Search the Community

Showing results for tags 'Closed'.



More search options

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


Forums

  • Malware Research Center
    • Help, my files are encrypted!
    • Help, my PC is infected!
    • Malware and Computer Security
    • Malware submissions
  • Company & Products
    • Customer Support
    • Beta Community
    • Feedback, comments, and suggestions
    • False positives
    • Emsisoft News
  • Other Languages
    • German Support - Deutscher Support
  • Private Zone

Find results in...

Find results that contain...


Date Created

  • Start

    End


Last Updated

  • Start

    End


Filter by number of...

Joined

  • Start

    End


Group


AIM


MSN


Website URL


ICQ


Yahoo


Jabber


Skype


Location


Interests

Found 752 results

  1. Here are my logs.... Emsisoft Emergency Kit - Version 3.0 Last update: 12/12/2012 3:59:31 PM Scan settings: Scan type: Smart Scan Objects: Rootkits, Memory, Traces, C:\Windows\, C:\Program Files\ Detect Riskware: Off Scan archives: Off ADS Scan: On File extension filter: Off Advanced caching: On Direct disk access: Off Scan start: 12/30/2012 7:21:26 PM C:\Users\Wagner\AppData\Roaming\iercet.dll detected: Gen:Variant.Symmi.7632 (B) Scanned 402139 Found 1 Scan end: 12/30/2012 7:57:51 PM Scan time: 0:36:25 Quarantined 0 OTL logfile created on: 12/30/2012 8:11:45 PM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Wagner\Downloads Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.21 Gb Total Physical Memory | 2.03 Gb Available Physical Memory | 63.01% Memory free 6.43 Gb Paging File | 4.81 Gb Available in Paging File | 74.86% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 74.42 Gb Total Space | 39.81 Gb Free Space | 53.49% Space Free | Partition Type: NTFS Drive E: | 465.76 Gb Total Space | 381.91 Gb Free Space | 82.00% Space Free | Partition Type: NTFS Computer Name: WAGNER-PC | User Name: Wagner | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Wagner\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation) PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) PRC - C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe () PRC - C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe () PRC - C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) PRC - C:\Program Files\Microsoft Security Client\MpCmdRun.exe (Microsoft Corporation) PRC - C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation) PRC - C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) PRC - C:\Program Files\Motorola Media Link\Lite\NServiceEntry.exe (Nero AG) PRC - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) PRC - C:\Users\Wagner\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) PRC - C:\Program Files\Microsoft\BingBar\7.1.361.0\SeaPort.EXE (Microsoft Corporation.) PRC - C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe (Motorola) PRC - C:\Program Files\Google\Google Calendar Sync\GoogleCalendarSync.exe (Google) PRC - C:\Windows\explorer.exe (Microsoft Corporation) PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation) PRC - C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe (Intel Corporation) PRC - C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe (Intel Corporation) PRC - C:\Program Files\Intel\AMT\LMS.exe (Intel Corporation) ========== Modules (No Company Name) ========== MOD - C:\Users\Wagner\AppData\Roaming\iercet.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\d040079bc7148afeca03c5abb6fc3c61\System.Windows.Forms.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\4e80768a2d88c7a333e43cbb7a6c0705\System.Drawing.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\25e672ea505e50ab058258ac72a54f02\System.Xml.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\c64ca3678261c8ffcd9e7efd1af6ed54\System.Configuration.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\9dd758ac0bf7358ac6e4720610fcc63c\System.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\187d7c66735c533de851c76384f86912\mscorlib.ni.dll () MOD - C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe () MOD - C:\Program Files\FileZilla FTP Client\fzshellext.dll () ========== Services (SafeList) ========== SRV - (MBAMService) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation) SRV - (MBAMScheduler) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated) SRV - (Motorola Device Manager) -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe () SRV - (NisSrv) -- C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) SRV - (MsMpSvc) -- C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation) SRV - (DeviceMonitorService) -- C:\Program Files\Motorola Media Link\Lite\NServiceEntry.exe (Nero AG) SRV - (AdobeARMservice) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) SRV - (BBUpdate) -- C:\Program Files\Microsoft\BingBar\7.1.361.0\SeaPort.EXE (Microsoft Corporation.) SRV - (BBSvc) -- C:\Program Files\Microsoft\BingBar\7.1.361.0\BBSvc.EXE (Microsoft Corporation.) SRV - (PST Service) -- C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe (Motorola) SRV - (WatAdminSvc) -- C:\Windows\System32\Wat\WatAdminSvc.exe (Microsoft Corporation) SRV - (UNS) -- C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe (Intel Corporation) SRV - (LMS) -- C:\Program Files\Intel\AMT\LMS.exe (Intel Corporation) SRV - (StorSvc) -- C:\Windows\System32\StorSvc.dll (Microsoft Corporation) SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation) SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation) SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) ========== Driver Services (SafeList) ========== DRV - (catchme) -- C:\Users\Wagner\AppData\Local\Temp\catchme.sys File not found DRV - (MpKsl019f71b9) -- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{DA23C0E6-D9D4-4FC6-828C-175209B54A23}\MpKsl019f71b9.sys (Microsoft Corporation) DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation) DRV - (NisDrv) -- C:\Windows\System32\drivers\NisDrvWFP.sys (Microsoft Corporation) DRV - (vmbus) -- C:\Windows\System32\drivers\vmbus.sys (Microsoft Corporation) DRV - (storflt) -- C:\Windows\System32\drivers\vmstorfl.sys (Microsoft Corporation) DRV - (storvsc) -- C:\Windows\System32\drivers\storvsc.sys (Microsoft Corporation) DRV - (TsUsbFlt) -- C:\Windows\System32\drivers\TsUsbFlt.sys (Microsoft Corporation) DRV - (WinUsb) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation) DRV - (VMBusHID) -- C:\Windows\System32\drivers\VMBusHID.sys (Microsoft Corporation) DRV - (s3cap) -- C:\Windows\System32\drivers\vms3cap.sys (Microsoft Corporation) DRV - (e1kexpress) -- C:\Windows\System32\drivers\e1k6232.sys (Intel Corporation) DRV - (motandroidusb) -- C:\Windows\System32\drivers\motoandroid.sys (Motorola) DRV - (HECI) -- C:\Windows\System32\drivers\HECI.sys (Intel Corporation) DRV - (netr28u) -- C:\Windows\System32\drivers\netr28u.sys (Ralink Technology Corp.) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{ef80d754-fb77-4a7f-be75-489beebb20c9}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^RG^xdm003^V07^us&si=CP3Ex-vw4rACFcsZQgodJjH2Gg&ptb=8C8EEACF-2BA9-4A77-BF7B-108982EA3630&ind=2012062218&n=77eda20a&psa=&st=sb&searchfor={searchTerms} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 55 4E D2 57 73 0A CC 01 [binary data] IE - HKCU\..\SearchScopes,DefaultScope = {CA67FE69-6743-4A6F-9FA4-06B72806EA7A} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKCU\..\SearchScopes\{CA67FE69-6743-4A6F-9FA4-06B72806EA7A}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} IE - HKCU\..\SearchScopes\{ef80d754-fb77-4a7f-be75-489beebb20c9}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^RG^xdm003^V07^us&si=CP3Ex-vw4rACFcsZQgodJjH2Gg&ptb=8C8EEACF-2BA9-4A77-BF7B-108982EA3630&ind=2012062218&n=77eda20a&psa=&st=sb&searchfor={searchTerms} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@oberon-media.com/ONCAdapter: C:\Program Files\Common Files\Oberon Media\NCAdapter\1.0.0.7\npapicomadapter.dll (Oberon-Media ) FF - HKLM\Software\MozillaPlugins\@Retrogamer_4w.com/Plugin: C:\Program Files\Retrogamer_4w\bar\1.bin\NP4wStub.dll File not found FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@nsroblox.roblox.com/launcher: C:\Users\Wagner\AppData\Local\Roblox\Versions\version-fbaf58bbbe84491d\\NPRobloxProxy.dll () FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Wagner\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]_4w.com: C:\Program Files\Retrogamer_4w\bar\1.bin O1 HOSTS File: ([2012/10/01 10:24:48 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.) O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.) O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) O4 - HKLM..\Run: [MSC] "C:\Program Files\Microsoft Security Client\mssecex.exe" -hide -runkey File not found O4 - HKLM..\Run: [picon] C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe (Intel Corporation) O4 - HKCU..\Run: [iercet] C:\Users\Wagner\AppData\Roaming\iercet.dll () O4 - HKCU..\Run: [igfxalua] rundll32 "fonttend.dll",CreateProcessNotify File not found O4 - HKCU..\Run: [mshui] C:\Users\Wagner\AppData\Roaming\mshui.dll (CodeGear) O4 - HKCU..\Run: [sieans] rundll32.exe "C:\Users\Wagner\AppData\Roaming\sieans.dll",_Fast File not found O4 - HKCU..\Run: [uidplp] C:\Users\Wagner\AppData\Roaming\uidplp.dll (ALPS Electric Co., Ltd.) O4 - HKCU..\Run: [wragr] rundll32.exe "C:\Users\Wagner\AppData\Roaming\wragr.dll",AsDouble File not found O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - Startup: C:\Users\Wagner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Wagner\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O15 - HKCU\..Trusted Domains: reyrey.com ([www.gs] https in Trusted sites) O16 - DPF: {4F29DE54-5EB7-4D76-B610-A86B5CD2A234} Reg Error: Key error. (GameTap Player) O16 - DPF: {8569D715-FF88-44BA-8D1D-AD3E59543DDE} https://www.gs.reyrey.com/clientdll/arview2.cab (ActiveReports Viewer2) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: CM_AdvancedCAB https://www.gs.reyrey.com/common/ClientCheck/CM_AdvancedCAB.CAB (Reg Error: Key error.) O16 - DPF: PrintTemplateViewerCab https://www.gs.reyrey.com/clientdll/printtemplateviewer.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 205.171.3.25 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{09EFADD9-4EF4-45EA-A2BA-16BDB4FD091A}: DhcpNameServer = 192.168.0.1 205.171.3.25 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9D42708D-1AF2-49A8-8D58-BCC7EFF4E8EE}: DhcpNameServer = 192.168.0.1 205.171.3.25 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{AF04ECDD-77D2-413D-BD79-B61A193E4A66}: DhcpNameServer = 192.168.0.1 205.171.3.25 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/06/10 13:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2012/12/30 18:46:33 | 000,000,000 | ---D | C] -- C:\Users\Wagner\AppData\Local\Programs [2012/12/22 03:20:51 | 000,608,768 | ---- | C] (ALPS Electric Co., Ltd.) -- C:\Users\Wagner\AppData\Roaming\uidplp.dll [2012/12/22 03:01:06 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll [2012/12/22 03:01:06 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll [2012/12/21 14:58:42 | 000,000,000 | ---D | C] -- C:\Users\Wagner\AppData\Roaming\Unity [2012/12/21 14:32:29 | 000,000,000 | -H-D | C] -- C:\Windows\AxInstSV [2012/12/19 03:04:51 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb [2012/12/19 03:04:49 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll [2012/12/19 03:04:49 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll [2012/12/19 03:04:48 | 000,607,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll [2012/12/19 03:04:48 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe [2012/12/19 03:04:47 | 001,800,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll [2012/12/19 03:04:47 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll [2012/12/19 03:04:46 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl [2012/12/18 16:06:47 | 002,345,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys [2012/12/18 16:06:40 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe [2012/12/18 16:06:40 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll [2012/12/18 16:06:39 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll [2012/12/18 16:06:39 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll [2012/12/18 16:06:39 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll [2012/12/18 16:06:39 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll [2012/12/18 16:06:39 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll [2012/12/18 16:06:39 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll [2012/12/18 16:06:39 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll [2012/12/18 16:06:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll [2012/12/18 16:06:38 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll [2012/12/18 16:06:38 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll [2012/12/18 16:06:38 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll [2012/12/18 16:06:38 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll [2012/12/18 16:06:38 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll [2012/12/18 16:06:30 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpnet.dll [2012/12/18 16:06:14 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll [2012/12/06 14:36:35 | 000,166,400 | ---- | C] (CodeGear) -- C:\Users\Wagner\AppData\Roaming\mshui.dll [2012/12/01 10:22:07 | 000,000,000 | ---D | C] -- C:\Users\Wagner\Desktop\Calendar [1 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2012/12/30 19:54:29 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2012/12/30 18:47:18 | 000,001,063 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk [2012/12/30 18:37:40 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012/12/30 16:39:17 | 000,000,261 | ---- | M] () -- C:\Users\Wagner\Desktop\K'NEX Model Instructions.url [2012/12/28 14:15:43 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012/12/28 14:15:43 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012/12/22 03:23:52 | 000,660,068 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2012/12/22 03:23:52 | 000,120,996 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2012/12/22 03:21:20 | 000,342,528 | ---- | M] () -- C:\Users\Wagner\AppData\Roaming\iercet.dll [2012/12/22 03:20:56 | 000,608,768 | ---- | M] (ALPS Electric Co., Ltd.) -- C:\Users\Wagner\AppData\Roaming\uidplp.dll [2012/12/22 03:19:27 | 000,409,752 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2012/12/22 03:18:55 | 2588,626,944 | -HS- | M] () -- C:\hiberfil.sys [2012/12/21 09:43:29 | 000,001,307 | ---- | M] () -- C:\Users\Wagner\Desktop\ROBLOX Player.lnk [2012/12/16 06:13:28 | 000,295,424 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll [2012/12/16 06:13:20 | 000,034,304 | ---- | M] (Adobe Systems) -- C:\Windows\System32\atmlib.dll [2012/12/14 16:49:28 | 000,021,104 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2012/12/13 22:54:30 | 000,697,272 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe [2012/12/13 22:54:30 | 000,073,656 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2012/12/06 14:36:35 | 000,166,400 | ---- | M] (CodeGear) -- C:\Users\Wagner\AppData\Roaming\mshui.dll [1 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] ========== Files Created - No Company Name ========== [2012/12/30 16:39:17 | 000,000,261 | ---- | C] () -- C:\Users\Wagner\Desktop\K'NEX Model Instructions.url [2012/12/22 03:21:17 | 000,342,528 | ---- | C] () -- C:\Users\Wagner\AppData\Roaming\iercet.dll [2012/11/22 16:35:27 | 000,235,958 | ---- | C] () -- C:\ProgramData\tbqafzfjdsysgzc [2012/09/21 21:18:13 | 000,000,000 | ---- | C] () -- C:\Users\Wagner\defogger_reenable [2012/05/05 12:02:26 | 000,067,584 | ---- | C] () -- C:\Windows\unlite2.exe [2012/05/05 12:02:12 | 000,777,728 | ---- | C] () -- C:\Windows\System32\Sslsvc.dll [2012/05/05 11:59:01 | 000,037,376 | ---- | C] () -- C:\Windows\unlite.exe [2012/05/05 11:58:47 | 000,147,456 | ---- | C] () -- C:\Windows\System32\wddx_com.dll [2012/05/05 11:58:36 | 000,069,632 | ---- | C] () -- C:\Windows\System32\xmltok.dll [2012/05/05 11:58:36 | 000,040,960 | ---- | C] () -- C:\Windows\System32\cfmsg.dll [2012/05/05 11:58:36 | 000,036,864 | ---- | C] () -- C:\Windows\System32\xmlparse.dll [2012/02/16 20:22:56 | 000,000,200 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc [2012/01/25 19:34:48 | 000,000,120 | ---- | C] () -- C:\Windows\QUICKEN.INI [2012/01/17 09:32:52 | 000,023,091 | ---- | C] () -- C:\Users\Wagner\AppData\Roaming\Microsoft Excel 97-2003.ADR [2012/01/17 09:31:47 | 000,037,845 | ---- | C] () -- C:\Users\Wagner\AppData\Roaming\Comma Separated Values (Windows).ADR [2011/11/19 19:43:37 | 000,000,471 | ---- | C] () -- C:\Windows\iScreensaver.ini [2011/06/13 14:35:20 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe [2011/02/11 18:10:52 | 000,439,308 | ---- | C] () -- C:\Windows\System32\igcompkrng500.bin [2011/02/11 18:10:50 | 000,982,240 | ---- | C] () -- C:\Windows\System32\igkrng500.bin [2011/02/11 18:10:50 | 000,092,356 | ---- | C] () -- C:\Windows\System32\igfcg500m.bin [2011/02/11 17:40:40 | 000,004,096 | ---- | C] ( ) -- C:\Windows\System32\IGFXDEVLib.dll [2011/02/11 17:38:44 | 000,000,151 | ---- | C] () -- C:\Windows\System32\GfxUI.exe.config ========== ZeroAccess Check ========== [2009/07/13 20:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [2012/11/15 03:32:52 | 000,000,000 | ---D | M] -- C:\Windows\assembly\NativeImages_v2.0.50727_32\EGaD.Desktop [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 20:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 04:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/13 17:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both ========== LOP Check ========== [2012/02/01 14:16:53 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Azureus [2012/09/21 20:20:07 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Boaf [2012/12/22 03:21:08 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Dropbox [2012/12/30 13:32:50 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\FileZilla [2012/05/20 10:40:59 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Ilium Software [2011/11/19 19:40:31 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\iScreensaver [2012/11/17 10:06:29 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\MotoCast [2012/08/03 22:06:44 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Motorola [2012/12/13 14:48:31 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Motorola Mobility [2012/03/28 15:35:54 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Oberon Media [2012/05/05 13:08:38 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Polkast [2012/03/28 15:36:24 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Tower Builder Game [2012/12/21 14:58:42 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Unity [2012/09/19 12:51:14 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\Uvfeod [2012/08/03 21:29:44 | 000,000,000 | ---D | M] -- C:\Users\Wagner\AppData\Roaming\ZumoCast ========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:19AD1878 < End of report > OTL Extras logfile created on: 12/30/2012 8:11:45 PM - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Wagner\Downloads Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.21 Gb Total Physical Memory | 2.03 Gb Available Physical Memory | 63.01% Memory free 6.43 Gb Paging File | 4.81 Gb Available in Paging File | 74.86% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 74.42 Gb Total Space | 39.81 Gb Free Space | 53.49% Space Free | Partition Type: NTFS Drive E: | 465.76 Gb Total Space | 381.91 Gb Free Space | 82.00% Space Free | Partition Type: NTFS Computer Name: WAGNER-PC | User Name: Wagner | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "FirewallDisableNotify" = 0 "AntiVirusDisableNotify" = 0 "UpdatesDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] ========== System Restore Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0294BB2F-6178-459D-8C46-8D1C40D6AD6B}" = rport=445 | protocol=6 | dir=out | app=system | "{057550CC-1C7E-4C7B-A2F8-3A8DDC978C8C}" = lport=138 | protocol=17 | dir=in | app=system | "{08E024BB-596A-4DFF-A430-159062EB67CE}" = lport=10243 | protocol=6 | dir=in | app=system | "{19A5737B-0BEE-43C8-BCD3-3CC714AA4FD3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{25B9D31D-64EC-44F5-900B-17177C3E5D3C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{295EF879-34FC-4A05-A484-51AA1443280E}" = lport=445 | protocol=6 | dir=in | app=system | "{2FA65B31-3A9D-4C20-AFC6-469495F0EF44}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4084E937-EAAA-47EE-9520-7BE7CE434C09}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{4BF5EB07-06A2-40E2-B5B6-244EF5C49A0F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 | "{5456EA1E-AF45-48BD-9C96-AB99A6CCF1D9}" = lport=139 | protocol=6 | dir=in | app=system | "{6364B77A-8796-4078-B3CC-5963A3E70B4F}" = rport=139 | protocol=6 | dir=out | app=system | "{6EFD3216-D4DB-448C-81DA-E8838C66FFD2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7C7BD74E-D59D-40F9-8481-A74C4729E9DD}" = rport=138 | protocol=17 | dir=out | app=system | "{86444BB3-291D-4D31-A046-BB4AA3243C28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{AF8150A9-8B4A-4262-900E-D368942052B3}" = lport=2869 | protocol=6 | dir=in | app=system | "{BE10AB93-C4A6-464B-BE93-069E778BFF99}" = rport=10243 | protocol=6 | dir=out | app=system | "{C232D951-55E7-4D04-9346-F88A07FC0B22}" = lport=137 | protocol=17 | dir=in | app=system | "{C428A183-FD79-40B5-990D-895328F43AC8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{CF0676E6-E2EC-438A-9741-7029DEBD00CE}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{F534D21D-02A4-4E48-A237-A3745ED5E6D3}" = rport=137 | protocol=17 | dir=out | app=system | "{F9C1EEE5-72B7-40C6-BC7C-64E9DF7DEB39}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{003C7A18-60D9-4C89-94D8-DE42C1AA1D76}" = protocol=58 | dir=in | [email protected],-28545 | "{02A4D600-582A-4C14-ADFE-C125CF0CB18F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{1473D86F-6F04-46A3-9153-CD04272511DC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{4718345A-DB56-4DFC-869D-422DB2493611}" = dir=out | app=c:\program files\motorola mobility\motocast\motocast.exe | "{4849799C-D8E9-4360-8F9A-6B5F2BCC7EA4}" = protocol=1 | dir=in | [email protected],-28543 | "{4BEE8382-B0F3-429D-8F2B-C0AE7441EFC8}" = dir=in | app=c:\program files\motorola mobility\motocast\motocast.exe | "{56E808A1-BFD0-4B79-B567-B9FA848D697F}" = protocol=1 | dir=out | [email protected],-28544 | "{61FB8AD2-C831-45AB-9DFB-D685C3A8300D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{62F27534-2769-4D2F-B42F-E96E62F64F44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{65901CFC-D156-4C8F-90EA-C26D256CA195}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{68F6992D-6E9D-4F14-88EC-3E0B8BEC7EFF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{72D71CB9-7E26-48C8-AEFF-71448F2BA1E7}" = dir=out | app=c:\program files\motorola mobility\motocast\bin\motocast-thumbnailer.exe | "{8642AF85-31DC-4BB3-8E9D-1E478C224084}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A5589677-56C4-46C1-A86B-1F0B5425786F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{AB3FBA72-52C3-4476-9A38-230DBE05659B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{AE07EC12-9685-49D6-A06F-B45D32298661}" = dir=in | app=c:\program files\motorola mobility\motocast\bin\motocast-thumbnailer.exe | "{B3829E18-974F-4630-98E2-B5D077B74379}" = dir=in | app=c:\program files\motorola media link\lite\mml.exe | "{BC7833D1-AE4B-4CAB-BDD5-6EA587E5C763}" = protocol=6 | dir=out | app=system | "{CE504808-152F-4073-8BB9-0F8E7C4D30C6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{D3648D1D-2BA3-4973-9B7E-EDC907B6E342}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{E8715BB0-E132-4617-B344-62E03BFE2C1C}" = protocol=58 | dir=out | [email protected],-28546 | "{E926E57D-011D-4F63-BCC5-FFCFDC28D091}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{EFA98652-B437-42AA-B7D3-EFFD71ED4ECD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{F7DCF881-DB9D-4779-8D1C-CCCBAC7C73FF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "TCP Query User{8EB0F613-7EA2-4BAA-BA73-5613AA51FA1A}C:\program files\motorola mobility\motocast\motocast.exe" = protocol=6 | dir=in | app=c:\program files\motorola mobility\motocast\motocast.exe | "TCP Query User{9182F70B-E8FC-4C43-BACC-1CA81F5263E1}C:\program files\motorola mobility\motocast\bin\motocast-thumbnailer.exe" = protocol=6 | dir=in | app=c:\program files\motorola mobility\motocast\bin\motocast-thumbnailer.exe | "TCP Query User{9DA38CC0-2DDF-41DD-8B50-022C76514499}C:\program files\hp\hp officejet pro 8500 a910\bin\hpnetworkcommunicator.exe" = protocol=6 | dir=in | app=c:\program files\hp\hp officejet pro 8500 a910\bin\hpnetworkcommunicator.exe | "TCP Query User{A4343BF1-6B79-4DD5-9195-1E3A8F60354E}C:\program files\filezilla ftp client\filezilla.exe" = protocol=6 | dir=in | app=c:\program files\filezilla ftp client\filezilla.exe | "UDP Query User{37C44FC7-BD93-4AF4-A2AF-2797621D570E}C:\program files\hp\hp officejet pro 8500 a910\bin\hpnetworkcommunicator.exe" = protocol=17 | dir=in | app=c:\program files\hp\hp officejet pro 8500 a910\bin\hpnetworkcommunicator.exe | "UDP Query User{645B4E18-FF19-4F0F-A147-159892DC2A95}C:\program files\motorola mobility\motocast\bin\motocast-thumbnailer.exe" = protocol=17 | dir=in | app=c:\program files\motorola mobility\motocast\bin\motocast-thumbnailer.exe | "UDP Query User{C5FE8901-A259-4023-B6F2-E8F129C0E77A}C:\program files\filezilla ftp client\filezilla.exe" = protocol=17 | dir=in | app=c:\program files\filezilla ftp client\filezilla.exe | "UDP Query User{E699CB19-1C73-44CA-B69A-209A7469CD17}C:\program files\motorola mobility\motocast\motocast.exe" = protocol=17 | dir=in | app=c:\program files\motorola mobility\motocast\motocast.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1 "{16FCDD97-AE09-476B-88CD-261D852BD34C}" = Marketsplash Shortcuts "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{1F22808B-156F-44FB-B56B-9E8F8C8DC8F5}" = Motorola Device Software Update "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7 "{28DB8373-C1BB-444F-A427-A55585A12ED7}" = Motorola Device Manager "{378397D6-FD32-4092-A854-6A75CB7EDA46}" = MOTOROLA MEDIA LINK "{3AE5A1B4-D6AE-48D4-A07F-46A806CD53E6}" = HP Officejet Pro 8500 A910 Basic Device Software "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{42929F0F-CE14-47AF-9FC7-FF297A603021}" = Dell Resource CD "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5401CEE8-3C2D-4835-A802-213306537FF4}" = MotoCast "{61EDBE71-5D3E-4AB7-AD95-E53FEAF68C17}" = Bing Rewards Client Installer "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{74307C3F-EBD4-11D4-A4D9-0010A4C3AFF0}" = Macromedia HomeSite 5 "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-510005673}" = Tower Builder "{86C0E2A3-1EDA-4F01-A43D-80DA8642813C}_is1" = GameTap Web Player "{871B2A9D-0F12-44B3-88C1-E0CB10A232E4}" = HP Officejet Pro 8500 A910 Help "{888148E5-C3AE-4CF4-B50D-7CBF7A16AECD}" = Screenshot It Enabler "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007 "{90120000-0015-0409-0000-0000000FF1CE}_PROR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}_PROR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}_PROR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007 "{90120000-0019-0409-0000-0000000FF1CE}_PROR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007 "{90120000-001A-0409-0000-0000000FF1CE}_PROR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}_PROR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_PROR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_PROR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}_PROR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}_PROR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}_PROR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007 "{90120000-0117-0409-0000-0000000FF1CE}_PROR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{90EC11E4-854E-4C0F-9B4C-76D6C7CF7C68}" = Linksys WUSB600N Dual-Band Wireless-N USB Network Adapter "{91120000-0014-0000-0000-0000000FF1CE}" = Microsoft Office Professional 2007 "{91120000-0014-0000-0000-0000000FF1CE}_PROR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{98EABC7F-B1A1-43A5-B505-5B4EC3908DCD}" = Microsoft Security Client "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4) "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{C63E7C60-25EB-11D3-8EDA-00A0C911E8E5}" = Microsoft Outlook Personal Folders Backup "{CA6BCA2F-EDEB-408F-850B-31404BE16A61}" = I.R.I.S. OCR "{CCF6F57B-F6B4-4508-BF45-63AAC9DE416A}" = Quicken 2010 "{D6C3C9E7-D334-4918-BD57-5B1EF14C207D}" = Bing Bar "{DBCC73BA-C69A-4BF5-B4BF-F07501EE7039}" = AnswerWorks 5.0 English Runtime "{F35D5A5E-7739-49DB-8A0E-23E2E8F99D1A}" = Motorola Mobile Drivers Installation 5.9.0 "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "8461-7759-5462-8226" = Vuze "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Photoshop 7.0.1" = Adobe Photoshop 7.0.1 "Adobe SVG Viewer" = Adobe SVG Viewer 3.0 "FileZilla Client" = FileZilla Client 3.5.3 "Google Calendar Sync" = Google Calendar Sync "HECI" = Intel® Management Engine Interface "Ilium Software eWallet GO!_is1" = eWallet GO! 1.1.2 "InstallShield_{90EC11E4-854E-4C0F-9B4C-76D6C7CF7C68}" = Linksys Dual-Band Wireless-N USB Network Adapter "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.70.0.1100 "MESOL" = Intel® Active Management Technology "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft Security Client" = Microsoft Security Essentials "PROR" = Microsoft Office Professional 2007 "TopStyle Lite (Version 1.5)" = TopStyle Lite (Version 1.5) "TopStyle Lite (Version 2)" = TopStyle Lite (Version 2) "ZumoCast" = ZumoCast ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{373B1718-8CC5-4567-8EE2-9033AD08A680}" = ROBLOX Player for Wagner "Dropbox" = Dropbox "HomeSite 4.5" = HomeSite 4.5 "UnityWebPlayer" = Unity Web Player ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 11/17/2012 2:04:36 PM | Computer Name = Wagner-PC | Source = MsiInstaller | ID = 11316 Description = Error - 11/18/2012 2:38:23 PM | Computer Name = Wagner-PC | Source = VSS | ID = 12344 Description = Error - 12/1/2012 4:23:28 PM | Computer Name = Wagner-PC | Source = Application Hang | ID = 1002 Description = The program OUTLOOK.EXE version 12.0.6665.5003 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1584 Start Time: 01cdd001956db16f Termination Time: 10 Application Path: C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE Report Id: f008505b-3bf4-11e2-811c-002564e17e25 Error - 12/17/2012 7:28:21 PM | Computer Name = Wagner-PC | Source = Application Error | ID = 1000 Description = Faulting application name: rundll32.exe_svclao.dll, version: 6.1.7600.16385, time stamp: 0x4a5bc637 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x01bff830 Faulting process id: 0xf54 Faulting application start time: 0x01cddcac7254effb Faulting application path: C:\Windows\system32\rundll32.exe Faulting module path: unknown Report Id: 713f3953-48a1-11e2-97de-002564e17e25 Error - 12/18/2012 8:44:58 PM | Computer Name = Wagner-PC | Source = Application Error | ID = 1000 Description = Faulting application name: rundll32.exe_svclao.dll, version: 6.1.7600.16385, time stamp: 0x4a5bc637 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x016df830 Faulting process id: 0xd70 Faulting application start time: 0x01cddd7b820a7a51 Faulting application path: C:\Windows\System32\rundll32.exe Faulting module path: unknown Report Id: 4ffa63fe-4975-11e2-8297-002564e17e25 Error - 12/21/2012 1:42:27 PM | Computer Name = Wagner-PC | Source = Application Error | ID = 1000 Description = Faulting application name: rundll32.exe_svclao.dll, version: 6.1.7600.16385, time stamp: 0x4a5bc637 Faulting module name: ole32.dll, version: 6.1.7601.17514, time stamp: 0x4ce7b96f Exception code: 0xc0000005 Fault offset: 0x0002b5f0 Faulting process id: 0xd48 Faulting application start time: 0x01cddddb88e4f025 Faulting application path: C:\Windows\System32\rundll32.exe Faulting module path: C:\Windows\system32\ole32.dll Report Id: c8df5ecd-4b95-11e2-b217-002564e17e25 Error - 12/21/2012 1:55:43 PM | Computer Name = Wagner-PC | Source = Application Error | ID = 1000 Description = Faulting application name: iexplore.exe, version: 9.0.8112.16457, time stamp: 0x50a2f9e3 Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec49b60 Exception code: 0xc0000005 Fault offset: 0x00052d86 Faulting process id: 0xe64 Faulting application start time: 0x01cddddb8a527bf1 Faulting application path: C:\Program Files\Internet Explorer\iexplore.exe Faulting module path: C:\Windows\SYSTEM32\ntdll.dll Report Id: a36afc59-4b97-11e2-b217-002564e17e25 Error - 12/22/2012 7:47:12 AM | Computer Name = Wagner-PC | Source = Application Error | ID = 1000 Description = Faulting application name: rundll32.exe_iercet.dll, version: 6.1.7600.16385, time stamp: 0x4a5bc637 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x008a6a90 Faulting process id: 0x1250 Faulting application start time: 0x01cde03677952e31 Faulting application path: C:\Windows\system32\rundll32.exe Faulting module path: unknown Report Id: 5260440c-4c2d-11e2-b20f-002564e17e25 Error - 12/22/2012 7:47:13 AM | Computer Name = Wagner-PC | Source = Application Error | ID = 1000 Description = Faulting application name: rundll32.exe_iercet.dll, version: 6.1.7600.16385, time stamp: 0x4a5bc637 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0x80000001 Fault offset: 0x00610072 Faulting process id: 0x1250 Faulting application start time: 0x01cde03677952e31 Faulting application path: C:\Windows\system32\rundll32.exe Faulting module path: unknown Report Id: 531480bd-4c2d-11e2-b20f-002564e17e25 Error - 12/30/2012 8:49:51 PM | Computer Name = Wagner-PC | Source = Application Hang | ID = 1002 Description = The program iexplore.exe version 9.0.8112.16457 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 684 Start Time: 01cde6ef25aa535b Termination Time: 31 Application Path: C:\Program Files\Internet Explorer\iexplore.exe Report Id: f7c5f523-52e3-11e2-b20f-002564e17e25 [ OSession Events ] Error - 9/26/2012 2:29:49 PM | Computer Name = Wagner-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 254 seconds with 180 seconds of active time. This session ended with a crash. [ System Events ] Error - 10/6/2012 11:38:03 AM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 10/6/2012 3:55:53 PM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 10/6/2012 10:23:03 PM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 10/7/2012 11:04:27 AM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 10/7/2012 8:48:04 PM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 10/8/2012 4:41:34 PM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 10/8/2012 10:06:27 PM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 10/9/2012 5:14:53 PM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 10/9/2012 7:56:56 PM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. Error - 10/10/2012 6:00:14 AM | Computer Name = Wagner-PC | Source = Disk | ID = 262155 Description = The driver detected a controller error on \Device\Harddisk1\DR1. < End of report > Thanks!!!
  2. Hey i had started a topic before but it was closed because i was gone for the weekend and did not reply. Anyway I did not get very far in the thread. I am attaching the pre work logs and also the combofix which i was told to run but thats as far as i got. My problem is that google was redirecting my browser and the computer was running slow Through some virius scans i think i was able to fix the google redirect but for some reason i think its still there. Also every time i scan its saying that my system has trojans or file recovery malware. Any help would be apperciated!
  3. Since past few days Duplicate cleaner(DC) would not start its GUI eventhough the Process Explorer lists it as started. Already it has been remembered allowed. I closed OA completely , and then on clicking Duplicate cleaner it would start immediately. Starting fresh , in a new session I removed the entry of DC from OA , and started DC. For all the alerts from OA , it was allowed and remembered and then DC opened without issues. I closed DC tried to restart, it would not start , former problem coming up once again. It seems strange that problems like these are propping up now and then after the incemental updates? An easy solution of trusting or excluding them might not be the right approach of what could be some sort of a deficiency.
  4. Since installing the free version I notice that some programmes seem to stall for a while. For instance I created an email in Outlook Express and then tried to send it. It is configured for automatic spell check. It hit the first word and then stalled, I could not exit the spell checker, It took some time before it went to the next word and then stalled on that, again I could not exit the spell checker, I just had to wait for the programme to do it’s own thing. It’s not just with OE, I have had the same problem with word. Are then any logs etc I can use to find out what is happening? Running Msoft *STALL* Security essentials I created this message in Word before pasting it online to the forum. Word stalled at this point *STALL*, I opened Msoft Security essentials to check it was up to date, closed it and then word would not respond for a couple of seconds. XP all updates
  5. Hi, I am a recent convert to the malware software (have used the firewall for several years. I allowed it to upgrade to the Beta v7 recently and have encountered the following problem if opening Outlook Professional 2003 under the following circumstance. This is running on a DELL Latitude D810 and running XP sp 3 (upto date with microsoft patches) When attempting to open Outlook while a deep scan (or custom) scan is running, Outlook appear to hang and has to be closed down to exit. The following message then appears "Outlook experienced a serious error the last time the add-in 'emisoft anti-malware was opened'. Would you like to disable this add-in? To reactivate this add-in, click About Microsoft Outlook on the Help menu, then click disabled items.' EmiSoft Anti-Malware version 7.0.0. On-Line Armor Firewall (Free) version 5.11.395 - SHould this still be the Free version despite my having purchased the suite? OS details: OS Name Microsoft Windows XP Professional Version 5.1.2600 Service Pack 3 Build 2600 OS Manufacturer Microsoft Corporation System Name JNB-LPT-GSOL System Manufacturer Dell Inc. System Model Latitude D810 System Type X86-based PC Processor x86 Family 6 Model 13 Stepping 8 GenuineIntel ~2128 Mhz BIOS Version/Date Dell Inc. A05, 2006/03/20 SMBIOS Version 2.3 Windows Directory C:\WINDOWS System Directory C:\WINDOWS\system32 Boot Device \Device\HarddiskVolume1 Locale South Africa Hardware Abstraction Layer Version = "5.1.2600.5512 (xpsp.080413-2111)" User Name xxxxxxxxxxxxxxxxxxxxxxx Time Zone South Africa Standard Time Total Physical Memory 2,048.00 MB Available Physical Memory 1.09 GB Total Virtual Memory 2.00 GB Available Virtual Memory 1.96 GB Page File Space 4.85 GB Page File C:\pagefile.sys
  6. A OAP window opened with the legend "OA update" with a red circle and a white x in it. So I have tried to do a manual update of Product and also Signatures etc. Various error messages have been:- 1. Access violation at (the window closed too quickly for me to see where) 2. Socket error 10054. Connection reset by peer. 3. OA cannot process online updates. Please check internet connection settings or contact support History shows that the update failed. I have probably missed some important info that you need, so - all, and/or any help would be appreciated by this techie dumbo
  7. I signed up for your service last month because of infections I had, various trojans, etc. Just last week I was notified by Microsoft, I guess, that my email of 15 years (on their MSN.com system) was hacked. My email is so old I can't even recall the answer to the security question ... or I got it right and I'm being tricked. Microsoft, being the idiots they are, refuse to respond to their own request for help and offer no assistance even though they closed the account. But my question is how did I get hacked when your system was up and fully operational? Assuming I'm being tricked and the messages aren't really from Microsoft, this means the hackers got by your system. If not, how can MSN (which is basically Hotmail) get so hacked that even they cannot open my account? I'm confused and angry. Allan
  8. After activating BM to visit my bank web site, I canceled BM but the window wouldn't close as it normally does when changing one of the settings in the GUI (is that what the little window is called?) I had to click in another part of the browser window to get it to close. A little later the error message that oasr.exi has encountered an error and needs to close. So I closed down OAP and the browser to restart OA. As a matter of interest I opened the GUI again to see if BM was available again - it was still greyed out. After doing a restart of my computer, BM is still greyed out. As a not very techical bod - - - H E E E L P please
  9. Hello, I ran Emsisoft Anti-Malware earlier and had quanrantined some stuff (I'll attach that initial log, which is named "a2scan_120705-212634.txt"), and then when it found a possible Rootkit infection, I went through all of the Emsisoft Emergency Kit steps, so I'll include those text files as well. Seperately, I have run Malwarebytes Anti-Malware and other stuff, and although they have found things too, it doesn't seem as though the underlying cause (possibly the Rootkit infection) has been removed. Also worth noting, when I tried to run the browser-based (IE) Trojan scan (I think Emsisoft provides it) at "windowssecurity.com/trojanscan" it would always crap out and close the browser unexpectedly after a few minutes, but I managed to grab a screen shot which mentions that it found "Trojan.Win32.Tracur!IK" before it closed the browser one time. I will attach that screen shot (trojan_scan.jpg) as well, if this forum lets me. Btw, I was running the scan on the infected PC via a VPN connection at the time (so you'll see a desktop within a desktop), but I have also tried running the browser-based scan tool directly on the PC, also to no avail. In addition to the attachments that you request from folloing the steps of the Emsisoft Emergency Kit, I will also include an attachment (text file) from a Malwarebytes Anti-Malware scan that I ran today, and I can also send some log files from other scans I have run recently. I think this PC got infected about a two weeks ago or so, and we're not sure where/how. Anyway, I would appreciate any insights that can help me solve this issue before I end up contacting one of my IT support guys, since I figured I would give it a shot first, having solved this kind of stuff in the past, even if with some help and pointers from experts and forums like you. I will be happy to spread to good word about you guys if you're able to help me out, and appreciate any advice in any case. I can be reached at email address removed to avoid spamming (yes, I'm a guitar head when I'm not geeking out on the computer, ha-ha)... Thanks!
  10. MY PC is infected and I need assistance. It's a virus that tries to open my thunder bird email with a false certificate and send spam out using my contacts list. Attached are the files requested in the starting point instructions. Please let me know what the next steps are. Thanks!
  11. I'm sorry if someone has already posted something like this before, but I couldn't find one. So, a Windows XP computer got the "System Check" virus which was removed. Asquared Anti-malware and Online Armor werer then installed on the computer. After a hour or so whenever I would go to the taskbar to the start menu, clock, etc. the mouse would select something immediately and open it. When the computer was connected to the internet, Firefox would go to random pages constantly. I also noticed that Asquared's guard and the firewall was off and I couldn't turn it back on. (The computer was not connected to the internet at this point) I ran a deep scan with Asquared and nothing came up. I restarted the computer and the blue screen of "Disk Check" came up. (Didn't before) But before I could do anything, after about 3 seconds a "key" was pressed to stop the disk check. I didn't press anything on the keyboard. I knew it had to be some form of Malware. I tried pressing F8 to get into safe boot BUT when I get to the screen it would show up for a second then "Start normally" would be highlighted and selected. I tried different keyboards and it happened. I couldn't open anything because it would be closed, and I could only start the Task Manager. I didn't see anything out of the ordinary in processes but cpu and memory were at 100% used...and nothing was running. Anyways, eventually I booted into safemode (By starting 'msconfig') and the problems persisted. I finally removed the "Virus" by finally getting asquared's guard to start again in safe mode. I ran a deep scan and this time a few "medium" level trojans were found. I can't remember what they were (I'm not going to work on the computer again till this Saturday) but they did consist of "DX" in the name and they were .exe. I removed them but the computer was still sluggish and firefox and other programs wouldn't run. I ended up manually going to the .temp folder where Asquared found the medium level trojans and moving ALL of them to Asquared's quarantine. (There were many more malicious sounding names in notepad files and .exe's that asquared didn't find anything bad in) After deleting them in Asqaured the compuer was fine again. NOTE: I tried running TDSS Killer and it wouldn't start. I want to know if anyone knows what this virus is and why asquared was disabled and couldn't find them. Also, did this virus have to do with System Check? Thank you for your time and sorry if someone has posted this before. Oh! And also is it possible this virus could come back again if the computer was connected back to the internet? (Since Asquared and the firewall were disabled by it.)
  12. 1st, Happy New Year 2 everybody! {XP Pro; SP3 32bit; EAM v6.0.0.52 beta} EAM scheduled scan was performed today & got stuck forever on System.Device.ni.dll, (immage attached), which belongs to Microsoft® .NET Framework Recent updates for .NET(s) were issued by MS today (consider offset time zone) I'd just closed EAM & carried on with my work ... sure that is a bug To devs: please tell if any additional info required Thanks
  13. Dear Sirs, I have been using Emsisoft antimalware for the last 3 years and fully enjoyed with your program ! I hope that you will help me. The trackball of my notebook Flybook V5 failed to respond. But when I use another mouse via USB port - this external mouse works. In order to check the notebok for viruses I loaded the latest version of Emsisoft Anti-malware and lanched it. The rootkit Virus.Boot.DefoIE2 was found. The screenshot is attached as bmp file. Then I loaded Emergency kit and followed instructions, but the rootkit was not found ! The log files are enclosed. Please, help me to solve the issue and remove the Boot virus. Thank you in advance , Best regards, Roman email address removed by moderator to avoid spamming
  14. Hello. My Anti-Malware don't start. I tried: - few reboots - reinstall with cleaning registry* - turning Online Armor, Windows Defender and Windows Firewall off But my lovely anti-virus still don't run. * Had to clean registry - installer was seeing that Anti-Malware is installed after uninstall. Programs used to clean: CCleaner (with CCEnhancer) and Glary Utilities. It shows an error when it starts: It means: Serious problem don't let to start application. Anti-Malware can't connect with his service. Please reboot your PC and check if problem happens again. If yes - contact with support. Any ideas how to fix it? This problem happened just today. Yesterday all was okay. Edit: Problem fixed... something in one file. No idea what, but it let me to delete easly (just to trash and then clean it). Well, some malwares really suck Block anti-virus, but they let to be deleted. But really bad for Emsisoft that it allowed to be closed by some bad virus/trojan/malware or whatever it is.
  15. Hello, according to Security Status File Guard is off (and available in paid version only). But File Guard icon is on and warns about shutting down Guard if closed. So in what state is File Guard; on or off?
  16. Dear Support, I have observed a long term problem with Online Armor's HIPS feature on my server PC, it eats all the CPU cycles and I set-up a batch file to check the status of the program and reboot the PC via a chkdsk on the reboot which fixes what ever the problem is. I suspect Online Armor is not able to finish writing a file during a former pre-scheduled shut-down which is on a time schedule each day. I need a solution OR a way to reduce the CPU priority to below normal on OA to enable my Batch file to run properly to reboot, (as when this situation occurs everything on the PC stalls out, and I end up with a whole load of delayed processes all trying to run at once, further de-stabilising the PC), I need my Batch file to complete the reboot command in chkdsk mode cycle, as the PC becomes totally unresponsive due to online armor using cpu as high as 95% and not allowng my batch file, or any other process to run to complete the reboot cycle. I have enclosed some important specifications below to assist in finding a solution. Regards Michelle --------------------------------------------------------------------------------------- Operating System Microsoft Windows XP Home Edition 5.1.2600 (WinXP Retail) Date 2011-11-18 Time 20:01 Computer: Computer Type ACPI Uniprocessor PC Operating System Microsoft Windows XP Home Edition OS Service Pack Service Pack 3 Internet Explorer 8.0.6001.18702 DirectX 4.09.00.0904 (DirectX 9.0c) Computer Name GARAGEPC User Name xxxx Logon Domain xxxxxxxxx Date / Time 2011-11-18 / 20:01 Motherboard: CPU Type Intel Celeron, 2400 MHz Motherboard Name MSI 651M-L (MS-7005) (3 PCI, 1 AGP, 1 CNR, 2 DDR DIMM, Audio, Video, LAN) Motherboard Chipset SiS 651 System Memory 768 MB (PC2700 DDR SDRAM) DIMM1: 512 MB PC2700 DDR SDRAM (3.0-4-4-8 @ 166 MHz) DIMM2: Kingston K 256 MB PC2700 DDR SDRAM (2.5-3-3-7 @ 166 MHz) (2.0-3-3-6 @ 133 MHz) BIOS Type Award (10/06/04) Communication Port Communications Port (COM1) Communication Port ECP Printer Port (LPT1) Display: Video Adapter NVIDIA Quadro4 900 XGL (128 MB) 3D Accelerator nVIDIA Quadro4 900XGL Monitor Acer AL1715 [17" LCD] (ETL2102177) Multimedia: Audio Adapter Realtek ALC655 @ SiS 7012 Audio Device Storage: IDE Controller SiS PCI IDE Controller Storage Controller ALSAQL6Q IDE Controller Storage Controller NERO IMAGEDRIVE SCSI Controller Floppy Drive Floppy disk drive Disk Drive ExcelStor Technology J360 (60 GB, 7200 RPM, Ultra-ATA/100) Disk Drive Maxtor 6Y080L0 (80 GB, 7200 RPM, Ultra-ATA/133) Optical Drive DGVM 5Q34TAV4DQR SCSI CdRom Device Optical Drive DVDRW IDE1008 (DVD+RW:8x/4x, DVD-RW:4x/2x, DVD-ROM:12x, CD:40x/24x/40x DVD+RW/DVD-RW) Optical Drive NERO IMAGEDRIVE2 SCSI CdRom Device (Virtual CD-ROM) Optical Drive NERO IMAGEDRIVE2 SCSI CdRom Device (Virtual CD-ROM) SMART Hard Disks Status OK Partitions: C: (NTFS) 17084 MB (7451 MB free) D: (FAT32) 2019 MB (1193 MB free) E: (FAT32) 39978 MB (2911 MB free) I: (NTFS) 33996 MB (924 MB free) J: (NTFS) 22622 MB (141 MB free) Total Size 113.0 GB (12.3 GB free) Input: Keyboard HID Keyboard Device Mouse HID-compliant mouse Network: Primary IP Address 10.10.2.10 Primary MAC Address 00-11-09-01-CB-3F Network Adapter SiS 900-Based PCI Fast Ethernet Adapter (10.10.2.10) [ Motherboard ] Motherboard Properties: Manufacturer MICRO-STAR INTERNATIONAL CO., LTD Product MS-7005 [ Chassis ] Chassis Properties: Chassis Type Desktop Case [ Memory Controller ] Memory Controller Properties: Error Detection Method None Error Correction None Supported Memory Interleave 1-Way Current Memory Interleave 1-Way Supported Memory Types DIMM, SDRAM Supported Memory Voltages 3.3V Maximum Memory Module Size 1024 MB Memory Slots 2 [ Processors / Intel® Celeron® CPU ] Processor Properties: Manufacturer Intel Version Intel® Celeron® CPU External Clock 100 MHz Maximum Clock 4000 MHz Current Clock 2400 MHz Type Central Processor Voltage 1.5 V Status Enabled Upgrade ZIF Socket Designation Socket 478 [ Caches / Internal Cache ] Cache Properties: Type Internal Status Enabled Operational Mode Write-Back Maximum Size 20 KB Installed Size 20 KB Supported SRAM Type Synchronous Current SRAM Type Synchronous Socket Designation Internal Cache [ Caches / External Cache ] Cache Properties: Type External Status Enabled Operational Mode Write-Back Maximum Size 128 KB Installed Size 128 KB Supported SRAM Type Synchronous Current SRAM Type Synchronous Socket Designation External Cache [ Memory Modules / A0 ] Memory Module Properties: Socket Designation A0 Type DIMM, SDRAM Installed Size 512 MB Enabled Size 512 MB [ Memory Modules / A1 ] Memory Module Properties: Socket Designation A1 Type DIMM, SDRAM Installed Size 256 MB Enabled Size 256 MB [ Memory Devices / A0 ] Memory Device Properties: Form Factor DIMM Type SDRAM Type Detail Synchronous Size 512 MB Total Width 64-bit Data Width 64-bit Device Locator A0 Bank Locator Bank0/1 Manufacturer None Serial Number None Asset Tag None Part Number None [ Memory Devices / A1 ] Memory Device Properties: Form Factor DIMM Type SDRAM Type Detail Synchronous Size 256 MB Total Width 64-bit Data Width 64-bit Device Locator A1 Bank Locator Bank2/3 Manufacturer None Serial Number None Asset Tag None Part Number None [ System Slots / PCI0 ] System Slot Properties: Slot Designation PCI0 Type PCI Usage Empty Data Bus Width 32-bit Length Long [ System Slots / PCI1 ] System Slot Properties: Slot Designation PCI1 Type PCI Usage Empty Data Bus Width 32-bit Length Long [ System Slots / PCI2 ] System Slot Properties: Slot Designation PCI2 Type PCI Usage Empty Data Bus Width 32-bit Length Long [ System Slots / AGP ] System Slot Properties: Slot Designation AGP Type AGP Usage Empty Data Bus Width 32-bit Length Long
  17. Hi, I upgraded to version 6 yesterday(valid license for 309 days) and I have problem with GUARD:Surf Protection host rules. With previous version ,I had Malware hosts in Block and notify mode and I created host rules for sites I was trusted(I use megaupload and hotfile for storing files). In version 6 , I created the same rules but it is still blocking access to these sites. It doesn't recognise host rules created by the owner... I create a host rule , press ok to configure the rule and when I open again the Surf protection window the rule I created does not exist... I tried rebooting but still the same... Now I have Malware hosts in Alert mode and everytime I try to connect to these sites I see a pop up alert-window. Ofcourse this is very annoyning.... I use vista x86 sp2 p.s. I attached 2 screenshots... I created a rule for Megaupload(don't block), I checked that the rule changed , closed the applications window and opened it few seconds later... my rule had disappeared.
  18. Assume I closed and shutdown OA. How exactly do I restart OA but NOT from Start menu but from WinExplorer? It seems to me that TWO programs must be double clicked: oasrv.exe AND oaui.exe Is this true? Is there no way to e.g. only click oaui.exe and this prgm. starts implicitely oasrv.exe as well? Peter
  19. Hi everyone, Since we just kicked off the Emsisoft Anti-Malware 6.0 closed beta tests we thought it would be a good time to give everyone a little sneak peek of the new version. What is new? New multi-core optimized scan engine The biggest change in Emsisoft Anti-Malware is a completely new and multi-core optimized scanning engine. As a result Emsisoft Anti-Malware 6.0 is on average 450% faster than Emsisoft Anti-Malware 5.1 when it comes to on-demand scans! Direct disk access scan mode The new scan engine features a special direct disk access mode. Using this direct disk access mode we are able to circumvent and detect all currently active file based rootkits. Advanced caching mechanisms Another feature of the new scan engine is an advanced caching mechanism. Emsisoft Anti-Malware is able to learn from the files on your system, recognizing files that are trustworthy and skipping them in future scans if they haven't changed. Due to this the performance impact of the Emsisoft Anti-Malware File Guard has been greatly reduced. Drastically improved boot times Due to several optimizations we made, we were able to drastically reduce the impact Emsisoft Anti-Malware has on the boot process. Internal rating system to further reduce false positives on well known files Emsisoft Anti-Malware 6.0 uses the information it gathers from various sources including the advanced cache to recognize and prevent false positives. Entirely new license system Quite a few of our customers thought the account based licensing system was a bit inconvenient. We took this criticism as motivation to switch Emsisoft Anti-Malware (and later all other Emsisoft products) over to a completely new key based licensing scheme. As a result you no longer need a special account to use Emsisoft Anti-Malware. Another feature of the new licensing scheme is a unique referral program that allows users to obtain or extend licenses by referring our products to friends and family. As well as dozens of other small changes ... Screenshots Everyone likes pretty pictures, right? So how about some pretty pictures with a few explanations? Since we have the new license scheme in place we no longer require you to create an account to get the 30 day trial, so the 3 day trial mode became kind of useless. It looks a lot better with only 3 options anyways, right? Remember the old user creation and login dialogs? They are gone and they surely won't be missed . Instead you will just see a single license key dialog, that will even be skipped if we recognize your system already based on its hardware. Multiple licenses can be assigned to the same key. If you want to install Emsisoft Anti-Malware on a new system but don't have a free license left, you can easily reassign the license from an older system in a very convenient way. Of course this dialog will be skipped if we recognize your system already or you have free license slots left. You will be able to reassign each and every license a limited amount of times per day. So even if you switch your system more often than your underwear we won't bother you with manual resets that have to be performed by our support staff. An option has been removed to perform certain integrity checks as soon as Emsisoft Anti-Malware is started. This feature was added at a time when Emsisoft Anti-Malware lacked protection from manipulation of it's own files. It was replaced by a much more effective protection mechanism in the meanwhile so we removed it. Quite a few people were a bit puzzled by the occurrence of sudden GUI freezes in the past, such as the step right after update in the wizard, where we load the signature databases. We took care of them and replaced them with status indicators so the user is no longer left in the dark when something is happening that may have an impact on the responsiveness of the user interface. This is the new license tab. Don't worry about the serial displayed here. You can simply disable the display of the serial using the Permission system integrated into Emsisoft Anti-Malware. The new custom scan window reveals the new options to control the advanced caching and direct disk access mode. If you look closely you can see one option missing: The old "Heuristics" checkbox. We greatly reworked the heuristics in the new scan engine and brought down the false positives caused by it to effectively 0. As a result heuristics are now enabled by default. The new direct disk access mode of the scan engine is able to see through even the most sophisticated rootkits. In this case we scanned a system infected with TDL-3 - arguably the hardest to detect file based rootkit today. When will it be out? We expect a release within the next few months. If you can't wait that long: We started the closed beta test today. So if you speak English, know how to use Windows, have a curious nature, like to break and get insights into things, enjoy discussing matters with like-minded people and appreciate the opportunity to talk directly to all developers and have a real impact on the product, you may want to consider joining our Tester team. We want your feedback! Have you started or found a thread about EAM 6.0 in a different forum? Do you like or dislike a specific planned change? Do you have questions about one of the new features of EAM 6.0? Don't keep them to yourself. Share them with us! Either by simply replying here or via mail.
  20. I would like know in details the use of RunSafer in Emsisoft online armor in the use of it from the context menu when running malware, malwares that make downloads of dll, exe, etc., if the rest of them after the system is running by runsafer and after the program is closed or malware warning if they will keep the system up to be "caught" by the scan and also all the applications running within the sandbox after its closure if they are in the system, how the permissions are or not denied. Finally, how working in details the runsafer. My system is Windows 7 Ultimate x64 My system in virtual machine is Windows XP SP3 x86 I would be grateful if someone could Emsisoft me to answer that question.
  21. While running a safe program like MOO disk cleaner ,there is an unnecessary oasrv spike and the running of the application is literally hanging. With OA closed the same application is very quick.
  22. Specifically, something called Gen.Variant.Kazy. I've noticed that I cannot use iTunes or Windows Defender updates - those programs cannot login, though my browser works, as does anything else that connects to the internet. The malware all seems to be located in the Windows Defender folder. Enclosed are the logs, which I hope will help... Thanks for any help you can give me!
  23. Hello, I am not very familiar with these forums, but I noticed that another user (thread closed for lack of response) seemed to have a similar problem as I have. I have a browser redirect virus/malware and I am unable to get rid of it. I used everything I could think of (Malwarebytes' Anti-Malware,CCleaner, Microsoft Securities Essentials,ATF-Cleaner, tdsskiller,SUPERAntiSpyware, Kaspersky virus removal tool, and others) but still no results. Are you familiar with this malware? And if yes, do you have any advice to get rid of it? Please find bellow and attached my 3 EEK scan reports as well and the 2 OTL scan report (OTL and Extra) Sincerely, Stephen
  24. your anti malware asked me to use your manual removal programme which then asked me to use various cleaners and post reports....heres the reports OTL logfile created on: 11/05/2011 22:32:37 - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\EdM\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy 4.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 15.00% Memory free 7.00 Gb Paging File | 3.00 Gb Available in Paging File | 40.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 455.32 Gb Total Space | 405.89 Gb Free Space | 89.15% Space Free | Partition Type: NTFS Computer Name: EDM-VAIO | User Name: EdM | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\EdM\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe (Emsi Software GmbH) PRC - C:\Program Files (x86)\Emsisoft Anti-Malware\a2start.exe (Emsi Software GmbH) PRC - C:\Program Files (x86)\Emsisoft Anti-Malware\a2guard.exe (Emsi Software GmbH) PRC - C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\[email protected]\svc.exe () PRC - C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson) PRC - C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation) PRC - C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe () PRC - C:\Program Files\Sony\VAIO Care\VCSpt.exe (Sony Corporation) PRC - C:\Program Files (x86)\SONY\Marketing Tools\MarketingTools.exe (Sony Corporation) PRC - C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe (Sony Corporation) PRC - C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (OpenOffice.org) PRC - C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) PRC - C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe (Sony Corporation) PRC - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Sony Corporation) PRC - C:\Program Files (x86)\SONY\PMB\PMBVolumeWatcher.exe (Sony Corporation) PRC - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe (Intel Corporation) PRC - C:\Program Files (x86)\SONY\VAIO Event Service\VESMgrSub.exe (Sony Corporation) PRC - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) PRC - C:\Program Files (x86)\SONY\PMB\PMBDeviceInfoProvider.exe (Sony Corporation) PRC - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe (Sony Corporation) PRC - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe (Sony Corporation) PRC - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe (Sony Corporation) PRC - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe (Sony Corporation) PRC - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SHTtray.exe (Sony Corporation) PRC - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe (Sony Corporation) PRC - C:\Program Files (x86)\SONY\Media Gallery\ElbServer.exe (Sony Corporation) PRC - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Sony Corporation) PRC - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation) PRC - C:\Program Files (x86)\SONY\ISB Utility\ISBMgr.exe (Sony Corporation) PRC - C:\Program Files (x86)\McAfee\MPF\MpfSrv.exe (McAfee, Inc.) PRC - C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe () PRC - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (ArcSoft, Inc.) PRC - C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe (Adobe Systems Incorporated) ========== Modules (SafeList) ========== MOD - C:\Users\EdM\Downloads\OTL.exe (OldTimer Tools) MOD - C:\Program Files (x86)\Emsisoft Anti-Malware\a2hooks32.dll (Emsi Software GmbH) MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll (Microsoft Corporation) ========== Win32 Services (SafeList) ========== SRV:64bit: - (mfefire) -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) SRV:64bit: - (McShield) -- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe () SRV:64bit: - (mfevtp) -- C:\Windows\SysNative\mfevtps.exe (McAfee, Inc.) SRV:64bit: - (McODS) -- C:\Program Files\McAfee\VirusScan\mcods.exe (McAfee, Inc.) SRV:64bit: - (wlcrasvc) -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation) SRV:64bit: - (SampleCollector) -- C:\Program Files\Sony\VAIO Care\VCPerfService.exe (Sony Corporation) SRV:64bit: - (VSNService) -- C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Sony Corporation) SRV:64bit: - (VUAgent) -- C:\Program Files\Sony\VAIO Update 5\VUAgent.exe (Sony Corporation) SRV:64bit: - (MSK80Service) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:64bit: - (McProxy) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:64bit: - (McNASvc) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:64bit: - (McNaiAnn) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:64bit: - (mcmscsvc) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:64bit: - (VcmXmlIfHelper) -- C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe (Sony Corporation) SRV:64bit: - (VcmINSMgr) -- C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe (Sony Corporation) SRV:64bit: - (VcmIAlzMgr) -- C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Sony Corporation) SRV:64bit: - (VAIO Power Management) -- C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Sony Corporation) SRV:64bit: - (btwdins) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.) SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SRV - (a2AntiMalware) -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe (Emsi Software GmbH) SRV - (Firefox Service) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\[email protected]\svc.exe () SRV - (BBSvc) -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE (Microsoft Corporation.) SRV - (SeaPort) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation) SRV - (Sony Ericsson PCCompanion) -- C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe (Avanquest Software) SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.) SRV - (VAIO Event Service) -- C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe (Sony Corporation) SRV - (MOBKbackup) -- C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe (McAfee, Inc.) SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (ACDaemon) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.) SRV - (UNS) Intel® -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe (Intel Corporation) SRV - (LMS) Intel® -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe (Intel Corporation) SRV - (IAStorDataMgrSvc) Intel® -- C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) SRV - (PMBDeviceInfoProvider) -- C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe (Sony Corporation) SRV - (SOHDms) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe (Sony Corporation) SRV - (SOHPlMgr) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe (Sony Corporation) SRV - (SOHDs) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe (Sony Corporation) SRV - (SOHCImp) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe (Sony Corporation) SRV - (SOHDBSvr) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe (Sony Corporation) SRV - (VzCdbSvc) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Sony Corporation) SRV - (VAIO Entertainment TV Device Arbitration Service) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe (Sony Corporation) SRV - (VCFw) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation) SRV - (Roxio Upnp Server 10) -- C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe (Sonic Solutions) SRV - (Roxio UPnP Renderer 10) -- C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe (Sonic Solutions) SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) SRV - (MpfService) -- C:\Program Files (x86)\McAfee\MPF\MPFSrv.exe (McAfee, Inc.) SRV - (OMSI download service) -- C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe () SRV - (uCamMonitor) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (ArcSoft, Inc.) SRV - (AdobeActiveFileMonitor7.0) -- C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe (Adobe Systems Incorporated) ========== Driver Services (SafeList) ========== DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation) DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation) DRV:64bit: - (mfehidk) -- C:\Windows\SysNative\drivers\mfehidk.sys (McAfee, Inc.) DRV:64bit: - (mfefirek) -- C:\Windows\SysNative\drivers\mfefirek.sys (McAfee, Inc.) DRV:64bit: - (mfewfpk) -- C:\Windows\SysNative\drivers\mfewfpk.sys (McAfee, Inc.) DRV:64bit: - (mfeavfk) -- C:\Windows\SysNative\drivers\mfeavfk.sys (McAfee, Inc.) DRV:64bit: - (mfeapfk) -- C:\Windows\SysNative\drivers\mfeapfk.sys (McAfee, Inc.) DRV:64bit: - (mferkdet) -- C:\Windows\SysNative\drivers\mferkdet.sys (McAfee, Inc.) DRV:64bit: - (mfenlfk) -- C:\Windows\SysNative\drivers\mfenlfk.sys (McAfee, Inc.) DRV:64bit: - (cfwids) -- C:\Windows\SysNative\drivers\cfwids.sys (McAfee, Inc.) DRV:64bit: - (TVICHW64) -- C:\Windows\SysNative\drivers\TVicHW64.sys (EnTech Taiwan) DRV:64bit: - (fssfltr) -- C:\Windows\SysNative\drivers\fssfltr.sys (Microsoft Corporation) DRV:64bit: - (ggsemc) -- C:\Windows\SysNative\drivers\ggsemc.sys (Sony Ericsson Mobile Communications) DRV:64bit: - (ggflt) -- C:\Windows\SysNative\drivers\ggflt.sys (Sony Ericsson Mobile Communications) DRV:64bit: - (IntcDAud) Intel® -- C:\Windows\SysNative\drivers\IntcDAud.sys (Intel® Corporation) DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation) DRV:64bit: - (MOBKFilter) -- C:\Windows\SysNative\drivers\MOBK.sys (Mozy, Inc.) DRV:64bit: - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.) DRV:64bit: - (HECIx64) Intel® -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation) DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation) DRV:64bit: - (btwrchid) -- C:\Windows\SysNative\drivers\btwrchid.sys (Broadcom Corporation.) DRV:64bit: - (btwavdt) -- C:\Windows\SysNative\drivers\btwavdt.sys (Broadcom Corporation.) DRV:64bit: - (btwaudio) -- C:\Windows\SysNative\drivers\btwaudio.sys (Broadcom Corporation.) DRV:64bit: - (btusbflt) -- C:\Windows\SysNative\drivers\btusbflt.sys (Broadcom Corporation.) DRV:64bit: - (btwl2cap) -- C:\Windows\SysNative\drivers\btwl2cap.sys (Broadcom Corporation.) DRV:64bit: - (Impcd) -- C:\Windows\SysNative\drivers\Impcd.sys (Intel Corporation) DRV:64bit: - (yukonw7) -- C:\Windows\SysNative\drivers\yk62x64.sys () DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.) DRV:64bit: - (rimspci) -- C:\Windows\SysNative\drivers\rimssne64.sys (REDC) DRV:64bit: - (ApfiltrService) -- C:\Windows\SysNative\drivers\Apfiltr.sys (Alps Electric Co., Ltd.) DRV:64bit: - (risdsnpe) -- C:\Windows\SysNative\drivers\risdsne64.sys (REDC) DRV:64bit: - (SFEP) -- C:\Windows\SysNative\drivers\SFEP.sys (Sony Corporation) DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) DRV:64bit: - (Ntfs) -- C:\Windows\SysNative\wbem\ntfs.mof () DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) DRV:64bit: - (ArcSoftKsUFilter) -- C:\Windows\SysNative\drivers\ArcSoftKsUFilter.sys (ArcSoft, Inc.) DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Sonic Solutions) DRV:64bit: - (mfesmfk) -- C:\Windows\SysNative\drivers\mfesmfk.sys (McAfee, Inc.) DRV:64bit: - (mferkdk) -- C:\Windows\SysNative\drivers\mferkdk.sys (McAfee, Inc.) DRV:64bit: - (MPFP) -- C:\Windows\SysNative\drivers\Mpfp.sys (McAfee, Inc.) DRV:64bit: - (s1018mdm) -- C:\Windows\SysNative\drivers\s1018mdm.sys (MCCI Corporation) DRV:64bit: - (s1018unic) Sony Ericsson Device 1018 USB Ethernet Emulation (WDM) -- C:\Windows\SysNative\drivers\s1018unic.sys (MCCI Corporation) DRV:64bit: - (s1018mgmt) Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM) -- C:\Windows\SysNative\drivers\s1018mgmt.sys (MCCI Corporation) DRV:64bit: - (s1018obex) -- C:\Windows\SysNative\drivers\s1018obex.sys (MCCI Corporation) DRV:64bit: - (s1018bus) Sony Ericsson Device 1018 driver (WDM) -- C:\Windows\SysNative\drivers\s1018bus.sys (MCCI Corporation) DRV:64bit: - (s1018nd5) Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS) -- C:\Windows\SysNative\drivers\s1018nd5.sys (MCCI Corporation) DRV:64bit: - (s1018mdfl) -- C:\Windows\SysNative\drivers\s1018mdfl.sys (MCCI Corporation) DRV:64bit: - (seehcri) -- C:\Windows\SysNative\drivers\seehcri.sys (Sony Ericsson Mobile Communications) DRV - (a2acc) -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2accx64.sys (Emsi Software GmbH) DRV - (a2injectiondriver) -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix64.sys (Emsi Software GmbH) DRV - (a2util) -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2util64.sys (Emsi Software GmbH) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain?brand=SVEC&bmod=EU01 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://mysky.sky.com/portal/site/skycom/mysky/signin?srp=%2Fportal%2Fsite%2Fskycom%2Fmenuitem.29f0fd57f2e1296094e964a441fb41ca&ifurl=site%2Fskycom%2Fmysky IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Secure Search" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3 FF - prefs.js..extensions.enabledItems: {73a6fe31-595d-460b-a920-fcc0f8843232}:2.0.9.9 FF - prefs.js..extensions.enabledItems: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20100908 FF - prefs.js..extensions.enabledItems: {340c2bbc-ce74-4362-90b5-7c26312808ef}:1.7 FF - prefs.js..extensions.enabledItems: {e001c731-5e37-4538-a5cb-8168736a2360}:0.9.9.76 FF - prefs.js..extensions.enabledItems: {d40f5e7b-d2cf-4856-b441-cc613eeffbe3}:1.49 FF - prefs.js..extensions.enabledItems: [email protected]:1.3.1 FF - prefs.js..extensions.enabledItems: {5F590AA2-1221-4113-A6F4-A4BB62414FAC}:0.45.6.20100202.1 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6778 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: {d47a9f51-8281-43fa-f450-f28ef8735e9a}:2.1.1 FF - prefs.js..extensions.enabledItems: [email protected]:0.7.2.6 FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.4 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 FF - prefs.js..keyword.URL: "http://uk.search.yahoo.com/search?fr=mcafee&p=" FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/05/08 16:48:33 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/04/24 20:35:47 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.11\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/05/08 16:48:33 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.11\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/04/24 20:35:47 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/05/08 16:48:33 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/04/24 20:35:47 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/05/08 16:48:33 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/04/24 20:35:47 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/05/08 16:48:33 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/04/24 20:35:47 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/05/08 16:48:33 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/04/24 20:35:47 | 000,000,000 | ---D | M] [2010/06/19 20:42:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\EdM\AppData\Roaming\Mozilla\Extensions [2011/05/08 16:48:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions [2011/03/20 23:30:37 | 000,000,000 | ---D | M] (IE Tab 2 (FF 3.6+)) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB} [2011/03/13 18:11:31 | 000,000,000 | ---D | M] (Firefox Sync) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\{340c2bbc-ce74-4362-90b5-7c26312808ef} [2010/06/20 20:38:52 | 000,000,000 | ---D | M] (SmoothWheel (mozdev.org)) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\{5F590AA2-1221-4113-A6F4-A4BB62414FAC} [2011/04/06 22:12:37 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2011/01/30 18:37:40 | 000,000,000 | ---D | M] (Pixlr Grabber) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\{d47a9f51-8281-43fa-f450-f28ef8735e9a} [2011/05/08 16:48:51 | 000,000,000 | ---D | M] (BitDefender QuickScan) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360} [2010/06/19 23:59:53 | 000,000,000 | ---D | M] (No FB Tracking) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\[email protected] [2011/03/13 18:11:22 | 000,000,000 | ---D | M] ("AmazonAssist") -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\[email protected] [2011/03/20 23:24:37 | 000,000,000 | ---D | M] (startup.service) -- C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\extensions\[email protected] [2011/03/26 20:20:44 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions [2011/01/01 20:04:55 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} [2010/10/06 21:24:45 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010/10/31 17:43:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2011/01/23 15:01:24 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2011/03/13 18:04:41 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} File not found (No name found) -- () (No name found) -- C:\USERS\EDM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G3NYJYXZ.DEFAULT\EXTENSIONS\{73A6FE31-595D-460B-A920-FCC0F8843232}.XPI () (No name found) -- C:\USERS\EDM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G3NYJYXZ.DEFAULT\EXTENSIONS\{A0D7CCB3-214D-498B-B4AA-0E8FDA9A7BF7}.XPI () (No name found) -- C:\USERS\EDM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G3NYJYXZ.DEFAULT\EXTENSIONS\{C0C9A2C7-2E5C-4447-BC53-97718BC91E1B}.XPI () (No name found) -- C:\USERS\EDM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G3NYJYXZ.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- C:\USERS\EDM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G3NYJYXZ.DEFAULT\EXTENSIONS\{D40F5E7B-D2CF-4856-B441-CC613EEFFBE3}.XPI () (No name found) -- C:\USERS\EDM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G3NYJYXZ.DEFAULT\EXTENSIONS\[email protected] [2011/05/08 16:48:15 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll [2010/10/13 22:28:54 | 000,024,376 | ---- | M] (McAfee, Inc.) -- C:\Program Files (x86)\Mozilla Firefox\components\Scriptff.dll [2011/02/02 22:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll [2010/01/01 09:00:00 | 000,001,538 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\amazon-en-GB.xml [2010/01/01 09:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\bing.xml [2010/01/01 09:00:00 | 000,000,947 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\chambers-en-GB.xml [2010/01/01 09:00:00 | 000,001,180 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\eBay-en-GB.xml [2011/04/19 22:10:04 | 000,002,027 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\McSiteAdvisor.xml [2010/01/01 09:00:00 | 000,001,135 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\yahoo-en-GB.xml O1 HOSTS File: ([2009/06/10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:64bit: - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho64.dll () O2:64bit: - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20110424222256.dll (McAfee, Inc.) O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll (Google Inc.) O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll () O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20110424222256.dll (McAfee, Inc.) O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.) O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O4:64bit: - HKLM..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.) O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [igfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4 - HKLM..\Run: [a-squared] C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2guard.exe (Emsi Software GmbH) O4 - HKLM..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) O4 - HKLM..\Run: [iSBMgr.exe] C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation) O4 - HKLM..\Run: [MarketingTools] C:\Program Files (x86)\SONY\Marketing Tools\MarketingTools.exe (Sony Corporation) O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.) O4 - HKLM..\Run: [NortonOnlineBackupReminder] C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe (Symantec Corporation) O4 - HKLM..\Run: [PMBVolumeWatcher] c:\Program Files (x86)\SONY\PMB\PMBVolumeWatcher.exe (Sony Corporation) O4 - HKLM..\Run: [sHTtray.exe] C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SHTtray.exe (Sony Corporation) O4 - HKCU..\Run: [Elbserver] C:\Program Files (x86)\Sony\Media Gallery\ElbServer.exe (Sony Corporation) O4 - HKCU..\Run: [sony Ericsson PC Companion] C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson) O4 - Startup: C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra Button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra 'Tools' menuitem : Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra Button: Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - c:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll (Evernote Corporation) O9 - Extra 'Tools' menuitem : Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - c:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll (Evernote Corporation) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O15 - HKCU\..Trusted Domains: internet ([]about in Trusted sites) O15 - HKCU\..Trusted Domains: mcafee.com ([]http in Trusted sites) O15 - HKCU\..Trusted Domains: mcafee.com ([]https in Trusted sites) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16) O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O18:64bit: - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20:64bit: - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation) O20 - Winlogon\Notify\VESWinlogon: DllName - VESWinlogon.dll - C:\Windows\SysWow64\VESWinlogon.dll (Sony Corporation) O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{22a5f181-04ae-11e0-ba16-0024bec67fc4}\Shell - "" = AutoRun O33 - MountPoints2\{22a5f181-04ae-11e0-ba16-0024bec67fc4}\Shell\AutoRun\command - "" = G:\Startme.exe O33 - MountPoints2\{6584adfc-2650-11e0-b59c-0024bec67fc4}\Shell - "" = AutoRun O33 - MountPoints2\{6584adfc-2650-11e0-b59c-0024bec67fc4}\Shell\AutoRun\command - "" = G:\Startme.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2011/05/11 20:30:25 | 000,000,000 | ---D | C] -- C:\Users\EdM\AppData\Local\Apple [2011/05/11 20:22:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee [2011/05/07 23:53:44 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll [2011/05/07 23:53:44 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1.dll [2011/05/07 20:59:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emsisoft Anti-Malware [2011/04/29 20:19:09 | 002,871,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe [2011/04/29 20:19:09 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe [2011/04/29 20:19:02 | 001,465,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll [2011/04/29 20:19:02 | 000,870,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll [2011/04/29 20:16:48 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll [2011/04/29 20:16:47 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fsutil.exe [2011/04/29 20:16:46 | 001,699,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll [2011/04/29 20:16:46 | 000,189,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys [2011/04/29 20:16:46 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys [2011/04/29 20:16:46 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys [2011/04/29 20:16:45 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fsutil.exe [2011/04/29 20:15:08 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe [2011/04/29 20:15:08 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prevhost.exe [2011/04/24 22:22:55 | 000,009,984 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\mfeclnk.sys [2011/04/24 22:22:37 | 000,283,360 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\mfewfpk.sys [2011/04/24 22:22:36 | 000,441,328 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\mfefirek.sys [2011/04/24 22:22:36 | 000,094,864 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\mferkdet.sys [2011/04/24 22:22:36 | 000,075,032 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\mfenlfk.sys [2011/04/24 22:22:35 | 000,190,136 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\mfeavfk.sys [2011/04/24 22:22:35 | 000,062,800 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\cfwids.sys [2011/04/24 22:22:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\McAfee [2011/04/24 22:22:09 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee.com [2011/04/24 22:22:08 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee [2011/04/24 22:14:15 | 000,149,032 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\mfevtps.exe [2011/04/18 00:50:09 | 000,000,000 | ---D | C] -- C:\65ce4e1ed8995e821b1f81b30fa5 [2011/04/17 21:52:29 | 000,000,000 | --SD | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Online Backup [2011/04/17 21:52:20 | 000,066,040 | ---- | C] (Mozy, Inc.) -- C:\Windows\SysNative\drivers\MOBK.sys [2011/04/17 21:52:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\McAfee Online Backup [2011/04/17 17:46:16 | 000,476,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll [2011/04/17 17:46:16 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll [2011/04/17 17:45:55 | 001,359,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42u.dll [2011/04/17 17:45:54 | 001,395,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42.dll [2011/04/17 17:45:53 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42u.dll [2011/04/17 17:45:53 | 001,137,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42.dll [2011/04/17 17:45:33 | 000,367,616 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll [2011/04/17 17:45:33 | 000,294,912 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll [2011/04/17 17:45:32 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll [2011/04/17 17:45:32 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll [2011/04/17 17:45:20 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnsapi.dll [2011/04/17 17:45:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscacheugc.exe [2011/04/17 17:45:12 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscacheugc.exe [2011/04/17 17:44:44 | 000,605,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe [2011/04/17 17:44:44 | 000,566,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi [2011/04/17 17:44:43 | 000,518,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe [2011/04/17 17:44:42 | 000,642,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi [2011/04/17 17:44:42 | 000,020,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdusb.dll [2011/04/17 17:44:42 | 000,019,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kd1394.dll [2011/04/17 17:44:42 | 000,017,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdcom.dll [2011/04/17 17:44:25 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSCOVER.exe [2010/06/20 11:21:04 | 000,148,736 | ---- | C] (Avanquest Software) -- C:\ProgramData\hpe9A1D.dll [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ] [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2011/05/11 22:42:20 | 000,000,892 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011/05/11 21:42:33 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011/05/11 20:51:05 | 000,001,293 | ---- | M] () -- C:\Windows\SysNative\Config.MPF [2011/05/11 20:42:03 | 000,000,888 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011/05/11 20:35:44 | 000,001,164 | ---- | M] () -- C:\Users\EdM\Desktop\ccsetup306 (1) - Shortcut.lnk [2011/05/11 20:35:34 | 000,001,085 | ---- | M] () -- C:\Users\EdM\Desktop\OTL - Shortcut.lnk [2011/05/11 20:35:20 | 000,001,218 | ---- | M] () -- C:\Users\EdM\Desktop\EmsisoftEmergencyKit - Shortcut.lnk [2011/05/11 20:32:45 | 000,014,144 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011/05/11 20:32:45 | 000,014,144 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011/05/11 20:22:33 | 000,001,828 | ---- | M] () -- C:\Users\Public\Desktop\McAfee Internet Security.lnk [2011/05/11 20:19:11 | 2955,485,184 | -HS- | M] () -- C:\hiberfil.sys [2011/05/07 20:59:26 | 000,001,119 | ---- | M] () -- C:\Users\EdM\Application Data\Microsoft\Internet Explorer\Quick Launch\Emsisoft Anti-Malware.lnk [2011/05/07 20:59:26 | 000,001,095 | ---- | M] () -- C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk [2011/04/29 19:54:16 | 000,000,410 | ---- | M] () -- C:\Windows\tasks\vtscheduletask.job [2011/04/24 20:35:49 | 000,002,014 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk [2011/04/19 21:34:36 | 000,397,064 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2011/04/19 21:13:21 | 000,732,070 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2011/04/19 21:13:21 | 000,616,008 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2011/04/19 21:13:21 | 000,106,388 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2011/04/17 23:04:33 | 000,214,960 | ---- | M] () -- C:\test.xml [2011/04/17 21:52:29 | 000,001,039 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Online Backup Status.lnk [2011/04/17 19:54:37 | 000,024,733 | ---- | M] () -- C:\Users\EdM\Documents\AKD-73611106128.pdf [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ] [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ] ========== Files Created - No Company Name ========== [2011/05/11 20:35:44 | 000,001,164 | ---- | C] () -- C:\Users\EdM\Desktop\ccsetup306 (1) - Shortcut.lnk [2011/05/11 20:35:34 | 000,001,085 | ---- | C] () -- C:\Users\EdM\Desktop\OTL - Shortcut.lnk [2011/05/11 20:35:20 | 000,001,218 | ---- | C] () -- C:\Users\EdM\Desktop\EmsisoftEmergencyKit - Shortcut.lnk [2011/05/07 20:59:26 | 000,001,119 | ---- | C] () -- C:\Users\EdM\Application Data\Microsoft\Internet Explorer\Quick Launch\Emsisoft Anti-Malware.lnk [2011/05/07 20:59:26 | 000,001,095 | ---- | C] () -- C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk [2011/04/24 22:24:18 | 000,001,828 | ---- | C] () -- C:\Users\Public\Desktop\McAfee Internet Security.lnk [2011/04/17 21:52:29 | 000,001,039 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Online Backup Status.lnk [2011/04/17 19:54:37 | 000,024,733 | ---- | C] () -- C:\Users\EdM\Documents\AKD-73611106128.pdf [2010/10/24 22:09:54 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2010/10/05 23:16:27 | 000,000,221 | ---- | C] () -- C:\ProgramData\MusicStation.xml [2010/06/20 11:43:27 | 000,018,944 | ---- | C] () -- C:\Users\EdM\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010/06/19 19:22:45 | 000,051,068 | ---- | C] () -- C:\Windows\SysWow64\igfcg575m.bin [2010/06/19 18:03:22 | 000,002,119 | ---- | C] () -- C:\Windows\SysWow64\McOEMAppRules.dat [2009/12/25 23:42:29 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2009/12/25 21:13:58 | 000,208,896 | ---- | C] () -- C:\Windows\SysWow64\iglhsip32.dll [2009/12/25 21:13:58 | 000,143,360 | ---- | C] () -- C:\Windows\SysWow64\iglhcp32.dll [2009/12/25 21:13:57 | 000,870,544 | ---- | C] () -- C:\Windows\SysWow64\igkrng575.bin [2009/12/25 21:13:49 | 000,127,896 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng575.bin [2009/12/25 21:13:20 | 000,028,732 | ---- | C] () -- C:\Windows\SysWow64\ativvsny.dat [2009/12/25 21:13:20 | 000,026,936 | ---- | C] () -- C:\Windows\SysWow64\ativvsnl.dat [2009/07/14 06:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009/07/14 03:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT [2009/07/14 03:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat [2009/07/14 01:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009/07/14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009/07/13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009/06/10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat ========== LOP Check ========== [2010/07/24 21:03:51 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\Auslogics [2010/06/20 13:11:12 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\BitZipper [2010/08/21 16:10:18 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\Iwatwo [2010/07/29 12:04:01 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\Obpuc [2010/07/10 18:35:11 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\OpenOffice.org [2010/08/21 16:10:20 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\QuickScan [2010/09/05 23:21:57 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\Romyky [2010/06/20 12:58:00 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\Sony [2010/06/20 12:54:26 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\Sony Setup [2010/08/03 08:54:44 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\Vuqeza [2011/04/06 21:24:59 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\Windows Live Writer [2010/08/17 23:25:50 | 000,000,000 | ---D | M] -- C:\Users\EdM\AppData\Roaming\Ykxib [2010/06/19 18:29:45 | 000,000,372 | ---- | M] () -- C:\Windows\Tasks\McDefragTask.job [2010/06/19 18:29:45 | 000,000,348 | ---- | M] () -- C:\Windows\Tasks\McQcTask.job [2010/12/18 21:09:53 | 000,032,592 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2011/04/29 19:54:16 | 000,000,410 | ---- | M] () -- C:\Windows\Tasks\vtscheduletask.job ========== Purity Check ========== Emsisoft Emergency Kit - Version 1.0 Last update: 12/05/2011 18:58:47 Scan settings: Scan type: Smart Scan Objects: Memory, Traces, Cookies, C:\Windows\, C:\Program Files (x86) Scan archives: Off Heuristics: Off ADS Scan: On Scan start: 12/05/2011 20:59:01 C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt detected: Trace.TrackingCookie.adtech!A2 C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt detected: Trace.TrackingCookie.doubleclick!A2 Scanned Files: 121867 Traces: 399197 Cookies: 18 Processes: 105 Found Files: 0 Traces: 0 Cookies: 2 Processes: 0 Registry keys: 0 Scan end: 12/05/2011 23:07:42 Scan time: 2:08:41 CLEANING COMPLETE - (32.546 secs) ------------------------------------------------------------------------------------------ 494 MB removed. ------------------------------------------------------------------------------------------ Details of files deleted ------------------------------------------------------------------------------------------ Internet Explorer - Temporary Internet Files 33,090 KB 1,148 files Internet Explorer - History 168 KB 14 files Internet Explorer - Cookies 8 KB 32 files Internet Explorer - Index.dat files 1,072 KB 4 files Windows Explorer - Recent Documents 26 KB 11 files Windows Explorer - Thumbnail Cache 72,705 KB 5 files System - Empty Recycle Bin 2 KB 1 files System - Temporary Files 12,687 KB 21 files System - Memory Dumps 250,611 KB 5 files System - Windows Log Files 4,129 KB 18 files Firefox/Mozilla - Download History 12 KB 1 files Firefox/Mozilla - Session 1 KB 1 files Applications - Google Earth 131,178 KB 2 files Applications - Office 2007 8 KB 11 files Applications - OpenOffice 3 7 KB 1 files Internet - Google Toolbar IE 0 KB 1 files Internet - Skype 226 KB 55 files Multimedia - Microsoft Silverlight 2 KB 30 files Multimedia - Quicktime Player Cache 10 KB 7 files Multimedia - Windows Media Player 33 KB 7 files Utilities - Windows Defender 228 KB 32 files ------------------------------------------------------------------------------------------ C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\index-windows-1[1].sucatalog 107 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\041-0745.English[1].dist 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\061-5790.English[1].dist 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\MandatoryUpdates[1].xml 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\061-9848.English[1].dist 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\061-4200.English[1].dist 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\061-7306.English[1].dist 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\061-9537.English[1].dist 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\041-0991.English[1].dist 41 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\061-9539.English[1].dist 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\041-0134.English[1].dist 22 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\061-7340.English[1].dist 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\061-4514.English[1].dist 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\favicon[1].ico 287 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\061-4513.English[1].dist 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\uk_shopping_com[1].htm 65 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\SMStylesheet[1].css 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\041-0723.English[1].dist 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\061-8381.English[1].dist 20 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\IE9CompatViewList[1].xml 136 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\061-7511.English[1].dist 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\061-4249.English[1].dist 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\io[1].xml 80 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\061-5850.English[1].dist 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\new-issues[1].htm 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\041-0990.English[1].dist 41 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\061-8155.English[1].dist 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\041-0724.English[1].dist 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\ScriptHandler[1].ashx 71 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\configW7[1].xml 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\PCCompanionDatabase[1].xml 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\041-0024.English[1].dist 25 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\061-8382.English[1].dist 20 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\041-0553.English[1].dist 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\nhschoicesbehindtheheadlines[1].xml 113 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\061-6867.English[1].dist 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\getflightassignment[1] 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\VAIO_and_Computing[1].rss 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\json[1].aspx 34 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\syncmessage[1].htm 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\rss[1].xml 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\041-0561.English[1].dist 34 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\061-3452.English[1].dist 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\ScriptHandler[1].ashx 148 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\061-4512.English[1].dist 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\061-7509.English[1].dist 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\061-4972.English[1].dist 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\061-3418.English[1].dist 31 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\061-8153.English[1].dist 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\rss[1].xml 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\fwlink[2].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1U3TFYZ\rss[1].xml 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\fwlink[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\fwlink[2].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\fwlink[4].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\ShowMessage[1].htm 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4SG70S\symantec_com[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\ShowMessage[1].htm 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HZOEIWAH\symantec_com[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\dailydeals[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\fwlink[3].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NQCQZNPZ\ShowMessage[1].htm 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\0a2a1107b1a6f1d5607b5d6f64e5c5eeaa577d27[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\0jdRy1c1v0y[1].css 32 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\12973572571634876654_1_d0ef65b0[1].jpg 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\129864339857111822_1_6a8e205a[1].jpg 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\13025207221687009797_1_728b557e[1].jpg 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\13ae2ef67aa9455d35ab7bdaffc37bcfbbb81d4d[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\187755_631415331_6984695_q[1].jpg 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\187758_128849663818621_1220191_n[1].jpg 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\188014_6119163067_5520232_n[1].jpg 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\2011_dropdown[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\2011_x[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\231fcda1[1].htm 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\26e4220923f07576d3c6b37a9f827633334578b1[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\2jb4qyb[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\2Oin6nHA4Mx[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\3HjfDY8tjji[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\41407_100001702458292_7661529_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\51N1Q_R1yXA[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\58tSJNGTrBw[1].css 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\618d31dba403f1c7ae32b4c3ebf5bab25fe54fe1[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\66b6cafea075a8eb2af66307841373957e23375b[1].png 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\6NHt8H5uyPf[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\7592c4980c1d9cc611f516b6727d804817a0c671[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\9MNUSsbvD0i[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\a1e3b834281edf63f40acff366a074c792661cbc[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\acb_UK[1].jpg 54 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\account[1].htm 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\acfb[1].js 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\activityi;src=1580034;type=skycust;cat=skycu574;ord=4376755248709[1].htm 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\activityi;src=1580034;type=skycust;cat=skycu801;ord=6521769333700.355;~oref=http___www.sky.com_mysky_indexb[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Admeta[1].js 29 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\advanced_search[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\alert_220[1].png 38 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\amazon_on[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\AnimusThin[1].swf 27 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\antimalware[2].htm 29 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\app_full_proxy[1].jpg 37 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\app_full_proxy[2].jpg 45 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\app_full_proxy[3].jpg 155 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\app_full_proxy[4].jpg 41 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\as3[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\assets2[1].gif 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\ATT00001[1].jpg 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\autoruns_220[1].png 36 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\backFooter[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\bg_primaryNavOver.gif_1180667841[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\bg_search.gif_1494621080[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\bg_search_left.gif_1494621080[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\bg_search_right.gif_1494621080[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\bg_search_right.gif_1494621080[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\bg_secondaryNavItem.jpg_1180667841[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\bip[1].mp3 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\bkemDKdzlaf[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\box2[1].png 24 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\box3[1].png 35 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\boxhead_160_cc_en[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\buttonGetAdobeReader[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\buttonsBg.gif_1180667841[1].gif 25 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Button_1.jpg_625273497[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\bvQm-sVc-2R[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\castle-and-co_off[1].png 20 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\castle-and-co_on[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\cat_minimize[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\cat_minimize_small[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\classic-word-games_on[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\cleardot[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\cleardot[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Click[1].mp3 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\clientCSS2011[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\closedhand[1].cur 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Completed10Collections[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Completed1Collection[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Completed5Collections[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\CompletedACollection5Times[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\CompletedSequence1[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\CompletedSequence2[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\CompletedSequence3[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\CompletedSequence4[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\connect-css[1].css 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\cps-vflTtyXqo[1].swf 147 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\ct[1].htm 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\default.ultimate[1].css 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\default[1].htm 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\default_profile_0_normal[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\de[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\de[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Doomed[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\download_bg[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\dropdown[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\email_upgrade_page_dot_line[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\en[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\en_ac[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[10].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[11].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[1].js 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[3].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[4].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[5].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[6].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[7].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[8].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\eps-tracker[9].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\ErrorPopup[1].mp3 19 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\f-icon-calendar-33x54[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\f-icon-chat-39x54[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\f-icon-storeshare-39x54[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\fbar_ubi_com[1].htm 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\flash[1].css 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\france[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\fr[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\f_cat_unread[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\ga[1].js 27 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\germany[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\germany[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\getseal[1].js 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\global[1].css 43 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\google-enhanced-t-101x14[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\google-logo.png_1494621080[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\google_logo[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\gtag6.0[1].js 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\help-topbar[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\HelpCentre_230x80.jpg_872439872[1].jpg 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\heroes-battles_on[1].png 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\HomeFlash_SkyMagCover_718x269.jpg_179627072[1].jpg 35 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\HomeFlash_TheChicagoCode_Nav.jpg_378276785[1].png 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\huJzzKI4tXt[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\h_aLGI2mPKc[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\icon120_shield_3d[1].png 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\icon16_home[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\icon20_download[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\icon48_cmd[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\icon48_eek[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\icon48_hijackfree[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\icon48_mamutu[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\ie[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\iHPmgbNwfyo[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\IJYgcESal33[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\index[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\index[1].js 84 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\internetmagazin[1].jpg 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\it[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Jan[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\jKEcVPZFk-2[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\jquery-ui-1.8.9.dialog.min.js_1593412599[1].js 23 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\jquery.min[1].js 77 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Jul[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\label_blue[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\label_green[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\layout2[1].css 19 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\LettersAppearing1[1].mp3 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\LettersAppearing5[1].mp3 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\LettersAppearing7[1].mp3 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\licenses[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\licenses[2].htm 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\lILcv5FBMct[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\line_menusearch.gif_1494621080[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logoCamShareSmall[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logoCeleritasSmall[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logoInfactaSmall[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logoJimdoSmall[1].png 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logoNitroPdfSmall[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logoPiriformSmall[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logoPrevxSmall[1].png 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logoSpamfighterSmall[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logoUniblueSmallSupportText[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logo[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logo[1].swf 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\logo_ubisoft_topbar[1].gif 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mail[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mail[1].js 83 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mail[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mail[2].htm 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mail[2].js 85 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mail[3].js 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mainbox-middle[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mastheadbg[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\megaband_off[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\MemoryTurningTheTide01[1].jpg 34 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\minigoogle[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\MoneyReached10M[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\MoneyReached1M[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mootools[1].js 92 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\mysky.js_1593412599[1].js 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\navbg[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\newItem[1].mp3 37 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\news_area_center[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\new_post[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\nf47ev[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\NGGPJRdOdhs[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\nl[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\NonFlash_ChicagoCode_726x306.jpg_963059419[1].jpg 45 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\NonFlash_ChicagoCode_726x306.jpg_963059419[2].jpg 45 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Nov[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Own10Rings[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\p8BoqGddME7[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\page-gradient[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\paymentmethods[1].gif 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\phone2[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\pod_content.jpg_1180667841[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\pod_content.jpg_1180667841[2].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\pod_tl_white_curve.png_1526354598[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\portal[1].css 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\profil-topbar[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\p_100001702458292=0[1].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\p_100001702458292=0[2].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\p_100001702458292=0[3].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\quicklinks_gradient[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Recruited10Friends[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Recruited1Friend[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Rome[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\scanresult_220[1].png 32 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\search.js_1526354598[1].js 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\search_expand[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\securitysoftwarezone_5stars_120[1].jpg 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Sequence_SlipIn[1].mp3 37 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\server[1].htm 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\server[2].htm 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\server[3].htm 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\services[1].htm 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\shadowbox[1].css 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\skyid_ie[1].css 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\skylogo[1].png 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\solution_Learn[1].jpg 21 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\solution_Overview[1].jpg 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\sound[1].swf 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\SpyOn50UniquePlayers[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\sp_32[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\ss100x70[1].gif 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\submenu_heading[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\subpage[1].css 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\support[1].htm 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\table_bg[1].jpg 221 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\tabprojectL_on[1].gif 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\tabuplay_off[1].gif 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\thickbox[1].css 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\topicpreview[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\tucows_5cows[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\twttr_bird_hd-008eb9[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\txt[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\t_announcement[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\t_closed[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\ubishop-topbar[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\ubivideo-topbar[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Uci9qC-TdDY[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\uf3yIMOzGlm[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\uninstall[1].htm 25 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\UNlLx8ZuopY[1].js 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Upgrades_Anytimex_230x80.jpg_1449706739[1].jpg 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Upgrades_YourOffers_230x80.jpg_1871925914[1].jpg 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\uplay-topbar[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\uploaderapi2[1].swf 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\usa[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\uxjPUN3OLVy[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\V8Yrm0eKZpi[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\videoplayback[1] 7,900 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\WebResource[1].js 21 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\wet_upstmpl2_01[1].gif 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\wet_upstmpl2_14[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\wet_upstmpl2_17[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\wet_upstmpl2_26[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\wFcdvtg8yWA[1].js 26 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\xmrVYX_SMcv[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\y4YGRknuTgN[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\Yz_2RL5XOEG[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\zdstar[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\6OZ8D5EU\ZTpDxG-EIxW[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\-PAXP-deijE[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\0693e7a582d5c606c93904be45cead8313dabfb1[1].png 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\1289489967909063932_1_bf64c6ac[1].jpg 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\12971890931539680454_1_12ba5247[1].jpg 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\1299774651714558427_1_809ff76a[1].jpg 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\12[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\13013352001104892980_1_0a17b9ff[1].jpg 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\1301375577928083350_1_bddf161d[1].jpg 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\1302520722876682680_1_16a35e07[1].jpg 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\162008_334442800593_2136630_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\16jox2o[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\18277[1].jpg 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\187758_128849663818621_1220191_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\188089_110455108974424_5188058_q[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\1rxXwjPNnMu[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\2011_emsi_header_en[1].png 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\2011_main_bg3[2].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\2011_shadow2[2].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\21994797-CB042E8E76630C738717[1].htm 20 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\2BGHManpz-X[1].css 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\2pvM_PCQjcm[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\3b8d4d58df0411ce6c0a90259217fac07cc9531c[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\3d2a82950428c90610f8a78056a7749e35f17cda[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\3e61c1f54cb1bf04adb692dd12f3a51757265699[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\3GUx1LLG0cl[1].css 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\41815_143746098974533_7494_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\4l5a4i[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\50259_45394952575_7490983_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\5x3nu8[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\60b9a08a084561e1fb28b67be6a029ae0c03c417[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\79eb144275bfafcc5e795688e025a0d91430be57[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\85ea0d5ba044b038a57e4873e4dc6f24ae063a23-16[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\9T5sABSlx1M[1].css 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\account[1].htm 22 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\acreveal[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\activityi;src=1580034;type=skycust;cat=skycu574;ord=790786856276[1].htm 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\activityi;src=1580034;type=skycust;cat=skycu801;ord=6643835652517.329;~oref=http___www.sky.com_mysky_indexb[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\addyn_3[1].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\all[1].js 116 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\amazon_off[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\amuvj8[1].gif 41 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\app_1_128849663818621_1470[1].gif 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\asSwitcher[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\AuditoreTrail[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Aug[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\bgCcNote[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\bg[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\bg_globalNavDivider.gif_1180667841[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\bg_globalNavDivider.gif_1180667841[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\bg_primaryNavOn104.gif_1180667841[1].gif 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\bg_search.gif_1494621080[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\bg_search_left.gif_1494621080[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\bg_secondaryNav.jpg_1180667841[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\boxshot_am_oa_150x150[1].png 25 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\brothersoft_90[1].gif 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\button9-en[1].jpg 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\buttonsBg.gif_1180667841[1].gif 25 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\buttonShad[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\buttonSubmit2[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\canvas_proxy[1].htm 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\ce56033e85a241668cc29f2f0e27522c[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\chatsound[1].swf 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\cinemail_header[1].jpg 24 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\classic-word-games_off[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\cleardot[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\cleardot[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\cleverbridgeLogo[1].gif 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\cleverDesignNoAwards18.12.09[1].css 80 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\codelost[1].htm 22 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Collect[1].mp3 52 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\CompletedAProduction[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\ConflictReached50[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\corners.gif_1180667841[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\corners.gif_1180667841[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\coupon[1].htm 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\crossdomain[1].xml 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\crossdomain[2].xml 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\crossdomain[3].xml 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\crossdomain[4].xml 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\crossdomain[5].xml 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\crossdomain[6].xml 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\c[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\default[1].css 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\default[1].htm 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Depression[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\download[2].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\dropdown[1].css 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\ee-header-check[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Email_tool_header[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\EmsisoftAntiMalwareSetup[1].exe 1,949 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\english[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\en[1].htm 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\en_GB[1].js 19 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-trackerCAXVT3FU.gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[10].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[11].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[3].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[4].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[5].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[6].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[7].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[8].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\eps-tracker[9].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\es[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\faq[1].htm 22 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Feb[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\feed[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\FirstAid01[1].jpg 89 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\flosensing[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\france[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\frontpage[1].css 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\ga[1].js 27 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\globalfooter[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\global[1].js 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\google-logo.png_1494621080[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\gradient_bg[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\GsNJNwuI-UM[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\gtMXICAh5SR[1].css 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\HccI6JHDK9z[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\header[1].htm 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\header_small[1].png 34 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\header_small_bg[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\heroes-battles_off[1].png 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\HomeFlash_Anytimex_Nav.png_1060107547[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\HomeFlash_Rewards_718x269.jpg_607298952[1].jpg 50 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\HomeFlash_TheChicagoCode_718x269.jpg_1478107718[1].jpg 37 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\horsegaga_off[1].png 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Hr68AxI53Sr[1].css 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\hub_corner_sprite[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\hub_icon_sprites_a[1].png 264 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\hub_titlebar_gradient[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\icon16_forum[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\icon16_home[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\icon22_guard[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\icon22_protection[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\icon22_scanner[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\icon32_update[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\icon32_usability[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\icon48_antimalware[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\ie[1].css 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\indexb[2].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\index[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\info.png_85860790[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\IntrigueReached50[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\iOfoWn8_TP5[1].css 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\jaDeOttUe8q[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\jquery[1].js 21 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\JSAdservingSP[1].htm 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Knowledge150[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\KnowledgeReached50[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\kOcnWJZ-PWz[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\last_post[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\LettersAppearing2[1].mp3 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\LettersAppearing6[1].mp3 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\LettersAppearing8[1].mp3 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\levelUp[1].mp3 80 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\LhM6ffElaBk&autoplay=1[1].swf 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\line[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\loading[1].gif 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\logoAcronisSmall[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\logoAlcoholsoftSmall[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\logoFlippingBookSmall[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\logoMalwarebytesSmall[1].png 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\logoSystweakSmall[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\logoWinRARSmall[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\logo_odeon[1].gif 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\logo_sky.gif_1821100730[1].gif 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Ltf6yugTbQ7[1].css 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mail[1].js 59 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mail[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mail[2].js 201 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mail[3].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mainNav_About[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mainNav_Contact[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mainNav_News[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mainNav_Solution[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Mar2[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\maximun_pc_162x53[1].jpg 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\media-api[1].swf 74 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\MemoryVyingForTheVillage01[1].jpg 31 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\missionComplete[1].mp3 43 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\MoneyReached100k[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\MoreInMySky_ChicagoCode_102x72.jpg_1791490629[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\MoreInMySky_MyAccount_102x72.jpg_1791490629[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\MoreInMySky_MyBroadBand_102x72.jpg_1791490629[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mrg_flash_2010_550_en[1].png 97 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mysky.js_1593412599[1].js 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\mysky[1].txt 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\MySky_loggedin_718x269-V6.jpg_1838553543[1].jpg 77 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\MySky_notloggedin_718x269v6.jpg_1516837900[1].jpg 58 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\my_sky_init.swf_1439981540[1].swf 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\my_sky_logged_out_main.swf_1192588353[1].swf 222 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\NavPanel.png_260413876[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\new[1].htm 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\new_emsi_header_bg[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\new_tab_left[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\new_tab_right[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\nfbcyOQNzob[1].js 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\NhRA6MrmCwg[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Oct[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\orderstepsBarLeft[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\OwnEveryLandmark[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\page_proxy[1].htm 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\pause[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\pcdaily_award_120x56[1].jpg 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\pcsl_2009_140x210[1].png 48 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\pcsl_certified_110x74[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\pnnjl6ACZdc[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\pod_bl_white_curve.png_1526354598[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\previous[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\print.css_1526354598[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\ProducedAHighQualityItem[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\protectstar-award-2009_160[1].png 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\prototype[1].js 91 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\PurchasedBankBazaar[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\p_100001702458292=0[1].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\p_100001702458292=0[2].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\p_100001702458292=0[3].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\quicklinks_btm_right[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\quicklinks_top_left[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\rc[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\ReachedLevel25[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\ReachedLevel50[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Recruited30Friend[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\referer_frame[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\RrNEqU6MtWc[1].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\screen[1].css 57 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\search_icon[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\securitycentre[1].js 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Sep[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Sequence3[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Sequence_SlipOut[1].mp3 36 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\shadowbox[1].js 62 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\ShadowReached50[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\SkyMagCover_102x72.jpg_1791490629[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\skyservices[1].js 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\skytakeoverapril2011;sz=1x1;ord=6511413642941986[1].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\softpedia_pick_100[1].gif 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\spacer[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\star_off[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\star_on[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\styles[1].css 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\style[1].css 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\s_code-4.0[1].js 51 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\tAgmFg9Ei11[1].css 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\TF8WVXsmqcX[1].js 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\tfbimage[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\the-settlers-my-city_off[1].png 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\toolbar3[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\topic_button_left_disabled[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\topic_button_right_disabled[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\TrainedAUnit[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\U69AonFr2PX[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Upgrades_3D_230x80.jpg_452689107[1].jpg 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\usa[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\vb100_85x124[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\vineyard_off[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\vistaworks_120_en[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\VUhHmVPnvzj[1].js 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\wet_upstmpl2_02[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\wet_upstmpl2_07[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\wet_upstmpl2_09[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\win7comp_72_en[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\XFBML[1].js 207 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\x[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\73JH2C1E\Yic-oPopWDs[1].css 27 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\129684303825956793_1_e2b712ef[1].jpg 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\12973496491582396770_1_78d3d1a3[1].jpg 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\13000146091706140555_1_2d17f14b[1].jpg 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\1300276049873327621_1_15c1111a[1].jpg 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\13ed26vhvk0[1].css 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\15[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\161664_100001908615471_191667_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\187030_707543552_1425885_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\187718_100001934671874_1723259_q[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\1Be-brvKO2y[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\211363_100001145117355_3562088_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\211424_1177397788_1510647_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\26cef4b04b984ff5dbdf2cce40141522644e5c52[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\27344_1288782300_3990_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\29942639[1].htm 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\34872e99dfb65ebe1df77b9a7cb237f180ecffec[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\3dfb22f1b18dc7f4b1a7f3e9dd080efba1fa8c74[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\41412_778601941_8015922_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\41524_779012847_6155398_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\41553_729372505_7958_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\41771_680673509_3995_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\49004_1435114356_5378687_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\49150_100000042724013_2147_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\5ZAfR7_4gQg[1].css 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\6sq8Co860sp[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\7164bb025e678805c81951849db349ecb877bb7e-16[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\817-grey[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\89617e6091e187692ebb19f40205d396a9f2ef10[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\9qdm_pQmTM3[1].css 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\a224ff0a5bf3db94b9a73fee3669784f757f39e0[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\a652b84a38490b7e07e28841bbda576a67085e28[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\aclegacy_logo[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\addyn_3[1].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\alertHeader.png_85860790[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\AllChristmasMemories[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\all[1].js 116 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\arrow.gif_85860790[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\arrow[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\arrow_blue2[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\attachicon[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\bbbIconSprite[1].gif 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\bg_primaryNavOn104.gif_1180667841[1].gif 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\bg_primaryNavOver.gif_1180667841[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\bg_secondaryNav.jpg_1180667841[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\bg_secondaryNavItem.jpg_1180667841[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\boxhead_140_newsletter[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\boxhead_140_quicklinks[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\boxhead_160_cc_en[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\boxhead_160_customeronly[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\boxhead_160_links[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\boxhead_160_links[2].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\box_bg[1].jpg 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\bullet_star[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\bullet_star_off[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\button2_details_en[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\button2_freedownload_en[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Button_2.jpg_884068821[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\BuySell[1].mp3 26 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\cleverbridge_com[1].htm 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\close[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\colx1-box-ft.png_85860790[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\colx1-box1-hd.png_85860790[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Completed100Productions[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Completed10Productions[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\CompletedAllCollections[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Conflict150[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\core-0.2[1].js 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\c[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\d03a02a24792542b5aaa6907ea41c930b3a06730[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\d5c2ede6f95392ece30c3e6e604a6ace1780e251[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Dec[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\default[1].htm 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\default[2].jpg 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\default[3].jpg 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\default[4].jpg 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\default[5].jpg 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\default[6].jpg 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\df_32[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\digital_small[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\dot_clear[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\download-start-w[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\download[1].htm 29 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\ecpCmrvFebs[1].js 37 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\ed15e2dd342e201ccc5f95134f0dba66086d2079[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\EdsPick_Spartacus_230x100.jpg_985574255[1].jpg 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\emailandtools[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\EmsisoftAntiMalwareSetup[1].exe 996 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\EmsisoftAntiMalwareSetup[2].exe 1,190 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\emsi_header_en[1].png 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\en[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\en[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\eps-tracker[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\eps-tracker[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\eps-tracker[3].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\eps-tracker[4].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\eps-tracker[5].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\eps-tracker[6].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\f-icon-photos-36x54[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\famouswhy_118x118[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\faq[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\flashdetection[1].js 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\games_slider_next[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\games_slider_prev[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\get_video_info[1] 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\gtag6.0[1].js 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\hBDRP0WrMeE0Zxa0QWVo0E6[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\header_small[1].png 34 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\help[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\HomeFlash_RR_Animation_Nav.png_992093077[1].png 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\HomeFlash_SkyMagCover_Nav.png_1583962634[1].png 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\hub[1].js 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\icn_linkArrow.gif_1180667841[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\icon16_faq[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\icon16_forum[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\icon16_newsletter[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\icon22_firewall[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\icon48_free[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\icon48_oapp[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\icon48_oa[1].png 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Iisu43-Xlr_[1].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\index[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\index[1].js 176 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\info_bg[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\introNoise[1].mp3 127 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\it[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\jcarousellite-1.0.1.min[1].js 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\JpHrN7LG4dx[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\jquery-ui-1.7.3.dialog.css_1593412599[1].css 20 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\jquery.min[1].js 84 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\JSAdservingSP[1].htm 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Jun[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\kids[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\kk8dc2UJYJ4[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\LettersAppearing3[1].mp3 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\LevelUp[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\lib[1].js 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\line_menusearch.gif_1494621080[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\loading[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\LoggedInFlash[1].xml 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\login[2].htm 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logoLavasoftSmall[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logoParagonSmall[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logoPasswareSmall[1].png 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logoPhoenixSmall[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logoPolldaddySmall[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logoReviverSoftSmall[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logoRoxioSmall[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logoSslSecuredLarge[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logoSyncablesSmall[1].png 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\logo_sky.swf_1821100730[1].swf 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[1].htm 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[1].js 38 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[2].htm 840 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[2].js 156 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[3].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[3].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[4].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[4].js 23 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[5].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[5].js 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mail[6].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mainbox[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\main_bg3[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\maximumpc_150[1].jpg 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\May[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mlN47kaq6gq[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\moneyback_140x140_en[1].png 24 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\MouseOverButton[1].mp3 25 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mrg_overallbest_160x52[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\mysky-packs-products.css_1593412599[1].css 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\my_sky_logged_out_main.swf_1192588353[1].swf 222 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\newMail[1].mp3 44 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\news_area_bottom[1].jpg 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\new_emsi_header_left[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\new_slogan[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\next[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\noname[1] 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\NotifiedAPlayerOfIncommingAttack[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\openhand[1].cur 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\openSequenceNav[1].mp3 31 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\open[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\ordersteps1[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\ordersteps2[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\ordersteps3High[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\orderstepsBarRight[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\overrides[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Own2Revolvers[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\OwnAllChristmas[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\pcookie[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\pcookie[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\pcsl_excellent0907_160[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\pcsl_excellent_0811_160x85[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\pdf[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\pg[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\pg[2].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\play[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\pod_br_white_curve.png_1526354598[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\pod_tr_white_curve.png_1526354598[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\portable[1].htm 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\print.css_1526354598[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Purchased5OfTheSameBuilding[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\PurchasedArtTailorLibrary[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\PurchasedAssassinsGuild[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\PurchasedEveryBuilding[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\PurchasedFirstBuilding[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\p_100001702458292=0[1].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\p_100001702458292=0[2].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\QDXN90Pj7ng[1].css 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\quicklinks_btm_left[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\quicklinks_icons[1].gif 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\RallyPoint01[1].jpg 77 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\rc_32[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\ReachedLevel15[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\ReachedLevel20[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\requester[1].js 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\rss_small[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\S4RgCezpKLl[1].js 67 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\seniorscreen[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\sequence1[1].flv 2,268 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Sequence1[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Sequence4[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\server[1].htm 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\set_awesome[1].xml 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\shadow2[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\sidebar_close[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\small_hybrid[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\software[1].htm 24 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\solutionsOverviewImgBridge[1].png 50 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\solution_Discover[1].jpg 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\star_half[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\styles[1].css 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\subpage_content_bg[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\swfobject[1].js 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\s_code-4.0[1].js 51 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\techsupportalert_toppick_120x134[1].png 23 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\techsupportalert_toppick_81x85[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\TextAds[1].js 23 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\tgCjNDQG0qU[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\thickbox[1].js 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\TownWorthReached1M[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Train100Persons[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Train1Person[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Tt8WAP6V7D8[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\TVAnywhere_230x100.jpg_1328233448[1].jpg 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\t_hot_read[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\t_hot_unread[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\t_poll_read[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\t_poll_unread[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\t_read[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\t_unread[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\ubi-logo[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\UvyvLtJTQzO[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\u[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\vb100_100x150[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\vCfjjxyRREJ[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\W7RYDLaynBA[1].css 49 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\WantMore_230x100.jpg_1199954590[1].jpg 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\WebResource[1].js 21 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\WebResource[2].js 21 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\Website[1].js 59 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\wet_upstmpl2_13[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\wet_upstmpl2_15[1].jpg 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\wet_upstmpl2_16[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\xd_proxy[2].htm 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\xEjxDk65554[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\y7MG8IZpiC8[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\YourSkyAccount_230x100.jpg_1530846058[1].jpg 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QUCT5FI0\_rZeyvT5cHH[1].css 26 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\03e7dabb0b671c0d8e4d43c922e44a4c999a1f2b[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\11[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\12491393-7EA086233F8C2EB842C9[1].htm 21 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\129504324473328399_1_3e071803[1].jpg 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\12a[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\161611_560423198_1467251_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\16769[1].jpg 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\186542_500892901_5003521_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\1x1[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\2011_default[1].css 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\2011_maindefault[1].css 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\2011_style[1].css 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\211317_730893573_835996_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\2c6ee213dfab33bada601338776bc194b93d458e[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\4151494335774d324c59345366637957353443336953424a58634a4d625941344b71777a5866365154735143686e6b3d4041414a54535141434d444941416c4d78414149774d773d3d23[1] 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\4151494335774d324c59345366637a476c5469477a547851712f72366348383431792b6c442b7256526448647530593d4041414a54535141434d444941416c4d78414149774f413d3d23[1] 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\41653_747138239_5350_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\41659_560363122_4586_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\54de625389c10dd3691e0f7c3217c77228ec3150[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\657f399af775648d65cd3bb2701fd13eae00fce8[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\70527_1315753429_7566618_q[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\9af74fa7b7e7bbc24e4ed918dbb47db68291f67e[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\a3c14d5be5c94c0eb8d7a6b2689d7815[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\account[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\AcFb[1].swf 630 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\aclegacy_on[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ac[1].css 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ac_main[1].swf 176 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\alertFooter.png_85860790[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\AllContractsMissions[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\AnimusBold[1].swf 30 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Answered50CallsForHelp[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\AnsweredACallForHelp[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\antimalware[1].htm 53 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\applicationrules_220[1].png 23 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\app_2_150031305061905_729[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\app_2_20678178440_8044[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\app_full_proxy[1].jpg 51 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\app_full_proxy[1].png 37 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\app_full_proxy[2].jpg 62 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\app_full_proxy[3].jpg 37 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\app_full_proxy[4].jpg 54 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\arrow_blue[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\arrow_blue[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\arrow_green[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\AssassinatedSomeone[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\AttackedSomeone[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\av-47[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\B4K_BWwP7P5[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\backBlockHeadline[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\bcd87ac955c4987ae72787de8d059917a3e818be[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\bg_siteMapDivider.gif_1180667841[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\bg_siteMapDivider.gif_1180667841[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\bind[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\bind[2].htm 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Blank_230x346.jpg_1313658026[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\body_bg4[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\box1[1].png 18 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\boxhead_140_newsletter[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\boxhead_140_quicklinks[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\boxhead_160_customeronly[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\boxhead_160_logout[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\boxhead_160_logout[2].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\boxshot_am_120x120t[1].png 16 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\boxshot_am_193x250[1].png 48 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\bullet[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\bullet_green[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\button2_download_en[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\button2_order_en[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\button2_startscan_en[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\buttonRenewUpsl[1].jpg 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\BwKwOpPWbGZ[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\CacheData[1].js 60 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ChanceItem[1].mp3 58 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\cleverbridge_com[1].htm 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\colx2-box-ft.png_85860790[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\colx2-box2-hd.png_85860790[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\comment_new[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\common-js.min.js_1526354598[1].js 126 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\common-js.min.js_1526354598[2].js 126 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\common.min.css_1526354598[1].css 63 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\common.min.css_1526354598[2].css 63 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\contact[1].htm 22 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\crossdomain[1].xml 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ct[1].htm 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\customscan_220[1].png 28 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\default[1].htm 23 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\default[1].jpg 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\default[2].htm 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Defeated200UniquePlayers[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Defeated50UniquePlayers[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\DefendedAgaistSomeone[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\dMZead4v66-[1].js 133 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\download[1].htm 29 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\E4E32J1Ypju[1].js 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ecf459ca07294c7e8ffb4b203fbd50d8[1].gif 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\email[1].txt 0 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\embed_api_rest[1].xml 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\en[1].htm 22 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\en[1].xml 494 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\eps-tracker[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\eps-tracker[2].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\eps-tracker[3].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\eps-tracker[4].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\eps-tracker[5].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\eps-tracker[6].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\EttuBrute[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\f-tools-mast-bg[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\f-tools-search-bg[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\f-tools-submit-bg[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\faq[1].htm 21 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\fbjs[1].swf 21 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\FB_pre-like_en_US[1].jpg 129 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\fr[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\f_unread[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\GameReady[1].mp3 50 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\games_wrapper_bg[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\getseal[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\global[1].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\grippy[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\GsNJNwuI-UM[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\headers_common[1].css 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\header_small_bg[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Hero_hub_page[1].jpg 127 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\HomeFlash_Rewards_2_Nav.png_544173802[1].png 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\horsegaga_on[1].png 19 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Hunter[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icn_linkArrow.gif_1180667841[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icon16_faq[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icon16_newsletter[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icon20_order[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icon22_included[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icon22_missing[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icon32_guard[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icon32_scanner[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icon48_antidialer[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icon48_blitzblank[1].png 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\icons_ns9[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ico_pdf[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ico_plus[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\index[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\index[1].js 83 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\index[2].js 87 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\input_text[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Intrigue150[1].png 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\jquery-ui-1.7.3.dialog.css_1593412599[1].css 20 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\jquery-ui-1.8.9.dialog.min.js_1593412599[1].js 23 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\jquery.min[1].js 71 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\KI-TuOEwsYB[1].js 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\LettersAppearing4[1].mp3 17 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\lib[1].js 120 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\line_menusearch[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\login[1].htm 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logoAscentiveSmall[1].png 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logoAshampooSmall[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logoGfiSmall[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logoIpswitchSmall[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logoNovastorSmall[1].png 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logoOosoftwareSmall[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logoTuneupSmall[1].png 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logo_odeon[1].gif 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logo_sky.gif_1821100730[1].gif 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\logo_sky.swf_1821100730[1].swf 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\mail[1].js 225 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\mail[2].js 364 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\mail[3].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\mainNav_Blog[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\mainNav_Store[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\majorgeeks_certified_139[1].gif 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\megaband_on[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\MemoryDeathDefiant01[1].jpg 34 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\money2[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\MouseOverLocked_Loop[1].mp3 51 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\MS-50_102x72.jpg_1791490629[1].jpg 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\mygames_wrapper_bg[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\mysky-module-pod.css_1593412599[1].css 42 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\mysky-module-pod.css_1593412599[2].css 42 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\mysky-packs-products.css_1593412599[1].css 5 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\my_sky_init.swf_1439981540[1].swf 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\MZYBPjpMjzj[1].css 12 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\navbar[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\navbg[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\NavPanel.png_1835699495[1].png 13 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\news_all_arrow[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\news_area_top[1].jpg 187 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\news_arrow[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\news_wrapper_bg[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\NLflash.XML_147969066[1].xml 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\noname[1] 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\noname[2] 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\noname[3] 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\noname[4] 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\noname[5] 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\noname[6] 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\noname[7] 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\OBaVg52wtTZ[1].png 42 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\oeSGLvadx25[1].js 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\OwnOneBuilding[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\portal[1].css 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ProducedARareGift[1].png 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\protectstar-award-2009_98[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\p_100001702458292=0[1].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\p_100001702458292=0[2].txt 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\QSupuIwbSa4[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\question_and_answer[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\quicklinks_btm_gradient[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\quicklinks_top_right[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\QV3UIATaBMd[1].js 45 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\rc[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\rc[2].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ReachedLevel10[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ReachedLevel5[1].png 8 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Renew-Button_12-09[1].jpg 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\repeat-x-sprites[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\RomeHack1[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\RomeHack3[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\RomeHack4[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\rpc[1].js 29 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\rU0pjACB10k[1].js 95 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\scantype_220[1].png 29 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\search.js_1526354598[1].js 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\securitystatus_220[1].png 26 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Sequence2[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Sequence_Loop[1].mp3 113 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Set1Sequence1[1].mp3 1,365 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Shadow150[1].png 11 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\shoppingcart_full[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Shop[1].js 122 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\sidebar_open[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\SignIn_230x346.jpg_2118613024[1].jpg 25 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\skycom_f_email_toolheader[1].css 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\skycom_f_email_toolheader[1].js 6 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\skyid[1].css 40 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\skytakeoverapril2011;sz=1x1;ord=2290813280059848[1].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\socialIconsSprite[1].png 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\softpedia_editorsreview_158[1].gif 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\solution_Explore[1].jpg 19 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\spr-icon6[1].png 14 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\SpyOnAPlayer[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\SryDYAYpViZ[1].js 60 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\St1KW-mt4Dd[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\staff[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\STeWPW2kh0m[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\submenu_heading_grey[1].jpg 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\submit_button[1].gif 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\subpage_bg[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\support[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\support_arrow[1].jpg 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\text_rich[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\the-settlers-my-city_on[1].png 15 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\ToolsOfTheTrade02[1].jpg 30 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\tracker[1].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Train10Persons[1].png 10 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Trained10Units[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\TreasureHunter[1].png 9 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\TwAHgQi2ZPB[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\TzFBKO3ZmZz[1].png 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\t_moved[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\uBEmPS-MH2t[1].js 102 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\uninstall[1].htm 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\user_off[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\v1-1-13-0[1].xml 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\vineyard_on[1].png 22 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\WcGQw8IZuVs[1].js 119 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\xrEeXUiCo9E[1].js 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Y2hvkMjCrcT[1].png 1 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\Y7YCBKX-HZn[1].swf 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\YnaNPpBtKCV[1].js 4 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WGDZCF73\zR5rPVu7Dbe[1].png 2 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\ProgramData\McAfee\MCLOGS\CoreTech\iexplore\iexplore000.log 7 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\EdM\AppData\Local\GDIPFONTCACHEV1.DAT 93 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\2VOMA9DK\fwlink[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\2VOMA9DK\ieonline.microsoft[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\2VOMA9DK\new-issues[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\4VKRG6RE\fwlink[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\4VKRG6RE\my-library[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\BYU7HDJX\fwlink[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\BYU7HDJX\uk.shopping[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\BYU7HDJX\VAIO_and_Computing[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\FAWBV3QC\dailydeals[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\FAWBV3QC\fwlink[1] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Feeds Cache\FAWBV3QC\fwlink[2] 0 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{091B1D10-79AE-11E0-81DF-0024BEC67FC4}.dat 5 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Active\{091B1D11-79AE-11E0-81DF-0024BEC67FC4}.dat 47 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Active\{759347C7-79B0-11E0-81DF-0024BEC67FC4}.dat 8 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Active\{8E8DE5B0-79AF-11E0-81DF-0024BEC67FC4}.dat 11 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Active\{92173D1F-7C04-11E0-8CA6-0024BEC67FC4}.dat 5 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Active\{97EC62FB-79B0-11E0-81DF-0024BEC67FC4}.dat 4 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Active\{B1C2A9A3-7C04-11E0-8CA6-0024BEC67FC4}.dat 4 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Active\{B6F23F57-79AF-11E0-81DF-0024BEC67FC4}.dat 4 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{D818B47B-0554-11E0-BA56-0024BEC67FC4}.dat 4 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{D818B47C-0554-11E0-BA56-0024BEC67FC4}.dat 15 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Last Active\RecoveryStore.{F6BD1BC8-BEAF-11DF-82FB-0024BEC67FC4}.dat 5 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Last Active\{80F89908-0553-11E0-BA56-0024BEC67FC4}.dat 10 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{5F65F54F-79BB-11E0-81DF-0024BEC67FC4}.dat 4 KB C:\Users\EdM\AppData\Local\Microsoft\Internet Explorer\Recovery\Last Active\{5F65F550-79BB-11E0-81DF-0024BEC67FC4}.dat 45 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][3].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt 0 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt 0 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][2].txt 0 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 0 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][2].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][2].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 0 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][2].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][4].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][2].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][2].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][2].txt 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Cookies\low\[email protected][1].txt 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\H2E5NEBR\mail.tools.sky[1].xml 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\VE27B8F4\www.sky[1].xml 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\WRDT7U0Z\my.sky[1].xml 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\PrivacIE\index.dat 48 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\IECompatCache\index.dat 384 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\IECompatCache\Low\index.dat 384 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\IETldCache\Low\index.dat 256 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\0002-945159e1bbdfb906a77c381c94d5084f-2.lnk 4 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\076.lnk 4 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\2011-01-19 001.lnk 3 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\2011-04-29.lnk 3 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\AKD-73611106128.lnk 2 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\Documents.lnk 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\image t shirt.lnk 3 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\images ski.lnk 3 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\proper cv.lnk 3 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\Public Pictures.lnk 2 KB C:\Users\EdM\AppData\Roaming\Microsoft\Windows\Recent\view_cv.lnk 3 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Explorer\thumbcache_1024.db 15,360 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Explorer\thumbcache_256.db 14,336 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Explorer\thumbcache_32.db 2,048 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Explorer\thumbcache_96.db 40,960 KB C:\Users\EdM\AppData\Local\Microsoft\Windows\Explorer\thumbcache_sr.db 1 KB Empty Recycle Bin (1 files) 2 KB C:\Windows\TEMP\a2temp\update.ini 142 KB C:\Windows\TEMP\Cookies\index.dat 16 KB C:\Windows\TEMP\History\History.IE5\desktop.ini 1 KB C:\Windows\TEMP\History\History.IE5\index.dat 16 KB C:\Windows\TEMP\rules.ini 1 KB C:\Windows\TEMP\Temporary Internet Files\Content.IE5\2Q3EJ4M4\desktop.ini 1 KB C:\Windows\TEMP\Temporary Internet Files\Content.IE5\CJHR9NB6\desktop.ini 1 KB C:\Windows\TEMP\Temporary Internet Files\Content.IE5\desktop.ini 1 KB C:\Windows\TEMP\Temporary Internet Files\Content.IE5\FYEJ4TDB\desktop.ini 1 KB C:\Windows\TEMP\Temporary Internet Files\Content.IE5\index.dat 16 KB C:\Windows\TEMP\Temporary Internet Files\Content.IE5\T6V4Y4AY\desktop.ini 1 KB C:\Users\EdM\AppData\Local\Temp\AdobeARM.log 2 KB C:\Users\EdM\AppData\Local\Temp\boost_interprocess\INI_FILE_MUTEX 1 KB C:\Users\EdM\AppData\Local\Temp\etilqs_h3ibkgMDVwN3ef3 97 KB C:\Users\EdM\AppData\Local\Temp\jusched.log 1 KB C:\Users\EdM\AppData\Local\Temp\Sony Ericsson\Sony Ericsson PC Companion\Plugins\{CD7587C5-4C01-4A60-B237-C2A36BE1C08C}\Graphics\Expand.png 20 KB C:\Users\EdM\AppData\Local\Temp\Sony Ericsson\Sony Ericsson PC Companion\Plugins\{CD7587C5-4C01-4A60-B237-C2A36BE1C08C}\Graphics\Normal.png 5 KB C:\Users\EdM\AppData\Local\Temp\Sony Ericsson\Sony Ericsson PC Companion\Plugins\{CD7587C5-4C01-4A60-B237-C2A36BE1C08C}\Graphics\Small.png 2 KB C:\Users\EdM\AppData\Local\Temp\www.mia-movies.com_faye_reagan-11.wmv 12,374 KB C:\Users\EdM\AppData\Local\Temp\~DF43AC2F5DF4E09F4C.TMP 0 KB C:\Users\EdM\AppData\Local\Temp\~DF75D94375402D10E6.TMP 0 KB C:\Windows\MEMORY.DMP 249,537 KB C:\Windows\MiniDump\091310-18314-01.dmp 270 KB C:\Windows\MiniDump\102410-25974-01.dmp 270 KB C:\Windows\MiniDump\103110-36847-01.dmp 270 KB C:\Windows\MiniDump\112410-31605-01.dmp 265 KB C:\Windows\DirectX.log 71 KB C:\Windows\DPINST.LOG 748 KB C:\Windows\DtcInstall.log 3 KB C:\Windows\ie8_main.log 31 KB C:\Windows\IE9_main.log 5 KB C:\Windows\msxml4-KB954430-enu.LOG 294 KB C:\Windows\msxml4-KB973688-enu.LOG 290 KB C:\Windows\PFRO.log 610 KB C:\Windows\setupact.log 52 KB C:\Windows\setuperr.log 0 KB C:\Windows\TSSysprep.log 4 KB C:\Windows\xpsp1hfm.log 2 KB C:\Windows\ntbtlog.txt 763 KB C:\Windows\Debug\mrt.log 15 KB C:\Windows\Debug\mrteng.log 2 KB C:\Windows\Debug\sammui.log 1 KB C:\Windows\security\logs\scesetup.log 1,119 KB C:\Windows\security\logs\scecomp.old 128 KB C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\downloads.sqlite 12 KB C:\Users\EdM\AppData\Roaming\Mozilla\Firefox\Profiles\g3nyjyxz.default\sessionstore.js 1 KB C:\Users\EdM\AppData\LocalLow\Google\GoogleEarth\dbCache.dat 131,106 KB C:\Users\EdM\AppData\LocalLow\Google\GoogleEarth\dbCache.dat.index 73 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\4696view_cv.doc.url 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\attachments on www.enllegal.co.uk.url 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\cgi-bin on www.legalprospects.com.url 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\CV.LNK 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\Downloads.LNK 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\index.dat 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\My Documents.LNK 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\Public Documents.LNK 1 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\Sorry_Alison_what_was_that[1].LNK 2 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\Templates.LNK 2 KB C:\Users\EdM\AppData\Roaming\Microsoft\Office\Recent\view_cv.LNK 1 KB C:\Users\EdM\AppData\Roaming\OpenOffice.org\3\user\registry\data\org\openoffice\Office\Histories.xcu 7 KB C:\Users\EdM\AppData\Roaming\Google\Local Search History\google%2Eweb.w 0 KB C:\Users\EdM\AppData\Roaming\Skype\temp-0Y2AHkAKX53vK6EXDlVE6CUY 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-5KcwOdK7Pa6NgUb9LexVVYZj 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-8LG1tzDe5hjnyWkYsXamKCiB 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-8SGziQUANbTs5DEFv61LBcgS 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-8UB1PpzU3O9XUBzfrFbdTaxW 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-8xzcUXUbClcoI4c8IPiHGrlt 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-9598vXa0iE55kq1HCYqjLesR 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-9bEdVdQ6KcFcdrfmwBMWehJJ 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-9dYoNGHtapUxBMixeywSEa9x 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-9JSY4NJkIJnSGmUC3dfaaw1C 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-9U7GRDkMI89eE4QYv5A8ntug 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-ChLa0KMl5gr1fLpxP8xjVYed 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-d9KG39FUtxC2wgRV8s3tN8p7 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-DtK64bmfzQ4XR9z9ZyLwoUhD 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-eddSta4s16xnHdEiIgIlyciQ 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-FfORKQW5P1B3RrY5rYQXh6Lh 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-Fh9TgfgxqfiQ4GMIkJDuO75t 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-G1RyMNCePjadvn5wIVGBgmE4 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-gAledtsObZtpCJvrEfWV3xPE 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-GdkWebGgqfUaXrygmVYfbkpH 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-GFGrqRWdi0ZGncOaB1XQ5K8h 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-HeAZOiUZNwZehmLyLRmgDiBw 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-hMl7lvxVx12dEXOyNcUvVnau 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-HMuJa0W3wyTQGejdlALfnfSX 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-HVl7IdYigMS8oihSdQwsKtzo 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-IfILH57XDitKCidgvzyeurJ6 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-iOkTfmJ6zqaT8LFlUfusauo6 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-jFHeyypsbYCRm86I4fPEvJ2t 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-kcq61lvy0VlZOtKOqLyEZU6J 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-KFzCIxhqRjHFMQKpgbGVHX65 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-KnAUEcfJaqqhhcdrXOiJmoVB 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-n2mZcQvx3UUagqqtBaONNi7v 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-nltegQktK9ie3AqqGRGDnTin 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-NzvqTHZZzh1fyWVyxTWjvaT7 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-ooDwbhtuZLDb3XReby5ewhfg 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-PeiWEA3gXRBCe8VtjBlbm25z 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-pgNyk0OoNtT7gbO6eb10z1Wp 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-py9zwQRWzKhhScvFVwjAObCS 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-QcEO9ACrXvRmUn5mUmCExHOW 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-QJv7WlWIEQX3lGWll468q1eO 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-qoyKUgAXCuxFBYDENFAj6Bmv 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-rjEAlNeqNgFGxTdoO7zcFIFb 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-RxbjXeiUQM0XnaSE6wa6IDLd 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-rXgskIKZ3Ccf6xRlHeQp3oBE 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-S64pSj3Qh3eQ7bAmy6niX7TE 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-sAhIuxQ2lOdHdBfhRg5SvmJy 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-sBCPHiObvvmVY5VyX6BTlHVh 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-sph0kpccgMGoYi6rpIvAh239 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-TOlLU6IG6Jov77eT82W1ahR1 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-UdQMZt4WVlQkQ3lSZjcnsgT7 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-VDtFmgO5YSnRAZGgactToBa6 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-vGVsfgavyvBF6cm3ysXxROB7 2 KB C:\Users\EdM\AppData\Roaming\Skype\temp-vXRQW59f7AuFLQqffbvCJxAx 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-Yjc5T4D4SNZWzpr2pTRKXbxI 7 KB C:\Users\EdM\AppData\Roaming\Skype\temp-zVJ1FgdBbti5KQ2oBMh5zw68 2 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\2rst0fe1egfvqzyezco4zeqvpacpkmekpfcskvwnu1knpp5yjbaaaaea\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\2rst0fe1egfvqzyezco4zeqvpacpkmekpfcskvwnu1knpp5yjbaaaaea\quota.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\2rst0fe1egfvqzyezco4zeqvpacpkmekpfcskvwnu1knpp5yjbaaaaea\used.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\arnututevsd10w3xrtecnkxme1ksaitlbo25kcahw2nowtadrtaaacea\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\arnututevsd10w3xrtecnkxme1ksaitlbo25kcahw2nowtadrtaaacea\quota.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\arnututevsd10w3xrtecnkxme1ksaitlbo25kcahw2nowtadrtaaacea\used.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\ldzgpmbxnbhmfgm1qujc4nhvr2xxd0vxd0v2ps1fe0gh2g1mcxaaacca\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\ldzgpmbxnbhmfgm1qujc4nhvr2xxd0vxd0v2ps1fe0gh2g1mcxaaacca\quota.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\ldzgpmbxnbhmfgm1qujc4nhvr2xxd0vxd0v2ps1fe0gh2g1mcxaaacca\used.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\nputl4oewggya3mschoplcx3m1oz4x5m1adyjojss2o4jwcd1jaaadda\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\nputl4oewggya3mschoplcx3m1oz4x5m1adyjojss2o4jwcd1jaaadda\quota.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\nputl4oewggya3mschoplcx3m1oz4x5m1adyjojss2o4jwcd1jaaadda\used.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\ptr0ntvc0xlg5su3xd0mktbljo3voyio01oixjfnkhspw3mu1vaaaeha\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\ptr0ntvc0xlg5su3xd0mktbljo3voyio01oixjfnkhspw3mu1vaaaeha\quota.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\g\ptr0ntvc0xlg5su3xd0mktbljo3voyio01oixjfnkhspw3mu1vaaaeha\used.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\ldzgpmbxnbhmfgm1qujc4nhvr2xxd0vxd0v2ps1fe0gh2g1mcxaaacca\f\Skyp.6.4.Miniclient.S 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\ldzgpmbxnbhmfgm1qujc4nhvr2xxd0vxd0v2ps1fe0gh2g1mcxaaacca\group.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\ldzgpmbxnbhmfgm1qujc4nhvr2xxd0vxd0v2ps1fe0gh2g1mcxaaacca\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\mf2tan4wiuwhx5f2tsbnob2c4wtl05cfo3ngrqxvo31d5npyekaaaaea\f\__LocalSettings 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\mf2tan4wiuwhx5f2tsbnob2c4wtl05cfo3ngrqxvo31d5npyekaaaaea\group.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\mf2tan4wiuwhx5f2tsbnob2c4wtl05cfo3ngrqxvo31d5npyekaaaaea\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\nputl4oewggya3mschoplcx3m1oz4x5m1adyjojss2o4jwcd1jaaadda\f\__LocalSettings 0 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\nputl4oewggya3mschoplcx3m1oz4x5m1adyjojss2o4jwcd1jaaadda\group.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\nputl4oewggya3mschoplcx3m1oz4x5m1adyjojss2o4jwcd1jaaadda\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\ptr0ntvc0xlg5su3xd0mktbljo3voyio01oixjfnkhspw3mu1vaaaeha\f\Skyp.6.4.Miniclient 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\ptr0ntvc0xlg5su3xd0mktbljo3voyio01oixjfnkhspw3mu1vaaaeha\group.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\ptr0ntvc0xlg5su3xd0mktbljo3voyio01oixjfnkhspw3mu1vaaaeha\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\wwpmxviqhx3s2v5cill2h4yilsyghl1q1hjdopk4obzvo1dfevaaaaga\f\__LocalSettings 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\wwpmxviqhx3s2v5cill2h4yilsyghl1q1hjdopk4obzvo1dfevaaaaga\group.dat 1 KB C:\Users\EdM\AppData\LocalLow\Microsoft\Silverlight\is\ye1r4rts.eff\tkjqkkhd.zim\1\s\wwpmxviqhx3s2v5cill2h4yilsyghl1q1hjdopk4obzvo1dfevaaaaga\id.dat 1 KB C:\Users\EdM\AppData\LocalLow\Apple Computer\quicktime\downloads\03\06\365906ca-fd37512c-4a418baf-c31a63b2.qtch 2 KB C:\Users\EdM\AppData\LocalLow\Apple Computer\quicktime\downloads\03\09\3936ffc2-692647ff-9cd49398-fb3c5afc.qtch 2 KB C:\Users\EdM\AppData\LocalLow\Apple Computer\quicktime\downloads\03\12\3c827958-6746001b-fe4797b2-3f984ef5.qtch 2 KB C:\Users\EdM\AppData\LocalLow\Apple Computer\quicktime\downloads\04\11\4b5752f4-fb7a14d7-abeaf269-77dcfc5e.qtch 2 KB C:\Users\EdM\AppData\LocalLow\Apple Computer\quicktime\downloads\08\12\8c731901-c09691ee-7fbe9113-73938fe3.qtch 2 KB C:\Users\EdM\AppData\LocalLow\Apple Computer\quicktime\downloads\11\09\b9d1ffc0-ccb5acf4-eec83469-b8ef9d92.qtch 2 KB C:\Users\EdM\AppData\LocalLow\Apple Computer\quicktime\downloads\12\08\c8458722-d4aebfb5-f6ec6882-20c76bf8.qtch 2 KB C:\Users\EdM\AppData\Local\Microsoft\Media Player\lastplayed.wpl 1 KB C:\Users\EdM\AppData\Local\Microsoft\Media Player\Cache2517216\CacheEntry23151443D07F2B449510FDD4A7AD8B7BC42D9FE2 9 KB C:\Users\EdM\AppData\Local\Microsoft\Media Player\Cache2517216\CacheEntry39751BB7A464D7B57728402D9C1B6547B360D527 3 KB C:\Users\EdM\AppData\Local\Microsoft\Media Player\Cache2517216\CacheEntry4FA6E659CBBE34EC0CC8D335C24E68FCDD913A7B 2 KB C:\Users\EdM\AppData\Local\Microsoft\Media Player\Cache2517216\CacheEntry6758CC023D7BD88C0A19941F33A46FE2D717CEF8 3 KB C:\Users\EdM\AppData\Local\Microsoft\Media Player\Cache2517216\CacheEntryAEDA6506A866662125AD9AA04950442A421E9E92 12 KB C:\Users\EdM\AppData\Local\Microsoft\Media Player\Cache2517216\CacheEntryF6FA1E9E25691AD9C290948995DD48363FEE1447 6 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Quick\{A2AD24D4-40AF-4495-9789-BAD00530D7BD} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{0789522A-A56B-4E3B-8DAE-D41F125E2C20} 9 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{0C70688B-4EBA-4840-9296-296A21A3A1D7} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{16C55BD9-B86C-4FE4-9ED6-536E13CF78D7} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{25B356B0-D8D8-46E6-AF19-DE3971EA0F63} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{268615F0-71BF-457D-B966-974D092E7DF8} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{2EE44408-1387-49D1-ABF2-1010E87AFA48} 11 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{3221FBAC-D4DF-472F-82A2-4657281A9CF6} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{3617653E-0395-442D-A6A6-CC00B2059B3C} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{3BC0F676-8EAA-4D57-AF87-85E5F85FDD9D} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{46709D7B-43D6-434E-948D-585288EDF10F} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{56D6262E-2A2A-41F8-8EB3-69F8045B0117} 8 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{58D2E466-11F9-460E-B8AE-6C63A7C822C0} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{5A0F5F8F-4B8F-410C-800F-007D1ADC85B8} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{5B755041-B97E-441B-93B7-87E3A3AE7EE7} 8 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{5FA9360F-B9CD-4F5A-A42E-B6D7E1F5C577} 10 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{67ECEE60-939A-4660-99EE-AD78F7F22698} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{80F3365E-B9CC-479D-B7A7-D65B9E037686} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{827742F8-185C-4854-B9AC-40B8CE0D0BFE} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{8903FD74-DEF6-4696-BA7A-F8318C1FA6DA} 11 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{95FF0FA9-6C7F-414E-A57E-279E695A81B8} 8 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{9DDFB7B9-83CB-46F4-A653-3C80F5452D77} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{B48A3AB0-8425-4402-92FA-4A2AE43291CB} 8 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{C1CDF9BB-4AD9-4169-BD84-3ED568562B1A} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{C3DEF84B-592A-4FC9-97F9-DA9D0D45B37A} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{C7DC7F63-3815-409A-A249-7E1C643F8865} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{CFEE05EC-001D-4F34-975C-CDF74923A0E8} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{D84246BE-1B7E-41CD-8A98-F2DEBB902023} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{E6A3BB7D-5949-4E33-A85C-720D2243541F} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{E70F0457-33B4-46A3-BAA0-4B6C05FA7A9E} 7 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{EA92866A-121A-4FEA-96F5-E6545C50B8BE} 8 KB C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{F39CA23C-6EDD-4A3C-9851-EDFDC7FE88EA} 7 KB
  25. Hi Emsisoft, Not a Malware removal question ...I hope. Instead, I've just (today around 1600 PST) noticed some very strange behavior from my Full EAM 5.1.0.11. My Full Online Armor is working fine. I have EAM updates scheduled for 0300 PST & a full EAM scan scheduled for 0315 PST. It has always been thus for well over a year with no problems whatsoever except for the occasional false positive. I wake up and see the EAM program open with nothing found and go on my merry way. Today my better half got home went on the pc saw the program with nothing found, closed it and went onto FB. Within a few (maybe 10) minutes EAM began an "unscheduled" scheduled scan (i.e. it just started scanning in the middle of the afternoon. She thought it weird, but let it finish. Within 5 minutes of it finishing the scan, it started yet another again. In the 15 minutes I've spent writing this it has tried to start a scan 3 times?? Everything seems fine in the configuration page; as well it should as I haven't changed them in ages. Neither Soft nor Hard boots seem to make any difference. It's all very weird. I would prefer to avoid having to reinstall, but at the moment I'm at a loss to explain why this is happening and even farther from trying to figure out how to stop the behavior or revert it to the normal once-a-day 0315 Scheduled Scan. Any thoughts would be most welcome as I'll need to shut it off for now. Thanks in advance Cheers XonE EDIT: Just looked at the logs and noticed EAM is also doing an auto-update every 5 to 7 minutes. Almost looks like EAM is set to interval scanning yet that's not set on the config page... confused.