My Computer.
  • Also any other drives (Removable that you may have)

Leave the rest of the settings as they appear as default.
•Then click on Scan at the to right hand Corner.
•It will automatically Neutralize any objects found.
•If some objects are left un-neutralized then click the button that says Neutralize all
•If it says it cannot be neutralized then choose the delete option when prompted.
•After that is done click on the reports button at the bottom and save it to file name it Kas.
•Save it somewhere convenient like your desktop and just post only the detected Virus\malware in the report it will be at the very top under Detected post those results in your next reply.

Note: This tool will self uninstall when you close it so please save the log before closing it.

Superdave
Tech Staff


Tech Staff

Posts : 4193
Joined : 2010-02-01
Operating System : Windows 8.1 and a dual-boot with XP Home SP3

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Tue 06 Dec 2011, 9:13 am

WOW!! Finally a full scan after a safemode scan of Kaspersky AVP, which by the way did not show any threats at all. Below is Panda Scan. I think we had a breakthrough!!! I am so happy
Thank you for all your help!

;***********************************************************************************************************************************************************************************
ANALYSIS: 2011-12-05 17:06:59
PROTECTIONS: 1
MALWARE: 21
SUSPECTS: 0
;***********************************************************************************************************************************************************************************
PROTECTIONS
Description Version Active Updated
;===================================================================================================================================================================================
Kaspersky Internet Security Yes Yes
;===================================================================================================================================================================================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===================================================================================================================================================================================
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\3car7rur.txt
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\9qw8hr93.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\h8tradfy.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\i79oe0dg.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\fc9t76ma.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\1cyzfr24.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\e6mlcw36.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\xl9d7eg1.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\cwe0qad0.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\nhhk9ww8.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\xwp4qn6w.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\p7h5w5q0.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\8xqq58p2.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\pzw1ukop.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\icfi80x2.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\q4crq6i2.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\7262m3x1.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\5gk1tfhc.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\sczboun4.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\se0klt09.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\sm7d2waz.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\zdnxn6zz.txt
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\21y6yc14.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\9fi5seip.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\0wap7zz1.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\76ybej3c.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\iysezxn7.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\j6ddaqt3.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\jcxxeu3a.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\1kt1glbi.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\1r1py0vz.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\1u32tp0u.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\jp9lb0mf.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\g7yqhtrn.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\l318koof.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\noz5kn0e.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\fa8h79xy.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\lxp7154q.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\xq1qmm44.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\dxfvz68b.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\d4s5d65a.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\meywl0h8.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\3q7x691q.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\402un1n3.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\0hnpf0b4.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\cwlszfh3.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\4zgg7vc4.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\dzphpsup.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\en0jjgye.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\no6r4vdi.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\aupdyv3g.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\5zj7nrwk.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\hvsex3eg.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\numy5snj.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\an5j8knb.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\nyxggb2d.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\a7n8nwcp.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\6ou98rop.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\6q5blf5r.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\6u5uarmx.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\6w1wfq6d.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\a23pr33s.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\p35cdo7x.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\03s833z7.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\9rf3rapy.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\78kakx3n.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\7hy9nvbt.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\98nw2kws.txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\vx8w7bzs.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\q0bf4u6h.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\hkfsoo0t.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\vit99kk8.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\0znjp4qs.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\8dtannk8.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\icypsmkj.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\8tm7vefh.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\gsfekngj.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\7fldjfrl.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\9bqoyekc.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\lqe50sxs.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\9mo76ga1.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\fsej58dk.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\190qvs6y.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\76nsy4f6.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\0jeolf7z.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\p0quu9tv.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\a1mw867e.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ql7426h7.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\rj1k3849.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\hymd93jc.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ofgzddfe.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\6kdpx7do.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\nvjq323o.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\rla5j892.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\6e8f9ok3.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\68iav3a4.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\5ny0mtux.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\26adn073.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\g2zv4tvq.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\bw0wd3aj.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\knwsk24x.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\coevz1rk.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\up49vp7r.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\4nhnp4j5.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\uwzfaq79.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\d2idoa31.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\m4s4nxh5.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\0j42tjdl.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\dpz7v39i.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\dvj2xr5d.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\t5nhvs0w.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\tekc6n08.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ecd5c66n.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\2c62afvf.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\2eoje79c.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\lp8lf4l3.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\lbz7g4jl.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\2twyatww.txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\fdt1cjrv.txt
00145405 Cookie/RealMedia TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\u9rmvf4h.txt
00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\19f0fr11.txt
00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\edcoqqo2.txt
00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\pg2748cj.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\nkixa5h5.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ju4l28jo.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\vcz03tj4.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\rwo8wdrr.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\yyjkzcg0.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\x3e9ccq4.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\tm0eny81.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\w7j6cjjr.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ik0hymzu.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\pfzrqvga.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\71unynln.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\i59ntl7q.txt
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\06v7d4k1.txt
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\atq5bfsa.txt
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\oxxktr5t.txt
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\7lz26vqi.txt
00167642 Cookie/Com.com TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\fia91yoz.txt
00167647 Cookie/Yadro TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\kgi9k4ac.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\i6shform.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\5cfu4zp0.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\qov9oq02.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\gzfujv5w.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\taugvb6j.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\6w4xrwsi.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\31hswtgc.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\tlmomwjb.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\87kzqbnr.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\xzh8tdqu.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\8dd160cc.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\tqf29vq2.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\bvn87cjt.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\1133qfdg.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\un3zoa6q.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\k64rp7co.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\0pvgx395.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\cw3k0dlh.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\g0o2erjz.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\al2i8mec.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\fvmkgd4k.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\f0kmc70r.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\wbb60jb4.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\lk1zdiud.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\04s0govm.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ei7wr1ao.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\w02h9k6j.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\d054bt0p.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\mpmgr69r.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\snr35wfk.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\hxnmondi.txt
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\s7o8qown.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\mpnybr3x.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\eluqqtui.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\aq9b19v2.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\kz27337n.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\k8o60p02.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\cvkn3dbf.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\afgqjgru.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ulj4pun1.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\9z2ktf3s.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\jq0o21uh.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\gh58yfsr.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\paowpe66.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\8hrvu9ix.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\gmxt9lmc.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\gr12qlx0.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\yrnfhwu1.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\a9bar2be.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\qif5v2o6.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\z29sidov.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\gwll5n1y.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\zl1go99w.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\t8ae2dmy.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\33vez2y6.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\7ij9z0h9.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\cctwv31i.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\saqacose.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\i0j68jt2.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\4e2dousf.txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\skrpoz3t.txt
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\0iycb32q.txt
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\iq2q166d.txt
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\g6yvl0vn.txt
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\wyo6215n.txt
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\59d20qvg.txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\6fzmnx51.txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\f0mm3xry.txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\9n9fxuiv.txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\izumnchh.txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\q40s610h.txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\btsa2f5b.txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\y2ohsl0l.txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\hqd5xdwx.txt
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ntm7wd12.txt
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\kbge3zmx.txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\abalqkn0.txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ivfc57zy.txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\w5em8lkk.txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\7k2ib53r.txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\p8xvmjfa.txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\9td2bt7h.txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\09hhu359.txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\2zgjac2t.txt
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\hntd5k2e.txt
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\7d03vgdj.txt
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\d40wjb7z.txt
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\bbgmqq02.txt
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\nz3by7n6.txt
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\hmmm519f.txt
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\3h03xzmx.txt
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\xlabkxf7.txt
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\vx92572r.txt
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\6ljcmtcg.txt
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\gewlv3lv.txt
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\qlwxj4oz.txt
00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\in1dz45b.txt
00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\aibbcen3.txt
00325830 Cookie/Bridgetrack TrackingCookie No 0 Yes No c:\users\samara\appdata\roaming\microsoft\windows\cookies\low\ldbx8p5a.txt
;===================================================================================================================================================================================
SUSPECTS
Sent Location
;===================================================================================================================================================================================
;===================================================================================================================================================================================
VULNERABILITIES
Id Severity Description
;===================================================================================================================================================================================
;===================================================================================================================================================================================

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Superdave on Tue 06 Dec 2011, 10:10 am

Please give me an update. What's working and what's not working? Can you run any of the scans?

Superdave
Tech Staff


Tech Staff

Posts : 4193
Joined : 2010-02-01
Operating System : Windows 8.1 and a dual-boot with XP Home SP3

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Tue 06 Dec 2011, 1:17 pm

I just ran Kaspersky Virus Removal Tool and last time I checked it was at 75%. Then I checked again and it was running chk disc. Windows gave me this pop up below, but it seems to be running fine now. It is just slow starting up and Kaspersky has these pop ups now saying continue with installation and popups saying uninstall in a black screen, and it keeps saying low disk space when it is not.
Below is the Windows pop up:
Problem signature:
Problem Event Name: BlueScreen
OS Version: 6.0.6002.2.2.0.768.2
Locale ID: 1033

Additional information about the problem:
BCCode: 1a
BCP1: 00000030
BCP2: 893E73E8
BCP3: A4D7E000
BCP4: 9B1F8158
OS Version: 6_0_6002
Service Pack: 2_0
Product: 768_1

Files that help describe the problem:
C:\Windows\Minidump\Mini120511-02.dmp
C:\Users\samara\AppData\Local\temp\WER-223752-0.sysdata.xml
C:\Users\samara\AppData\Local\temp\WER4172.tmp.version.txt

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Superdave on Tue 06 Dec 2011, 1:42 pm

Clean out your temporary internet files and temp files.

Download TFC by OldTimer to your desktop.

Double-click TFC.exe to run it.

Note: If you are running on Vista, right-click on the file and choose Run As Administrator

TFC will close all programs when run, so make sure you have saved all your work before you begin.

* Click the Start button to begin the cleaning process.
* Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two.
* Please let TFC run uninterrupted until it is finished.

Once TFC is finished it should restart your computer. If it does not, please manually restart the computer yourself to ensure a complete cleaning.
**************************************************
StartupLite

Download StartupLite by MalwareBytes to your Desktop.
Doubleclick StartupLite.exe to launch the program.
Ensure the Disable box is checked.
Click Continue.
A pop up message will tell you the unecessary startup items in your list have been disabled and ask you to restart your computer.
Re-start your computer.

Superdave
Tech Staff


Tech Staff

Posts : 4193
Joined : 2010-02-01
Operating System : Windows 8.1 and a dual-boot with XP Home SP3

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Tue 06 Dec 2011, 3:53 pm

OK, I have completed the downloads and it seems to be running great.... until I installed IE9. I tried looking for it in the uninstall programs on the control panel but it was not there. Nor was the IE8 which I had before.
I would just like to go back to the IE8 like it was. How do I find it to uninstall? I do not know what I was thinking!
Thank you for all your hard work and it is greatly appreciated !!!
One last question please... when booting up it still takes long to get to the desktop. Which services or startup items do i omit so they do not load during start up? They are all checked now.

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Superdave on Wed 07 Dec 2011, 7:39 am

until I installed IE9. I tried looking for it in the uninstall programs on the control panel but it was not there.
What happened with IE9?

I would just like to go back to the IE8 like it was. How do I find it to uninstall? I do not know what I was thinking!
You would be better off with IE9. Malware and viruses just love out-of-date programs.
If you really want to go back to IE8 here's how to do it.
Could you please try to run ESET or Kaspersky on-line scanner?


One last question please... when booting up it still takes long to get to the desktop. Which services or startup items do i omit so they do not load during start up? They are all checked now. .
How much time are talking about? My Xp computer needs at least 10 mins. before I really start working with it. All the upgrades start coming in at each boot and it really ties up the machine so I've gotten in the habit of turning it on about 15 mins. before I'm ready to use it.
If you followed the directions for StartUpLite it will do it automatically for you.

Superdave
Tech Staff


Tech Staff

Posts : 4193
Joined : 2010-02-01
Operating System : Windows 8.1 and a dual-boot with XP Home SP3

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Thu 08 Dec 2011, 2:07 am

Well, I am back to square one. As I was getting on GeekPolice this morning, my Kaspersky found a virus. After that it went back to the same way it was acting before. I can not even do a Kaspersky Virus Scan in normal mode. I am doing it now in Safe Mode. Will get back with you after the scan.

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Sun 11 Dec 2011, 8:10 am

Well, I gave in and let a computer friend of mine wipe it clean. It just was taking to long to fix and my daughter had to take it back to college. Thank you for all your help!!! Please mark this problem as solved.

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Superdave on Sun 11 Dec 2011, 1:08 pm

I'm sorry it had to come to that. Cleaning a computer on-line can be a lengthy process depending on the amount of infections.

Superdave
Tech Staff


Tech Staff

Posts : 4193
Joined : 2010-02-01
Operating System : Windows 8.1 and a dual-boot with XP Home SP3

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Vista on Mon 12 Dec 2011, 12:34 am

One more question, Super Dave. My son came home from college yesterday and informed me his Dell Inspriion lap top /w/ Vistawill not work. When you boot it up a white screen comes up automaticly.... can not even get it to Safe Mode. Also he said a computer guy at school wiped it clean for him and after that it did not work properly. My question finally is... which fourem do I go to get this resolved or is it a hardware issue? Thanks again for all your help!!!!

Vista

Senior Surfer
Senior Surfer

Posts : 341
Joined : 2009-02-13
Operating System : Windows 8

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Superdave on Mon 12 Dec 2011, 5:23 am

Vista wrote:One more question, Super Dave. My son came home from college yesterday and informed me his Dell Inspriion lap top /w/ Vistawill not work. When you boot it up a white screen comes up automaticly.... can not even get it to Safe Mode. Also he said a computer guy at school wiped it clean for him and after that it did not work properly. My question finally is... which fourem do I go to get this resolved or is it a hardware issue? Thanks again for all your help!!!!
If it was re-formatted it could be something went wrong with the format or it could be a hardware issue. You could start a thread in the software forum to get started.

Superdave
Tech Staff


Tech Staff

Posts : 4193
Joined : 2010-02-01
Operating System : Windows 8.1 and a dual-boot with XP Home SP3

View user profile

Back to top Go down

Solved Re: PUM.Bad.Proxy / Registery Value Infected

Post by Sponsored content Today at 10:58 am


Sponsored content


Back to top Go down

Page 2 of 2 Previous  1, 2

View previous topic View next topic Back to top


 
Permissions in this forum:
You cannot reply to topics in this forum