Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

windows explorer (windows vista) virus


  • Please log in to reply

#1
anniefannie49

anniefannie49

    New Member

  • Member
  • Pip
  • 1 posts
I have a few issues. 1) windows will not update. An error will show up saying "windows explorer stopped working" nne will open new window that says to update windows but when you click on link it only shuts down again. 2) you can not open the control panel or any of those windows yet I can open internet explorer. 3) when I start my computer a networking file pops up saying it can't open from this area for "status.msi". I downloaded OTL and here is theh info. Thank you.

OTL logfile created on: 5/10/2011 11:17:45 AM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\ANNIE\Desktop
Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 41.00% Memory free
4.00 Gb Paging File | 2.00 Gb Available in Paging File | 57.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 137.18 Gb Total Space | 68.53 Gb Free Space | 49.96% Space Free | Partition Type: NTFS
Drive D: | 11.87 Gb Total Space | 1.85 Gb Free Space | 15.58% Space Free | Partition Type: NTFS

Computer Name: HOME-PC | User Name: ANNIE | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/05/10 11:16:56 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\ANNIE\Desktop\OTL.exe
PRC - [2011/04/26 12:52:16 | 000,060,488 | ---- | M] (White Sky, Inc.) -- C:\Program Files\Constant Guard Protection Suite\IDVaultSvc.exe
PRC - [2011/04/26 12:52:10 | 003,220,040 | ---- | M] (White Sky, Inc.) -- C:\Program Files\Constant Guard Protection Suite\IDVault.exe
PRC - [2011/03/30 11:37:47 | 000,235,168 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashUtil10o_ActiveX.exe
PRC - [2011/03/03 19:02:16 | 000,393,992 | ---- | M] (StrikeForce Technologies Inc.) -- C:\Program Files\SFT\GuardedID\GIDD.exe
PRC - [2011/02/17 06:21:58 | 002,190,688 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgtray.exe
PRC - [2011/02/15 05:38:06 | 007,421,280 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
PRC - [2011/02/11 06:25:52 | 001,080,672 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgnsx.exe
PRC - [2011/02/10 07:55:18 | 001,148,256 | ---- | M] () -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
PRC - [2011/02/08 05:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgwdsvc.exe
PRC - [2011/02/08 05:33:20 | 000,658,784 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgrsx.exe
PRC - [2011/02/08 05:32:52 | 001,025,376 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgemcx.exe
PRC - [2011/02/08 05:32:48 | 000,351,072 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgcsrvx.exe
PRC - [2011/02/08 05:32:46 | 000,656,736 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgchsvx.exe
PRC - [2010/10/17 02:58:02 | 000,546,192 | ---- | M] (Oberon Media ) -- C:\Program Files\GamesBar\SearchEngineProtection.exe
PRC - [2010/03/15 10:09:11 | 000,117,640 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Security Suite\Engine\3.8.0.41\ccSvcHst.exe
PRC - [2009/08/19 10:25:52 | 001,589,208 | ---- | M] () -- C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpy.exe
PRC - [2009/06/17 10:49:44 | 000,616,408 | ---- | M] () -- C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe
PRC - [2008/10/28 23:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/05/15 07:13:08 | 000,032,838 | ---- | M] (MyWebSearch.com) -- C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
PRC - [2008/05/15 07:13:08 | 000,028,739 | ---- | M] (MyWebSearch.com) -- C:\Program Files\MyWebSearch\bar\1.bin\MWSSVC.EXE
PRC - [2008/05/15 07:13:08 | 000,024,688 | ---- | M] (MyWebSearch.com) -- C:\Program Files\MyWebSearch\bar\1.bin\M3SRCHMN.EXE
PRC - [2008/04/24 14:26:18 | 000,202,560 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
PRC - [2008/04/24 14:25:22 | 000,202,560 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe
PRC - [2007/09/26 13:55:04 | 000,283,912 | ---- | M] (CA, Inc.) -- C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe
PRC - [2007/09/15 01:29:10 | 000,102,400 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPStart.exe


========== Modules (SafeList) ==========

MOD - [2011/05/10 11:16:56 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\ANNIE\Desktop\OTL.exe
MOD - [2010/08/31 08:39:57 | 001,684,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18523_none_5cdd65e20837faf2\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - [2011/04/26 12:52:16 | 000,060,488 | ---- | M] (White Sky, Inc.) [Disabled | Running] -- C:\Program Files\Constant Guard Protection Suite\IDVaultSvc.exe -- (IDVaultSvc)
SRV - [2011/02/15 05:38:06 | 007,421,280 | ---- | M] (AVG Technologies CZ, s.r.o.) [Disabled | Running] -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/02/08 05:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Disabled | Running] -- C:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2010/03/15 10:09:11 | 000,117,640 | R--- | M] (Symantec Corporation) [Disabled | Running] -- C:\Program Files\Norton Security Suite\Engine\3.8.0.41\ccSvcHst.exe -- (N360)
SRV - [2009/06/17 10:49:44 | 000,616,408 | ---- | M] () [Disabled | Running] -- C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe -- (AntiSpywareService)
SRV - [2009/03/03 14:53:08 | 000,033,176 | ---- | M] (NOS Microsystems Ltd.) [Disabled | Stopped] -- C:\Program Files\NOS\bin\getPlus_HelperSvc.exe -- (getPlus® Helper) getPlus®
SRV - [2008/05/15 07:13:08 | 000,028,739 | ---- | M] (MyWebSearch.com) [Disabled | Running] -- C:\Program Files\MyWebSearch\bar\1.bin\MWSSVC.EXE -- (MyWebSearchService)
SRV - [2008/04/24 14:26:18 | 000,202,560 | ---- | M] (SupportSoft, Inc.) [Disabled | Running] -- C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe -- (sprtsvc_ddoctorv2) SupportSoft Sprocket Service (ddoctorv2)
SRV - [2008/01/19 00:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007/09/26 13:55:04 | 000,283,912 | ---- | M] (CA, Inc.) [Disabled | Running] -- C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe -- (ITMRTSVC)
SRV - [2007/03/05 11:30:06 | 000,110,592 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Disabled | Stopped] -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe -- (Com4Qlb)


========== Driver Services (SafeList) ==========

DRV - [2011/03/30 17:16:52 | 000,134,480 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2011/03/03 19:02:34 | 000,025,232 | ---- | M] (StrikeForce Technologies, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\gidv2.sys -- (GIDv2)
DRV - [2011/03/01 14:25:18 | 000,034,896 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2011/02/22 08:12:38 | 000,022,992 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2011/02/10 07:54:00 | 000,296,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2011/02/10 07:53:30 | 000,028,624 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2011/02/10 07:53:28 | 000,024,144 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2011/01/19 04:32:56 | 000,032,464 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2011/01/07 06:41:46 | 000,248,656 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2010/10/13 12:59:29 | 000,353,840 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20101015.005\IDSvix86.sys -- (IDSVix86)
DRV - [2010/05/26 01:00:00 | 000,371,248 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2010/05/26 01:00:00 | 000,102,448 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2010/03/15 10:09:56 | 000,124,976 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2010/03/15 10:09:13 | 000,482,432 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\Drivers\N360\0308000.029\ccHPx86.sys -- (ccHP)
DRV - [2010/03/15 10:09:13 | 000,310,320 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\system32\drivers\N360\0308000.029\SYMEFA.SYS -- (SymEFA)
DRV - [2010/03/15 10:09:13 | 000,308,272 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\Drivers\N360\0308000.029\SRTSP.SYS -- (SRTSP)
DRV - [2010/03/15 10:09:13 | 000,259,632 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\Drivers\N360\0308000.029\BHDrvx86.sys -- (BHDrvx86)
DRV - [2010/03/15 10:09:13 | 000,217,136 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\Drivers\N360\0308000.029\SYMTDI.SYS -- (SYMTDI)
DRV - [2010/03/15 10:09:13 | 000,089,904 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\N360\0308000.029\SYMFW.SYS -- (SYMFW)
DRV - [2010/03/15 10:09:13 | 000,048,688 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\N360\0308000.029\SYMNDISV.SYS -- (SYMNDISV)
DRV - [2010/03/15 10:09:13 | 000,043,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\system32\drivers\N360\0308000.029\SRTSPX.SYS -- (SRTSPX) Symantec Real Time Storage Protection (PEL)
DRV - [2010/03/15 10:09:13 | 000,025,648 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\SymIMV.sys -- (SymIM)
DRV - [2008/12/04 03:42:00 | 007,606,688 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2008/01/18 22:53:22 | 000,031,616 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (winusb)
DRV - [2007/12/14 13:48:16 | 000,005,120 | ---- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rcmirror.sys -- (rcmirror)
DRV - [2007/09/09 15:12:28 | 000,176,640 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDART.sys -- (HdAudAddService)
DRV - [2007/07/11 11:30:22 | 000,007,168 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqRemHid.sys -- (HpqRemHid)
DRV - [2007/07/10 07:27:56 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2007/06/18 18:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV - [2007/05/30 16:40:42 | 000,735,232 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2007/03/21 23:02:04 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2007/03/06 19:15:58 | 001,059,112 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVENETFD)
DRV - [2007/02/24 15:42:22 | 000,039,936 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2007/02/16 14:50:32 | 000,012,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvsmu.sys -- (nvsmu)
DRV - [2007/01/23 17:40:20 | 000,042,496 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.co...q={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com/...042&form=ZGAPHP
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.comcast.net?cid=010211
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (MyWebSearch.com)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = :0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Web Search"
FF - prefs.js..browser.search.defaulturl: "http://www.google.co...-8&oe=UTF-8&q="
FF - prefs.js..browser.search.selectedEngine: "Web Search"
FF - prefs.js..browser.startup.homepage: "http://start.pogo.ip...lay.com/?o=shp"

FF - HKLM\software\mozilla\Firefox\Extensions\\{7BA52691-1876-45ce-9EE6-54BCB3B04BBC}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn\ [2010/10/23 13:47:03 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\SiteRanker\firefox\ [2010/08/13 12:29:01 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG10\Firefox\ [2011/05/08 11:44:18 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG10\Firefox4\ [2011/05/08 11:46:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\ProgramDataMozilla\Extensions\[email protected] [2011/05/10 10:29:02 | 000,000,000 | ---D | M]

[2010/08/13 12:27:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ANNIE\AppData\Roaming\Mozilla\Firefox\Profiles\fema62t1.default\extensions
[2008/06/13 11:25:58 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Users\ANNIE\AppData\Roaming\Mozilla\Firefox\Profiles\fema62t1.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2010/07/15 09:20:09 | 000,000,000 | ---D | M] (Big Fish Games Toolbar) -- C:\Users\ANNIE\AppData\Roaming\Mozilla\Firefox\Profiles\fema62t1.default\extensions\{6847DFAE-037A-400c-A524-27F0A281B692}
[2010/02/01 14:01:42 | 000,000,000 | ---D | M] (eGames Toolbar) -- C:\Users\ANNIE\AppData\Roaming\Mozilla\Firefox\Profiles\fema62t1.default\extensions\{b2b46577-0217-4ec5-a467-7a1e8d0d7b71}
[2010/08/13 12:27:44 | 000,000,000 | ---D | M] ("Inbox Toolbar") -- C:\Users\ANNIE\AppData\Roaming\Mozilla\Firefox\Profiles\fema62t1.default\extensions\[email protected]
[2009/10/29 05:48:00 | 000,000,690 | ---- | M] () -- C:\Users\ANNIE\AppData\Roaming\Mozilla\Firefox\Profiles\fema62t1.default\searchplugins\egames.xml
[2008/06/13 11:45:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2008/06/13 10:35:02 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
File not found (No name found) -- C:\PROGRA~1\MOZILL~1\EXTENSIONS\[email protected]
File not found (No name found) -- C:\PROGRA~1\MOZILL~1\EXTENSIONS\[email protected]
[2008/05/15 07:13:08 | 000,024,684 | ---- | M] (MyWebSearch.com) -- C:\Program Files\Mozilla Firefox\plugins\NPMyWebS.dll

O1 HOSTS File: ([2006/09/18 14:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (MyWebSearch Search Assistant BHO) - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (MyWebSearch.com)
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - File not found
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: () - {11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5} - C:\Program Files\SiteRanker\SiteRank.dll (Crawler, LLC)
O2 - BHO: (Updater For Comcast Toolbar 3.5) - {164d3751-cac6-4a6d-becd-ea67df61d232} - C:\Program Files\comcasttb\auxi\comcastAu.dll (Visicom Media)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Comcast Toolbar 3.5) - {4E77EDAD-9566-4089-88D1-C81498CEE770} - C:\Program Files\comcasttb\comcasttb.dll (Visicom Media Inc)
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Security Suite\Engine\3.8.0.41\CoIEPlg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Security Suite\Engine\3.8.0.41\IPSBHO.dll (Symantec Corporation)
O2 - BHO: (Comcast Toolbar) - {79CEEA4E-C231-4614-9E3B-53B2A02F39B7} - C:\Program Files\comcasttb\comcastdx.dll ()
O2 - BHO: (Search Toolbar) - {9D425283-D487-4337-BAB6-AB8354A81457} - C:\Program Files\Search Toolbar\SearchToolbar.dll ()
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.)
O2 - BHO: (GamesBarBHO Class) - {CB0D163C-E9F4-4236-9496-0597E24B23A5} - C:\Program Files\GamesBar\2.0.1.73\oberontb.dll (Oberon Media Ltd.)
O2 - BHO: (Inbox Toolbar) - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - C:\Program Files\Inbox Toolbar\Inbox.dll (Inbox.com, Inc.)
O2 - BHO: (no name) - MRI_DISABLED - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Comcast Toolbar 3.5) - {4E77EDAD-9566-4089-88D1-C81498CEE770} - C:\Program Files\comcasttb\comcasttb.dll (Visicom Media Inc)
O3 - HKLM\..\Toolbar: (GamesBar) - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - C:\Program Files\GamesBar\2.0.1.73\oberontb.dll (Oberon Media Ltd.)
O3 - HKLM\..\Toolbar: (Comcast Toolbar) - {79CEEA4E-C231-4614-9E3B-53B2A02F39B7} - C:\Program Files\comcasttb\comcastdx.dll ()
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security Suite\Engine\3.8.0.41\CoIEPlg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (Search Toolbar) - {9D425283-D487-4337-BAB6-AB8354A81457} - C:\Program Files\Search Toolbar\SearchToolbar.dll ()
O3 - HKLM\..\Toolbar: (&Inbox Toolbar) - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - C:\Program Files\Inbox Toolbar\Inbox.dll (Inbox.com, Inc.)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - File not found
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - No CLSID value found.
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [hpqSRMon] File not found
O4 - HKLM..\Run: [TaskTray] File not found
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktopCleanupWizard = 1
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll (Google Inc.)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll (Sun Microsystems, Inc.)
O9 - Extra 'Tools' menuitem : GamesBar - {1A93C934-025B-4c3a-B38E-9654A7003239} - Reg Error: Value error. File not found
O9 - Extra Button: HP Smart Select - {58ECB495-38F0-49cb-A538-10282ABF65E7} - Reg Error: Value error. File not found
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: ([]msn in Computer)
O15 - HKCU\..Trusted Ranges: Range1 ([http] in Local intranet)
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} http://ak.exe.imgfar...etup1.0.1.0.cab (Reg Error: Key error.)
O16 - DPF: {74E4A24D-5224-4F05-8A41-99445E0FC22B} http://www.gamehouse...se/ghplayer.cab (GameHouse Games Player)
O16 - DPF: {74EF5274-F439-2168-B543-14745B625C72} http://www.gamehouse...eddingDash2.cab (CPlayFirstWeddingDasControl Object)
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} http://www.worldwinn...ed/wwlaunch.cab (Wwlaunch Control)
O16 - DPF: {8F6E7FB2-E56B-4F66-A4E1-9765D2565280} http://www.worldwinn....0/iewwload.cab (WorldWinner ActiveX Launcher Control)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.ma...r/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {97438FE9-D361-4279-BA82-98CC0877A717} http://www.worldwinn...cubis/cubis.cab (Cubis Control)
O16 - DPF: {BA35B9B8-DE9E-47C9-AFA7-3C77E3DDFD39} http://www.worldwinn...ly/monopoly.cab (Monopoly Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.87.69.150 68.87.85.102
O18 - Protocol\Handler\inbox {37540F19-DD4C-478B-B2DF-C19281BCAF27} - C:\Program Files\Inbox Toolbar\Inbox.dll (Inbox.com, Inc.)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\symres {AA1061FE-6C41-421f-9344-69640C9732AB} - C:\Program Files\Norton Security Suite\Engine\3.8.0.41\CoIEPlg.dll (Symantec Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007/12/05 21:36:21 | 000,000,074 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2005/09/11 08:18:54 | 000,000,340 | -HS- | M] () - D:\AUTOMODE -- [ NTFS ]
O33 - MountPoints2\{db6bbd3a-eeef-11dc-b7ec-001e681c3e31}\Shell - "" = AutoRun
O33 - MountPoints2\{db6bbd3a-eeef-11dc-b7ec-001e681c3e31}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/05/10 11:16:53 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\ANNIE\Desktop\OTL.exe
[2011/05/10 10:30:14 | 000,000,000 | ---D | C] -- C:\Users\ANNIE\Documents\DriverPerformer
[2011/05/10 10:29:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Performer
[2011/05/10 10:29:03 | 000,000,000 | ---D | C] -- C:\Program Files\Search Toolbar
[2011/05/10 10:29:03 | 000,000,000 | ---D | C] -- C:\Program Files\Driver-Soft
[2011/05/10 10:29:00 | 000,000,000 | ---D | C] -- C:\ProgramDataMozilla
[2011/05/10 10:19:00 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2011/05/10 09:18:45 | 000,000,000 | ---D | C] -- C:\ProgramData\IsolatedStorage
[2011/05/10 09:18:45 | 000,000,000 | ---D | C] -- C:\Users\ANNIE\AppData\Local\ID Vault
[2011/05/10 09:18:13 | 000,000,000 | ---D | C] -- C:\Users\ANNIE\AppData\Roaming\ID Vault
[2011/05/10 09:17:51 | 000,025,232 | ---- | C] (StrikeForce Technologies, Inc.) -- C:\Windows\System32\drivers\gidv2.sys
[2011/05/10 09:17:43 | 000,000,000 | ---D | C] -- C:\ProgramData\GID
[2011/05/10 09:17:36 | 000,000,000 | ---D | C] -- C:\Program Files\SFT
[2011/05/10 09:17:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ID Vault
[2011/05/10 09:17:16 | 000,000,000 | ---D | C] -- C:\Program Files\Constant Guard Protection Suite
[2011/05/10 09:17:08 | 000,000,000 | ---D | C] -- C:\ProgramData\White Sky, Inc
[2011/05/09 03:10:41 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/05/08 12:20:13 | 000,000,000 | -H-D | C] -- C:\$AVG
[2011/05/08 11:48:42 | 000,000,000 | ---D | C] -- C:\Users\ANNIE\AppData\Roaming\AVG10
[2011/05/08 11:47:11 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2011/05/08 11:46:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2011
[2011/05/08 11:43:44 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG10
[2011/05/08 11:43:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\AVG
[2011/05/08 11:41:46 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2011/05/08 11:35:48 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2011/05/08 11:34:05 | 005,497,592 | ---- | C] (AVG Technologies) -- C:\Users\ANNIE\Desktop\avg_free_stb_all_2011_1321_cnet.exe
[2011/05/07 11:09:15 | 000,000,000 | ---D | C] -- C:\Program Files\Mystery Trackers - Raincliff Collector's Edition
[2011/04/26 11:49:56 | 000,000,000 | ---D | C] -- C:\Program Files\Robin's Quest - A Legend Born
[2011/04/26 11:45:26 | 000,000,000 | ---D | C] -- C:\Program Files\Robin's Island Adventure
[2011/04/26 09:30:15 | 000,000,000 | ---D | C] -- C:\Program Files\Jet Set Go
[2011/04/26 09:27:40 | 000,000,000 | ---D | C] -- C:\Program Files\Silent Scream - The Dancer
[2011/04/25 11:31:37 | 000,000,000 | ---D | C] -- C:\Users\ANNIE\AppData\Roaming\ShamanGS
[2011/04/25 10:20:34 | 000,000,000 | ---D | C] -- C:\Program Files\Maestro - Music of Death Collector's Edition
[2011/04/25 10:15:33 | 000,000,000 | ---D | C] -- C:\Program Files\Wild West Story - The Beginning
[2011/04/25 10:14:49 | 000,000,000 | ---D | C] -- C:\Program Files\The Fool
[2011/04/25 10:09:32 | 000,000,000 | ---D | C] -- C:\Program Files\Antique Road Trip 2 - Homecoming
[2011/04/25 09:56:12 | 000,000,000 | ---D | C] -- C:\Program Files\Bistro Boulevard
[2011/04/24 14:06:26 | 000,000,000 | ---D | C] -- C:\Program Files\Slot Quest - Alice in Wonderland
[2011/04/24 14:02:44 | 000,000,000 | ---D | C] -- C:\Program Files\Avalon Legends Solitaire
[2011/04/16 12:21:30 | 000,000,000 | ---D | C] -- C:\ProgramData\T1 Games
[2011/04/16 10:51:37 | 000,000,000 | ---D | C] -- C:\Program Files\Avenue Flo
[2011/04/16 10:49:53 | 000,000,000 | ---D | C] -- C:\Program Files\Ye Olde Sandwich Shoppe
[2011/04/15 11:40:02 | 000,000,000 | ---D | C] -- C:\ProgramData\BigFishGames
[2011/04/15 08:39:43 | 000,000,000 | ---D | C] -- C:\Users\ANNIE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cooking Dash
[2011/04/15 08:39:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cooking Dash
[2011/04/15 08:39:42 | 000,000,000 | ---D | C] -- C:\Program Files\Cooking Dash
[2011/04/15 07:52:26 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\gamehouse
[2011/04/14 11:12:45 | 000,000,000 | ---D | C] -- C:\Users\ANNIE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hoyle®
[2011/04/14 11:12:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hoyle®
[2011/04/14 11:12:32 | 000,000,000 | ---D | C] -- C:\Program Files\Encore
[2011/04/11 11:14:29 | 000,000,000 | ---D | C] -- C:\Users\ANNIE\AppData\Roaming\Namco
[2011/04/11 11:14:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Namco
[2011/04/11 11:05:06 | 000,000,000 | ---D | C] -- C:\Users\ANNIE\AppData\Local\Namco
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/05/10 11:16:56 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\ANNIE\Desktop\OTL.exe
[2011/05/10 10:29:06 | 000,001,036 | ---- | M] () -- C:\Users\ANNIE\Desktop\Driver Performer.lnk
[2011/05/10 09:50:35 | 114,673,765 | ---- | M] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2011/05/10 09:48:17 | 000,000,162 | ---- | M] () -- C:\Users\Public\Documents\hpqp.ini
[2011/05/10 09:47:44 | 000,042,047 | ---- | M] () -- C:\ProgramData\nvModes.001
[2011/05/10 09:44:54 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/05/10 09:44:54 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/05/10 09:44:49 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/05/10 09:44:44 | 2079,223,808 | -HS- | M] () -- C:\hiberfil.sys
[2011/05/10 09:17:20 | 000,002,072 | ---- | M] () -- C:\Users\Public\Desktop\Constant Guard.lnk
[2011/05/10 08:53:13 | 000,245,534 | ---- | M] () -- C:\Users\ANNIE\microsoft windows explorer.cab
[2011/05/10 08:33:02 | 000,002,052 | ---- | M] () -- C:\Windows\epplauncher.mif
[2011/05/10 07:23:40 | 000,042,047 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2011/05/09 11:12:22 | 000,000,418 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{12EBF1D6-4837-4829-8F40-BA077ACB8EC8}.job
[2011/05/09 08:51:05 | 000,312,336 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/05/09 03:12:49 | 000,604,502 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/05/09 03:12:49 | 000,104,170 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/05/08 11:46:49 | 000,000,830 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2011.lnk
[2011/05/08 11:34:09 | 005,497,592 | ---- | M] (AVG Technologies) -- C:\Users\ANNIE\Desktop\avg_free_stb_all_2011_1321_cnet.exe
[2011/04/15 09:10:52 | 000,000,152 | ---- | M] () -- C:\Users\ANNIE\Desktop\Comcast.net Games.url
[2011/04/15 08:39:49 | 000,001,722 | ---- | M] () -- C:\Users\Public\Desktop\Play Cooking Dash.lnk
[2011/04/15 08:39:49 | 000,001,548 | ---- | M] () -- C:\Users\Public\Desktop\More Great Games.lnk
[2011/04/14 11:16:38 | 000,001,186 | ---- | M] () -- C:\Users\ANNIE\Desktop\Delicious - Emily's Childhood Memories Premium Edition.lnk
[2011/04/14 11:04:37 | 000,001,000 | ---- | M] () -- C:\Users\ANNIE\Desktop\Double Play Jewel Quest II and Jewel Quest III.lnk
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/05/10 10:29:06 | 000,001,036 | ---- | C] () -- C:\Users\ANNIE\Desktop\Driver Performer.lnk
[2011/05/10 09:50:35 | 114,673,765 | ---- | C] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2011/05/10 09:17:20 | 000,002,084 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Constant Guard.lnk
[2011/05/10 09:17:20 | 000,002,072 | ---- | C] () -- C:\Users\Public\Desktop\Constant Guard.lnk
[2011/05/10 08:53:12 | 000,245,534 | ---- | C] () -- C:\Users\ANNIE\microsoft windows explorer.cab
[2011/05/10 08:33:02 | 000,002,052 | ---- | C] () -- C:\Windows\epplauncher.mif
[2011/05/08 11:46:49 | 000,000,830 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2011.lnk
[2011/05/08 10:10:02 | 2079,223,808 | -HS- | C] () -- C:\hiberfil.sys
[2011/04/15 08:39:49 | 000,001,722 | ---- | C] () -- C:\Users\Public\Desktop\Play Cooking Dash.lnk
[2011/04/14 11:04:37 | 000,001,000 | ---- | C] () -- C:\Users\ANNIE\Desktop\Double Play Jewel Quest II and Jewel Quest III.lnk
[2011/01/10 15:51:40 | 000,000,455 | ---- | C] () -- C:\Program Files\0110201114514038.bat
[2010/10/23 15:31:22 | 000,000,452 | ---- | C] () -- C:\Program Files\1023201015312283.bat
[2010/10/17 13:00:41 | 000,000,391 | ---- | C] () -- C:\Users\ANNIE\AppData\Roaming\prefsdb.dat
[2010/10/07 14:01:16 | 000,000,476 | ---- | C] () -- C:\Program Files\1007201014011632.bat
[2010/09/29 11:49:59 | 000,000,552 | ---- | C] () -- C:\Users\ANNIE\AppData\Local\d3d8caps.dat
[2010/09/07 08:46:20 | 000,000,255 | ---- | C] () -- C:\Windows\PowerReg.dat
[2010/09/07 08:03:33 | 000,000,461 | ---- | C] () -- C:\Program Files\090720108033323.bat
[2010/07/15 09:19:48 | 000,000,059 | ---- | C] () -- C:\Users\ANNIE\AppData\Local\Tempdir
[2010/02/28 21:40:25 | 000,007,674 | -HS- | C] () -- C:\Users\ANNIE\AppData\Local\MYhtd
[2009/09/26 06:16:04 | 000,006,944 | ---- | C] () -- C:\Users\ANNIE\AppData\Local\d3d9caps.dat
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | ---- | C] () -- C:\Windows\System32\OGAEXEC.exe
[2009/06/12 15:32:16 | 000,104,456 | ---- | C] () -- C:\Windows\System32\EasyHook32.dll
[2009/05/26 10:25:52 | 000,163,904 | ---- | C] () -- C:\Windows\hpqins00.dat
[2009/02/17 09:01:41 | 000,042,047 | ---- | C] () -- C:\ProgramData\nvModes.001
[2009/02/17 09:01:27 | 000,042,047 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2008/12/19 11:19:23 | 000,000,000 | ---- | C] () -- C:\Users\ANNIE\AppData\Roaming\wklnhst.dat
[2008/09/20 03:03:07 | 000,106,605 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2008/09/20 03:03:07 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2008/07/15 06:51:15 | 000,165,140 | ---- | C] () -- C:\Windows\hpoins21.dat
[2008/07/15 06:51:15 | 000,007,262 | ---- | C] () -- C:\Windows\hpomdl21.dat
[2008/07/15 06:46:33 | 000,000,029 | ---- | C] () -- C:\ProgramData\counter.cfg
[2008/06/13 10:37:02 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2008/06/04 12:14:32 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2008/03/12 11:17:56 | 000,005,120 | ---- | C] () -- C:\Users\ANNIE\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/03/11 09:36:31 | 000,027,335 | ---- | C] () -- C:\Users\ANNIE\AppData\Roaming\nvModes.001
[2008/03/11 09:35:14 | 000,027,335 | ---- | C] () -- C:\Users\ANNIE\AppData\Roaming\nvModes.dat
[2008/02/17 18:52:50 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[2008/02/17 18:48:31 | 000,001,732 | ---- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2008/01/25 16:25:08 | 000,011,264 | ---- | C] () -- C:\Windows\System32\rcmirror.dll
[2007/12/05 21:51:03 | 000,101,605 | ---- | C] () -- C:\Windows\hpqins13.dat
[2006/11/02 05:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 05:47:37 | 000,312,336 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 05:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 03:33:01 | 000,604,502 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 03:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 03:33:01 | 000,104,170 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 03:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 03:25:21 | 000,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2006/11/02 03:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 01:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 01:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 00:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 00:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006/03/09 15:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll

========== LOP Check ==========

[2011/03/02 14:28:29 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\2monkeys
[2008/03/14 09:15:49 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\7Wonders
[2010/11/03 11:42:04 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Aerohills
[2011/03/28 09:45:19 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Akhra
[2008/07/30 10:47:03 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Alawar
[2010/11/06 12:58:43 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Anarchy
[2008/08/15 10:42:55 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Ancient Quest of Saqqarah__bfg
[2011/04/04 11:29:35 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Artifact Quest
[2010/11/02 13:33:54 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Artifex Mundi
[2011/03/28 09:49:06 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Artogon
[2011/05/08 11:48:42 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\AVG10
[2011/03/28 13:31:52 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Awem
[2008/10/24 14:21:21 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Beep Industries
[2010/10/26 08:11:01 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Bicyclestudios
[2008/07/07 12:14:47 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Big Fish Games
[2011/01/17 10:57:11 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Big Splash Games
[2009/11/10 12:46:57 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\blg
[2008/03/24 07:38:51 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\BloodTies
[2011/01/17 11:00:53 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Boolat Games
[2011/01/17 10:04:49 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Boomzap
[2009/03/10 08:13:07 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\BrandX Games
[2010/07/08 11:02:30 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\BVS Solitaire Collection
[2010/06/22 11:57:59 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\CallingID
[2010/12/30 09:48:22 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Casual Arts
[2008/09/29 09:39:43 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\cerasus.media
[2010/11/27 13:06:19 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ConveyorChaos
[2010/11/01 13:05:31 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\DayTerium
[2008/08/07 10:05:36 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\DeepVoyage
[2011/02/28 14:04:42 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Dekovir
[2010/07/28 08:33:18 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\DigirononGames
[2010/01/15 09:54:01 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Dreamsdwell Stories
[2011/03/28 13:25:12 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Dreamsdwell Stories 2
[2008/03/14 13:18:06 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\EA
[2011/04/02 09:26:23 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\EleFun Games
[2010/10/18 15:24:48 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Elephant Games
[2011/03/28 11:22:09 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Ellashope_Saves
[2008/07/31 15:30:16 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\EnchantedCavern
[2010/09/01 10:49:22 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Enki Games
[2011/04/08 11:05:02 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Enlightenus2_BFG
[2010/06/28 11:07:56 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ERS G-Studio
[2010/12/14 12:48:52 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ERS Game Studios
[2010/02/28 14:54:52 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Exent Technologies
[2008/05/06 07:29:25 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Eyeblaster
[2010/10/06 09:27:03 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Farm Mania 2
[2008/08/25 11:19:44 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\FarmerJane
[2010/11/23 12:35:35 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Flood Light Games
[2010/11/29 10:46:20 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Floodlight Games
[2011/01/22 14:12:22 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\FlyWheelGames
[2010/04/28 08:53:46 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Freeze Tag
[2010/10/24 09:37:49 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\freshgames
[2011/04/04 12:37:47 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Friday's games
[2010/11/22 14:54:57 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Frogwares
[2010/09/02 14:07:47 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Fugazo
[2011/03/29 12:21:17 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\funkitron
[2010/01/23 11:01:35 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Fuzzy Games
[2008/08/12 12:40:15 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Gaijin Ent
[2009/04/04 11:36:59 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\GameBlend
[2010/03/02 13:25:40 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\GameHouse
[2010/09/07 13:36:07 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\GameHousev1000
[2009/01/01 12:00:16 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Gamehouse_Janes_Realty
[2008/12/11 15:15:31 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\GameInvest
[2008/11/21 09:36:33 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Gamelab
[2010/12/04 15:20:54 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\GameMill Entertainment
[2010/10/02 12:06:12 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Gamers Digital
[2008/06/06 14:00:46 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Games
[2010/05/26 09:03:30 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\GamesCafe
[2009/02/18 13:49:03 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\GameTantra
[2010/09/13 11:02:31 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Ghost Ship Studios
[2008/08/20 12:41:36 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Go-Go Gourmet Chef of the Year
[2010/11/25 12:55:05 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Gogii
[2008/12/28 11:01:44 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Gogii Games
[2010/01/22 11:12:03 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\GOL_byHasbro
[2011/03/07 13:38:58 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\HdO Adventure
[2011/01/19 15:27:36 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\HillStoneAnimationStudios
[2009/06/03 07:59:10 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\HiT-MM
[2008/09/11 07:04:05 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Home Sweet Home 2
[2010/07/15 09:02:30 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Hotdog Hotshot
[2011/03/03 11:16:29 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\IBAGroup
[2011/05/10 09:18:14 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ID Vault
[2011/01/17 10:16:44 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\iMaxGen
[2010/07/25 14:18:19 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Immortal Lovers
[2010/01/16 15:56:34 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\IOMediaSupport6SZZ001s
[2009/12/16 12:24:14 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Island
[2010/11/23 09:23:40 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\iWin
[2011/03/10 11:05:29 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\iYogi
[2008/05/27 12:00:43 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Jane s Hotel
[2008/04/04 07:49:37 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Jane s Hotel Family Hero
[2010/12/06 13:24:46 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Jane s Hotel 3
[2009/01/28 12:10:06 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Jetsetter
[2011/03/03 13:52:05 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Jewel Keepers Easter Island
[2008/08/12 12:04:48 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\JewelMatch2
[2010/10/06 08:51:29 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\KingArthur
[2011/01/18 15:20:47 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\LittleGamesCompany
[2008/08/10 08:50:59 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Ludia
[2010/11/29 10:07:03 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\MA2
[2010/06/24 11:00:32 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Magic3
[2010/05/26 08:57:39 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\MagicIndie
[2010/11/27 13:27:23 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\MAI
[2011/03/05 14:40:08 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\margrave3_full
[2010/06/28 14:00:02 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Mariaglorum
[2011/04/16 12:25:36 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Meridian93
[2010/06/28 12:19:59 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Merscom
[2008/03/31 13:15:12 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Mind Control Software
[2009/12/16 12:48:32 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Mousechief
[2011/03/28 09:53:21 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Muse
[2008/11/23 12:42:54 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Mushroom Age
[2010/11/30 09:09:29 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Mutant Arcade
[2009/06/09 09:21:51 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\muvee Technologies
[2010/10/24 12:30:20 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\My Games
[2010/07/29 09:29:43 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\MysteriousCaseOfJekyllAndHyde
[2010/08/04 06:56:12 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\MysteryStudio
[2011/04/11 11:14:29 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Namco
[2008/09/14 11:36:29 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Oberon Games
[2010/12/05 11:20:31 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Oberon Media
[2010/10/07 12:10:43 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Oberonv1002
[2009/02/20 11:33:34 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Oberonv1005
[2010/01/16 16:29:14 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\panoramik
[2010/10/17 13:01:28 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\perfect future studio
[2009/02/09 10:58:08 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\PetShowCraze
[2011/01/20 12:03:09 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Phantasmat_bf_ce1
[2008/10/11 13:28:35 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Pi Eye Games
[2008/06/05 14:47:23 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\pixelStorm
[2008/10/08 09:29:50 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\PlanetPlayMore
[2011/04/11 11:17:58 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\PlayFirst
[2008/12/24 12:17:17 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Playfirst Ashtons Family Resort
[2010/11/22 15:05:20 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\PlayPond
[2010/04/19 11:15:30 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Playrix Entertainment
[2010/09/07 07:26:06 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Pogo
[2010/01/21 13:25:31 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Pogo Games
[2008/09/13 14:36:11 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Purple Patch Games
[2010/03/30 14:25:35 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\QB9
[2008/08/21 10:40:07 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Restorer
[2008/09/11 07:26:34 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Righteous Kill
[2010/03/30 15:05:16 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Roaming
[2009/03/01 13:32:55 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\RobinsonCrusoe
[2011/04/03 12:33:00 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Sahmon Games
[2008/08/16 10:52:43 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Sandlot Games
[2010/10/18 15:46:50 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Scholastic
[2010/11/25 12:47:14 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ScreenSeven
[2009/03/09 13:45:11 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\SerpentOfIsis
[2011/03/02 12:37:17 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\SevenSails
[2011/04/25 11:31:37 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ShamanGS
[2010/10/01 10:56:03 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Shape games
[2010/11/29 10:41:34 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ShinyTales
[2010/07/28 11:49:36 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Silverback Productions
[2010/01/22 14:14:11 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Skip-Bo
[2010/06/24 07:29:37 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Skunk Studios
[2011/01/17 09:58:59 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Spark Plug Games
[2010/09/01 10:55:02 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Specialbit
[2010/01/16 15:56:34 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Spinapse
[2010/04/21 12:16:07 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\SpinTop
[2011/04/15 09:12:11 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\SpinTop Games
[2008/04/02 12:35:39 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\SprillBermudeEng
[2008/08/03 09:45:58 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Sudden Games
[2009/05/13 08:13:31 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\SultansLabyrinth
[2010/12/05 13:29:39 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Supermarket Mania 2
[2010/01/16 15:56:57 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Suspects and Clues Players
[2010/01/16 15:56:36 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Suspects and Clues Prefs
[2008/12/19 11:19:44 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Template
[2011/03/28 10:17:50 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\TFS2
[2010/06/24 07:42:54 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\The Inquisitor
[2011/04/05 09:49:30 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\TheGreatPharaoh
[2010/11/10 13:21:37 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ThreeDays2
[2011/04/01 11:43:23 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\TikisLab
[2011/01/21 20:25:09 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\TitanicMystery
[2009/03/10 13:28:24 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Tropical Dream Underwater Odyssey
[2010/03/14 13:42:07 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\UNOUndercover
[2009/03/22 13:30:50 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Valusoft
[2010/06/24 11:01:30 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\VendelGAMES
[2008/06/03 11:31:35 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ViquaSoft
[2010/10/06 08:37:04 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Vogat Interactive
[2010/10/17 14:25:27 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\World-LooM
[2009/03/14 10:19:02 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\ZEMNOTT
[2010/10/24 09:59:30 | 000,000,000 | ---D | M] -- C:\Users\ANNIE\AppData\Roaming\Zuzu
[2011/05/10 09:43:22 | 000,032,646 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011/05/09 11:12:22 | 000,000,418 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{12EBF1D6-4837-4829-8F40-BA077ACB8EC8}.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 99 bytes -> C:\ProgramData\TEMP:F0AB86C0
@Alternate Data Stream - 99 bytes -> C:\ProgramData\TEMP:90B52091
@Alternate Data Stream - 99 bytes -> C:\ProgramData\TEMP:161AA30B
@Alternate Data Stream - 98 bytes -> C:\ProgramData\TEMP:C1C3DC7F
@Alternate Data Stream - 98 bytes -> C:\ProgramData\TEMP:B90C7652
@Alternate Data Stream - 98 bytes -> C:\ProgramData\TEMP:4E6B8D68
@Alternate Data Stream - 97 bytes -> C:\ProgramData\TEMP:BD9F7E4E
@Alternate Data Stream - 97 bytes -> C:\ProgramData\TEMP:51F17BB8
@Alternate Data Stream - 97 bytes -> C:\ProgramData\TEMP:4AA2F6A9
@Alternate Data Stream - 96 bytes -> C:\ProgramData\TEMP:BDF08FAF
@Alternate Data Stream - 96 bytes -> C:\ProgramData\TEMP:AAA14AF9
@Alternate Data Stream - 96 bytes -> C:\ProgramData\TEMP:95970EA3
@Alternate Data Stream - 96 bytes -> C:\ProgramData\TEMP:70E897B5
@Alternate Data Stream - 96 bytes -> C:\ProgramData\TEMP:43982D5E
@Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:54D5DB8A
@Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:31106FCB
@Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:1B9E79B3
@Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:16B49C20
@Alternate Data Stream - 94 bytes -> C:\ProgramData\TEMP:E6D027BB
@Alternate Data Stream - 94 bytes -> C:\ProgramData\TEMP:A4CDE823
@Alternate Data Stream - 94 bytes -> C:\ProgramData\TEMP:95198126
@Alternate Data Stream - 94 bytes -> C:\ProgramData\TEMP:7E0EFF7B
@Alternate Data Stream - 94 bytes -> C:\ProgramData\TEMP:4A392155
@Alternate Data Stream - 94 bytes -> C:\ProgramData\TEMP:3DA71AE7
@Alternate Data Stream - 247 bytes -> C:\ProgramData\TEMP:6FD36C4B
@Alternate Data Stream - 237 bytes -> C:\ProgramData\TEMP:2ABB51D4
@Alternate Data Stream - 232 bytes -> C:\ProgramData\TEMP:00811B66
@Alternate Data Stream - 230 bytes -> C:\ProgramData\TEMP:53DF4438
@Alternate Data Stream - 223 bytes -> C:\ProgramData\TEMP:A688EF17
@Alternate Data Stream - 223 bytes -> C:\ProgramData\TEMP:8944C195
@Alternate Data Stream - 222 bytes -> C:\ProgramData\TEMP:8BB2EE92
@Alternate Data Stream - 218 bytes -> C:\ProgramData\TEMP:CFF6B3FF
@Alternate Data Stream - 218 bytes -> C:\ProgramData\TEMP:C7857F06
@Alternate Data Stream - 216 bytes -> C:\ProgramData\TEMP:3790BACD
@Alternate Data Stream - 215 bytes -> C:\ProgramData\TEMP:067BF339
@Alternate Data Stream - 213 bytes -> C:\ProgramData\TEMP:3815BC84
@Alternate Data Stream - 213 bytes -> C:\ProgramData\TEMP:2F141B68
@Alternate Data Stream - 210 bytes -> C:\ProgramData\TEMP:E1CC2D5E
@Alternate Data Stream - 207 bytes -> C:\ProgramData\TEMP:AB1C1865
@Alternate Data Stream - 204 bytes -> C:\ProgramData\TEMP:CC7738DB
@Alternate Data Stream - 201 bytes -> C:\ProgramData\TEMP:DEEA5B0E
@Alternate Data Stream - 201 bytes -> C:\ProgramData\TEMP:5095D8B1
@Alternate Data Stream - 180 bytes -> C:\ProgramData\TEMP:5216CD26
@Alternate Data Stream - 179 bytes -> C:\ProgramData\TEMP:4CA7FA57
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:BCDC6E07
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:F878F14A
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:A8DFD30C
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:759B7D6F
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:14168AA3
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:4A01545C
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:66FC2E6F
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:583FE1DA
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:29BCDA07
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:41099CE9
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:CEE4A457
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B60D5127
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:BF6C81B2
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:7BFAAE70
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:BCDBBA6D
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:AA7BE830
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:A819A132
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:A652BC99
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:99C301D0
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:88AE8AB0
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:6E11933F
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:4A966CC2
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:491270B8
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:226A6E31
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:217A2324
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:06EAFA0B
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:FC70A22A
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:DE6EED8B
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:C356A185
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:88C0A705
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:689E7F7D
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:3B3A35EC
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:0DE96CF5
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:0C73962F
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:EFF3C3C8
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:E8C44CB4
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:D9F34335
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:C7F08EA3
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:AD020DC3
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:9C337CCE
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:895A78C5
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:627153F1
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:397D67BA
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:160ADF0B
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:0696EC8E
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:EBCF5924
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:C0A2E219
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:EB4FEEF5
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:A5CD91DF
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:A1023D41
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:95FC57E0
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:9491C9C7
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:79875988
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:6B7447D4
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:67310058
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:0785072C
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:03D08225
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:F9EDCFB0
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:E9900C74
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:AB3339EF
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:9720EBEF
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:35629AE6
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:1E17A249
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:FA8B212D
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:E8B9B48F
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:BDFCD45E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:BD8C785E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:B4F0E275
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:9AB56A06
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:91A12471
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:88E8CC2E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:5A7229F8
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:3AD6342E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:2EB79F01
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:2C399CCA
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:EB75B05F
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:B1786630
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:1EEB23AD
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:0A18093F
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:05F547A9
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:D23FAE12
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:C76CFF82
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:87452B14
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:65684E14
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:193CB03B
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:0EFC3D56
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:EC0279DC
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:D4558A0B
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:D3A82449
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:98CBD767
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:8CCDAB14
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:88A44CC1
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:80EA2EA3
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:67CF910D
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:518C333F
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:2E3F04BC
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:151760F0
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:0DAD93FF
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:014BC3B4
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:A724744F
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:A6D6E537
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:7BF749CA
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:6DCFAD3B
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:424D7CFE
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:3086B95F
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:29F0CA7D
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:225C4FFC
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:0BBF232A
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:08801FDB
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:F94BD29B
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:F663BB74
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:F2958F3A
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:EC2381A4
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:E6C6EB3B
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:DE875C30
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:D8F9D810
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:B54E4B5A
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:56C66609
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:3BF63E4A
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:3B07E6F4
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:3571475C
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:313C5814
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:1585E7B2
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:1379054C
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:0F3F6B1E
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:05816AFA
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:04BB186B
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:EA7D76BE
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:CFA8C6E3
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:CD9109D4
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:C1F1392C
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:9FD757A9
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:81F83028
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:4D066AD2
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:409A775B
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:3AE22B1A
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:2AE74FF9
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:AADC76BA
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:9DB67071
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:71AEFFEB
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:53DF59D1
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:021496FB
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:D8051838
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:C9CDDE5E
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:B6285236
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:A97FF73C
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:852F2262
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:2B856118
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:22741C1F
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:0DFE2AE1
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:0A74923C
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:0588E665
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:EF4FB3C5
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:E36991C0
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:DB365884
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:AE9351E0
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:ABD3B354
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:9B2BD056
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:84744B34
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:7ADB695A
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:689AB7E9
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:593E515D
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:4F636E25
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:4EE95FE7
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:03B3646C
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:FDC41D2C
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:F3AB0B43
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:D31BE97C
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:C0A9D0E7
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:ADAD2FFE
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:9950163C
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:937C8022
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:8DD66B3E
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:7DC5D762
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:680DD2F1
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:5F1019FF
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:5A15BCD4
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:5080697C
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:4911BB5C
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:34A75D52
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:2871B698
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:1170D6E4
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:0988A428
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:DE47A3DA
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:A8606E6E
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:A296A63F
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:8A0772D3
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:864881BF
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:67C320D1
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:5D351BC6
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:4709F39D
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:41A00CF0
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:3FD69132
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:1969F3F5
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:101708D3
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:08D8BB20
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:F81E7082
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:D9592966
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:D8DB81DC
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:C07A6A6B
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:B6FD7157
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:981349EA
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:97995ED4
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:943E8182
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:908A1B53
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:880F0FEF
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:7290F122
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:68B61847
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:61F0C8FB
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:5CE91C67
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:53B8C5D2
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:3651A580
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:13DF9DD1
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:124B94C0
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:C640E10C
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:A42A9F39
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:9ACB70D7
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:9290C91C
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:8E5EA40F
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:65AB2A58
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:6401C7FF
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:48D30F15
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:1709732A
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:16A4620C
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:0E8117B1
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:0AC32449
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:073139EC
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:F9E10A82
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:F44D3C53
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:D8D58038
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:C3C72D5F
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:99AC3203
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:94B46CA2
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:834DD57E
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:82529191
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:5FD47318
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:453190EC
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:33384BC0
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:32A82570
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:1F3066C3
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:ED9B661E
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:E2CFA9CD
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:CA0CE093
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:C928F3BE
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:6BFA43EB
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:56E66A88
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:4573A78F
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:3FC4A10A
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:2F943019
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:177313FB
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:13AA281B
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:0406003C
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:FC60E0F8
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:FBE81670
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:C0893153
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:AEBFFE08
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:A774141A
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:9857FAE3
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:89F44603
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:2C678471
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:225CD7D5
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:EA701346
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:D890DD02
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:C40E212B
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:C0D722EB
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:B2735F9E
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:A7DA2BCD
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:9EE6560D
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:7C8D7A39
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:769BB147
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:66871744
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:6677D85A
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:5B85C37B
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:4EE323A4
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:4C49306C
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:48FEA089
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:34B4C6F8
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:1CDEDE11
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:18897B1D
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:13AE32E5
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:0DACB2B7
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:E5F85065
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:DD629819
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:C2151AD3
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:C0A9B815
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:BE40C8A2
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:BD9AB7FA
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:77846FFE
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:6FD26134
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:4FA837B4
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:2D0DFF22
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:26A148EB
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:268BA8AB
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:FC4EA67C
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:F50F1555
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:D46ECFD5
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:6C9F5E5E
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:4EEC7800
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:4BBB987B
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:3F2212BB
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:2E9900EE
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:29861223
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:1968990D
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:B1FBA7E1
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:A2865730
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:9398DBB4
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:304D2C3C
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:1B79AEF3
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:0F38F234
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:CF33321C
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:CA23BCFD
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:C3B5FCD5
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:BF6A2C54
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:B3196E8D
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:B227F86E
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:A0CB43B2
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:4111E573
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:26C2E4B1
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:ECF3C50F
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:EC5EFA15
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:DC0B1070
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:D02FBAEC
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:CCB49694
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:BC2A20FD
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:AFB24B00
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:AECF4772
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:89C2A42C
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:842B0AED
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:7AA6FC81
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:79CD3D0D
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:71FA8B7F
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:70558875
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:512E1728
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:4DDE401B
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:28DB0DC4
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:221F35CC
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:1D6B18F1
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:041C0562
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:F1F936DF
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:E4FCDFD9
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:D48500F8
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:CEF2A14E
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:CAC06C34
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:BD34FFC5
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:AE75CCC8
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:89C6F032
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:896E1EFF
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:7A0FEE87
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:77F49022
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:774A0E14
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:72E546C1
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:700CD00E
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:3DB6F365
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:1CB96B16
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:1740DC47
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:008586AE
@Alternate Data Stream - 111 bytes -> C:\ProgramData\TEMP:D708EEF9
@Alternate Data Stream - 111 bytes -> C:\ProgramData\TEMP:86A8CE8D
@Alternate Data Stream - 111 bytes -> C:\ProgramData\TEMP:34B9286E
@Alternate Data Stream - 111 bytes -> C:\ProgramData\TEMP:05113FB9
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:E73B14E2
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:E2B84483
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:D055FC10
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:CF61CE5A
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:93F3E4C9
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:4AD2C54D
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:331B76C7
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:F437A62A
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:E392F409
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:DFC3B090
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:969C0C96
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:864A52B8
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:7A0EFE63
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:57EE48CA
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:538A9F02
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:4CF76F21
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:3CF7E866
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:DA9A5EA8
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:C74009E5
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:B3B7A337
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:A31B5E9B
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:9B52F176
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:4E158DDD
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:3C5ABDC7
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:37994DBE
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:260575F1
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:09064307
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:F3EFA8A8
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:E07EA07E
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:D0DCD8D7
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:BC38C00C
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:966CEAE7
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:92A815D8
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:6C350063
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:4F96D8E6
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:3064D21D
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:E5294695
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:E40EED9B
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:57CC1FDC
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:47FE7AB7
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:164FA86E
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:07FFC655
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:FC2E567F
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:BFAD7A5D
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:7CACEF61
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:639F0420
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:3595B780
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:07241935
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:049ACE7A
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:E32966C0
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:AA60673F
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:A561576B
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:8C71D1E4
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:88E71AC6
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:7CEDF9F3
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:753F86A9
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:598E0FFA
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:55E1514E
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:52E1DB1D
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:24FECE50
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:F67AAFC5
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:AABCC5A7
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:A0C7D68A
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:9AA05701
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:5BDD0820
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:342886D8
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:2E49D185
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:ED810E46
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:E5F8E280
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:D70B9891
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:B845F669
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:9DF07E8F
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:93DE1838
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:65929158
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:5C07C19F
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:490BCC52
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:48081133
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:43C9D140
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:275AA066
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:25005EFA
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:12EA4DC9
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:D4D3884D
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:A3E39C6A
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:85C3B823
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:67BA17B9
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:63F8EC77
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:1CE87230
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:1B3349CB
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:0B3B557D
@Alternate Data Stream - 100 bytes -> C:\ProgramData\TEMP:D994162E
@Alternate Data Stream - 100 bytes -> C:\ProgramData\TEMP:883EDFB5
@Alternate Data Stream - 100 bytes -> C:\ProgramData\TEMP:27D1368B
@Alternate Data Stream - 100 bytes -> C:\ProgramData\TEMP:2270D168
@Alternate Data Stream - 100 bytes -> C:\ProgramData\TEMP:1E5EC928

< End of report >
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP