Gå til innhold

monnea

Medlemmer
  • Innlegg

    4
  • Ble med

  • Besøkte siden sist

Innlegg skrevet av monnea

  1. Lag en HJT-logg også  :thumbup:

    8509454[/snapback]

     

     

    ok, her er den:

     

    Logfile of HijackThis v1.99.1

    Scan saved at 11:09:31, on 01.05.2007

    Platform: Windows XP SP2 (WinNT 5.01.2600)

    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

     

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\system32\csrss.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\WINDOWS\system32\msdtc.exe

    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

    C:\WINDOWS\system32\drivers\CDAC11BA.EXE

    C:\WINDOWS\eHome\ehRecvr.exe

    C:\WINDOWS\eHome\ehSched.exe

    C:\WINDOWS\system32\ezNTSvc.exe

    C:\WINDOWS\System32\svchost.exe

    C:\Program Files\Common Files\LightScribe\LSSrvc.exe

    C:\Norman\Bin\Zanda.exe

    C:\WINDOWS\system32\nvsvc32.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\ehome\mcrdsvc.exe

    C:\WINDOWS\system32\mqsvc.exe

    C:\Program Files\Windows Media Player\WMPNetwk.exe

    C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe

    C:\WINDOWS\system32\mqtgsvc.exe

    C:\WINDOWS\system32\dllhost.exe

    C:\Norman\Nvc\bin\nvcoas.exe

    C:\Norman\bin\NJEEVES.EXE

    C:\Norman\Nvc\BIN\NVCSCHED.EXE

    C:\Norman\Nvc\BIN\nipsvc.exe

    C:\WINDOWS\System32\alg.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\Explorer.EXE

    C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe

    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe

    C:\WINDOWS\system32\RUNDLL32.EXE

    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

    C:\Program Files\HP\QuickPlay\QPService.exe

    C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

    C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe

    C:\WINDOWS\system32\wbem\wmiprvse.exe

    C:\Program Files\QuickTime\qttask.exe

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Norman\bin\ZLH.EXE

    C:\WINDOWS\system32\ctfmon.exe

    C:\Program Files\MSN Messenger\MsnMsgr.Exe

    C:\Program Files\Windows Media Player\WMPNSCFG.exe

    C:\Norman\Nvc\BIN\NIP.EXE

    C:\Norman\Nvc\bin\cclaw.exe

    C:\Documents and Settings\Kristi Lund Skorpen\Programdata\Libendo\LibendoAutologin.exe

    C:\Program Files\iPod\bin\iPodService.exe

    C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe

    C:\Program Files\MSN Messenger\usnsvc.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Hijackthis\HijackThis.exe

     

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startsida.no/

    R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (file missing)

    F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\ezShellStart.exe

    O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (file missing)

    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll

    O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe

    O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe

    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /nodetect

    O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll

    O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

    O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"

    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

    O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start

    O4 - HKLM\..\Run: [Cpqset] C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe

    O4 - HKLM\..\Run: [RecGuard] C:\Windows\SMINST\RecGuard.exe

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

    O4 - HKLM\..\Run: [My Web Search Bar] rundll32 C:\PROGRA~1\MYWEBS~1\bar\1.bin\MWSBAR.DLL,S

    O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe

    O4 - HKLM\..\Run: [Norman ZANDA] C:\Norman\bin\ZLH.EXE /LOAD /SPLASH

    O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe

    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe

    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

    O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe

    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

    O4 - HKCU\..\Run: [uniblue Registry Booster2] C:\Program Files\Uniblue\RegistryBooster2\RegistryBooster.exe /S

    O4 - Startup: QuickLibendo.lnk = C:\Documents and Settings\Kristi Lund Skorpen\Programdata\Libendo\LibendoAutologin.exe

    O4 - Global Startup: HP Photosmart Premier Hurtigstart.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe

    O4 - Global Startup: Hurtigstart for Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

    O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...?p=ZJxdm130YYNO

    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm

    O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

    O8 - Extra context menu item: Åpne i ny bakgrunnsflik - res://C:\Program Files\Windows Live Toolbar\Components\nb-no\msntabres.dll.mui/229?d699b19240f94c1fb11a3d2a4dd7ce37

    O8 - Extra context menu item: Åpne i ny forgrunnsflik - res://C:\Program Files\Windows Live Toolbar\Components\nb-no\msntabres.dll.mui/230?d699b19240f94c1fb11a3d2a4dd7ce37

    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

    O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/f...tup1.0.0.15.cab

    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab

    O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab

    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

    O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe

    O23 - Service: Automatisk LiveUpdate-planlegging - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

    O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE

    O23 - Service: EasyBits Magic Desktop Services for Windows NT (ezntsvc) - EasyBits Software Corp. - C:\WINDOWS\system32\ezNTSvc.exe

    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

    O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE

    O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\Norman\Nvc\BIN\nipsvc.exe

    O23 - Service: Norman NJeeves - Unknown owner - C:\Norman\bin\NJEEVES.EXE

    O23 - Service: Norman ZANDA - Unknown owner - C:\Norman\Bin\Zanda.exe

    O23 - Service: Norman Virus Control on-access component (nvcoas) - Norman ASA - C:\Norman\Nvc\bin\nvcoas.exe

    O23 - Service: Norman Virus Control Scheduler (NVCScheduler) - Norman Data Defense Systems - C:\Norman\Nvc\BIN\NVCSCHED.EXE

    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

  2. Hei monnea, velkommen til forumet

     

    Se om du kan avinstallere CiD help  fra legg til/fjern programmer (kontrollpanelet)

     

    Klikk: Start -> Kjør

    Skriv: C:\WINDOWS\system32\drivers\etc . Klikk OK.

    Dobbeltklikk på hosts-filen, og velg å åpne i notisblokk.

    Fjern, hvis tilstede, alle linjer med ## added by CiD

    Du skal i utg.pkt kun ha ei linje der det står: 127.0.0.1 localhost

    Etter at du har fjernet aktuelle linjer, klikker du Fil->Lagre.

     

    Last ned SAS (Free), installer og oppdater. Kjør en full scan.

     

    Hent Hijackthis, legg det i en egen mappe på skrivebordet. Start programmet, velg "Do a system scan and save a logfile". Loggfilen kopierer du og poster sammen med loggen fra SAS (preferences->statistics/logs).

    8505871[/snapback]

     

     

    Hei Takk for svar så fort :)

    Her er den ene loggen:

     

     

     

    Generated 04/30/2007 at 06:24 PM

     

    Application Version : 3.7.1018

     

    Core Rules Database Version : 3227

    Trace Rules Database Version: 1238

     

    Scan type : Quick Scan

    Total Scan Time : 00:24:02

     

    Memory items scanned : 569

    Memory threats detected : 0

    Registry items scanned : 918

    Registry threats detected : 18

    File items scanned : 33174

    File threats detected : 143

     

    Adware.Lop-Gen

    [License Name Send Rule] C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\KIND UP LICENSE NAME\TIME TEAM.EXE

    C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\KIND UP LICENSE NAME\TIME TEAM.EXE

    C:\DOCUMENTS AND SETTINGS\JONNY BRAVO\LOCAL SETTINGS\TEMP\BIS2A.EXE

    C:\DOCUMENTS AND SETTINGS\JONNY BRAVO\PROGRAMDATA\ADMIN TITLE EQ\2BAGSEACH.EXE

    C:\DOCUMENTS AND SETTINGS\JONNY BRAVO\PROGRAMDATA\ADMIN TITLE EQ\AUDIO MEET BASH.EXE

    C:\DOCUMENTS AND SETTINGS\JONNY BRAVO\PROGRAMDATA\ADMIN TITLE EQ\BYTEKINDCDROMPING.EXE

    C:\DOCUMENTS AND SETTINGS\JONNY BRAVO\PROGRAMDATA\ADMIN TITLE EQ\YIEHOSUY.EXE

    C:\WINDOWS\Prefetch\TIME TEAM.EXE-327F602E.pf

     

    Adware.MyWebSearch

    HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00A6FAF1-072E-44cf-8957-5838F569A31D}

    HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}

    HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}

    HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\InprocServer32

    HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\InprocServer32#ThreadingModel

    HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\Programmable

    C:\PROGRAM FILES\MYWEBSEARCH\SRCHASTT\1.BIN\MWSSRCAS.DLL

    HKU\S-1-5-21-1666358975-1978045887-2689376846-1005\Software\Microsoft\Internet Explorer\URLSearchHooks#{00A6FAF6-072E-44cf-8957-5838F569A31D}

    HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}

    HKCR\CLSID\{00A6FAF6-072E-44cf-8957-5838F569A31D}

    HKCR\CLSID\{00A6FAF6-072E-44cf-8957-5838F569A31D}\InprocServer32

    HKCR\CLSID\{00A6FAF6-072E-44cf-8957-5838F569A31D}\InprocServer32#ThreadingModel

    HKCR\CLSID\{00A6FAF6-072E-44cf-8957-5838F569A31D}\Programmable

    HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}

    HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\InprocServer32

    HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\InprocServer32#ThreadingModel

    HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\Programmable

    HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\TypeLib

     

     

    C:\Documents and Settings\gurotu\Cookies\gurotu@2o7[2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@advertising[2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@atdmt[2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@casalemedia[2].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@cassava[1].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@doubleclick[1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@elitespill[1].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@fastclick[2].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@hitbox[1].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@maxserving[1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@mywebsearch[1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@partypoker[1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@questionmarket[1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@serving-sys[1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][1].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@tradedoubler[2].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@tribalfusion[2].txt

    C:\Documents and Settings\gurotu\Cookies\[email protected][2].txt

    C:\Documents and Settings\gurotu\Cookies\gurotu@zedo[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@2o7[2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@adtech[2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@advertising[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@atdmt[2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@azjmp[2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@casalemedia[2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@cassava[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@doubleclick[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@elitespill[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@fastclick[2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@mywebsearch[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@partypoker[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@serving-sys[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@smileycentral[2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@toplist[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny [email protected][2].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@tradedoubler[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@tribalfusion[1].txt

    C:\Documents and Settings\jonny bravo\Cookies\jonny bravo@valueclick[1].txt

     

     

    Er dette nok, eller må du ha den andre også?

×
×
  • Opprett ny...