SEARCH

The How-To Geek Forums Have Migrated to Discourse

How-To Geek Forums / Windows 7

Successfully blocked access to a potentially malicious website.

(28 posts)
  • Started 1 year ago by DJDraven
  • Latest reply from mfletch
  • Topic Viewed 4106 times

DJDraven
Posts: 10

I have a custom made desktop that I got about 5 years or so ago. I have been getting this message in the lower right of the screen that says successfully blocked access to a potentially malicious website. Each time it does it it has a different address to a different website. Ever since this has happened my computer has gotten slower. I have tried Malwarebytes full scan on every drive. I have tried TDSSKiller, ESET online scanner, CCleaner, nCleaner, Spybot-S&D, SpywareBlaster, SpeedUpMyPC and ComboFix. It still has not fixed it. I have noticed it mainly does it when I open vuze. Any help would be greatly appreciated.

Posted 1 year ago
Top
 
gedstar
gedstar
Posts: 521

Have you tried this http://www.superantispyware.com/
You could try un-installing Vuze, Bittorrent software is not the safest of apps to use.

Posted 1 year ago
Top
 
DJDraven
Posts: 10

Here is my Malwarebytes Log.

11/23/2012 11:18:10 PM
mbam-log-2012-11-23 (23-18-10).txt

Scan type: Full scan (A:\|C:\|D:\|E:\|F:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 334811
Time elapsed: 1 hour(s), 45 minute(s), 25 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 31
HKCR\CLSID\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoods.funmoodsHlpr.1 (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoods.funmoodsHlpr (PUP.Funmoods) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\CLSID\{75A4D144-506D-4BE5-81DB-EC7DA1E7F840} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\TypeLib\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\esrv.funmoodsESrvc.1 (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\esrv.funmoodsESrvc (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\CLSID\{965B9DBE-B104-44AC-950A-8A5F97AFF439} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\escort.escortIEPane.1 (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\escort.escortIEPane (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\CLSID\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoods.dskBnd.1 (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoods.dskBnd (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\CLSID\{A9DB719C-7156-415E-B49D-BAD039DE4F13} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoodsApp.appCore.1 (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoodsApp.appCore (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\f (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\Typelib\{1D085C0A-E4F4-4F66-BDBF-4BE51015BFC3} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C87FC351-A80D-43E9-9A86-CF1E29DC443A} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCU\Software\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh (PUP.Funmoods) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh (PUP.Funmoods) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\funmoods (PUP.FunMoods) -> Quarantined and deleted successfully.

Registry Values Detected: 2
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Data: Funmoods Toolbar -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Data: -> Quarantined and deleted successfully.

Registry Data Items Detected: 2
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (Hijack.StartPage) -> Bad: (http://searchfunmoods.com/?f=1&a=download&chnl=download&cd=2XzuyEtN2Y1L1QzutDtDtC0F0CyC0C0AtB0A0A0ByEtDzz0EtN0D0Tzu0CtAtBzztN1L2XzutBtFtBtFtDtFtAyEyE&cr=1828208232) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.FunMoods) -> Bad: (http://searchfunmoods.com/?f=1&a=download&chnl=download&cd=2XzuyEtN2Y1L1QzutDtDtC0F0CyC0C0AtB0A0A0ByEtDzz0EtN0D0Tzu0CtAtBzztN1L2XzutBtFtBtFtDtFtAyEyE&cr=1828208232) Good: (http://www.google.com) -> Quarantined and repaired successfully.

Folders Detected: 3
C:\Program Files\Funmoods (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22 (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\bh (PUP.FunMoods) -> Quarantined and deleted successfully.

Files Detected: 16
C:\Program Files\Funmoods\1.5.23.22\bh\escort.dll (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\funmoodssrv.exe (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\escorTlbr.dll (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\escortApp.dll (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\escortEng.dll (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\Program Files\PrivacySafeGuard\PrivacySafeGuard-x64.dll (PUP.PrivacySafeGuard) -> Quarantined and deleted successfully.
C:\Users\NikonDJ84\Desktop\Core Temp\coretemp_1236.exe (PUP.BundleOffers.IIQ) -> Quarantined and deleted successfully.
C:\Users\NikonDJ84\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bbjciahceamgodcoidkjpchnokgfpphh_0.localstorage (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\Users\NikonDJ84\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bbjciahceamgodcoidkjpchnokgfpphh_0.localstorage (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\Users\NikonDJ84\AppData\Local\funmoods.crx (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\Users\NikonDJ84\Local Settings\Application Data\funmoods.crx (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\escortShld.dll (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\FavIcon.ico (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\Sqlite3.dll (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\uninst.dat (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\Program Files\Funmoods\1.5.23.22\uninstall.exe (PUP.FunMoods) -> Quarantined and deleted successfully.

(end)

Posted 1 year ago
Top
 
GuiltySpark
GuiltySpark
Posts: 4024

Get rid of nCleaner and SpeedUpMyPC as these will not help things.

The toolbars you had 'FunMoods', would have come from sites like Uniblue which is a big Don't Go Area!!!

What program is telling you that a site is malicious ?

Posted 1 year ago
Top
 
vistamike
vistamike
Posts: 10945

DJDraven, Hi.

Funmoods, and PUP (potentially unwanted software) is showing. I would reboot your machine and rerun Mbam. This sort of stuff need to be cleaned from your machine.

Please also run gedstar's suggestion http://www.superantispyware.com/

Also, think about untrusted sharing sites, Vuze, and rubbish like nCleaner and SpeedUpMyPC (uninstall them)

Could you post a screenshot of your installed programs? We can then tell you how to get rid of the wonky ones.

Mike

Posted 1 year ago
Top
 
Xhi
Xhi
Posts: 6298

If you have CCleaner. Tools -> Uninstall at the bottom right make a text file list and post it. Possibly easier than posting a picture.

Posted 1 year ago
Top
 
StringJunky
StringJunky
Posts: 2454

As an exercise, I deliberately installed Funmoods and proceeded to to try to get rid of it but couldn't...it kept popping back in the registry after rebooting. There is a file somewhere that keeps it alive. I re-imaged.

Posted 1 year ago
Top
 
Straspey
Straspey
Posts: 556

@ DJDraven

That message you are receiving is a result of the "Malicious Website Blocking" feature of Malwerebytes Anti-Malware.

It's designed to protect you from connecting with websites which might be (or are known to be) malicious - in that you could be in danger of being infected with a virus, malware, etc.

I occasionally receive the exact same message - and unless I'm absolutely 110% positively sure that the site I'm trying to access is safe, I will allow MBAM to block the connection.

Open the main window MBAM and click on the PROTECTION tab.

You will see an option to "Enable Malicious Website Blocking"

Having that option checked will turn on this feature, which results in those messages you receive.
You can choose to un-check that option - however you do so at your own risk, and personally, I strongly
urge against turning it off.

Hopefully though this will help with your issue.

Posted 1 year ago
Top
 
vistamike
vistamike
Posts: 10945

Tony, the Funmoods toolbar is really intrusive, did you find it revo, as a toolbar with the rest of the invasive stuff, toolbar addon crap

Posted 1 year ago
Top
 
vistamike
vistamike
Posts: 10945

as an install

Posted 1 year ago
Top
 
StringJunky
StringJunky
Posts: 2454

Yeah I installed it. I tried everything Mike I could think of...even looking for all the reg entries using search function. I even used a toolbar remover which cleared it's registry entries but on reboot those entries came back...can't find the tool now. It's harder than Babylon. Might have another go with Funmoods soon.

Posted 1 year ago
Top
 
GuiltySpark
GuiltySpark
Posts: 4024

Tony,

Next time you give it a try, turn off System Restore (obviously make an image first) and see if it comes back after that.

Posted 1 year ago
Top
 
StringJunky
StringJunky
Posts: 2454

GS

OK.

Posted 1 year ago
Top
 
DJDraven
Posts: 10

So here is my SuperAntiSpyware completed scan log.

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 11/26/2012 at 03:03 AM

Application Version : 5.6.1014

Core Rules Database Version : 9635
Trace Rules Database Version: 7447

Scan type : Complete Scan
Total Scan Time : 05:40:43

Operating System Information
Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Limited User

Memory items scanned : 584
Memory threats detected : 0
Registry items scanned : 38876
Registry threats detected : 0
File items scanned : 40626
File threats detected : 172

Adware.Tracking Cookie
core.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\GRSCSZWA ]
core.saymedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\GRSCSZWA ]
www.googleadservices.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.kontera.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.fastclick.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.a1.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.247realmedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.247realmedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.realmedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.estat.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.xiti.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.adtechus.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
7.rotator.wigetmedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
7.rotator.wigetmedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
7.rotator.wigetmedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.rambler.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.otclick-adv.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
count.rbc.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.tns-counter.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.yadro.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.engine.rbc.medialand.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.medialand.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.medialand.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.rambler.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.lucidmedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.intermundomedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.intermundomedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ad.mlnadvertising.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.mtvn.112.2o7.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.yieldmanager.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ar.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.interclick.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.bs.serving-sys.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.ads.pointroll.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.hdtracks.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.hdtracks.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.hdtracks.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
www.hdtracks.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.stat.adlabs.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.go.underclick.ru [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.dmtracker.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.martiniadnetwork.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.martiniadnetwork.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.martiniadnetwork.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.saymedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.saymedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.tribalfusion.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.saymedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
a.intentmedia.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.tacoda.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.network.realmedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
network.realmedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.mm.chitika.net [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\NIKONDJ84\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\2APRDO0S.DEFAULT\COOKIES.SQLITE ]

Posted 1 year ago
Top
 
DJDraven
Posts: 10

Here are my installed Programs. You will notice I removed Vuze, SpeedupmyPC, and nCleaner.

Posted 1 year ago
Top
 
DJDraven
Posts: 10

Posted 1 year ago
Top
 
Hermitt
Hermitt
Posts: 1310

It would be wise to uninstall one of your anti-virus programs because one will conflict with the other.
I would uninstall Ad-Aware antivirus and keep Avast!

Jim

Posted 1 year ago
Top
 
DJDraven
Posts: 10

As you can see the full scan I did turned up nothing and this was after I restarted the computer. But the computer continues to run slow. Also the successfully blocked message appears now when I attempt to use the website MRTZCMP3. Which is a site I pay for.

Malwarebytes Anti-Malware (Trial) 1.65.1.1000
www.malwarebytes.org

Database version: v2012.11.25.01

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
NikonDJ84 :: NIKONDJ84-PC [administrator]

Protection: Enabled

11/26/2012 4:58:40 AM
mbam-log-2012-11-26 (04-58-40).txt

Scan type: Full scan (A:\|C:\|D:\|E:\|F:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 329516
Time elapsed: 2 hour(s), 55 minute(s), 11 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

Posted 1 year ago
Top
 
StringJunky
StringJunky
Posts: 2454

If you've had that OS running since you got it it's probably a good idea to reinstall it.

Posted 1 year ago
Top
 
mfletch
mfletch
Posts: 1434

Hi can you please give us a list of all the programs that start at start-up

Use Ccleaner/ Tools/Start-up

Take a snap shot of the programs and post it back on here.

StringJunky

Try running this AdwCleaner http://www.bleepingcomputer.co.....dwcleaner/

Posted 1 year ago
Top
 



Topic Closed

This topic has been closed to new replies.

Enter Your Email Here to Get Access for Free:

Go check your email!