Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-02-2015 01
Ran by Mamasita (administrator) on MAMASITA-PC on 26-02-2015 21:11:48
Running from C:\Users\Mamasita\Desktop
Loaded Profiles: Mamasita (Available profiles: Mamasita & Mcx1-MAMASITA-PC)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
(APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\nis.exe
(Symantec Corporation) C:\Program Files (x86)\PC Checkup\SymcPCCULaunchSvc.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\nis.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler64.exe
(IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
(APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe
(TOSHIBA CORPORATION.) C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Farbar) C:\Users\Mamasita\Desktop\FRST64 (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10134560 2010-03-22] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [896032 2010-03-22] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2052392 2010-03-10] (Synaptics Incorporated)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [505696 2009-11-05] (TOSHIBA Corporation)
HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [52600 2009-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [508216 2009-07-28] (TOSHIBA Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [913720 2010-03-03] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705368 2010-02-23] (TOSHIBA Corporation)
HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1489760 2010-04-06] (TOSHIBA Corporation)
HKLM\...\Run: [SmartFaceVWatcher] => C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [238080 2009-10-19] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [595816 2010-03-19] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] => C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [35672 2010-03-03] (TOSHIBA Corporation)
HKLM-x32\...\Run: [SVPWUTIL] => C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe [352256 2010-02-22] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [HWSetup] => C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [423936 2009-06-02] (TOSHIBA Electronics, Inc.)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2009-12-25] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [ToshibaServiceStation] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [1294136 2009-10-06] (TOSHIBA Corporation)
HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2454840 2010-02-24] (TOSHIBA CORPORATION.)
HKLM-x32\...\Run: [NortonOnlineBackupReminder] => C:\Program Files (x86)\TOSHIBA\Toshiba Online Backup\Activation\TobuActivation.exe [529256 2009-08-09] (Toshiba)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.)
HKLM-x32\...\Run: [OtShot] => C:\Program Files (x86)\OtShot\otshot.exe -minimize
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => "C:\Program Files (x86)\Java\jre1.8.0_31\bin\jusched.exe"
HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1949592 2015-02-14] (APN)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...D6A79037F57F\InprocServer32: [Default-fastprox] ATTENTION! ====> ZeroAccess?
HKU\S-1-5-21-992751193-1912288904-1911362873-1001\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-03-23] (Google Inc.)
HKU\S-1-5-21-992751193-1912288904-1911362873-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [18705664 2013-01-08] (Skype Technologies S.A.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page =
www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=NIS&pvid=21.6.0.32HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page =
www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=NIS&pvid=21.6.0.32HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page =
www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=NIS&pvid=21.6.0.32HKU\S-1-5-21-992751193-1912288904-1911362873-1001\Software\Microsoft\Internet Explorer\Main,Start Page =
www.google.com/HKU\S-1-5-21-992751193-1912288904-1911362873-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
www.google.com/ig?brand=TSNA&bmod=TSNAURLSearchHook: HKLM-x32 - KeyBar 1.8 Toolbar - {9ed31f84-c8b3-4926-b950-dff74047ff79} - C:\Program Files (x86)\KeyBar_1.8\prxtbKeyB.dll No File
URLSearchHook: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 - KeyBar 1.8 Toolbar - {9ed31f84-c8b3-4926-b950-dff74047ff79} - C:\Program Files (x86)\KeyBar_1.8\prxtbKeyB.dll No File
SearchScopes: HKLM -> DefaultScope {752A3EFD-C827-4AF2-A75D-6AD33969CC5B} URL =
www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNASearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {752A3EFD-C827-4AF2-A75D-6AD33969CC5B} URL =
www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNASearchScopes: HKLM-x32 -> DefaultScope {133ADD11-A19F-4EBF-A2E9-36D8EA360440} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {9bd172ba-3f40-4303-bca1-0484b5ba2a7b} URL =
search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=YJxdm0938Jus&ptb=C67DB10D-7E93-461B-B399-FD92F82EE5F3&psa=&ind=2011050108&ptnrS=YJxdm0938Jus&si=&st=sb&n=77de307c&searchfor={searchTerms}SearchScopes: HKLM-x32 -> {9FABB35B-29AD-4019-9797-49CC8D72A6B0} URL =
www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNASearchScopes: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 -> DefaultScope {5CF4C09E-1E6B-486C-A611-0F2058D81AA1} URL =
www.search.ask.com/web?tpid=ORJ-SPE&o=APN11405&pf=V7&p2=^BBD^OSJ000^YY^US&gct=&itbv=12.24.1.51&apn_uid=D4F03B82-BC16-45FA-86F5-81B3202EAA61&apn_ptnrs=BBD&apn_dtid=^OSJ000^YY^US&apn_dbr=ie_9.0.8112.16490&doi=2015-02-12&trgb=IE&q={searchTerms}&psv=&pt=tbSearchScopes: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 -> {0D4424E6-EAD8-4C6E-ABCC-57F3704B83F1} URL =
www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNA_enUS394US394SearchScopes: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 -> {4E4712C8-3549-4949-BCBB-84095638CDD5} URL =
SearchScopes: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 -> {5CF4C09E-1E6B-486C-A611-0F2058D81AA1} URL =
www.search.ask.com/web?tpid=ORJ-SPE&o=APN11405&pf=V7&p2=^BBD^OSJ000^YY^US&gct=&itbv=12.24.1.51&apn_uid=D4F03B82-BC16-45FA-86F5-81B3202EAA61&apn_ptnrs=BBD&apn_dtid=^OSJ000^YY^US&apn_dbr=ie_9.0.8112.16490&doi=2015-02-12&trgb=IE&q={searchTerms}&psv=&pt=tbSearchScopes: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 -> {752A3EFD-C827-4AF2-A75D-6AD33969CC5B} URL =
BHO: Search App by Ask -> {4F524A2D-5350-4500-76A7-7A786E7484D7} -> C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-SPE\Passport_x64.dll (APN LLC.)
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Engine64\21.6.0.32\coIEPlg.dll (Symantec Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO-x32: Search App by Ask -> {4F524A2D-5350-4500-76A7-7A786E7484D7} -> C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-SPE\Passport.dll (APN LLC.)
BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} -> No File
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: No Name -> {9D425283-D487-4337-BAB6-AB8354A81457} -> No File
BHO-x32: KeyBar 1.8 Toolbar -> {9ed31f84-c8b3-4926-b950-dff74047ff79} -> C:\Program Files (x86)\KeyBar_1.8\prxtbKeyB.dll No File
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine64\21.6.0.32\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM - Search App by Ask - {4F524A2D-5350-4500-76A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-SPE\Passport_x64.dll (APN LLC.)
Toolbar: HKLM-x32 - No Name - {9D425283-D487-4337-BAB6-AB8354A81457} - No File
Toolbar: HKLM-x32 - KeyBar 1.8 Toolbar - {9ed31f84-c8b3-4926-b950-dff74047ff79} - C:\Program Files (x86)\KeyBar_1.8\prxtbKeyB.dll No File
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - Search App by Ask - {4F524A2D-5350-4500-76A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-SPE\Passport.dll (APN LLC.)
Toolbar: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 -> No Name - {9D425283-D487-4337-BAB6-AB8354A81457} - No File
Toolbar: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 -> No Name - {9ED31F84-C8B3-4926-B950-DFF74047FF79} - No File
Toolbar: HKU\S-1-5-21-992751193-1912288904-1911362873-1001 -> Search App by Ask - {4F524A2D-5350-4500-76A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-SPE\Passport_x64.dll (APN LLC.)
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000}
download.macromedia.com/pub/shockwave/cabs/director/sw.cabDPF: HKLM-x32 {721700FE-7F0E-49C5-BDED-CA92B7CB1245}
192.168.0.15/camclictrl.cabHandler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 -> C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-992751193-1912288904-1911362873-1001: @nsroblox.roblox.com/launcher -> C:\Users\Mamasita\AppData\Local\Roblox\Versions\version-c5357fcf5b544474\\NPRobloxProxy.dll ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-992751193-1912288904-1911362873-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Mamasita\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\coFFPlgn [2015-02-26]
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\IPSFF
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\IPSFF [2013-11-13]
Chrome:
=======
CHR HomePage: Default -> hxxp://search.conduit.com/?ctid=CT3286042&SearchSource=48&CUI=UN36003088025660310&UM=2
CHR StartupUrls: Default -> "hxxp://search.conduit.com/?ctid=CT3286042&SearchSource=48&CUI=UN36003088025660310&UM=2"
CHR DefaultSearchKeyword: Default -> search.conduit.com_
CHR DefaultSearchURL: Default ->
search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&CUI=UN36003088025660310&ctid=CT3286042&UM=2CHR DefaultNewTabURL: Default ->
search.conduit.com/?gd=&ctid=CT3286042&octid=CT3286042&ISID=ISID_ID&SearchSource=15&CUI=UN36003088025660310&SSPV=&lay=3&p=cnts&UM=&SAT=CNTSCHR DefaultSuggestURL: Default ->
suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}&CUI=UN36003088025660310&UM=2CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\gcswf32.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.170.4) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeploytk.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U17) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll No File
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll No File
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Unity Player) - C:\Users\Mamasita\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
CHR Plugin: (Shockwave for Director) - C:\windows\system32\Adobe\Director\np32dsw.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\3.0.40624.0\npctrl.dll No File
CHR Profile: C:\Users\Mamasita\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Mamasita\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-11-26]
CHR Extension: (KeyBar 1.8) - C:\Users\Mamasita\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpaiibklhaneknloaoccoidbaffjjlnb [2014-05-05]
CHR Extension: (Norton Security Toolbar) - C:\Users\Mamasita\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2014-05-05]
CHR Extension: (Google Wallet) - C:\Users\Mamasita\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-05]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] -
clients2.google.com/service/update2/crxCHR HKLM\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\Exts\Chrome.crx [2014-10-03]
CHR HKU\S-1-5-21-992751193-1912288904-1911362873-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [gpaiibklhaneknloaoccoidbaffjjlnb] - C:\Users\Mamasita\AppData\Local\CRE\gpaiibklhaneknloaoccoidbaffjjlnb.crx [2013-08-21]
CHR HKLM-x32\...\Chrome\Extension: [gpaiibklhaneknloaoccoidbaffjjlnb] - C:\Users\Mamasita\AppData\Local\CRE\gpaiibklhaneknloaoccoidbaffjjlnb.crx [2013-08-21]
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] -
clients2.google.com/service/update2/crxCHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\Exts\Chrome.crx [2014-10-03]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [177560 2015-01-30] (APN LLC.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 LMS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [262144 2009-09-30] (Intel Corporation) [File not signed]
R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\NIS.exe [276376 2014-09-21] (Symantec Corporation)
R2 Norton PC Checkup Application Launcher; C:\Program Files (x86)\PC Checkup\SymcPCCULaunchSvc.exe [132504 2013-09-06] (Symantec Corporation)
R2 PCCUJobMgr; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe [126392 2009-08-24] (Symantec Corporation)
R2 RapportMgmtService; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [1919256 2015-02-12] (IBM Corp.)
R2 UNS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2314240 2009-09-30] (Intel Corporation) [File not signed]
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [288256 2010-10-05] (WDC) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\BASHDefs\20150224.001\BHDrvx64.sys [1622744 2015-02-02] (Symantec Corporation)
R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1506000.020\ccSetx64.sys [162392 2013-09-25] (Symantec Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-12-11] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-12-11] (Symantec Corporation)
S3 hcw72ADFilter; C:\Windows\System32\DRIVERS\hcw72ADFilter.sys [38656 2010-04-23] (Hauppauge Computer Works, Inc.)
S3 hcw72ATV; C:\Windows\System32\DRIVERS\hcw72ATV.sys [1631488 2010-04-23] (Hauppauge Computer Works, Inc.)
S3 hcw72DTV; C:\Windows\System32\DRIVERS\hcw72DTV.sys [1634176 2010-04-23] (Hauppauge Computer Works, Inc.)
R1 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\IPSDefs\20150225.002\IDSvia64.sys [669400 2015-02-07] (Symantec Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20150225.071\ENG64.SYS [129752 2015-02-04] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20150225.071\EX64.SYS [2137304 2015-02-04] (Symantec Corporation)
R1 RapportCerberus_80128; C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_80128.sys [844440 2015-02-26] (IBM Corp.)
R1 RapportEI64; C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [445816 2015-02-12] (IBM Corp.)
R0 RapportKE64; C:\Windows\System32\Drivers\RapportKE64.sys [535576 2015-02-12] (IBM Corp.)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [28416 2008-04-16] (Research In Motion Limited)
R3 SRTSP; C:\Windows\System32\Drivers\NISx64\1506000.020\SRTSP64.SYS [876248 2014-08-25] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1506000.020\SRTSPX64.SYS [37592 2014-08-25] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NISx64\1506000.020\SYMDS64.SYS [493656 2013-09-09] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NISx64\1506000.020\SYMEFA64.SYS [1148120 2014-03-03] (Symantec Corporation)
R3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2013-11-12] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NISx64\1506000.020\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1506000.020\SYMNETS.SYS [593112 2014-02-17] (Symantec Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-26 21:11 - 2015-02-26 21:12 - 00030424 _____ () C:\Users\Mamasita\Desktop\FRST.txt
2015-02-26 21:10 - 2015-02-26 21:02 - 02087936 _____ (Farbar) C:\Users\Mamasita\Desktop\FRST64 (1).exe
2015-02-26 21:08 - 2015-02-26 21:08 - 02087936 _____ (Farbar) C:\Users\Mamasita\Downloads\FRST64 (6).exe
2015-02-26 21:08 - 2015-02-26 21:08 - 02087936 _____ (Farbar) C:\Users\Mamasita\Downloads\FRST64 (5).exe
2015-02-26 21:07 - 2015-02-26 21:07 - 02087936 _____ (Farbar) C:\Users\Mamasita\Downloads\FRST64 (4).exe
2015-02-26 21:06 - 2015-02-26 21:06 - 02087936 _____ (Farbar) C:\Users\Mamasita\Downloads\FRST64 (3).exe
2015-02-26 21:03 - 2015-02-26 21:03 - 02087936 _____ (Farbar) C:\Users\Mamasita\Downloads\FRST64 (2).exe
2015-02-26 21:01 - 2015-02-26 21:11 - 00000000 ____D () C:\FRST
2015-02-26 21:01 - 2015-02-26 21:02 - 02087936 _____ (Farbar) C:\Users\Mamasita\Downloads\FRST64 (1).exe
2015-02-26 21:00 - 2015-02-26 21:00 - 02087936 _____ (Farbar) C:\Users\Mamasita\Downloads\FRST64.exe
2015-02-26 20:48 - 2015-02-26 20:48 - 00423660 _____ () C:\Users\Mamasita\Desktop\ESETPoweliksCleaner.exe_20150226.204832.5992.log
2015-02-26 20:48 - 2015-02-26 20:48 - 00000022 _____ () C:\Users\Mamasita\Desktop\ESETPoweliksCleaner.exe_20150226.204832.5992.zip
2015-02-26 20:47 - 2015-02-26 20:47 - 00220872 _____ (ESET) C:\Users\Mamasita\Downloads\ESETPoweliksCleaner.exe
2015-02-26 19:49 - 2015-01-08 17:44 - 00419936 _____ () C:\windows\SysWOW64\locale.nls
2015-02-26 19:49 - 2015-01-08 17:43 - 00419936 _____ () C:\windows\system32\locale.nls
2015-02-20 17:12 - 2015-02-20 17:12 - 00000000 ____D () C:\Users\Mamasita\AppData\Local\Fuze Zip
2015-02-15 15:18 - 2015-02-15 15:18 - 00000000 __SHD () C:\Users\Mamasita\AppData\Local\EmieUserList
2015-02-15 15:18 - 2015-02-15 15:18 - 00000000 __SHD () C:\Users\Mamasita\AppData\Local\EmieSiteList
2015-02-15 15:18 - 2015-02-15 15:18 - 00000000 __SHD () C:\Users\Mamasita\AppData\Local\EmieBrowserModeList
2015-02-15 15:01 - 2015-01-22 22:42 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-02-15 15:01 - 2015-01-22 22:41 - 06041600 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-02-15 15:01 - 2015-01-22 21:43 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2015-02-15 15:01 - 2015-01-22 21:17 - 04300800 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-02-14 12:43 - 2015-01-13 23:47 - 00389808 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-02-14 12:43 - 2015-01-13 23:09 - 00342712 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2015-02-14 12:43 - 2015-01-11 21:05 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-02-14 12:43 - 2015-01-11 21:05 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-02-14 12:43 - 2015-01-11 20:48 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-02-14 12:43 - 2015-01-11 20:39 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-02-14 12:43 - 2015-01-11 20:34 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-02-14 12:43 - 2015-01-11 20:25 - 19740160 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-02-14 12:43 - 2015-01-11 20:25 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-02-14 12:43 - 2015-01-11 20:21 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2015-02-14 12:43 - 2015-01-11 20:13 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-02-14 12:43 - 2015-01-11 20:07 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2015-02-14 12:43 - 2015-01-11 20:07 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2015-02-14 12:43 - 2015-01-11 20:05 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2015-02-14 12:43 - 2015-01-11 20:04 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-02-14 12:43 - 2015-01-11 20:02 - 02277888 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-02-14 12:43 - 2015-01-11 20:00 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2015-02-14 12:43 - 2015-01-11 19:59 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2015-02-14 12:43 - 2015-01-11 19:57 - 00478208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2015-02-14 12:43 - 2015-01-11 19:55 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2015-02-14 12:43 - 2015-01-11 19:48 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-02-14 12:43 - 2015-01-11 19:48 - 00718848 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-02-14 12:43 - 2015-01-11 19:45 - 00418304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2015-02-14 12:43 - 2015-01-11 19:40 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-14 12:43 - 2015-01-11 19:35 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-02-14 12:43 - 2015-01-11 19:33 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-02-14 12:43 - 2015-01-11 19:23 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-02-14 12:43 - 2015-01-11 19:23 - 00688640 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-02-14 12:43 - 2015-01-11 19:14 - 01548288 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-02-14 12:43 - 2015-01-11 18:56 - 01307136 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-02-14 12:43 - 2015-01-11 18:55 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-02-14 12:43 - 2015-01-10 00:48 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-02-14 12:43 - 2015-01-10 00:48 - 00341504 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-02-14 12:43 - 2015-01-10 00:48 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-02-14 12:43 - 2015-01-10 00:48 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-02-14 12:43 - 2015-01-10 00:48 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-02-14 12:43 - 2015-01-10 00:48 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-02-14 12:43 - 2015-01-10 00:48 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-02-14 12:43 - 2015-01-10 00:27 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2015-02-14 12:43 - 2015-01-10 00:27 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2015-02-14 12:43 - 2015-01-10 00:27 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-02-14 12:43 - 2015-01-10 00:27 - 00221184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2015-02-14 12:43 - 2015-01-10 00:27 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2015-02-14 12:43 - 2015-01-10 00:27 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2015-02-14 12:43 - 2015-01-10 00:27 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2015-02-14 12:42 - 2015-01-11 21:09 - 25056256 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-02-14 12:42 - 2015-01-11 20:49 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-02-14 12:42 - 2015-01-11 20:48 - 02885632 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-02-14 12:42 - 2015-01-11 20:48 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-02-14 12:42 - 2015-01-11 20:47 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-02-14 12:42 - 2015-01-11 20:40 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-02-14 12:42 - 2015-01-11 20:36 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-02-14 12:42 - 2015-01-11 20:34 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-02-14 12:42 - 2015-01-11 20:21 - 00490496 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-02-14 12:42 - 2015-01-11 20:08 - 00503296 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-02-14 12:42 - 2015-01-11 20:08 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-02-14 12:42 - 2015-01-11 20:07 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-02-14 12:42 - 2015-01-11 19:46 - 02125824 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-02-14 12:42 - 2015-01-11 19:46 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-02-14 12:42 - 2015-01-11 19:43 - 14401024 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-02-14 12:42 - 2015-01-11 19:36 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2015-02-14 12:42 - 2015-01-11 19:27 - 02358272 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-02-14 12:42 - 2015-01-11 19:22 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2015-02-14 12:42 - 2015-01-11 19:14 - 12829184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-02-14 12:42 - 2015-01-11 19:02 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-02-14 12:42 - 2015-01-11 19:00 - 01888256 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-02-14 12:41 - 2014-07-08 20:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2015-02-14 12:41 - 2014-07-08 20:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2015-02-14 12:41 - 2014-07-08 20:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2015-02-14 12:41 - 2014-07-08 20:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2015-02-14 12:41 - 2014-07-08 20:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2015-02-14 12:41 - 2014-07-08 19:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2015-02-14 12:41 - 2014-07-08 19:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2015-02-14 12:41 - 2014-07-08 19:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2015-02-14 12:41 - 2014-07-08 19:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2015-02-14 12:41 - 2014-07-08 19:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2015-02-14 12:12 - 2015-02-14 12:12 - 00000000 ___SD () C:\windows\system32\CompatTel
2015-02-14 12:12 - 2015-02-14 12:12 - 00000000 ____D () C:\windows\system32\appraiser
2015-02-14 04:13 - 2013-05-09 23:56 - 14631424 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2015-02-14 04:13 - 2013-05-09 23:56 - 12625920 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2015-02-14 04:13 - 2013-05-09 22:56 - 12625408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2015-02-14 04:13 - 2013-05-09 22:56 - 11410432 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00942592 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00774144 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00645120 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsIntl.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00616104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2015-02-14 04:01 - 2015-02-14 04:01 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2015-02-14 04:01 - 2015-02-14 04:01 - 00610304 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00413696 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2015-02-14 04:01 - 2015-02-14 04:01 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2015-02-14 04:01 - 2015-02-14 04:01 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00233472 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00208384 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00194048 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00182272 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00151552 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00147968 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00139264 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00131072 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00127488 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00116736 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00101376 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00086016 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00083456 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2015-02-14 04:01 - 2015-02-14 04:01 - 00074240 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2015-02-14 04:01 - 2015-02-14 04:01 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00056832 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2015-02-14 04:01 - 2015-02-14 04:01 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00013312 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2015-02-14 04:01 - 2015-02-14 04:01 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2015-02-14 03:14 - 2014-10-17 20:05 - 04121600 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2015-02-14 03:14 - 2014-10-17 19:33 - 03209728 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2015-02-14 03:14 - 2014-07-06 20:06 - 00206848 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2015-02-14 03:14 - 2014-07-06 20:06 - 00055808 _____ (Microsoft Corporation) C:\windows\system32\rrinstaller.exe
2015-02-14 03:14 - 2014-07-06 20:06 - 00024576 _____ (Microsoft Corporation) C:\windows\system32\mfpmp.exe
2015-02-14 03:14 - 2014-07-06 20:02 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\mferror.dll
2015-02-14 03:14 - 2014-07-06 19:40 - 00103424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfps.dll
2015-02-14 03:14 - 2014-07-06 19:39 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\rrinstaller.exe
2015-02-14 03:14 - 2014-07-06 19:39 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfpmp.exe
2015-02-14 03:14 - 2014-07-06 19:37 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\mferror.dll
2015-02-12 16:43 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\windows\system32\IEUDINIT.EXE
2015-02-12 14:35 - 2015-02-12 14:52 - 00000000 ____D () C:\windows\system32\MRT
2015-02-12 13:50 - 2015-02-14 04:06 - 00034629 _____ () C:\windows\IE11_main.log
2015-02-12 13:04 - 2015-02-12 13:04 - 00000000 ____D () C:\Users\Mamasita\AppData\Local\AskPartnerNetwork
2015-02-12 13:04 - 2015-02-12 13:04 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork
2015-02-12 13:04 - 2015-02-12 13:04 - 00000000 ____D () C:\ProgramData\APN
2015-02-12 13:04 - 2015-02-12 13:04 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork
2015-02-12 13:01 - 2015-02-12 12:58 - 00176552 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2015-02-12 13:01 - 2015-02-12 12:58 - 00176552 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2015-02-12 13:01 - 2015-02-12 12:58 - 00098216 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2015-02-12 13:01 - 2013-05-31 17:05 - 00866720 _____ (Oracle Corporation) C:\windows\SysWOW64\npDeployJava1.dll
2015-02-12 13:01 - 2013-05-31 17:05 - 00788896 _____ (Oracle Corporation) C:\windows\SysWOW64\deployJava1.dll
2015-02-12 12:58 - 2015-02-12 12:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-12 12:55 - 2015-02-12 13:06 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-12 12:54 - 2014-08-11 20:02 - 00878080 _____ (Microsoft Corporation) C:\windows\system32\IMJP10K.DLL
2015-02-12 12:54 - 2014-08-11 19:36 - 00701440 _____ (Microsoft Corporation) C:\windows\SysWOW64\IMJP10K.DLL
2015-02-12 08:08 - 2014-12-18 21:06 - 00210432 _____ (Microsoft Corporation) C:\windows\system32\profsvc.dll
2015-02-12 08:07 - 2013-06-05 23:50 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2015-02-12 08:07 - 2013-06-05 23:49 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2015-02-12 08:07 - 2013-06-05 23:49 - 00014336 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2015-02-12 08:07 - 2013-06-05 23:47 - 00046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2015-02-12 08:07 - 2013-06-05 22:57 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2015-02-12 08:07 - 2013-06-05 22:51 - 00070656 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2015-02-12 08:07 - 2013-06-05 22:50 - 00010240 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2015-02-12 08:07 - 2013-06-05 21:30 - 00368128 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2015-02-12 08:07 - 2013-06-05 21:01 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2015-02-12 08:07 - 2013-06-05 21:01 - 00034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2015-02-12 08:06 - 2014-12-11 11:47 - 00052736 _____ (Microsoft Corporation) C:\windows\system32\TSWbPrxy.exe
2015-02-12 08:06 - 2014-01-27 20:32 - 00228864 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2015-02-12 08:06 - 2013-10-29 20:32 - 00335360 _____ (Microsoft Corporation) C:\windows\system32\msieftp.dll
2015-02-12 08:06 - 2013-10-29 20:19 - 00301568 _____ (Microsoft Corporation) C:\windows\SysWOW64\msieftp.dll
2015-02-12 08:06 - 2013-07-04 06:50 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2015-02-12 08:06 - 2013-07-04 05:50 - 00530432 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2015-02-12 08:05 - 2015-02-03 21:16 - 00894976 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2015-02-12 08:05 - 2015-02-03 21:16 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2015-02-12 08:05 - 2015-02-03 21:16 - 00609280 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2015-02-12 08:05 - 2015-02-03 21:16 - 00414720 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2015-02-12 08:05 - 2015-02-03 21:16 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2015-02-12 08:05 - 2015-02-03 21:16 - 00192000 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2015-02-12 08:05 - 2015-02-03 21:13 - 01098752 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2015-02-12 08:05 - 2015-01-27 17:36 - 01239720 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2015-02-12 08:03 - 2014-08-01 05:53 - 01031168 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2015-02-12 08:03 - 2014-08-01 05:35 - 00793600 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll
2015-02-12 08:03 - 2014-04-24 20:34 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2015-02-12 08:03 - 2014-04-24 20:06 - 00626688 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2015-02-12 08:02 - 2013-11-23 12:26 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll
2015-02-12 08:02 - 2013-11-23 11:47 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2015-02-12 08:01 - 2014-06-18 16:23 - 01943696 _____ (Microsoft Corporation) C:\windows\system32\dfshim.dll
2015-02-12 08:01 - 2014-06-18 16:23 - 01131664 _____ (Microsoft Corporation) C:\windows\SysWOW64\dfshim.dll
2015-02-12 08:01 - 2014-06-18 16:23 - 00156824 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscorier.dll
2015-02-12 08:01 - 2014-06-18 16:23 - 00156312 _____ (Microsoft Corporation) C:\windows\system32\mscorier.dll
2015-02-12 08:01 - 2014-06-18 16:23 - 00081560 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscories.dll
2015-02-12 08:01 - 2014-06-18 16:23 - 00073880 _____ (Microsoft Corporation) C:\windows\system32\mscories.dll
2015-02-11 04:32 - 2014-04-04 20:47 - 01903552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2015-02-11 04:32 - 2014-04-04 20:47 - 00288192 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2015-02-11 04:32 - 2014-01-28 20:32 - 00484864 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2015-02-11 04:32 - 2014-01-28 20:06 - 00381440 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2015-02-11 04:32 - 2013-11-26 05:40 - 00376768 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys
2015-02-11 04:32 - 2013-10-18 20:18 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\imagehlp.dll
2015-02-11 04:32 - 2013-10-18 19:36 - 00159232 _____ (Microsoft Corporation) C:\windows\SysWOW64\imagehlp.dll
2015-02-11 04:30 - 2014-12-05 22:17 - 00303616 _____ (Microsoft Corporation) C:\windows\system32\nlasvc.dll
2015-02-11 04:30 - 2014-12-05 21:50 - 00156672 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncsi.dll
2015-02-11 04:30 - 2014-12-05 21:50 - 00052224 _____ (Microsoft Corporation) C:\windows\SysWOW64\nlaapi.dll
2015-02-11 04:30 - 2014-10-13 20:13 - 00683520 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2015-02-11 04:30 - 2014-03-26 08:44 - 02002432 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2015-02-11 04:30 - 2014-03-26 08:27 - 01389056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2015-02-11 04:30 - 2014-03-26 08:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2015-02-11 04:29 - 2015-01-12 21:10 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2015-02-11 04:29 - 2015-01-12 20:49 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2015-02-11 04:29 - 2014-06-23 21:29 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2015-02-11 04:29 - 2014-06-23 20:59 - 01987584 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2015-02-11 04:29 - 2014-03-26 08:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2015-02-11 04:24 - 2014-12-18 19:46 - 00141312 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxdav.sys
2015-02-11 04:24 - 2014-06-17 20:18 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\osk.exe
2015-02-11 04:24 - 2014-06-17 19:51 - 00646144 _____ (Microsoft Corporation) C:\windows\SysWOW64\osk.exe
2015-02-11 04:24 - 2013-10-03 20:16 - 00116736 _____ (Microsoft Corporation) C:\windows\system32\Drivers\drmk.sys
2015-02-11 04:24 - 2013-10-03 19:36 - 00230400 _____ (Microsoft Corporation) C:\windows\system32\Drivers\portcls.sys
2015-02-11 04:24 - 2013-08-04 20:25 - 00155584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ataport.sys
2015-02-11 04:23 - 2013-10-03 20:28 - 00190464 _____ (Microsoft Corporation) C:\windows\system32\SmartcardCredentialProvider.dll
2015-02-11 04:23 - 2013-10-03 20:25 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\credui.dll
2015-02-11 04:23 - 2013-10-03 19:58 - 00152576 _____ (Microsoft Corporation) C:\windows\SysWOW64\SmartcardCredentialProvider.dll
2015-02-11 04:23 - 2013-10-03 19:56 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\credui.dll
2015-02-11 04:22 - 2015-01-15 02:14 - 00155072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-02-11 04:22 - 2015-01-15 02:14 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-02-11 04:22 - 2015-01-15 02:09 - 01461760 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-02-11 04:22 - 2015-01-15 02:09 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-02-11 04:22 - 2015-01-15 02:09 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-02-11 04:22 - 2015-01-15 02:09 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-02-11 04:22 - 2015-01-15 02:09 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-02-11 04:22 - 2015-01-15 02:08 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-02-11 04:22 - 2015-01-15 02:06 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-02-11 04:22 - 2015-01-15 02:06 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-02-11 04:22 - 2015-01-15 02:04 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-02-11 04:22 - 2015-01-15 01:42 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2015-02-11 04:22 - 2015-01-15 01:42 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2015-02-11 04:22 - 2015-01-15 01:41 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2015-02-11 04:22 - 2015-01-15 01:39 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2015-02-11 04:22 - 2015-01-15 01:39 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2015-02-11 04:22 - 2015-01-15 01:37 - 00686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2015-02-11 04:22 - 2015-01-14 22:22 - 00458824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2015-02-11 04:21 - 2014-08-21 00:43 - 01882624 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2015-02-11 04:21 - 2014-08-21 00:40 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2015-02-11 04:21 - 2014-08-21 00:26 - 01237504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2015-02-11 04:21 - 2014-08-21 00:23 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll
2015-02-11 04:21 - 2013-12-03 20:27 - 00488448 _____ (Microsoft Corporation) C:\windows\system32\secproc.dll
2015-02-11 04:21 - 2013-12-03 20:27 - 00485888 _____ (Microsoft Corporation) C:\windows\system32\secproc_isv.dll
2015-02-11 04:21 - 2013-12-03 20:27 - 00123392 _____ (Microsoft Corporation) C:\windows\system32\secproc_ssp_isv.dll
2015-02-11 04:21 - 2013-12-03 20:27 - 00123392 _____ (Microsoft Corporation) C:\windows\system32\secproc_ssp.dll
2015-02-11 04:21 - 2013-12-03 20:26 - 00528384 _____ (Microsoft Corporation) C:\windows\system32\msdrm.dll
2015-02-11 04:21 - 2013-12-03 20:16 - 00658432 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_isv.exe
2015-02-11 04:21 - 2013-12-03 20:16 - 00626176 _____ (Microsoft Corporation) C:\windows\system32\RMActivate.exe
2015-02-11 04:21 - 2013-12-03 20:16 - 00553984 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_ssp.exe
2015-02-11 04:21 - 2013-12-03 20:16 - 00552960 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_ssp_isv.exe
2015-02-11 04:21 - 2013-12-03 20:03 - 00428032 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc.dll
2015-02-11 04:21 - 2013-12-03 20:03 - 00423936 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_isv.dll
2015-02-11 04:21 - 2013-12-03 20:03 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_ssp_isv.dll
2015-02-11 04:21 - 2013-12-03 20:03 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_ssp.dll
2015-02-11 04:21 - 2013-12-03 20:02 - 00390144 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdrm.dll
2015-02-11 04:21 - 2013-12-03 19:54 - 00594944 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_isv.exe
2015-02-11 04:21 - 2013-12-03 19:54 - 00572416 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate.exe
2015-02-11 04:21 - 2013-12-03 19:54 - 00510976 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_ssp.exe
2015-02-11 04:21 - 2013-12-03 19:54 - 00508928 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_ssp_isv.exe
2015-02-11 04:17 - 2014-12-11 23:31 - 01480192 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2015-02-11 04:17 - 2014-12-11 23:07 - 01174528 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2015-02-11 04:17 - 2014-07-06 20:07 - 00229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2015-02-11 04:17 - 2014-07-06 20:06 - 00187904 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2015-02-11 04:17 - 2014-07-06 19:40 - 00179200 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2015-02-11 04:17 - 2014-07-06 19:40 - 00143872 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2015-02-11 04:17 - 2014-06-06 04:10 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2015-02-11 04:17 - 2014-06-06 03:44 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll
2015-02-11 04:17 - 2013-11-26 19:41 - 00343040 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbhub.sys
2015-02-11 04:17 - 2013-11-26 19:41 - 00325120 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbport.sys
2015-02-11 04:17 - 2013-11-26 19:41 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbccgp.sys
2015-02-11 04:17 - 2013-11-26 19:41 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbehci.sys
2015-02-11 04:17 - 2013-11-26 19:41 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbuhci.sys
2015-02-11 04:17 - 2013-11-26 19:41 - 00025600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbohci.sys
2015-02-11 04:17 - 2013-11-26 19:41 - 00007808 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbd.sys
2015-02-11 04:17 - 2013-07-25 03:25 - 01888768 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL
2015-02-11 04:17 - 2013-07-25 02:57 - 01620992 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL
2015-02-11 04:17 - 2013-07-08 23:46 - 00139776 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2015-02-11 04:17 - 2013-07-08 22:46 - 00103936 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll
2015-02-11 04:16 - 2014-05-30 00:45 - 00497152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2015-02-11 04:16 - 2013-07-12 04:41 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbvideo.sys
2015-02-11 04:16 - 2013-07-12 04:41 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbcir.sys
2015-02-11 04:16 - 2013-07-12 04:40 - 00109824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\USBAUDIO.sys
2015-02-11 04:16 - 2013-06-25 16:55 - 00785624 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys
2015-02-11 04:15 - 2014-11-10 19:46 - 00119296 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tdx.sys
2015-02-11 04:15 - 2013-07-04 06:57 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\WebClnt.dll
2015-02-11 04:15 - 2013-07-04 06:50 - 00102400 _____ (Microsoft Corporation) C:\windows\system32\davclnt.dll
2015-02-11 04:15 - 2013-07-04 05:57 - 00205824 _____ (Microsoft Corporation) C:\windows\SysWOW64\WebClnt.dll
2015-02-11 04:15 - 2013-07-04 05:51 - 00081920 _____ (Microsoft Corporation) C:\windows\SysWOW64\davclnt.dll
2015-02-11 04:15 - 2013-07-02 22:05 - 00076800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2015-02-11 04:15 - 2013-07-02 22:05 - 00032896 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2015-02-11 04:14 - 2014-03-04 03:44 - 00722944 _____ (Microsoft Corporation) C:\windows\system32\objsel.dll
2015-02-11 04:14 - 2014-03-04 03:44 - 00424960 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2015-02-11 04:14 - 2014-03-04 03:44 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\wincredprovider.dll
2015-02-11 04:14 - 2014-03-04 03:43 - 00057344 _____ (Microsoft Corporation) C:\windows\system32\cngprovider.dll
2015-02-11 04:14 - 2014-03-04 03:43 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\adprovider.dll
2015-02-11 04:14 - 2014-03-04 03:43 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\capiprovider.dll
2015-02-11 04:14 - 2014-03-04 03:43 - 00052736 _____ (Microsoft Corporation) C:\windows\system32\dpapiprovider.dll
2015-02-11 04:14 - 2014-03-04 03:43 - 00044544 _____ (Microsoft Corporation) C:\windows\system32\dimsroam.dll
2015-02-11 04:14 - 2014-03-04 03:17 - 00538112 _____ (Microsoft Corporation) C:\windows\SysWOW64\objsel.dll
2015-02-11 04:14 - 2014-03-04 03:17 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\cngprovider.dll
2015-02-11 04:14 - 2014-03-04 03:17 - 00049664 _____ (Microsoft Corporation) C:\windows\SysWOW64\adprovider.dll
2015-02-11 04:14 - 2014-03-04 03:17 - 00048128 _____ (Microsoft Corporation) C:\windows\SysWOW64\capiprovider.dll
2015-02-11 04:14 - 2014-03-04 03:17 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dpapiprovider.dll
2015-02-11 04:14 - 2014-03-04 03:17 - 00036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\dimsroam.dll
2015-02-11 04:14 - 2014-03-04 03:17 - 00035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\wincredprovider.dll
2015-02-11 04:14 - 2014-03-04 03:16 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2015-02-11 04:12 - 2014-11-25 21:53 - 00861696 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2015-02-11 04:12 - 2014-11-25 21:32 - 00571904 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleaut32.dll
2015-02-11 04:12 - 2014-09-24 20:08 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2015-02-11 04:12 - 2014-09-24 19:40 - 00519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2015-02-11 04:12 - 2014-06-15 20:10 - 00985536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2015-02-11 04:12 - 2013-11-26 02:16 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2015-02-11 04:12 - 2013-11-22 16:48 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2015-02-11 04:12 - 2013-09-07 20:27 - 00327168 _____ (Microsoft Corporation) C:\windows\system32\mswsock.dll
2015-02-11 04:12 - 2013-09-07 20:03 - 00231424 _____ (Microsoft Corporation) C:\windows\SysWOW64\mswsock.dll
2015-02-11 04:12 - 2013-08-28 20:16 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-02-11 04:12 - 2013-08-28 20:16 - 00859648 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2015-02-11 04:12 - 2013-08-28 20:13 - 00878080 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2015-02-11 04:12 - 2013-08-28 19:50 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2015-02-11 04:12 - 2013-08-28 19:50 - 00619520 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2015-02-11 04:12 - 2013-08-28 19:48 - 00640512 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2015-02-11 04:11 - 2014-11-10 21:08 - 00241152 _____ (Microsoft Corporation) C:\windows\system32\pku2u.dll
2015-02-11 04:11 - 2014-11-10 20:44 - 00186880 _____ (Microsoft Corporation) C:\windows\SysWOW64\pku2u.dll
2015-02-11 04:11 - 2014-10-02 20:12 - 00500224 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2015-02-11 04:11 - 2014-10-02 20:11 - 00680960 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2015-02-11 04:11 - 2014-10-02 20:11 - 00440832 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2015-02-11 04:11 - 2014-10-02 20:11 - 00296448 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2015-02-11 04:11 - 2014-10-02 20:11 - 00284672 _____ (Microsoft Corporation) C:\windows\system32\EncDump.dll
2015-02-11 04:11 - 2014-10-02 19:44 - 00442880 _____ (Microsoft Corporation) C:\windows\SysWOW64\AUDIOKSE.dll
2015-02-11 04:11 - 2014-10-02 19:44 - 00374784 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioEng.dll
2015-02-11 04:11 - 2014-10-02 19:44 - 00195584 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2015-02-11 04:11 - 2014-02-03 20:35 - 00274880 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msiscsi.sys
2015-02-11 04:11 - 2014-02-03 20:35 - 00190912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\storport.sys
2015-02-11 04:11 - 2014-02-03 20:35 - 00027584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Diskdump.sys
2015-02-11 04:11 - 2014-02-03 20:28 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\iologmsg.dll
2015-02-11 04:11 - 2014-02-03 20:00 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\iologmsg.dll
2015-02-11 04:10 - 2014-10-03 20:10 - 03722752 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2015-02-11 04:10 - 2014-10-03 19:42 - 03221504 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2015-02-11 04:10 - 2014-10-03 19:42 - 00131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll
2015-02-11 04:10 - 2013-07-25 20:24 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll
2015-02-11 04:10 - 2013-07-25 19:55 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\shdocvw.dll
2015-02-11 04:09 - 2014-10-29 20:03 - 00165888 _____ (Microsoft Corporation) C:\windows\system32\charmap.exe
2015-02-11 04:09 - 2014-10-29 19:45 - 00155136 _____ (Microsoft Corporation) C:\windows\SysWOW64\charmap.exe
2015-02-11 04:09 - 2014-09-03 23:23 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\rastls.dll
2015-02-11 04:09 - 2014-09-03 23:04 - 00372736 _____ (Microsoft Corporation) C:\windows\SysWOW64\rastls.dll
2015-02-11 04:08 - 2014-11-07 21:16 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2015-02-11 04:08 - 2014-11-07 20:45 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2015-02-11 04:08 - 2014-10-02 20:12 - 02020352 _____ (Microsoft Corporation) C:\windows\system32\WsmSvc.dll
2015-02-11 04:08 - 2014-10-02 20:12 - 00346624 _____ (Microsoft Corporation) C:\windows\system32\WSManMigrationPlugin.dll
2015-02-11 04:08 - 2014-10-02 20:12 - 00310272 _____ (Microsoft Corporation) C:\windows\system32\WsmWmiPl.dll
2015-02-11 04:08 - 2014-10-02 20:12 - 00181248 _____ (Microsoft Corporation) C:\windows\system32\WsmAuto.dll
2015-02-11 04:08 - 2014-10-02 20:11 - 00266240 _____ (Microsoft Corporation) C:\windows\system32\WSManHTTPConfig.exe
2015-02-11 04:08 - 2014-10-02 19:45 - 01177088 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmSvc.dll
2015-02-11 04:08 - 2014-10-02 19:45 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSManMigrationPlugin.dll
2015-02-11 04:08 - 2014-10-02 19:45 - 00214016 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmWmiPl.dll
2015-02-11 04:08 - 2014-10-02 19:45 - 00145920 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmAuto.dll
2015-02-11 04:08 - 2014-10-02 19:44 - 00198656 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSManHTTPConfig.exe
2015-02-11 04:08 - 2014-06-24 20:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2015-02-11 04:08 - 2014-06-24 19:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2015-02-11 04:08 - 2013-07-20 04:33 - 00124112 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-02-11 04:08 - 2013-07-20 04:33 - 00102608 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-02-11 04:05 - 2014-10-24 19:57 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2015-02-11 04:05 - 2014-10-24 19:32 - 00067584 _____ (Microsoft Corporation) C:\windows\SysWOW64\packager.dll
2015-02-11 04:05 - 2014-07-16 20:07 - 01118720 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2015-02-11 04:05 - 2014-07-16 20:07 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2015-02-11 04:05 - 2014-07-16 20:07 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\winsta.dll
2015-02-11 04:05 - 2014-07-16 20:07 - 00150528 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll
2015-02-11 04:05 - 2014-07-16 19:40 - 00157696 _____ (Microsoft Corporation) C:\windows\SysWOW64\winsta.dll
2015-02-11 04:05 - 2014-07-16 19:39 - 01051136 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2015-02-11 04:05 - 2014-07-16 19:21 - 00212480 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys
2015-02-11 04:05 - 2014-07-16 19:21 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
2015-02-11 04:02 - 2014-12-07 21:09 - 00406528 _____ (Microsoft Corporation) C:\windows\system32\scesrv.dll
2015-02-11 04:02 - 2014-12-07 20:46 - 00308224 _____ (Microsoft Corporation) C:\windows\SysWOW64\scesrv.dll
2015-02-11 04:02 - 2014-10-13 20:13 - 03241984 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2015-02-11 04:02 - 2014-10-13 19:50 - 02363904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2015-02-11 04:02 - 2014-06-03 04:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2015-02-11 04:02 - 2014-06-03 04:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2015-02-11 04:02 - 2014-06-03 04:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2015-02-11 04:02 - 2014-06-03 03:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2015-02-11 04:02 - 2014-06-03 03:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2015-02-11 04:02 - 2014-03-04 03:44 - 01163264 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2015-02-11 04:02 - 2014-03-04 03:44 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2015-02-11 04:02 - 2014-03-04 03:44 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2015-02-11 04:02 - 2014-03-04 03:44 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2015-02-11 04:02 - 2014-03-04 03:44 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2015-02-11 04:02 - 2014-03-04 03:17 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2015-02-11 04:02 - 2014-03-04 03:16 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2015-02-11 04:02 - 2014-03-04 03:16 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2015-02-11 04:02 - 2014-03-04 03:16 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2015-02-11 04:02 - 2014-03-04 02:09 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2015-02-11 04:02 - 2014-03-04 02:09 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2015-02-11 04:02 - 2014-01-23 20:37 - 01684928 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2015-02-11 04:02 - 2013-08-01 20:14 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 20:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 19:09 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2015-02-11 04:02 - 2013-08-01 18:43 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 18:43 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 18:43 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-02-11 04:02 - 2013-08-01 18:43 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-02-11 04:01 - 2013-10-11 20:32 - 00150016 _____ (Microsoft Corporation) C:\windows\system32\wshom.ocx
2015-02-11 04:01 - 2013-10-11 20:31 - 00202752 _____ (Microsoft Corporation) C:\windows\system32\scrrun.dll
2015-02-11 04:01 - 2013-10-11 20:04 - 00121856 _____ (Microsoft Corporation) C:\windows\SysWOW64\wshom.ocx
2015-02-11 04:01 - 2013-10-11 20:03 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\scrrun.dll
2015-02-11 04:01 - 2013-10-11 19:33 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\wscript.exe
2015-02-11 04:01 - 2013-10-11 19:33 - 00156160 _____ (Microsoft Corporation) C:\windows\system32\cscript.exe
2015-02-11 04:01 - 2013-10-11 19:15 - 00141824 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscript.exe
2015-02-11 04:01 - 2013-10-11 19:15 - 00126976 _____ (Microsoft Corporation) C:\windows\SysWOW64\cscript.exe
2015-02-11 04:00 - 2014-08-22 20:07 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2015-02-11 04:00 - 2014-08-22 19:45 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2015-02-11 03:59 - 2015-01-14 00:09 - 05554112 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-02-11 03:59 - 2015-01-14 00:05 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-02-11 03:59 - 2015-01-14 00:05 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-02-11 03:59 - 2015-01-14 00:04 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-02-11 03:59 - 2015-01-13 23:44 - 03972544 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2015-02-11 03:59 - 2015-01-13 23:44 - 03917760 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2015-02-11 03:59 - 2015-01-13 23:41 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2015-02-11 03:59 - 2013-04-09 17:34 - 01247744 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2015-02-11 03:59 - 2013-04-02 16:51 - 01643520 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2015-02-11 03:57 - 2013-08-01 20:12 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2015-02-11 03:57 - 2013-08-01 20:12 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2015-02-11 03:57 - 2013-08-01 19:48 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2015-02-11 03:57 - 2013-08-01 18:59 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2015-02-11 03:56 - 2015-01-08 20:03 - 03201536 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-02-11 03:56 - 2013-10-11 20:30 - 00830464 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2015-02-11 03:56 - 2013-10-11 20:29 - 00859648 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL
2015-02-11 03:56 - 2013-10-11 20:29 - 00324096 _____ (Microsoft Corporation) C:\windows\system32\FWPUCLNT.DLL
2015-02-11 03:56 - 2013-10-11 20:03 - 00656896 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2015-02-11 03:56 - 2013-10-11 20:01 - 00216576 _____ (Microsoft Corporation) C:\windows\SysWOW64\FWPUCLNT.DLL
2015-02-11 03:56 - 2013-08-27 19:12 - 00461312 _____ (Microsoft Corporation) C:\windows\system32\scavengeui.dll
2015-02-11 03:55 - 2014-07-13 20:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2015-02-11 03:55 - 2014-07-13 19:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2015-02-11 03:08 - 2014-06-26 20:08 - 02777088 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2015-02-11 03:08 - 2014-06-26 19:45 - 02285056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2015-02-11 03:05 - 2014-06-30 16:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2015-02-11 03:05 - 2014-06-30 16:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2015-02-11 03:05 - 2014-03-09 15:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2015-02-11 03:05 - 2014-03-09 15:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2015-02-11 03:05 - 2014-03-09 15:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2015-02-11 03:05 - 2014-03-09 15:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2015-02-11 03:04 - 2014-06-06 00:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2015-02-11 03:04 - 2014-06-06 00:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2015-02-10 14:08 - 2014-05-14 10:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-02-10 14:08 - 2014-05-14 10:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-02-10 14:08 - 2014-05-14 10:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2015-02-10 14:08 - 2014-05-14 10:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-02-10 14:07 - 2014-05-14 10:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-02-10 14:07 - 2014-05-14 10:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2015-02-10 14:07 - 2014-05-14 10:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2015-02-10 14:07 - 2014-05-14 10:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2015-02-10 14:07 - 2014-05-14 10:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-02-10 14:07 - 2014-05-14 10:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2015-02-10 14:07 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-02-10 14:07 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2015-02-10 14:07 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2015-02-10 14:07 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2015-01-29 15:45 - 2015-01-29 15:45 - 00190942 _____ () C:\Users\Mamasita\Downloads\securedoc_20150129T153551.html
2015-01-28 12:28 - 2015-01-28 12:28 - 00000253 _____ () C:\Users\Mamasita\Desktop\Welcome to BASIS San Antonio North BASIS San Antonio North.url
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-26 20:53 - 2009-07-13 22:45 - 00016304 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-26 20:53 - 2009-07-13 22:45 - 00016304 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-26 20:44 - 2012-08-03 14:18 - 00000830 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2015-02-26 20:24 - 2010-08-26 16:42 - 00000898 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-26 20:18 - 2013-05-06 13:33 - 00000000 ____D () C:\Users\Mamasita\AppData\Local\NPE
2015-02-26 20:01 - 2010-09-16 20:10 - 00000000 ____D () C:\Users\Mamasita\AppData\Roaming\Skype
2015-02-26 20:01 - 2010-08-26 16:42 - 00000894 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-26 20:00 - 2009-07-13 23:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2015-02-26 20:00 - 2009-07-13 22:51 - 00070458 _____ () C:\windows\setupact.log
2015-02-26 19:51 - 2010-06-22 00:04 - 01574850 _____ () C:\windows\WindowsUpdate.log
2015-02-26 19:34 - 2010-03-23 23:38 - 00202466 _____ () C:\windows\PFRO.log
2015-02-26 18:42 - 2010-08-26 16:54 - 00000000 ____D () C:\Users\Mamasita\AppData\Roaming\Toshiba
2015-02-26 18:35 - 2011-12-01 15:08 - 00000000 ____D () C:\Users\Public\WinTV
2015-02-26 18:35 - 2010-03-23 23:22 - 00000000 ____D () C:\Program Files (x86)\InstallShield Installation Information
2015-02-26 18:34 - 2011-12-01 15:08 - 00038194 _____ () C:\windows\Irremote.ini
2015-02-26 17:49 - 2011-09-04 19:25 - 00003950 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{1219F883-61C7-4D69-A0B2-79279C91B890}
2015-02-26 17:36 - 2013-08-22 12:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Endpoint Protection
2015-02-23 21:56 - 2011-12-16 14:19 - 00000000 ____D () C:\Users\Mamasita\AppData\Local\CrashDumps
2015-02-22 15:32 - 2009-07-13 23:13 - 00726444 _____ () C:\windows\system32\PerfStringBackup.INI
2015-02-16 04:16 - 2009-07-13 21:20 - 00000000 ____D () C:\windows\rescache
2015-02-16 03:23 - 2009-07-13 22:45 - 00392648 _____ () C:\windows\system32\FNTCACHE.DAT
2015-02-15 14:40 - 2009-07-13 23:09 - 00000000 ____D () C:\windows\System32\Tasks\WPD
2015-02-15 14:37 - 2010-08-26 16:38 - 00001424 ____C () C:\Users\Mamasita\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-02-15 14:31 - 2009-07-13 21:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2015-02-14 12:12 - 2009-07-14 01:45 - 00000000 ____D () C:\Program Files\Windows Journal
2015-02-14 12:12 - 2009-07-13 21:20 - 00000000 ____D () C:\windows\AppCompat
2015-02-14 12:11 - 2009-07-13 23:32 - 00000000 ____D () C:\Program Files\Windows Defender
2015-02-14 12:11 - 2009-07-13 23:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-02-14 12:11 - 2009-07-13 21:20 - 00000000 ____D () C:\windows\SysWOW64\Dism
2015-02-14 12:11 - 2009-07-13 21:20 - 00000000 ____D () C:\windows\system32\Dism
2015-02-12 13:27 - 2013-11-07 13:38 - 00000000 ____D () C:\Program Files (x86)\istation
2015-02-12 13:22 - 2010-08-26 16:41 - 00096656 _____ () C:\Users\Mamasita\AppData\Local\GDIPFONTCACHEV1.DAT
2015-02-12 13:21 - 2010-06-22 00:09 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-12 13:03 - 2010-03-23 23:22 - 00000000 ____D () C:\Program Files (x86)\Java
2015-02-12 12:58 - 2013-05-31 17:06 - 00272296 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2015-02-12 10:00 - 2013-05-02 07:25 - 00535576 _____ (IBM Corp.) C:\windows\system32\Drivers\RapportKE64.sys
2015-02-11 03:18 - 2011-03-16 06:52 - 00000000 ____D () C:\Program Files (x86)\iTunes
2015-02-10 10:35 - 2013-08-24 20:54 - 00000000 ____D () C:\Program Files (x86)\Conduit
2015-02-07 09:17 - 2010-08-26 16:42 - 00003894 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-07 09:17 - 2010-08-26 16:42 - 00003642 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-04 15:44 - 2012-08-03 14:18 - 00701616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-02-04 15:44 - 2012-08-03 14:18 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-04 15:44 - 2012-08-03 14:18 - 00003768 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2015-02-02 17:18 - 2012-07-01 18:53 - 00000000 ____D () C:\Program Files (x86)\PC Checkup
2015-02-01 12:26 - 2012-07-01 18:54 - 00003974 _____ () C:\windows\System32\Tasks\PC Checkup 3 Weekly Scan
2015-01-29 17:49 - 2010-11-15 14:50 - 116773704 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
==================== Files in the root of some directories =======
2011-04-03 10:13 - 2014-11-10 22:03 - 0000788 _____ () C:\Users\Mamasita\AppData\Roaming\wklnhst.dat
2011-10-02 16:27 - 2011-10-02 16:27 - 0003584 _____ () C:\Users\Mamasita\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-12-25 10:36 - 2013-12-25 10:36 - 0000017 _____ () C:\Users\Mamasita\AppData\Local\resmon.resmoncfg
2010-09-21 16:52 - 2010-09-21 16:52 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
ZeroAccess:
C:\$Recycle.Bin\S-1-5-21-992751193-1912288904-1911362873-1001\$da725e6f210a105c10df20846b44965b
ZeroAccess:
C:\$Recycle.Bin\S-1-5-18\$da725e6f210a105c10df20846b44965b
Some content of TEMP:
====================
C:\Users\Mamasita\AppData\Local\Temp\02ZLUN.exe
C:\Users\Mamasita\AppData\Local\Temp\043SJ5.exe
C:\Users\Mamasita\AppData\Local\Temp\09vBkdF.exe
C:\Users\Mamasita\AppData\Local\Temp\09y94f.exe
C:\Users\Mamasita\AppData\Local\Temp\0AOL2RI.exe
C:\Users\Mamasita\AppData\Local\Temp\0bN7Gn.exe
C:\Users\Mamasita\AppData\Local\Temp\0BUg1g4.exe
C:\Users\Mamasita\AppData\Local\Temp\0cZsMp.exe
C:\Users\Mamasita\AppData\Local\Temp\0EumI5.exe
C:\Users\Mamasita\AppData\Local\Temp\0f80t3p.exe
C:\Users\Mamasita\AppData\Local\Temp\0FG1hT.exe
C:\Users\Mamasita\AppData\Local\Temp\0GtTtU.exe
C:\Users\Mamasita\AppData\Local\Temp\0hdyV7D.exe
C:\Users\Mamasita\AppData\Local\Temp\0I3XKTe.exe
C:\Users\Mamasita\AppData\Local\Temp\0IF4yf.exe
C:\Users\Mamasita\AppData\Local\Temp\0kEO2P.exe
C:\Users\Mamasita\AppData\Local\Temp\0KuuPw2.exe
C:\Users\Mamasita\AppData\Local\Temp\0l6IlFz.exe
C:\Users\Mamasita\AppData\Local\Temp\0lssiIp.exe
C:\Users\Mamasita\AppData\Local\Temp\0M1dwTU.exe
C:\Users\Mamasita\AppData\Local\Temp\0M78hO8.exe
C:\Users\Mamasita\AppData\Local\Temp\0mxXLO.exe
C:\Users\Mamasita\AppData\Local\Temp\0nFRoWm.exe
C:\Users\Mamasita\AppData\Local\Temp\0POMoh.exe
C:\Users\Mamasita\AppData\Local\Temp\0qUz6UM.exe
C:\Users\Mamasita\AppData\Local\Temp\0QyCxt.exe
C:\Users\Mamasita\AppData\Local\Temp\0reyUAR.exe
C:\Users\Mamasita\AppData\Local\Temp\0RIa18G.exe
C:\Users\Mamasita\AppData\Local\Temp\0vczDcH.exe
C:\Users\Mamasita\AppData\Local\Temp\0xD7IX.exe
C:\Users\Mamasita\AppData\Local\Temp\0XpzN1.exe
C:\Users\Mamasita\AppData\Local\Temp\0XVT9u.exe
C:\Users\Mamasita\AppData\Local\Temp\0y83oB.exe
C:\Users\Mamasita\AppData\Local\Temp\0zNMvl.exe
C:\Users\Mamasita\AppData\Local\Temp\11dsyXb.exe
C:\Users\Mamasita\AppData\Local\Temp\11hV0L.exe
C:\Users\Mamasita\AppData\Local\Temp\134Oo2B.exe
C:\Users\Mamasita\AppData\Local\Temp\16C2UlT.exe
C:\Users\Mamasita\AppData\Local\Temp\19RzOK.exe
C:\Users\Mamasita\AppData\Local\Temp\1aRKq8.exe
C:\Users\Mamasita\AppData\Local\Temp\1Be6G7.exe
C:\Users\Mamasita\AppData\Local\Temp\1CMh1KW.exe
C:\Users\Mamasita\AppData\Local\Temp\1dLCmed.exe
C:\Users\Mamasita\AppData\Local\Temp\1e9cLx.exe
C:\Users\Mamasita\AppData\Local\Temp\1EWXxK.exe
C:\Users\Mamasita\AppData\Local\Temp\1Fr6QcU.exe
C:\Users\Mamasita\AppData\Local\Temp\1gy6GL.exe
C:\Users\Mamasita\AppData\Local\Temp\1hA9yhk.exe
C:\Users\Mamasita\AppData\Local\Temp\1HKViCn.exe
C:\Users\Mamasita\AppData\Local\Temp\1i72ZM.exe
C:\Users\Mamasita\AppData\Local\Temp\1IF7FtN.exe
C:\Users\Mamasita\AppData\Local\Temp\1k3tppy.exe
C:\Users\Mamasita\AppData\Local\Temp\1mlTbT.exe
C:\Users\Mamasita\AppData\Local\Temp\1mOzTNI.exe
C:\Users\Mamasita\AppData\Local\Temp\1pcz3mZ.exe
C:\Users\Mamasita\AppData\Local\Temp\1QIJ5w.exe
C:\Users\Mamasita\AppData\Local\Temp\1RrQ1ib.exe
C:\Users\Mamasita\AppData\Local\Temp\1sbggV.exe
C:\Users\Mamasita\AppData\Local\Temp\1sN0zQ.exe
C:\Users\Mamasita\AppData\Local\Temp\1sXIVZP.exe
C:\Users\Mamasita\AppData\Local\Temp\1Tp8KTD.exe
C:\Users\Mamasita\AppData\Local\Temp\1tUkyh9.exe
C:\Users\Mamasita\AppData\Local\Temp\1vangs.exe
C:\Users\Mamasita\AppData\Local\Temp\1vrKbIk.exe
C:\Users\Mamasita\AppData\Local\Temp\1VVRqJ.exe
C:\Users\Mamasita\AppData\Local\Temp\1wb3LB.exe
C:\Users\Mamasita\AppData\Local\Temp\1WHKl1.exe
C:\Users\Mamasita\AppData\Local\Temp\1wQUfTs.exe
C:\Users\Mamasita\AppData\Local\Temp\1XFJnwg.exe
C:\Users\Mamasita\AppData\Local\Temp\204aqN.exe
C:\Users\Mamasita\AppData\Local\Temp\212I9d.exe
C:\Users\Mamasita\AppData\Local\Temp\225fIiu.exe
C:\Users\Mamasita\AppData\Local\Temp\226cO4R.exe
C:\Users\Mamasita\AppData\Local\Temp\22TwQsR.exe
C:\Users\Mamasita\AppData\Local\Temp\23engwc.exe
C:\Users\Mamasita\AppData\Local\Temp\28hw2aK.exe
C:\Users\Mamasita\AppData\Local\Temp\28Q2tuX.exe
C:\Users\Mamasita\AppData\Local\Temp\28XkUN.exe
C:\Users\Mamasita\AppData\Local\Temp\29odKz4.exe
C:\Users\Mamasita\AppData\Local\Temp\29Zazx.exe
C:\Users\Mamasita\AppData\Local\Temp\2AMqaG.exe
C:\Users\Mamasita\AppData\Local\Temp\2c6NaT.exe
C:\Users\Mamasita\AppData\Local\Temp\2cKMUs5.exe
C:\Users\Mamasita\AppData\Local\Temp\2ENNpI.exe
C:\Users\Mamasita\AppData\Local\Temp\2HMOXD.exe
C:\Users\Mamasita\AppData\Local\Temp\2hsW9b.exe
C:\Users\Mamasita\AppData\Local\Temp\2hwmx3.exe
C:\Users\Mamasita\AppData\Local\Temp\2JHVWmp.exe
C:\Users\Mamasita\AppData\Local\Temp\2JRrps.exe
C:\Users\Mamasita\AppData\Local\Temp\2kG7feI.exe
C:\Users\Mamasita\AppData\Local\Temp\2KJHZu.exe
C:\Users\Mamasita\AppData\Local\Temp\2lh76W.exe
C:\Users\Mamasita\AppData\Local\Temp\2mDSAkq.exe
C:\Users\Mamasita\AppData\Local\Temp\2MwJyQ.exe
C:\Users\Mamasita\AppData\Local\Temp\2o1Pqr4.exe
C:\Users\Mamasita\AppData\Local\Temp\2PSyUw.exe
C:\Users\Mamasita\AppData\Local\Temp\2SEg6Cf.exe
C:\Users\Mamasita\AppData\Local\Temp\2SHlqM7.exe
C:\Users\Mamasita\AppData\Local\Temp\2SPDvH.exe
C:\Users\Mamasita\AppData\Local\Temp\2St91K.exe
C:\Users\Mamasita\AppData\Local\Temp\2TdTLxu.exe
C:\Users\Mamasita\AppData\Local\Temp\2TTecT0.exe
C:\Users\Mamasita\AppData\Local\Temp\2W0Nn73.exe
C:\Users\Mamasita\AppData\Local\Temp\2yskpQ.exe
C:\Users\Mamasita\AppData\Local\Temp\2yv9Wd.exe
C:\Users\Mamasita\AppData\Local\Temp\2Zdzrf.exe
C:\Users\Mamasita\AppData\Local\Temp\2ZqULKn.exe
C:\Users\Mamasita\AppData\Local\Temp\31HArfQ.exe
C:\Users\Mamasita\AppData\Local\Temp\31w6bay.exe
C:\Users\Mamasita\AppData\Local\Temp\35FJaGf.exe
C:\Users\Mamasita\AppData\Local\Temp\35pCFF.exe
C:\Users\Mamasita\AppData\Local\Temp\36e9T9l.exe
C:\Users\Mamasita\AppData\Local\Temp\36VvVb.exe
C:\Users\Mamasita\AppData\Local\Temp\38gZFE.exe
C:\Users\Mamasita\AppData\Local\Temp\391WziI.exe
C:\Users\Mamasita\AppData\Local\Temp\39qrq0.exe
C:\Users\Mamasita\AppData\Local\Temp\3aDaOV8.exe
C:\Users\Mamasita\AppData\Local\Temp\3AEqX3c.exe
C:\Users\Mamasita\AppData\Local\Temp\3akXae.exe
C:\Users\Mamasita\AppData\Local\Temp\3AxrAg.exe
C:\Users\Mamasita\AppData\Local\Temp\3c3dHO.exe
C:\Users\Mamasita\AppData\Local\Temp\3chth5.exe
C:\Users\Mamasita\AppData\Local\Temp\3Chwz1.exe
C:\Users\Mamasita\AppData\Local\Temp\3cpxQI.exe
C:\Users\Mamasita\AppData\Local\Temp\3d93ow.exe
C:\Users\Mamasita\AppData\Local\Temp\3eIBFB.exe
C:\Users\Mamasita\AppData\Local\Temp\3EILRW7.exe
C:\Users\Mamasita\AppData\Local\Temp\3eoDNpK.exe
C:\Users\Mamasita\AppData\Local\Temp\3FOM2S.exe
C:\Users\Mamasita\AppData\Local\Temp\3FpyCK.exe
C:\Users\Mamasita\AppData\Local\Temp\3Fvh9l.exe
C:\Users\Mamasita\AppData\Local\Temp\3i50Aq.exe
C:\Users\Mamasita\AppData\Local\Temp\3L9Lzb.exe
C:\Users\Mamasita\AppData\Local\Temp\3mTN7o.exe
C:\Users\Mamasita\AppData\Local\Temp\3nmcKi.exe
C:\Users\Mamasita\AppData\Local\Temp\3oFSItt.exe
C:\Users\Mamasita\AppData\Local\Temp\3PTBgUF.exe
C:\Users\Mamasita\AppData\Local\Temp\3RFDag.exe
C:\Users\Mamasita\AppData\Local\Temp\3UPqeC.exe
C:\Users\Mamasita\AppData\Local\Temp\3VXFSc.exe
C:\Users\Mamasita\AppData\Local\Temp\3x0uOMN.exe
C:\Users\Mamasita\AppData\Local\Temp\3XnClX.exe
C:\Users\Mamasita\AppData\Local\Temp\3ZATH9k.exe
C:\Users\Mamasita\AppData\Local\Temp\3zTa0F.exe
C:\Users\Mamasita\AppData\Local\Temp\41fupdU.exe
C:\Users\Mamasita\AppData\Local\Temp\41y5UKV.exe
C:\Users\Mamasita\AppData\Local\Temp\43FK0x.exe
C:\Users\Mamasita\AppData\Local\Temp\43fMwv.exe
C:\Users\Mamasita\AppData\Local\Temp\44VOVy.exe
C:\Users\Mamasita\AppData\Local\Temp\45e6SMr.exe
C:\Users\Mamasita\AppData\Local\Temp\45Su6J.exe
C:\Users\Mamasita\AppData\Local\Temp\46Z3Cr.exe
C:\Users\Mamasita\AppData\Local\Temp\4A50AO.exe
C:\Users\Mamasita\AppData\Local\Temp\4AbbTn.exe
C:\Users\Mamasita\AppData\Local\Temp\4AkvvM0.exe
C:\Users\Mamasita\AppData\Local\Temp\4B148hO.exe
C:\Users\Mamasita\AppData\Local\Temp\4bMbGb2.exe
C:\Users\Mamasita\AppData\Local\Temp\4Gx7EW.exe
C:\Users\Mamasita\AppData\Local\Temp\4HDnAEp.exe
C:\Users\Mamasita\AppData\Local\Temp\4ixMIik.exe
C:\Users\Mamasita\AppData\Local\Temp\4J31ZLb.exe
C:\Users\Mamasita\AppData\Local\Temp\4J3bqe.exe
C:\Users\Mamasita\AppData\Local\Temp\4kaaKd9.exe
C:\Users\Mamasita\AppData\Local\Temp\4kXHURt.exe
C:\Users\Mamasita\AppData\Local\Temp\4LZN20X.exe
C:\Users\Mamasita\AppData\Local\Temp\4MhaviX.exe
C:\Users\Mamasita\AppData\Local\Temp\4nSKI3B.exe
C:\Users\Mamasita\AppData\Local\Temp\4PBZteU.exe
C:\Users\Mamasita\AppData\Local\Temp\4PQkIV.exe
C:\Users\Mamasita\AppData\Local\Temp\4qWFuaa.exe
C:\Users\Mamasita\AppData\Local\Temp\4qy8hfz.exe
C:\Users\Mamasita\AppData\Local\Temp\4R5XUV.exe
C:\Users\Mamasita\AppData\Local\Temp\4RDyRt.exe
C:\Users\Mamasita\AppData\Local\Temp\4RObdiN.exe
C:\Users\Mamasita\AppData\Local\Temp\4SbPA5p.exe
C:\Users\Mamasita\AppData\Local\Temp\4Sfk1c.exe
C:\Users\Mamasita\AppData\Local\Temp\4TLd0p.exe
C:\Users\Mamasita\AppData\Local\Temp\51wOkv.exe
C:\Users\Mamasita\AppData\Local\Temp\54dE2S.exe
C:\Users\Mamasita\AppData\Local\Temp\57hbJac.exe
C:\Users\Mamasita\AppData\Local\Temp\58W0tJ.exe
C:\Users\Mamasita\AppData\Local\Temp\592dTp.exe
C:\Users\Mamasita\AppData\Local\Temp\5adxa1q.exe
C:\Users\Mamasita\AppData\Local\Temp\5BrCop.exe
C:\Users\Mamasita\AppData\Local\Temp\5dzc57.exe
C:\Users\Mamasita\AppData\Local\Temp\5FLCWc1.exe
C:\Users\Mamasita\AppData\Local\Temp\5GRdc7.exe
C:\Users\Mamasita\AppData\Local\Temp\5gXBrA.exe
C:\Users\Mamasita\AppData\Local\Temp\5H4aPo.exe
C:\Users\Mamasita\AppData\Local\Temp\5hTIsE.exe
C:\Users\Mamasita\AppData\Local\Temp\5kaSeAA.exe
C:\Users\Mamasita\AppData\Local\Temp\5kVJuz.exe
C:\Users\Mamasita\AppData\Local\Temp\5l21Io.exe
C:\Users\Mamasita\AppData\Local\Temp\5l9g2V2.exe
C:\Users\Mamasita\AppData\Local\Temp\5MA6Tq.exe
C:\Users\Mamasita\AppData\Local\Temp\5pcUgwd.exe
C:\Users\Mamasita\AppData\Local\Temp\5SeHFt.exe
C:\Users\Mamasita\AppData\Local\Temp\5STD8K.exe
C:\Users\Mamasita\AppData\Local\Temp\5TKk1Q.exe
C:\Users\Mamasita\AppData\Local\Temp\5uJXheu.exe
C:\Users\Mamasita\AppData\Local\Temp\5V6LcC.exe
C:\Users\Mamasita\AppData\Local\Temp\5wotyMX.exe
C:\Users\Mamasita\AppData\Local\Temp\5XIDzU.exe
C:\Users\Mamasita\AppData\Local\Temp\5yENH80.exe
C:\Users\Mamasita\AppData\Local\Temp\5Z8A3Nz.exe
C:\Users\Mamasita\AppData\Local\Temp\5zFb9DM.exe
C:\Users\Mamasita\AppData\Local\Temp\5ZLo4p.exe
C:\Users\Mamasita\AppData\Local\Temp\5ZNawzC.exe
C:\Users\Mamasita\AppData\Local\Temp\5Zwa2A.exe
C:\Users\Mamasita\AppData\Local\Temp\64lkyU.exe
C:\Users\Mamasita\AppData\Local\Temp\64xCZzF.exe
C:\Users\Mamasita\AppData\Local\Temp\65eeut.exe
C:\Users\Mamasita\AppData\Local\Temp\67PW8EM.exe
C:\Users\Mamasita\AppData\Local\Temp\6bVMqq.exe
C:\Users\Mamasita\AppData\Local\Temp\6CnQ1to.exe
C:\Users\Mamasita\AppData\Local\Temp\6dfRWM.exe
C:\Users\Mamasita\AppData\Local\Temp\6e6q6GB.exe
C:\Users\Mamasita\AppData\Local\Temp\6exeyr.exe
C:\Users\Mamasita\AppData\Local\Temp\6FKdSa.exe
C:\Users\Mamasita\AppData\Local\Temp\6goCOVf.exe
C:\Users\Mamasita\AppData\Local\Temp\6GTTIH3.exe
C:\Users\Mamasita\AppData\Local\Temp\6gwqqqp.exe
C:\Users\Mamasita\AppData\Local\Temp\6GXRL7.exe
C:\Users\Mamasita\AppData\Local\Temp\6h0AU6.exe
C:\Users\Mamasita\AppData\Local\Temp\6hru7C.exe
C:\Users\Mamasita\AppData\Local\Temp\6HS4Sx.exe
C:\Users\Mamasita\AppData\Local\Temp\6LyBuNC.exe
C:\Users\Mamasita\AppData\Local\Temp\6NQJsU.exe
C:\Users\Mamasita\AppData\Local\Temp\6nSZzo.exe
C:\Users\Mamasita\AppData\Local\Temp\6oPWgm.exe
C:\Users\Mamasita\AppData\Local\Temp\6P2GWD4.exe
C:\Users\Mamasita\AppData\Local\Temp\6PCohe.exe
C:\Users\Mamasita\AppData\Local\Temp\6qlPNPH.exe
C:\Users\Mamasita\AppData\Local\Temp\6qn0qQ1.exe
C:\Users\Mamasita\AppData\Local\Temp\6rzLTqD.exe
C:\Users\Mamasita\AppData\Local\Temp\6u9laEp.exe
C:\Users\Mamasita\AppData\Local\Temp\6VGmeXd.exe
C:\Users\Mamasita\AppData\Local\Temp\6ZDuV8e.exe
C:\Users\Mamasita\AppData\Local\Temp\70KIxx.exe
C:\Users\Mamasita\AppData\Local\Temp\712VuLg.exe
C:\Users\Mamasita\AppData\Local\Temp\74CGPU.exe
C:\Users\Mamasita\AppData\Local\Temp\76g1ZHD.exe
C:\Users\Mamasita\AppData\Local\Temp\773uvL7.exe
C:\Users\Mamasita\AppData\Local\Temp\77nGDf.exe
C:\Users\Mamasita\AppData\Local\Temp\7a4dTw.exe
C:\Users\Mamasita\AppData\Local\Temp\7A5DrVz.exe
C:\Users\Mamasita\AppData\Local\Temp\7ArWBm.exe
C:\Users\Mamasita\AppData\Local\Temp\7b1ZiO.exe
C:\Users\Mamasita\AppData\Local\Temp\7Bh2cZ.exe
C:\Users\Mamasita\AppData\Local\Temp\7bqqXA.exe
C:\Users\Mamasita\AppData\Local\Temp\7dS7meo.exe
C:\Users\Mamasita\AppData\Local\Temp\7gsODR.exe
C:\Users\Mamasita\AppData\Local\Temp\7JDUwdb.exe
C:\Users\Mamasita\AppData\Local\Temp\7JZgvXh.exe
C:\Users\Mamasita\AppData\Local\Temp\7kBvIWB.exe
C:\Users\Mamasita\AppData\Local\Temp\7La8qP.exe
C:\Users\Mamasita\AppData\Local\Temp\7lMBlA.exe
C:\Users\Mamasita\AppData\Local\Temp\7nK7LT.exe
C:\Users\Mamasita\AppData\Local\Temp\7NuWpe.exe
C:\Users\Mamasita\AppData\Local\Temp\7oAllBs.exe
C:\Users\Mamasita\AppData\Local\Temp\7ofHSwK.exe
C:\Users\Mamasita\AppData\Local\Temp\7sZ10p.exe
C:\Users\Mamasita\AppData\Local\Temp\7TXyah.exe
C:\Users\Mamasita\AppData\Local\Temp\7UMLPf.exe
C:\Users\Mamasita\AppData\Local\Temp\7vFQW1.exe
C:\Users\Mamasita\AppData\Local\Temp\7Vp9I1t.exe
C:\Users\Mamasita\AppData\Local\Temp\7wD43df.exe
C:\Users\Mamasita\AppData\Local\Temp\7wGOPCk.exe
C:\Users\Mamasita\AppData\Local\Temp\7z8OxL3.exe
C:\Users\Mamasita\AppData\Local\Temp\7ZiZZr.exe
C:\Users\Mamasita\AppData\Local\Temp\7zM6GQ.exe
C:\Users\Mamasita\AppData\Local\Temp\7ZNCZxT.exe
C:\Users\Mamasita\AppData\Local\Temp\80G3UC.exe
C:\Users\Mamasita\AppData\Local\Temp\85gRzaX.exe
C:\Users\Mamasita\AppData\Local\Temp\88l7Fa.exe
C:\Users\Mamasita\AppData\Local\Temp\89Mg6w7.exe
C:\Users\Mamasita\AppData\Local\Temp\8b31xcc.exe
C:\Users\Mamasita\AppData\Local\Temp\8b8IuxP.exe
C:\Users\Mamasita\AppData\Local\Temp\8BlgK0.exe
C:\Users\Mamasita\AppData\Local\Temp\8ehez3.exe
C:\Users\Mamasita\AppData\Local\Temp\8iFvHp.exe
C:\Users\Mamasita\AppData\Local\Temp\8L4nnbh.exe
C:\Users\Mamasita\AppData\Local\Temp\8lBhf9.exe
C:\Users\Mamasita\AppData\Local\Temp\8lxl5fT.exe
C:\Users\Mamasita\AppData\Local\Temp\8MQOTbs.exe
C:\Users\Mamasita\AppData\Local\Temp\8NByXL.exe
C:\Users\Mamasita\AppData\Local\Temp\8NMuWS.exe
C:\Users\Mamasita\AppData\Local\Temp\8OZPcR.exe
C:\Users\Mamasita\AppData\Local\Temp\8r0VX3O.exe
C:\Users\Mamasita\AppData\Local\Temp\8sbNyA.exe
C:\Users\Mamasita\AppData\Local\Temp\8sxNaGa.exe
C:\Users\Mamasita\AppData\Local\Temp\8UDqnE6.exe
C:\Users\Mamasita\AppData\Local\Temp\8v4aDG.exe
C:\Users\Mamasita\AppData\Local\Temp\8w6scDf.exe
C:\Users\Mamasita\AppData\Local\Temp\8WQVNy.exe
C:\Users\Mamasita\AppData\Local\Temp\8xT3Oq.exe
C:\Users\Mamasita\AppData\Local\Temp\8yv9uiu.exe
C:\Users\Mamasita\AppData\Local\Temp\8Z2Hqdx.exe
C:\Users\Mamasita\AppData\Local\Temp\92BJUT.exe
C:\Users\Mamasita\AppData\Local\Temp\977SVbJ.exe
C:\Users\Mamasita\AppData\Local\Temp\99P9Q2.exe
C:\Users\Mamasita\AppData\Local\Temp\99zODZr.exe
C:\Users\Mamasita\AppData\Local\Temp\9a82RQe.exe
C:\Users\Mamasita\AppData\Local\Temp\9blHwW.exe
C:\Users\Mamasita\AppData\Local\Temp\9cplCwZ.exe
C:\Users\Mamasita\AppData\Local\Temp\9eookDf.exe
C:\Users\Mamasita\AppData\Local\Temp\9EQEsCE.exe
C:\Users\Mamasita\AppData\Local\Temp\9eQfn4d.exe
C:\Users\Mamasita\AppData\Local\Temp\9G51ke.exe
C:\Users\Mamasita\AppData\Local\Temp\9GngtW.exe
C:\Users\Mamasita\AppData\Local\Temp\9gOFSge.exe
C:\Users\Mamasita\AppData\Local\Temp\9GR2FT.exe
C:\Users\Mamasita\AppData\Local\Temp\9hHoJBV.exe
C:\Users\Mamasita\AppData\Local\Temp\9hohaK.exe
C:\Users\Mamasita\AppData\Local\Temp\9JaRka0.exe
C:\Users\Mamasita\AppData\Local\Temp\9KWakH.exe
C:\Users\Mamasita\AppData\Local\Temp\9LqzEx.exe
C:\Users\Mamasita\AppData\Local\Temp\9M5XNc.exe
C:\Users\Mamasita\AppData\Local\Temp\9m6bFL4.exe
C:\Users\Mamasita\AppData\Local\Temp\9pC7B5F.exe
C:\Users\Mamasita\AppData\Local\Temp\9pxyLv.exe
C:\Users\Mamasita\AppData\Local\Temp\9qKmxW.exe
C:\Users\Mamasita\AppData\Local\Temp\9R0oln.exe
C:\Users\Mamasita\AppData\Local\Temp\9tucsa.exe
C:\Users\Mamasita\AppData\Local\Temp\9uA3nM.exe
C:\Users\Mamasita\AppData\Local\Temp\9VIhNUh.exe
C:\Users\Mamasita\AppData\Local\Temp\9WgVHF.exe
C:\Users\Mamasita\AppData\Local\Temp\9X78d8.exe
C:\Users\Mamasita\AppData\Local\Temp\9xR2Cd.exe
C:\Users\Mamasita\AppData\Local\Temp\a1KJbX.exe
C:\Users\Mamasita\AppData\Local\Temp\a1LZQyk.exe
C:\Users\Mamasita\AppData\Local\Temp\a2aBmx.exe
C:\Users\Mamasita\AppData\Local\Temp\A2hXxkr.exe
C:\Users\Mamasita\AppData\Local\Temp\A2q3cy.exe
C:\Users\Mamasita\AppData\Local\Temp\A3D3OI.exe
C:\Users\Mamasita\AppData\Local\Temp\A7dBvOT.exe
C:\Users\Mamasita\AppData\Local\Temp\a7GpXi3.exe
C:\Users\Mamasita\AppData\Local\Temp\a86f8R.exe
C:\Users\Mamasita\AppData\Local\Temp\A9oaJ6e.exe
C:\Users\Mamasita\AppData\Local\Temp\Aa36ZC.exe
C:\Users\Mamasita\AppData\Local\Temp\Aa7s5xR.exe
C:\Users\Mamasita\AppData\Local\Temp\ACQdGuN.exe
C:\Users\Mamasita\AppData\Local\Temp\aCsNRLy.exe
C:\Users\Mamasita\AppData\Local\Temp\acy8UP.exe
C:\Users\Mamasita\AppData\Local\Temp\AD1gFE.exe
C:\Users\Mamasita\AppData\Local\Temp\aDGToh.exe
C:\Users\Mamasita\AppData\Local\Temp\adtX6Hf.exe
C:\Users\Mamasita\AppData\Local\Temp\AFl7cA.exe
C:\Users\Mamasita\AppData\Local\Temp\AGaHHsT.exe
C:\Users\Mamasita\AppData\Local\Temp\aieRRb.exe
C:\Users\Mamasita\AppData\Local\Temp\AiI1cQT.exe
C:\Users\Mamasita\AppData\Local\Temp\AITq8w.exe
C:\Users\Mamasita\AppData\Local\Temp\aJLb4F4.exe
C:\Users\Mamasita\AppData\Local\Temp\AKElRPS.exe
C:\Users\Mamasita\AppData\Local\Temp\AlOZqW8.exe
C:\Users\Mamasita\AppData\Local\Temp\AlysTM.exe
C:\Users\Mamasita\AppData\Local\Temp\amai0Xz.exe
C:\Users\Mamasita\AppData\Local\Temp\amHVt5.exe
C:\Users\Mamasita\AppData\Local\Temp\AMmCFLy.exe
C:\Users\Mamasita\AppData\Local\Temp\AN6uZQ.exe
C:\Users\Mamasita\AppData\Local\Temp\ao84GI.exe
C:\Users\Mamasita\AppData\Local\Temp\AOOQ3Cy.exe
C:\Users\Mamasita\AppData\Local\Temp\aoQf2cA.exe
C:\Users\Mamasita\AppData\Local\Temp\aPcWAV.exe
C:\Users\Mamasita\AppData\Local\Temp\APNSetup.exe
C:\Users\Mamasita\AppData\Local\Temp\aqW54C.exe
C:\Users\Mamasita\AppData\Local\Temp\As97Ab.exe
C:\Users\Mamasita\AppData\Local\Temp\at00LL.exe
C:\Users\Mamasita\AppData\Local\Temp\atDeHPN.exe
C:\Users\Mamasita\AppData\Local\Temp\aTmsM7.exe
C:\Users\Mamasita\AppData\Local\Temp\AU69IR.exe
C:\Users\Mamasita\AppData\Local\Temp\AuORVv.exe
C:\Users\Mamasita\AppData\Local\Temp\avJteZ.exe
C:\Users\Mamasita\AppData\Local\Temp\AwvnMkz.exe
C:\Users\Mamasita\AppData\Local\Temp\aXW7Z0.exe
C:\Users\Mamasita\AppData\Local\Temp\ayHNtL.exe
C:\Users\Mamasita\AppData\Local\Temp\Aynorg3.exe
C:\Users\Mamasita\AppData\Local\Temp\b05eq1u.exe
C:\Users\Mamasita\AppData\Local\Temp\B0ImA9w.exe
C:\Users\Mamasita\AppData\Local\Temp\b0VDyb2.exe
C:\Users\Mamasita\AppData\Local\Temp\b1JTAp.exe
C:\Users\Mamasita\AppData\Local\Temp\B3FUgZU.exe
C:\Users\Mamasita\AppData\Local\Temp\B66qsGn.exe
C:\Users\Mamasita\AppData\Local\Temp\B7wi3wT.exe
C:\Users\Mamasita\AppData\Local\Temp\bar2ze.exe
C:\Users\Mamasita\AppData\Local\Temp\bbrRQ0z.exe
C:\Users\Mamasita\AppData\Local\Temp\Bc4qL6.exe
C:\Users\Mamasita\AppData\Local\Temp\BCe8P7.exe
C:\Users\Mamasita\AppData\Local\Temp\bcPeTrG.exe
C:\Users\Mamasita\AppData\Local\Temp\bDlnJ8n.exe
C:\Users\Mamasita\AppData\Local\Temp\bdQsI8t.exe
C:\Users\Mamasita\AppData\Local\Temp\BdTddu.exe
C:\Users\Mamasita\AppData\Local\Temp\be3uzPt.exe
C:\Users\Mamasita\AppData\Local\Temp\BeC5rlq.exe
C:\Users\Mamasita\AppData\Local\Temp\belBXz.exe
C:\Users\Mamasita\AppData\Local\Temp\bELWn9w.exe
C:\Users\Mamasita\AppData\Local\Temp\bEM587.exe
C:\Users\Mamasita\AppData\Local\Temp\beUXuS.exe
C:\Users\Mamasita\AppData\Local\Temp\BF07W6.exe
C:\Users\Mamasita\AppData\Local\Temp\bFgugDy.exe
C:\Users\Mamasita\AppData\Local\Temp\bGEZOC.exe
C:\Users\Mamasita\AppData\Local\Temp\BgwpB3.exe
C:\Users\Mamasita\AppData\Local\Temp\Bh2cos.exe
C:\Users\Mamasita\AppData\Local\Temp\bH8pP19.exe
C:\Users\Mamasita\AppData\Local\Temp\bhBVXp.exe
C:\Users\Mamasita\AppData\Local\Temp\BI7NBsA.exe
C:\Users\Mamasita\AppData\Local\Temp\bJu4dRk.exe
C:\Users\Mamasita\AppData\Local\Temp\bJudGgV.exe
C:\Users\Mamasita\AppData\Local\Temp\Bk1Wl2.exe
C:\Users\Mamasita\AppData\Local\Temp\BM51Uut.exe
C:\Users\Mamasita\AppData\Local\Temp\bmgtWvb.exe
C:\Users\Mamasita\AppData\Local\Temp\BmsEAaV.exe
C:\Users\Mamasita\AppData\Local\Temp\bn0xbyD.exe
C:\Users\Mamasita\AppData\Local\Temp\BnAdZVB.exe
C:\Users\Mamasita\AppData\Local\Temp\bnztTXp.exe
C:\Users\Mamasita\AppData\Local\Temp\bOblDnu.exe
C:\Users\Mamasita\AppData\Local\Temp\bOcMK7n.exe
C:\Users\Mamasita\AppData\Local\Temp\BoNiEQJ.exe
C:\Users\Mamasita\AppData\Local\Temp\Bop9LWL.exe
C:\Users\Mamasita\AppData\Local\Temp\BP2ovxc.exe
C:\Users\Mamasita\AppData\Local\Temp\bQJLUXW.exe
C:\Users\Mamasita\AppData\Local\Temp\bqXAUUg.exe
C:\Users\Mamasita\AppData\Local\Temp\BrDgAd.exe
C:\Users\Mamasita\AppData\Local\Temp\bRlWvkD.exe
C:\Users\Mamasita\AppData\Local\Temp\BRrGZc5.exe
C:\Users\Mamasita\AppData\Local\Temp\BSefiwk.exe
C:\Users\Mamasita\AppData\Local\Temp\bSiUki9.exe
C:\Users\Mamasita\AppData\Local\Temp\bsqDq8D.exe
C:\Users\Mamasita\AppData\Local\Temp\bTMeDw.exe
C:\Users\Mamasita\AppData\Local\Temp\BTqqk6.exe
C:\Users\Mamasita\AppData\Local\Temp\btqTq8.exe
C:\Users\Mamasita\AppData\Local\Temp\BTZa2o.exe
C:\Users\Mamasita\AppData\Local\Temp\bu5u08R.exe
C:\Users\Mamasita\AppData\Local\Temp\BUBTZil.exe
C:\Users\Mamasita\AppData\Local\Temp\bUhpVR.exe
C:\Users\Mamasita\AppData\Local\Temp\buUtv0.exe
C:\Users\Mamasita\AppData\Local\Temp\Buwh7P.exe
C:\Users\Mamasita\AppData\Local\Temp\bvrJq1w.exe
C:\Users\Mamasita\AppData\Local\Temp\BwbfEoO.exe
C:\Users\Mamasita\AppData\Local\Temp\BwvTGMh.exe
C:\Users\Mamasita\AppData\Local\Temp\bxOAwP.exe
C:\Users\Mamasita\AppData\Local\Temp\bZ9MUs.exe
C:\Users\Mamasita\AppData\Local\Temp\c27PyN.exe
C:\Users\Mamasita\AppData\Local\Temp\C2Ui6lF.exe
C:\Users\Mamasita\AppData\Local\Temp\C3hPlk.exe
C:\Users\Mamasita\AppData\Local\Temp\C3wQTz.exe
C:\Users\Mamasita\AppData\Local\Temp\C4yOcV.exe
C:\Users\Mamasita\AppData\Local\Temp\c6g1TcH.exe
C:\Users\Mamasita\AppData\Local\Temp\c78og6W.exe
C:\Users\Mamasita\AppData\Local\Temp\c7Hfdwa.exe
C:\Users\Mamasita\AppData\Local\Temp\c7nt0F.exe
C:\Users\Mamasita\AppData\Local\Temp\C85FuUR.exe
C:\Users\Mamasita\AppData\Local\Temp\c8tXJX.exe
C:\Users\Mamasita\AppData\Local\Temp\C8UtbKV.exe
C:\Users\Mamasita\AppData\Local\Temp\CaQSmq.exe
C:\Users\Mamasita\AppData\Local\Temp\CB73gee.exe
C:\Users\Mamasita\AppData\Local\Temp\CcTuZn.exe
C:\Users\Mamasita\AppData\Local\Temp\CCyrZf.exe
C:\Users\Mamasita\AppData\Local\Temp\CD8986z.exe
C:\Users\Mamasita\AppData\Local\Temp\cDGX542.exe
C:\Users\Mamasita\AppData\Local\Temp\CDwGSl.exe
C:\Users\Mamasita\AppData\Local\Temp\CEFmPQN.exe
C:\Users\Mamasita\AppData\Local\Temp\cfwyBA.exe
C:\Users\Mamasita\AppData\Local\Temp\cG0cDE6.exe
C:\Users\Mamasita\AppData\Local\Temp\cgGWJB.exe
C:\Users\Mamasita\AppData\Local\Temp\cHCmKWT.exe
C:\Users\Mamasita\AppData\Local\Temp\ChtX2N0.exe
C:\Users\Mamasita\AppData\Local\Temp\CIGbsd.exe
C:\Users\Mamasita\AppData\Local\Temp\cIiks4T.exe
C:\Users\Mamasita\AppData\Local\Temp\cJ04b3.exe
C:\Users\Mamasita\AppData\Local\Temp\CJHy09q.exe
C:\Users\Mamasita\AppData\Local\Temp\CkJsgy.exe
C:\Users\Mamasita\AppData\Local\Temp\CLHbI33.exe
C:\Users\Mamasita\AppData\Local\Temp\CMTc1H.exe
C:\Users\Mamasita\AppData\Local\Temp\COeqrFQ.exe
C:\Users\Mamasita\AppData\Local\Temp\cOln0a.exe
C:\Users\Mamasita\AppData\Local\Temp\conduitinstaller.exe
C:\Users\Mamasita\AppData\Local\Temp\CpaDgSt.exe
C:\Users\Mamasita\AppData\Local\Temp\CQ0mUJ.exe
C:\Users\Mamasita\AppData\Local\Temp\CqfO3Jq.exe
C:\Users\Mamasita\AppData\Local\Temp\crCh0P2.exe
C:\Users\Mamasita\AppData\Local\Temp\CRt9MqN.exe
C:\Users\Mamasita\AppData\Local\Temp\CRvERSu.exe
C:\Users\Mamasita\AppData\Local\Temp\CRwb2UN.exe
C:\Users\Mamasita\AppData\Local\Temp\cSorBcK.exe
C:\Users\Mamasita\AppData\Local\Temp\CSSUTx0.exe
C:\Users\Mamasita\AppData\Local\Temp\CSTgIpn.exe
C:\Users\Mamasita\AppData\Local\Temp\CSURfN1.exe
C:\Users\Mamasita\AppData\Local\Temp\cV8Tcn8.exe
C:\Users\Mamasita\AppData\Local\Temp\cViKiVR.exe
C:\Users\Mamasita\AppData\Local\Temp\cVnyRea.exe
C:\Users\Mamasita\AppData\Local\Temp\cVq0KaM.exe
C:\Users\Mamasita\AppData\Local\Temp\cvwxQ7L.exe
C:\Users\Mamasita\AppData\Local\Temp\cW2fT7.exe
C:\Users\Mamasita\AppData\Local\Temp\CwhqzM.exe
C:\Users\Mamasita\AppData\Local\Temp\CwwkCOz.exe
C:\Users\Mamasita\AppData\Local\Temp\CxcdQQX.exe
C:\Users\Mamasita\AppData\Local\Temp\cxgR5I.exe
C:\Users\Mamasita\AppData\Local\Temp\cxPTZg.exe
C:\Users\Mamasita\AppData\Local\Temp\cxvqNk.exe
C:\Users\Mamasita\AppData\Local\Temp\CxXhiRZ.exe
C:\Users\Mamasita\AppData\Local\Temp\CyKaPQK.exe
C:\Users\Mamasita\AppData\Local\Temp\CymlfZ.exe
C:\Users\Mamasita\AppData\Local\Temp\CzBD7CQ.exe
C:\Users\Mamasita\AppData\Local\Temp\czmEL5P.exe
C:\Users\Mamasita\AppData\Local\Temp\d0aSeVL.exe
C:\Users\Mamasita\AppData\Local\Temp\D1kzsmn.exe
C:\Users\Mamasita\AppData\Local\Temp\D2EAKEW.exe
C:\Users\Mamasita\AppData\Local\Temp\d2fhHBg.exe
C:\Users\Mamasita\AppData\Local\Temp\D2xbcPw.exe
C:\Users\Mamasita\AppData\Local\Temp\d4R3OPx.exe
C:\Users\Mamasita\AppData\Local\Temp\D4TBNGC.exe
C:\Users\Mamasita\AppData\Local\Temp\D5d8WM.exe
C:\Users\Mamasita\AppData\Local\Temp\d5vgEQ.exe
C:\Users\Mamasita\AppData\Local\Temp\d6c054.exe
C:\Users\Mamasita\AppData\Local\Temp\d7vvg5.exe
C:\Users\Mamasita\AppData\Local\Temp\D7zgfrx.exe
C:\Users\Mamasita\AppData\Local\Temp\D8FCth.exe
C:\Users\Mamasita\AppData\Local\Temp\D9T2r2K.exe
C:\Users\Mamasita\AppData\Local\Temp\daUXev.exe
C:\Users\Mamasita\AppData\Local\Temp\DbeS2k.exe
C:\Users\Mamasita\AppData\Local\Temp\DBqEssT.exe
C:\Users\Mamasita\AppData\Local\Temp\DBXLxL.exe
C:\Users\Mamasita\AppData\Local\Temp\Dc2JDdI.exe
C:\Users\Mamasita\AppData\Local\Temp\DCf74g.exe
C:\Users\Mamasita\AppData\Local\Temp\dD8Tc2x.exe
C:\Users\Mamasita\AppData\Local\Temp\DDieTv.exe
C:\Users\Mamasita\AppData\Local\Temp\ddJpJIL.exe
C:\Users\Mamasita\AppData\Local\Temp\dEtazk.exe
C:\Users\Mamasita\AppData\Local\Temp\dFXPbU.exe
C:\Users\Mamasita\AppData\Local\Temp\dg6Xbtg.exe
C:\Users\Mamasita\AppData\Local\Temp\DgC8vL.exe
C:\Users\Mamasita\AppData\Local\Temp\DGf6XM.exe
C:\Users\Mamasita\AppData\Local\Temp\dhALrT.exe
C:\Users\Mamasita\AppData\Local\Temp\dHTU6Qt.exe
C:\Users\Mamasita\AppData\Local\Temp\DIRkTM.exe
C:\Users\Mamasita\AppData\Local\Temp\DiRZBk7.exe
C:\Users\Mamasita\AppData\Local\Temp\dIsc2ez.exe
C:\Users\Mamasita\AppData\Local\Temp\dK20xDs.exe
C:\Users\Mamasita\AppData\Local\Temp\dKqdLW.exe
C:\Users\Mamasita\AppData\Local\Temp\DmpqiJ.exe
C:\Users\Mamasita\AppData\Local\Temp\dmWpd1.exe
C:\Users\Mamasita\AppData\Local\Temp\dNixDp.exe
C:\Users\Mamasita\AppData\Local\Temp\dOAzTU.exe
C:\Users\Mamasita\AppData\Local\Temp\DOlSOw.exe
C:\Users\Mamasita\AppData\Local\Temp\DoO2pwX.exe
C:\Users\Mamasita\AppData\Local\Temp\DosSbb.exe
C:\Users\Mamasita\AppData\Local\Temp\dPellgI.exe
C:\Users\Mamasita\AppData\Local\Temp\dQgMSZU.exe
C:\Users\Mamasita\AppData\Local\Temp\DrBToyc.exe
C:\Users\Mamasita\AppData\Local\Temp\dRhfSWy.exe
C:\Users\Mamasita\AppData\Local\Temp\dRSnRG.exe
C:\Users\Mamasita\AppData\Local\Temp\Ds72Jwn.exe
C:\Users\Mamasita\AppData\Local\Temp\DT5eTS.exe
C:\Users\Mamasita\AppData\Local\Temp\DTlD1o.exe
C:\Users\Mamasita\AppData\Local\Temp\DvffkV.exe
C:\Users\Mamasita\AppData\Local\Temp\DxapS2.exe
C:\Users\Mamasita\AppData\Local\Temp\dxG7Vcd.exe
C:\Users\Mamasita\AppData\Local\Temp\dxZ9CT.exe
C:\Users\Mamasita\AppData\Local\Temp\dy0eWJ.exe
C:\Users\Mamasita\AppData\Local\Temp\DyA3mdv.exe
C:\Users\Mamasita\AppData\Local\Temp\Dyy4xW.exe
C:\Users\Mamasita\AppData\Local\Temp\dZ4WXBU.exe
C:\Users\Mamasita\AppData\Local\Temp\dZiXN2B.exe
C:\Users\Mamasita\AppData\Local\Temp\DzokOVm.exe
C:\Users\Mamasita\AppData\Local\Temp\dzqHKch.exe
C:\Users\Mamasita\AppData\Local\Temp\DzRwIx.exe
C:\Users\Mamasita\AppData\Local\Temp\E0Qcdb.exe
C:\Users\Mamasita\AppData\Local\Temp\E1gPPio.exe
C:\Users\Mamasita\AppData\Local\Temp\E1gSL1.exe
C:\Users\Mamasita\AppData\Local\Temp\e1LZXx.exe
C:\Users\Mamasita\AppData\Local\Temp\E1pead.exe
C:\Users\Mamasita\AppData\Local\Temp\E32EXnk.exe
C:\Users\Mamasita\AppData\Local\Temp\E3GlDh9.exe
C:\Users\Mamasita\AppData\Local\Temp\e3vNCAB.exe
C:\Users\Mamasita\AppData\Local\Temp\e46Ht6a.exe
C:\Users\Mamasita\AppData\Local\Temp\E5VyTkh.exe
C:\Users\Mamasita\AppData\Local\Temp\e5xByL.exe
C:\Users\Mamasita\AppData\Local\Temp\e9Twg2R.exe
C:\Users\Mamasita\AppData\Local\Temp\EbiKAz.exe
C:\Users\Mamasita\AppData\Local\Temp\echou4.exe
C:\Users\Mamasita\AppData\Local\Temp\ECRKk7.exe
C:\Users\Mamasita\AppData\Local\Temp\ECy1MNo.exe
C:\Users\Mamasita\AppData\Local\Temp\edJEga.exe
C:\Users\Mamasita\AppData\Local\Temp\edkrui.exe
C:\Users\Mamasita\AppData\Local\Temp\EdUTipX.exe
C:\Users\Mamasita\AppData\Local\Temp\ee7P43.exe
C:\Users\Mamasita\AppData\Local\Temp\eeqrD0.exe
C:\Users\Mamasita\AppData\Local\Temp\efHisC.exe
C:\Users\Mamasita\AppData\Local\Temp\Efu00f.exe
C:\Users\Mamasita\AppData\Local\Temp\egOzJk.exe
C:\Users\Mamasita\AppData\Local\Temp\egTvDBP.exe
C:\Users\Mamasita\AppData\Local\Temp\eH1e4Qq.exe
C:\Users\Mamasita\AppData\Local\Temp\eh4sVfm.exe
C:\Users\Mamasita\AppData\Local\Temp\EhZZ49.exe
C:\Users\Mamasita\AppData\Local\Temp\EioLu8.exe
C:\Users\Mamasita\AppData\Local\Temp\eJxIXme.exe
C:\Users\Mamasita\AppData\Local\Temp\eKfloeT.exe
C:\Users\Mamasita\AppData\Local\Temp\Ekthtf.exe
C:\Users\Mamasita\AppData\Local\Temp\EL18SeZ.exe
C:\Users\Mamasita\AppData\Local\Temp\eLHo8du.exe
C:\Users\Mamasita\AppData\Local\Temp\ELKHmBR.exe
C:\Users\Mamasita\AppData\Local\Temp\ELRuno.exe
C:\Users\Mamasita\AppData\Local\Temp\emDElu.exe
C:\Users\Mamasita\AppData\Local\Temp\emTKFl.exe
C:\Users\Mamasita\AppData\Local\Temp\eONre57.exe
C:\Users\Mamasita\AppData\Local\Temp\Eox8lW.exe
C:\Users\Mamasita\AppData\Local\Temp\epH6yT.exe
C:\Users\Mamasita\AppData\Local\Temp\EPJz5Qy.exe
C:\Users\Mamasita\AppData\Local\Temp\ePZH9Pc.exe
C:\Users\Mamasita\AppData\Local\Temp\EquUcJ.exe
C:\Users\Mamasita\AppData\Local\Temp\Er0aFl.exe
C:\Users\Mamasita\AppData\Local\Temp\ErXddTP.exe
C:\Users\Mamasita\AppData\Local\Temp\esGy5i.exe
C:\Users\Mamasita\AppData\Local\Temp\EshiQa.exe
C:\Users\Mamasita\AppData\Local\Temp\esMAWw.exe
C:\Users\Mamasita\AppData\Local\Temp\ESwgo1.exe
C:\Users\Mamasita\AppData\Local\Temp\eu48V00.exe
C:\Users\Mamasita\AppData\Local\Temp\EUhTzn.exe
C:\Users\Mamasita\AppData\Local\Temp\eurdE3B.exe
C:\Users\Mamasita\AppData\Local\Temp\eviGSa.exe
C:\Users\Mamasita\AppData\Local\Temp\evNyPRl.exe
C:\Users\Mamasita\AppData\Local\Temp\Ewg81X2.exe
C:\Users\Mamasita\AppData\Local\Temp\eWilSkx.exe
C:\Users\Mamasita\AppData\Local\Temp\EXft8wA.exe
C:\Users\Mamasita\AppData\Local\Temp\EXlJ7ta.exe
C:\Users\Mamasita\AppData\Local\Temp\ExpqTh.exe
C:\Users\Mamasita\AppData\Local\Temp\EyxuZr.exe
C:\Users\Mamasita\AppData\Local\Temp\ezGameXN.dll
C:\Users\Mamasita\AppData\Local\Temp\eZX5ol8.exe
C:\Users\Mamasita\AppData\Local\Temp\F0qerFf.exe
C:\Users\Mamasita\AppData\Local\Temp\F2Tcf2.exe
C:\Users\Mamasita\AppData\Local\Temp\f3NeDLo.exe
C:\Users\Mamasita\AppData\Local\Temp\F3Spcf.exe
C:\Users\Mamasita\AppData\Local\Temp\F8LUru.exe
C:\Users\Mamasita\AppData\Local\Temp\f9CG1h.exe
C:\Users\Mamasita\AppData\Local\Temp\f9FcXw9.exe
C:\Users\Mamasita\AppData\Local\Temp\FA3fU9w.exe
C:\Users\Mamasita\AppData\Local\Temp\fAg6CI.exe
C:\Users\Mamasita\AppData\Local\Temp\Fakp5MQ.exe
C:\Users\Mamasita\AppData\Local\Temp\FastFreeConverterUpdt_v5.5.exe
C:\Users\Mamasita\AppData\Local\Temp\FC1u5f.exe
C:\Users\Mamasita\AppData\Local\Temp\FcLWvyQ.exe
C:\Users\Mamasita\AppData\Local\Temp\fd38Wg.exe
C:\Users\Mamasita\AppData\Local\Temp\FDA66b.exe
C:\Users\Mamasita\AppData\Local\Temp\fDR27CE.exe
C:\Users\Mamasita\AppData\Local\Temp\FegTTPf.exe
C:\Users\Mamasita\AppData\Local\Temp\ffcIlP.exe
C:\Users\Mamasita\AppData\Local\Temp\FGdkyO.exe
C:\Users\Mamasita\AppData\Local\Temp\FHplbB.exe
C:\Users\Mamasita\AppData\Local\Temp\fHsHQl.exe
C:\Users\Mamasita\AppData\Local\Temp\fixutil.exe
C:\Users\Mamasita\AppData\Local\Temp\fJKHh2G.exe
C:\Users\Mamasita\AppData\Local\Temp\fJPGTc.exe
C:\Users\Mamasita\AppData\Local\Temp\FJubWp.exe
C:\Users\Mamasita\AppData\Local\Temp\FK2Cxm.exe
C:\Users\Mamasita\AppData\Local\Temp\FK4Lnu.exe
C:\Users\Mamasita\AppData\Local\Temp\Fkb4f8o.exe
C:\Users\Mamasita\AppData\Local\Temp\fKgmHt.exe
C:\Users\Mamasita\AppData\Local\Temp\fKKM60.exe
C:\Users\Mamasita\AppData\Local\Temp\fKNGkOe.exe
C:\Users\Mamasita\AppData\Local\Temp\flyBs62.exe
C:\Users\Mamasita\AppData\Local\Temp\fMAGuH.exe
C:\Users\Mamasita\AppData\Local\Temp\Fp60fn7.exe
C:\Users\Mamasita\AppData\Local\Temp\fP9CLn.exe
C:\Users\Mamasita\AppData\Local\Temp\fQEBqCw.exe
C:\Users\Mamasita\AppData\Local\Temp\FqMQst.exe
C:\Users\Mamasita\AppData\Local\Temp\FQV0qyh.exe
C:\Users\Mamasita\AppData\Local\Temp\FQV1xme.exe
C:\Users\Mamasita\AppData\Local\Temp\fr88A0.exe
C:\Users\Mamasita\AppData\Local\Temp\fRTeU6C.exe
C:\Users\Mamasita\AppData\Local\Temp\FS6Xtan.exe
C:\Users\Mamasita\AppData\Local\Temp\FSUQ5ZX.exe
C:\Users\Mamasita\AppData\Local\Temp\FszWKEq.exe
C:\Users\Mamasita\AppData\Local\Temp\FTnw8E.exe
C:\Users\Mamasita\AppData\Local\Temp\FTQScm.exe
C:\Users\Mamasita\AppData\Local\Temp\fTumdF7.exe
C:\Users\Mamasita\AppData\Local\Temp\FtWmha.exe
C:\Users\Mamasita\AppData\Local\Temp\FUtcOsJ.exe
C:\Users\Mamasita\AppData\Local\Temp\FvOKs3.exe
C:\Users\Mamasita\AppData\Local\Temp\fW6ikZ.exe
C:\Users\Mamasita\AppData\Local\Temp\FwWcDT.exe
C:\Users\Mamasita\AppData\Local\Temp\fy5QfQ.exe
C:\Users\Mamasita\AppData\Local\Temp\fysiMT.exe
C:\Users\Mamasita\AppData\Local\Temp\G1zL6Z.exe
C:\Users\Mamasita\AppData\Local\Temp\g21Jsm.exe
C:\Users\Mamasita\AppData\Local\Temp\G2iAB4.exe
C:\Users\Mamasita\AppData\Local\Temp\G2Wnfh.exe
C:\Users\Mamasita\AppData\Local\Temp\g3cJ8aX.exe
C:\Users\Mamasita\AppData\Local\Temp\G416nJ.exe
C:\Users\Mamasita\AppData\Local\Temp\g4dgSq.exe
C:\Users\Mamasita\AppData\Local\Temp\g4L6poq.exe
C:\Users\Mamasita\AppData\Local\Temp\G7STwXM.exe
C:\Users\Mamasita\AppData\Local\Temp\G9TyEl.exe
C:\Users\Mamasita\AppData\Local\Temp\GameXNGO.exe
C:\Users\Mamasita\AppData\Local\Temp\gBlJD7.exe
C:\Users\Mamasita\AppData\Local\Temp\GBLvGnh.exe
C:\Users\Mamasita\AppData\Local\Temp\gBMvNZ.exe
C:\Users\Mamasita\AppData\Local\Temp\GCAwql6.exe
C:\Users\Mamasita\AppData\Local\Temp\gCq9zc7.exe
C:\Users\Mamasita\AppData\Local\Temp\gdnITE3.exe
C:\Users\Mamasita\AppData\Local\Temp\gE4xGRi.exe
C:\Users\Mamasita\AppData\Local\Temp\GEG3bz.exe
C:\Users\Mamasita\AppData\Local\Temp\GEusW7B.exe
C:\Users\Mamasita\AppData\Local\Temp\GevmXt.exe
C:\Users\Mamasita\AppData\Local\Temp\gFHMTiQ.exe
C:\Users\Mamasita\AppData\Local\Temp\ggaft2.exe
C:\Users\Mamasita\AppData\Local\Temp\GgyFpm.exe
C:\Users\Mamasita\AppData\Local\Temp\ghJZnu8.exe
C:\Users\Mamasita\AppData\Local\Temp\ghQD08.exe
C:\Users\Mamasita\AppData\Local\Temp\ghtVM1Q.exe
C:\Users\Mamasita\AppData\Local\Temp\ghuEZb.exe
C:\Users\Mamasita\AppData\Local\Temp\gJFr4fz.exe
C:\Users\Mamasita\AppData\Local\Temp\gJy0C2.exe
C:\Users\Mamasita\AppData\Local\Temp\GJzaip.exe
C:\Users\Mamasita\AppData\Local\Temp\gkcmvP2.exe
C:\Users\Mamasita\AppData\Local\Temp\GKMVCV5.exe
C:\Users\Mamasita\AppData\Local\Temp\GkZgRTl.exe
C:\Users\Mamasita\AppData\Local\Temp\Gl0BesG.exe
C:\Users\Mamasita\AppData\Local\Temp\GLHH4u.exe
C:\Users\Mamasita\AppData\Local\Temp\GmTSMy2.exe
C:\Users\Mamasita\AppData\Local\Temp\gn96Pux.exe
C:\Users\Mamasita\AppData\Local\Temp\GNbsD5.exe
C:\Users\Mamasita\AppData\Local\Temp\gno5ZT.exe
C:\Users\Mamasita\AppData\Local\Temp\GO0oEZ.exe
C:\Users\Mamasita\AppData\Local\Temp\gPAINi.exe
C:\Users\Mamasita\AppData\Local\Temp\gPQ09Z.exe
C:\Users\Mamasita\AppData\Local\Temp\gPsdBuL.exe
C:\Users\Mamasita\AppData\Local\Temp\GQPwIAV.exe
C:\Users\Mamasita\AppData\Local\Temp\GRmfuNQ.exe
C:\Users\Mamasita\AppData\Local\Temp\GRTee9.exe
C:\Users\Mamasita\AppData\Local\Temp\GS1VCv.exe
C:\Users\Mamasita\AppData\Local\Temp\GSKDRCr.exe
C:\Users\Mamasita\AppData\Local\Temp\GsWkhHW.exe
C:\Users\Mamasita\AppData\Local\Temp\GT2pAw5.exe
C:\Users\Mamasita\AppData\Local\Temp\GTBBUg6.exe
C:\Users\Mamasita\AppData\Local\Temp\gTexLX.exe
C:\Users\Mamasita\AppData\Local\Temp\GTPAPZb.exe
C:\Users\Mamasita\AppData\Local\Temp\gTvWS46.exe
C:\Users\Mamasita\AppData\Local\Temp\GUkDTaa.exe
C:\Users\Mamasita\AppData\Local\Temp\Gunpi61.exe
C:\Users\Mamasita\AppData\Local\Temp\gUS0ra.exe
C:\Users\Mamasita\AppData\Local\Temp\GValFKH.exe
C:\Users\Mamasita\AppData\Local\Temp\GVcVHW.exe
C:\Users\Mamasita\AppData\Local\Temp\gvfa9cx.exe
C:\Users\Mamasita\AppData\Local\Temp\GVXxRy.exe
C:\Users\Mamasita\AppData\Local\Temp\GwTvGLG.exe
C:\Users\Mamasita\AppData\Local\Temp\gxbsWe5.exe
C:\Users\Mamasita\AppData\Local\Temp\gxgw5st.exe
C:\Users\Mamasita\AppData\Local\Temp\GXn7J2.exe
C:\Users\Mamasita\AppData\Local\Temp\GxULE7.exe
C:\Users\Mamasita\AppData\Local\Temp\gxWev2.exe
C:\Users\Mamasita\AppData\Local\Temp\Gz7mFkT.exe
C:\Users\Mamasita\AppData\Local\Temp\gzycT2.exe
C:\Users\Mamasita\AppData\Local\Temp\H27x8va.exe
C:\Users\Mamasita\AppData\Local\Temp\H2DZNW7.exe
C:\Users\Mamasita\AppData\Local\Temp\h3pXnzA.exe
C:\Users\Mamasita\AppData\Local\Temp\h4Hx5t.exe
C:\Users\Mamasita\AppData\Local\Temp\h4I6z9.exe
C:\Users\Mamasita\AppData\Local\Temp\h7PSdOz.exe
C:\Users\Mamasita\AppData\Local\Temp\H8nDuw.exe
C:\Users\Mamasita\AppData\Local\Temp\H9bDx5.exe
C:\Users\Mamasita\AppData\Local\Temp\h9WDQE.exe
C:\Users\Mamasita\AppData\Local\Temp\ha6fZpF.exe
C:\Users\Mamasita\AppData\Local\Temp\HalGIb.exe
C:\Users\Mamasita\AppData\Local\Temp\haqhya.exe
C:\Users\Mamasita\AppData\Local\Temp\HatDJow.exe
C:\Users\Mamasita\AppData\Local\Temp\HaUp5CX.exe
C:\Users\Mamasita\AppData\Local\Temp\hAypOF6.exe
C:\Users\Mamasita\AppData\Local\Temp\HB4v1hn.exe
C:\Users\Mamasita\AppData\Local\Temp\HDD3vxz.exe
C:\Users\Mamasita\AppData\Local\Temp\hDgQp28.exe
C:\Users\Mamasita\AppData\Local\Temp\hdLcJ8.exe
C:\Users\Mamasita\AppData\Local\Temp\HdT3uH.exe
C:\Users\Mamasita\AppData\Local\Temp\HDUv9a.exe
C:\Users\Mamasita\AppData\Local\Temp\helper.exe
C:\Users\Mamasita\AppData\Local\Temp\HEWxMn.exe
C:\Users\Mamasita\AppData\Local\Temp\hfasHe0.exe
C:\Users\Mamasita\AppData\Local\Temp\Hfi564.exe
C:\Users\Mamasita\AppData\Local\Temp\hgG9epc.exe
C:\Users\Mamasita\AppData\Local\Temp\hHew1Vs.exe
C:\Users\Mamasita\AppData\Local\Temp\hHMLFob.exe
C:\Users\Mamasita\AppData\Local\Temp\himI0O.exe
C:\Users\Mamasita\AppData\Local\Temp\HJPkRxZ.exe
C:\Users\Mamasita\AppData\Local\Temp\HJxtxoN.exe
C:\Users\Mamasita\AppData\Local\Temp\HkA3oP.exe
C:\Users\Mamasita\AppData\Local\Temp\hkKOTe8.exe
C:\Users\Mamasita\AppData\Local\Temp\hKrlmU.exe
C:\Users\Mamasita\AppData\Local\Temp\HlDruX6.exe
C:\Users\Mamasita\AppData\Local\Temp\HlEnS1.exe
C:\Users\Mamasita\AppData\Local\Temp\hlPIyQ.exe
C:\Users\Mamasita\AppData\Local\Temp\HlvWne.exe
C:\Users\Mamasita\AppData\Local\Temp\HMf52y.exe
C:\Users\Mamasita\AppData\Local\Temp\hMSfpfV.exe
C:\Users\Mamasita\AppData\Local\Temp\hmTTDAF.exe
C:\Users\Mamasita\AppData\Local\Temp\hmZcH9.exe
C:\Users\Mamasita\AppData\Local\Temp\hnAASB.exe
C:\Users\Mamasita\AppData\Local\Temp\HneyqO.exe
C:\Users\Mamasita\AppData\Local\Temp\hNMS26.exe
C:\Users\Mamasita\AppData\Local\Temp\HOBgN5w.exe
C:\Users\Mamasita\AppData\Local\Temp\hOMVxsS.exe
C:\Users\Mamasita\AppData\Local\Temp\HooplN0.exe
C:\Users\Mamasita\AppData\Local\Temp\hOt26VZ.exe
C:\Users\Mamasita\AppData\Local\Temp\HotShot_installerNewNoStartUp.exe
C:\Users\Mamasita\AppData\Local\Temp\HpDT8se.exe
C:\Users\Mamasita\AppData\Local\Temp\HPnoOBN.exe
C:\Users\Mamasita\AppData\Local\Temp\hpPREs5.exe
C:\Users\Mamasita\AppData\Local\Temp\hPTnuwZ.exe
C:\Users\Mamasita\AppData\Local\Temp\HqnTa94.exe
C:\Users\Mamasita\AppData\Local\Temp\hqwSK9C.exe
C:\Users\Mamasita\AppData\Local\Temp\hrwbkz.exe
C:\Users\Mamasita\AppData\Local\Temp\hrxgfW0.exe
C:\Users\Mamasita\AppData\Local\Temp\hRZvvk.exe
C:\Users\Mamasita\AppData\Local\Temp\Hs6Cst2.exe
C:\Users\Mamasita\AppData\Local\Temp\hSDqtH.exe
C:\Users\Mamasita\AppData\Local\Temp\hTxfXfN.exe
C:\Users\Mamasita\AppData\Local\Temp\hUmr080.exe
C:\Users\Mamasita\AppData\Local\Temp\hUOK6g.exe
C:\Users\Mamasita\AppData\Local\Temp\HuVQwF.exe
C:\Users\Mamasita\AppData\Local\Temp\hvBvEG.exe
C:\Users\Mamasita\AppData\Local\Temp\HVvkqm.exe
C:\Users\Mamasita\AppData\Local\Temp\HW5UcH0.exe
C:\Users\Mamasita\AppData\Local\Temp\HW7TZXu.exe
C:\Users\Mamasita\AppData\Local\Temp\hWhiWB.exe
C:\Users\Mamasita\AppData\Local\Temp\hwITht.exe
C:\Users\Mamasita\AppData\Local\Temp\HX8Iup.exe
C:\Users\Mamasita\AppData\Local\Temp\HXcfEQ.exe
C:\Users\Mamasita\AppData\Local\Temp\hXP9Fb.exe
C:\Users\Mamasita\AppData\Local\Temp\hXQkRd.exe
C:\Users\Mamasita\AppData\Local\Temp\HxXrAbA.exe
C:\Users\Mamasita\AppData\Local\Temp\hZFs1J.exe
C:\Users\Mamasita\AppData\Local\Temp\hZSFNxE.exe
C:\Users\Mamasita\AppData\Local\Temp\I1h62H.exe
C:\Users\Mamasita\AppData\Local\Temp\I1MbQt.exe
C:\Users\Mamasita\AppData\Local\Temp\i47cEo.exe
C:\Users\Mamasita\AppData\Local\Temp\i4fxLXL.exe
C:\Users\Mamasita\AppData\Local\Temp\i518pSy.exe
C:\Users\Mamasita\AppData\Local\Temp\I5JzJri.exe
C:\Users\Mamasita\AppData\Local\Temp\i5mSpc.exe
C:\Users\Mamasita\AppData\Local\Temp\i69bDcE.exe
C:\Users\Mamasita\AppData\Local\Temp\i8FWQC.exe
C:\Users\Mamasita\AppData\Local\Temp\iA4rieq.exe
C:\Users\Mamasita\AppData\Local\Temp\iBDKu8.exe
C:\Users\Mamasita\AppData\Local\Temp\ibGLKL.exe
C:\Users\Mamasita\AppData\Local\Temp\iC8Dulm.exe
C:\Users\Mamasita\AppData\Local\Temp\iCmGZ1C.exe
C:\Users\Mamasita\AppData\Local\Temp\ICMHhsM.exe
C:\Users\Mamasita\AppData\Local\Temp\icTTuhD.exe
C:\Users\Mamasita\AppData\Local\Temp\iD8pMA.exe
C:\Users\Mamasita\AppData\Local\Temp\Iddz76.exe
C:\Users\Mamasita\AppData\Local\Temp\IdFV3Tn.exe
C:\Users\Mamasita\AppData\Local\Temp\iDRT1cM.exe
C:\Users\Mamasita\AppData\Local\Temp\IDs9fcH.exe
C:\Users\Mamasita\AppData\Local\Temp\IE5gUT0.exe
C:\Users\Mamasita\AppData\Local\Temp\iEJ7QF.exe
C:\Users\Mamasita\AppData\Local\Temp\IemEDTI.exe
C:\Users\Mamasita\AppData\Local\Temp\IFB0XGD.exe
C:\Users\Mamasita\AppData\Local\Temp\iFySK3.exe
C:\Users\Mamasita\AppData\Local\Temp\IG4JlD.exe
C:\Users\Mamasita\AppData\Local\Temp\iG8m56u.exe
C:\Users\Mamasita\AppData\Local\Temp\IGAyOx.exe
C:\Users\Mamasita\AppData\Local\Temp\IGAyrS.exe
C:\Users\Mamasita\AppData\Local\Temp\ih5ZQR.exe
C:\Users\Mamasita\AppData\Local\Temp\iISwKC8.exe
C:\Users\Mamasita\AppData\Local\Temp\IIUtrw.exe
C:\Users\Mamasita\AppData\Local\Temp\ikioknwu.dll
C:\Users\Mamasita\AppData\Local\Temp\IkNfuT.exe
C:\Users\Mamasita\AppData\Local\Temp\IKVTVTi.exe
C:\Users\Mamasita\AppData\Local\Temp\IKyt2Zw.exe
C:\Users\Mamasita\AppData\Local\Temp\il898T.exe
C:\Users\Mamasita\AppData\Local\Temp\Ils6HO.exe
C:\Users\Mamasita\AppData\Local\Temp\IlVyN9.exe
C:\Users\Mamasita\AppData\Local\Temp\imNEDQ.exe
C:\Users\Mamasita\AppData\Local\Temp\iMNPcpm.exe
C:\Users\Mamasita\AppData\Local\Temp\ImUreC.exe
C:\Users\Mamasita\AppData\Local\Temp\ImXrrZ.exe
C:\Users\Mamasita\AppData\Local\Temp\iNSATp.exe
C:\Users\Mamasita\AppData\Local\Temp\InstallFlashPlayer.exe
C:\Users\Mamasita\AppData\Local\Temp\install_flashplayer11x32ax_aaa_aih.exe
C:\Users\Mamasita\AppData\Local\Temp\install_reader11_en_chra_awa_aih.exe
C:\Users\Mamasita\AppData\Local\Temp\iNzEKI.exe
C:\Users\Mamasita\AppData\Local\Temp\iOSX87O.exe
C:\Users\Mamasita\AppData\Local\Temp\iOWCiqk.exe
C:\Users\Mamasita\AppData\Local\Temp\iPHdXR.exe
C:\Users\Mamasita\AppData\Local\Temp\IPIUo0P.exe
C:\Users\Mamasita\AppData\Local\Temp\ipmdfyd.exe
C:\Users\Mamasita\AppData\Local\Temp\iQMukf.exe
C:\Users\Mamasita\AppData\Local\Temp\IqXsLJB.exe
C:\Users\Mamasita\AppData\Local\Temp\ir6DB28.exe
C:\Users\Mamasita\AppData\Local\Temp\IRTtrI0.exe
C:\Users\Mamasita\AppData\Local\Temp\ISRJT1.exe
C:\Users\Mamasita\AppData\Local\Temp\IT1cT4.exe
C:\Users\Mamasita\AppData\Local\Temp\Itewzx.exe
C:\Users\Mamasita\AppData\Local\Temp\iuPNy4.exe
C:\Users\Mamasita\AppData\Local\Temp\ivb0At.exe
C:\Users\Mamasita\AppData\Local\Temp\iVb6i0.exe
C:\Users\Mamasita\AppData\Local\Temp\IVhsL6I.exe
C:\Users\Mamasita\AppData\Local\Temp\iVwAAtS.exe
C:\Users\Mamasita\AppData\Local\Temp\iwfPbs.exe
C:\Users\Mamasita\AppData\Local\Temp\IwqWnEx.exe
C:\Users\Mamasita\AppData\Local\Temp\IWWluo.exe
C:\Users\Mamasita\AppData\Local\Temp\ix6f1IF.exe
C:\Users\Mamasita\AppData\Local\Temp\Ix7XNC.exe
C:\Users\Mamasita\AppData\Local\Temp\IXmInib.exe
C:\Users\Mamasita\AppData\Local\Temp\IxqBZNP.exe
C:\Users\Mamasita\AppData\Local\Temp\Iy6cMeP.exe
C:\Users\Mamasita\AppData\Local\Temp\IZ64wDl.exe
C:\Users\Mamasita\AppData\Local\Temp\IZGp32.exe
C:\Users\Mamasita\AppData\Local\Temp\izXc7kL.exe
C:\Users\Mamasita\AppData\Local\Temp\J11y6Ok.exe
C:\Users\Mamasita\AppData\Local\Temp\J1k7uif.exe
C:\Users\Mamasita\AppData\Local\Temp\J1vi6rb.exe
C:\Users\Mamasita\AppData\Local\Temp\J2xWnPl.exe
C:\Users\Mamasita\AppData\Local\Temp\J3Q0mb6.exe
C:\Users\Mamasita\AppData\Local\Temp\J85UTJ.exe
C:\Users\Mamasita\AppData\Local\Temp\J8nRXdW.exe
C:\Users\Mamasita\AppData\Local\Temp\JAG1yIJ.exe
C:\Users\Mamasita\AppData\Local\Temp\JB4xwA6.exe
C:\Users\Mamasita\AppData\Local\Temp\JCaTkWc.exe
C:\Users\Mamasita\AppData\Local\Temp\JChJig.exe
C:\Users\Mamasita\AppData\Local\Temp\JdXyRy.exe
C:\Users\Mamasita\AppData\Local\Temp\JEmovJ.exe
C:\Users\Mamasita\AppData\Local\Temp\JH2TcT.exe
C:\Users\Mamasita\AppData\Local\Temp\JHlQttl.exe
C:\Users\Mamasita\AppData\Local\Temp\JiwQ4k.exe
C:\Users\Mamasita\AppData\Local\Temp\JJ1tsH.exe
C:\Users\Mamasita\AppData\Local\Temp\Jk5INN.exe
C:\Users\Mamasita\AppData\Local\Temp\JkcUxMa.exe
C:\Users\Mamasita\AppData\Local\Temp\JkQRJA.exe
C:\Users\Mamasita\AppData\Local\Temp\JKRlXR2.exe
C:\Users\Mamasita\AppData\Local\Temp\Jms29f.exe
C:\Users\Mamasita\AppData\Local\Temp\JmXGsS.exe
C:\Users\Mamasita\AppData\Local\Temp\Jn40Hr.exe
C:\Users\Mamasita\AppData\Local\Temp\JNw40LH.exe
C:\Users\Mamasita\AppData\Local\Temp\Jo6lXD.exe
C:\Users\Mamasita\AppData\Local\Temp\JogZGT7.exe
C:\Users\Mamasita\AppData\Local\Temp\Jpd7l3.exe
C:\Users\Mamasita\AppData\Local\Temp\JqldOyp.exe
C:\Users\Mamasita\AppData\Local\Temp\jre-8u31-windows-au.exe
C:\Users\Mamasita\AppData\Local\Temp\JRi44D.exe
C:\Users\Mamasita\AppData\Local\Temp\JrsT8sd.exe
C:\Users\Mamasita\AppData\Local\Temp\JRToDo.exe
C:\Users\Mamasita\AppData\Local\Temp\JSATBV.exe
C:\Users\Mamasita\AppData\Local\Temp\JvKcKD9.exe
C:\Users\Mamasita\AppData\Local\Temp\JVQmXXm.exe
C:\Users\Mamasita\AppData\Local\Temp\JVrL3m.exe
C:\Users\Mamasita\AppData\Local\Temp\Jw9qRes.exe
C:\Users\Mamasita\AppData\Local\Temp\JwILCm.exe
C:\Users\Mamasita\AppData\Local\Temp\JXH2ivB.exe
C:\Users\Mamasita\AppData\Local\Temp\JycX3ES.exe
C:\Users\Mamasita\AppData\Local\Temp\JZAAC6.exe
C:\Users\Mamasita\AppData\Local\Temp\k0wCnb.exe
C:\Users\Mamasita\AppData\Local\Temp\K1VsR1d.exe
C:\Users\Mamasita\AppData\Local\Temp\K2JTnf.exe
C:\Users\Mamasita\AppData\Local\Temp\K2uva8.exe
C:\Users\Mamasita\AppData\Local\Temp\K5D1cOQ.exe
C:\Users\Mamasita\AppData\Local\Temp\k5gEXB.exe
C:\Users\Mamasita\AppData\Local\Temp\K7PPtX.exe
C:\Users\Mamasita\AppData\Local\Temp\K8OuM6I.exe
C:\Users\Mamasita\AppData\Local\Temp\k98aqIr.exe
C:\Users\Mamasita\AppData\Local\Temp\kB2DfA.exe
C:\Users\Mamasita\AppData\Local\Temp\KB5zG76.exe
C:\Users\Mamasita\AppData\Local\Temp\KBqI6g.exe
C:\Users\Mamasita\AppData\Local\Temp\kCqWOSb.exe
C:\Users\Mamasita\AppData\Local\Temp\kcWrRz.exe
C:\Users\Mamasita\AppData\Local\Temp\kDUJHW.exe
C:\Users\Mamasita\AppData\Local\Temp\Ke4D4G.exe
C:\Users\Mamasita\AppData\Local\Temp\KfhRRSW.exe
C:\Users\Mamasita\AppData\Local\Temp\kfVmgCk.exe
C:\Users\Mamasita\AppData\Local\Temp\kHvtBVv.exe
C:\Users\Mamasita\AppData\Local\Temp\KJdtpn.exe
C:\Users\Mamasita\AppData\Local\Temp\Kk5vVt.exe
C:\Users\Mamasita\AppData\Local\Temp\KKbwBH.exe
C:\Users\Mamasita\AppData\Local\Temp\kkcG66.exe
C:\Users\Mamasita\AppData\Local\Temp\kKqyJB.exe
C:\Users\Mamasita\AppData\Local\Temp\kLpvbu.exe
C:\Users\Mamasita\AppData\Local\Temp\Km3kOE.exe
C:\Users\Mamasita\AppData\Local\Temp\KmL5gor.exe
C:\Users\Mamasita\AppData\Local\Temp\kmsG7u.exe
C:\Users\Mamasita\AppData\Local\Temp\kmuclzE.exe
C:\Users\Mamasita\AppData\Local\Temp\kMuEzDZ.exe
C:\Users\Mamasita\AppData\Local\Temp\KMxvLm.exe
C:\Users\Mamasita\AppData\Local\Temp\knD7L2f.exe
C:\Users\Mamasita\AppData\Local\Temp\KnSwcZ.exe
C:\Users\Mamasita\AppData\Local\Temp\kokWmC.exe
C:\Users\Mamasita\AppData\Local\Temp\KoqQzu.exe
C:\Users\Mamasita\AppData\Local\Temp\kOsAt5.exe
C:\Users\Mamasita\AppData\Local\Temp\kpag2F9.exe
C:\Users\Mamasita\AppData\Local\Temp\kPEGNBp.exe
C:\Users\Mamasita\AppData\Local\Temp\KPyvTF.exe
C:\Users\Mamasita\AppData\Local\Temp\kQFzELd.exe
C:\Users\Mamasita\AppData\Local\Temp\kQkURE.exe
C:\Users\Mamasita\AppData\Local\Temp\kqlpik.exe
C:\Users\Mamasita\AppData\Local\Temp\KQLPuu1.exe
C:\Users\Mamasita\AppData\Local\Temp\KQOTsZZ.exe
C:\Users\Mamasita\AppData\Local\Temp\KRLh8ET.exe
C:\Users\Mamasita\AppData\Local\Temp\kRQZde.exe
C:\Users\Mamasita\AppData\Local\Temp\KT3CLe.exe
C:\Users\Mamasita\AppData\Local\Temp\KURV0T.exe
C:\Users\Mamasita\AppData\Local\Temp\KuTryh.exe
C:\Users\Mamasita\AppData\Local\Temp\kUVHTnC.exe
C:\Users\Mamasita\AppData\Local\Temp\KW9iSI.exe
C:\Users\Mamasita\AppData\Local\Temp\kWcPa5h.exe
C:\Users\Mamasita\AppData\Local\Temp\kwDLl6.exe
C:\Users\Mamasita\AppData\Local\Temp\KWFhT36.exe
C:\Users\Mamasita\AppData\Local\Temp\KwfoRI.exe
C:\Users\Mamasita\AppData\Local\Temp\KWnRwJ.exe
C:\Users\Mamasita\AppData\Local\Temp\KyPsaNG.exe
C:\Users\Mamasita\AppData\Local\Temp\kZ2J5t.exe
C:\Users\Mamasita\AppData\Local\Temp\Kz4hka.exe
C:\Users\Mamasita\AppData\Local\Temp\KZ9MT2.exe
C:\Users\Mamasita\AppData\Local\Temp\kZPiI4.exe
C:\Users\Mamasita\AppData\Local\Temp\L1afEO.exe
C:\Users\Mamasita\AppData\Local\Temp\l4UTcM.exe
C:\Users\Mamasita\AppData\Local\Temp\l4vT82.exe
C:\Users\Mamasita\AppData\Local\Temp\L7ovT0.exe
C:\Users\Mamasita\AppData\Local\Temp\L8qI1A.exe
C:\Users\Mamasita\AppData\Local\Temp\l9IBfn.exe
C:\Users\Mamasita\AppData\Local\Temp\laCyWIr.exe
C:\Users\Mamasita\AppData\Local\Temp\lAOniGK.exe
C:\Users\Mamasita\AppData\Local\Temp\lbEng4i.exe
C:\Users\Mamasita\AppData\Local\Temp\lBKa4J.exe
C:\Users\Mamasita\AppData\Local\Temp\LBNxv82.exe
C:\Users\Mamasita\AppData\Local\Temp\lcgEWZz.exe
C:\Users\Mamasita\AppData\Local\Temp\lD3Ddp.exe
C:\Users\Mamasita\AppData\Local\Temp\LDlZv0.exe
C:\Users\Mamasita\AppData\Local\Temp\ldmeSHw.exe
C:\Users\Mamasita\AppData\Local\Temp\LDodots.exe
C:\Users\Mamasita\AppData\Local\Temp\lDTZtZ.exe
C:\Users\Mamasita\AppData\Local\Temp\LE84P04.exe
C:\Users\Mamasita\AppData\Local\Temp\lEJrTfy.exe
C:\Users\Mamasita\AppData\Local\Temp\lelD9d.exe
C:\Users\Mamasita\AppData\Local\Temp\lfsnVnc.exe
C:\Users\Mamasita\AppData\Local\Temp\lg91eo.exe
C:\Users\Mamasita\AppData\Local\Temp\lgDpElg.exe
C:\Users\Mamasita\AppData\Local\Temp\LgSTav.exe
C:\Users\Mamasita\AppData\Local\Temp\LgUwpva.exe
C:\Users\Mamasita\AppData\Local\Temp\lh7s60.exe
C:\Users\Mamasita\AppData\Local\Temp\lhcQxa.exe
C:\Users\Mamasita\AppData\Local\Temp\lhfngJ.exe
C:\Users\Mamasita\AppData\Local\Temp\lhi4wGm.exe
C:\Users\Mamasita\AppData\Local\Temp\lHQIre.exe
C:\Users\Mamasita\AppData\Local\Temp\LhstKLa.exe
C:\Users\Mamasita\AppData\Local\Temp\liFO6sR.exe
C:\Users\Mamasita\AppData\Local\Temp\LIJpDM.exe
C:\Users\Mamasita\AppData\Local\Temp\LIkDVFU.exe
C:\Users\Mamasita\AppData\Local\Temp\LJbCtWE.exe
C:\Users\Mamasita\AppData\Local\Temp\lJTnLI.exe
C:\Users\Mamasita\AppData\Local\Temp\lL9uHIh.exe
C:\Users\Mamasita\AppData\Local\Temp\lNicaUp.exe
C:\Users\Mamasita\AppData\Local\Temp\lo45JT.exe
C:\Users\Mamasita\AppData\Local\Temp\LoMABMb.exe
C:\Users\Mamasita\AppData\Local\Temp\lP84vIw.exe
C:\Users\Mamasita\AppData\Local\Temp\LpmS75e.exe
C:\Users\Mamasita\AppData\Local\Temp\LPydDUm.exe
C:\Users\Mamasita\AppData\Local\Temp\LPzePe.exe
C:\Users\Mamasita\AppData\Local\Temp\lQb9Pl6.exe
C:\Users\Mamasita\AppData\Local\Temp\LrByoRQ.exe
C:\Users\Mamasita\AppData\Local\Temp\lrLksoB.exe
C:\Users\Mamasita\AppData\Local\Temp\lRTAsJ.exe
C:\Users\Mamasita\AppData\Local\Temp\lscLW1n.exe
C:\Users\Mamasita\AppData\Local\Temp\LT1p8t.exe
C:\Users\Mamasita\AppData\Local\Temp\LT2Ib9.exe
C:\Users\Mamasita\AppData\Local\Temp\LTFMQq.exe
C:\Users\Mamasita\AppData\Local\Temp\lTpgSc.exe
C:\Users\Mamasita\AppData\Local\Temp\lTT5tNw.exe
C:\Users\Mamasita\AppData\Local\Temp\LU1t0p9.exe
C:\Users\Mamasita\AppData\Local\Temp\LuSoMf.exe
C:\Users\Mamasita\AppData\Local\Temp\lUTR4u0.exe
C:\Users\Mamasita\AppData\Local\Temp\lV22dN.exe
C:\Users\Mamasita\AppData\Local\Temp\lvKfbm.exe
C:\Users\Mamasita\AppData\Local\Temp\lvRSlW9.exe
C:\Users\Mamasita\AppData\Local\Temp\lx9hVTw.exe
C:\Users\Mamasita\AppData\Local\Temp\LXKiDkF.exe
C:\Users\Mamasita\AppData\Local\Temp\lxmKBX.exe
C:\Users\Mamasita\AppData\Local\Temp\LxRGroq.exe
C:\Users\Mamasita\AppData\Local\Temp\Lyas3S4.exe
C:\Users\Mamasita\AppData\Local\Temp\Lz01Gg.exe
C:\Users\Mamasita\AppData\Local\Temp\lzqTknu.exe
C:\Users\Mamasita\AppData\Local\Temp\lzSt1L.exe
C:\Users\Mamasita\AppData\Local\Temp\LZzAN7.exe
C:\Users\Mamasita\AppData\Local\Temp\m1tJuW.exe
C:\Users\Mamasita\AppData\Local\Temp\m2WTCS.exe
C:\Users\Mamasita\AppData\Local\Temp\m4kCiX.exe
C:\Users\Mamasita\AppData\Local\Temp\m4nFT6.exe
C:\Users\Mamasita\AppData\Local\Temp\m50r7V.exe
C:\Users\Mamasita\AppData\Local\Temp\m5nDJX.exe
C:\Users\Mamasita\AppData\Local\Temp\m70kSzK.exe
C:\Users\Mamasita\AppData\Local\Temp\m77lmyl.exe
C:\Users\Mamasita\AppData\Local\Temp\m9DFEl.exe
C:\Users\Mamasita\AppData\Local\Temp\m9G68e.exe
C:\Users\Mamasita\AppData\Local\Temp\maQ9pv.exe
C:\Users\Mamasita\AppData\Local\Temp\mAtree4.exe
C:\Users\Mamasita\AppData\Local\Temp\Mb0eAnT.exe
C:\Users\Mamasita\AppData\Local\Temp\MB39Daa.exe
C:\Users\Mamasita\AppData\Local\Temp\MBaJpV.exe
C:\Users\Mamasita\AppData\Local\Temp\Mbw7BK8.exe
C:\Users\Mamasita\AppData\Local\Temp\Md2lBh.exe
C:\Users\Mamasita\AppData\Local\Temp\MebV8q8.exe
C:\Users\Mamasita\AppData\Local\Temp\meXWJu.exe
C:\Users\Mamasita\AppData\Local\Temp\mFvyeB.exe
C:\Users\Mamasita\AppData\Local\Temp\mgJXAq.exe
C:\Users\Mamasita\AppData\Local\Temp\mH9mxC.exe
C:\Users\Mamasita\AppData\Local\Temp\mIN4DBP.exe
C:\Users\Mamasita\AppData\Local\Temp\mKuFDgR.exe
C:\Users\Mamasita\AppData\Local\Temp\MkZATgQ.exe
C:\Users\Mamasita\AppData\Local\Temp\mNQE3OP.exe
C:\Users\Mamasita\AppData\Local\Temp\mokVbBg.exe
C:\Users\Mamasita\AppData\Local\Temp\mostC9.exe
C:\Users\Mamasita\AppData\Local\Temp\mPKZw07.exe
C:\Users\Mamasita\AppData\Local\Temp\mpPzvt.exe
C:\Users\Mamasita\AppData\Local\Temp\MPSZmzB.exe
C:\Users\Mamasita\AppData\Local\Temp\MPXSKVB.exe
C:\Users\Mamasita\AppData\Local\Temp\MQ2KhT.exe
C:\Users\Mamasita\AppData\Local\Temp\mqD4uIB.exe
C:\Users\Mamasita\AppData\Local\Temp\MQfE4e.exe
C:\Users\Mamasita\AppData\Local\Temp\mqKifP.exe
C:\Users\Mamasita\AppData\Local\Temp\MRBMmPW.exe
C:\Users\Mamasita\AppData\Local\Temp\mRZqDAu.exe
C:\Users\Mamasita\AppData\Local\Temp\MsHiHFO.exe
C:\Users\Mamasita\AppData\Local\Temp\msUHOo.exe
C:\Users\Mamasita\AppData\Local\Temp\mt7akLG.exe
C:\Users\Mamasita\AppData\Local\Temp\mTKEhqN.exe
C:\Users\Mamasita\AppData\Local\Temp\MUJPOpx.exe
C:\Users\Mamasita\AppData\Local\Temp\mUk1Nx.exe
C:\Users\Mamasita\AppData\Local\Temp\mVVrFRu.exe
C:\Users\Mamasita\AppData\Local\Temp\mvz0H0.exe
C:\Users\Mamasita\AppData\Local\Temp\mWlzHLO.exe
C:\Users\Mamasita\AppData\Local\Temp\mwuPKG.exe
C:\Users\Mamasita\AppData\Local\Temp\mx8BXpd.exe
C:\Users\Mamasita\AppData\Local\Temp\mZa6xqt.exe
C:\Users\Mamasita\AppData\Local\Temp\mzstF1e.exe
C:\Users\Mamasita\AppData\Local\Temp\N0CSR9V.exe
C:\Users\Mamasita\AppData\Local\Temp\n1A6DCt.exe
C:\Users\Mamasita\AppData\Local\Temp\n1VV3FJ.exe
C:\Users\Mamasita\AppData\Local\Temp\n2uuf4.exe
C:\Users\Mamasita\AppData\Local\Temp\N3pr1vH.exe
C:\Users\Mamasita\AppData\Local\Temp\n4ENfHE.exe
C:\Users\Mamasita\AppData\Local\Temp\N4S3tH.exe
C:\Users\Mamasita\AppData\Local\Temp\N5d9O0.exe
C:\Users\Mamasita\AppData\Local\Temp\N6bGXQc.exe
C:\Users\Mamasita\AppData\Local\Temp\N6F8ZB.exe
C:\Users\Mamasita\AppData\Local\Temp\N6PTxcs.exe
C:\Users\Mamasita\AppData\Local\Temp\N6toAOl.exe
C:\Users\Mamasita\AppData\Local\Temp\n7fwmq.exe
C:\Users\Mamasita\AppData\Local\Temp\N8e6aA.exe
C:\Users\Mamasita\AppData\Local\Temp\n9NwpaP.exe
C:\Users\Mamasita\AppData\Local\Temp\N9z056.exe
C:\Users\Mamasita\AppData\Local\Temp\N9Z6UuD.exe
C:\Users\Mamasita\AppData\Local\Temp\nB3ZaI.exe
C:\Users\Mamasita\AppData\Local\Temp\nBEKpu.exe
C:\Users\Mamasita\AppData\Local\Temp\NbKK1M.exe
C:\Users\Mamasita\AppData\Local\Temp\nBlR079.exe
C:\Users\Mamasita\AppData\Local\Temp\NcFz4Zt.exe
C:\Users\Mamasita\AppData\Local\Temp\NDSsRS.exe
C:\Users\Mamasita\AppData\Local\Temp\nefw9Ut.exe
C:\Users\Mamasita\AppData\Local\Temp\nFLh3M.exe
C:\Users\Mamasita\AppData\Local\Temp\NG1TcJ.exe
C:\Users\Mamasita\AppData\Local\Temp\ngSnz1D.exe
C:\Users\Mamasita\AppData\Local\Temp\nGUIOL.exe
C:\Users\Mamasita\AppData\Local\Temp\NgupaVA.exe
C:\Users\Mamasita\AppData\Local\Temp\ni0mgx.exe
C:\Users\Mamasita\AppData\Local\Temp\nICTMB.exe
C:\Users\Mamasita\AppData\Local\Temp\NJAeTmw.exe
C:\Users\Mamasita\AppData\Local\Temp\nJDafCx.exe
C:\Users\Mamasita\AppData\Local\Temp\NJuQeE.exe
C:\Users\Mamasita\AppData\Local\Temp\NKxgtaE.exe
C:\Users\Mamasita\AppData\Local\Temp\nLpuyX.exe
C:\Users\Mamasita\AppData\Local\Temp\NlQiPrd.exe
C:\Users\Mamasita\AppData\Local\Temp\nm2lUT.exe
C:\Users\Mamasita\AppData\Local\Temp\nNSOff.exe
C:\Users\Mamasita\AppData\Local\Temp\NppaXaQ.exe
C:\Users\Mamasita\AppData\Local\Temp\nQ0xh9R.exe
C:\Users\Mamasita\AppData\Local\Temp\nqPh18f.exe
C:\Users\Mamasita\AppData\Local\Temp\nquVwT.exe
C:\Users\Mamasita\AppData\Local\Temp\nsg6A59.exe
C:\Users\Mamasita\AppData\Local\Temp\nsm2D1B.exe
C:\Users\Mamasita\AppData\Local\Temp\nsx86F1.exe
C:\Users\Mamasita\AppData\Local\Temp\nT91gp.exe
C:\Users\Mamasita\AppData\Local\Temp\NtdMi3O.exe
C:\Users\Mamasita\AppData\Local\Temp\ntmXid.exe
C:\Users\Mamasita\AppData\Local\Temp\NtqN1v.exe
C:\Users\Mamasita\AppData\Local\Temp\NTrG4t.exe
C:\Users\Mamasita\AppData\Local\Temp\nuB5P63.exe
C:\Users\Mamasita\AppData\Local\Temp\nUl3ySi.exe
C:\Users\Mamasita\AppData\Local\Temp\nuxGub.exe
C:\Users\Mamasita\AppData\Local\Temp\NVdapSS.exe
C:\Users\Mamasita\AppData\Local\Temp\nvhwfK.exe
C:\Users\Mamasita\AppData\Local\Temp\NWrgPG.exe
C:\Users\Mamasita\AppData\Local\Temp\NXXAuF5.exe
C:\Users\Mamasita\AppData\Local\Temp\o1nEUW.exe
C:\Users\Mamasita\AppData\Local\Temp\o21oPW.exe
C:\Users\Mamasita\AppData\Local\Temp\O4yLJy.exe
C:\Users\Mamasita\AppData\Local\Temp\o6Ig1gB.exe
C:\Users\Mamasita\AppData\Local\Temp\O7R0T9.exe
C:\Users\Mamasita\AppData\Local\Temp\O9EOZTO.exe
C:\Users\Mamasita\AppData\Local\Temp\O9LotJ.exe
C:\Users\Mamasita\AppData\Local\Temp\Oa3yywD.exe
C:\Users\Mamasita\AppData\Local\Temp\OAe2IQ.exe
C:\Users\Mamasita\AppData\Local\Temp\oaNrBS.exe
C:\Users\Mamasita\AppData\Local\Temp\oazIwn.exe
C:\Users\Mamasita\AppData\Local\Temp\oAZMZt.exe
C:\Users\Mamasita\AppData\Local\Temp\oBfLyZ.exe
C:\Users\Mamasita\AppData\Local\Temp\obn6GU.exe
C:\Users\Mamasita\AppData\Local\Temp\Ocr1Sm.exe
C:\Users\Mamasita\AppData\Local\Temp\ocxqXqa.exe
C:\Users\Mamasita\AppData\Local\Temp\odempk5.exe
C:\Users\Mamasita\AppData\Local\Temp\OEcWMSq.exe
C:\Users\Mamasita\AppData\Local\Temp\oeEuDw.exe
C:\Users\Mamasita\AppData\Local\Temp\oefiWZ.exe
C:\Users\Mamasita\AppData\Local\Temp\oeThvD.exe
C:\Users\Mamasita\AppData\Local\Temp\Of4neo.exe
C:\Users\Mamasita\AppData\Local\Temp\oFaBpX.exe
C:\Users\Mamasita\AppData\Local\Temp\oFNIUSo.exe
C:\Users\Mamasita\AppData\Local\Temp\OfOz1tF.exe
C:\Users\Mamasita\AppData\Local\Temp\OFvRgI.exe
C:\Users\Mamasita\AppData\Local\Temp\oFVuXS.exe
C:\Users\Mamasita\AppData\Local\Temp\oggkfaT.exe
C:\Users\Mamasita\AppData\Local\Temp\OgITXV.exe
C:\Users\Mamasita\AppData\Local\Temp\oGpUg4.exe
C:\Users\Mamasita\AppData\Local\Temp\OhSPZp3.exe
C:\Users\Mamasita\AppData\Local\Temp\oidrgkV.exe
C:\Users\Mamasita\AppData\Local\Temp\OIyIM8.exe
C:\Users\Mamasita\AppData\Local\Temp\oJlo1X.exe
C:\Users\Mamasita\AppData\Local\Temp\OkI4CmL.exe
C:\Users\Mamasita\AppData\Local\Temp\OLHC93.exe
C:\Users\Mamasita\AppData\Local\Temp\OLrRFe1.exe
C:\Users\Mamasita\AppData\Local\Temp\olxD0U.exe
C:\Users\Mamasita\AppData\Local\Temp\oMETsG.exe
C:\Users\Mamasita\AppData\Local\Temp\On92RE.exe
C:\Users\Mamasita\AppData\Local\Temp\OP0AMT.exe
C:\Users\Mamasita\AppData\Local\Temp\OP0Vvf.exe
C:\Users\Mamasita\AppData\Local\Temp\op9cSRt.exe
C:\Users\Mamasita\AppData\Local\Temp\oPVi5c.exe
C:\Users\Mamasita\AppData\Local\Temp\oq4lDs.exe
C:\Users\Mamasita\AppData\Local\Temp\OQsHtIN.exe
C:\Users\Mamasita\AppData\Local\Temp\OqubtiT.exe
C:\Users\Mamasita\AppData\Local\Temp\or2n1re.exe
C:\Users\Mamasita\AppData\Local\Temp\ORBGC4u.exe
C:\Users\Mamasita\AppData\Local\Temp\oRcQDac.exe
C:\Users\Mamasita\AppData\Local\Temp\OSaflu.exe
C:\Users\Mamasita\AppData\Local\Temp\oSNqdMm.exe
C:\Users\Mamasita\AppData\Local\Temp\OsSQ6ED.exe
C:\Users\Mamasita\AppData\Local\Temp\oTBnJm.exe
C:\Users\Mamasita\AppData\Local\Temp\OTcD5D.exe
C:\Users\Mamasita\AppData\Local\Temp\OTOGfJ.exe
C:\Users\Mamasita\AppData\Local\Temp\OTPCpE.exe
C:\Users\Mamasita\AppData\Local\Temp\Ou4hBI.exe
C:\Users\Mamasita\AppData\Local\Temp\ouOZnDM.exe
C:\Users\Mamasita\AppData\Local\Temp\oUUbVbv.exe
C:\Users\Mamasita\AppData\Local\Temp\ouvAra.exe
C:\Users\Mamasita\AppData\Local\Temp\OuyPUB.exe
C:\Users\Mamasita\AppData\Local\Temp\ovIrZbU.exe
C:\Users\Mamasita\AppData\Local\Temp\OvpVmvs.exe
C:\Users\Mamasita\AppData\Local\Temp\OysFXDr.exe
C:\Users\Mamasita\AppData\Local\Temp\OzqlOu.exe
C:\Users\Mamasita\AppData\Local\Temp\P0awkG.exe
C:\Users\Mamasita\AppData\Local\Temp\P16GFFN.exe
C:\Users\Mamasita\AppData\Local\Temp\P1Kxc5N.exe
C:\Users\Mamasita\AppData\Local\Temp\p2ma40h.exe
C:\Users\Mamasita\AppData\Local\Temp\p30gf9.exe
C:\Users\Mamasita\AppData\Local\Temp\P3qDBnR.exe
C:\Users\Mamasita\AppData\Local\Temp\p48nz98.exe
C:\Users\Mamasita\AppData\Local\Temp\p4mMhUd.exe
C:\Users\Mamasita\AppData\Local\Temp\p554pl.exe
C:\Users\Mamasita\AppData\Local\Temp\P7pgoo.exe
C:\Users\Mamasita\AppData\Local\Temp\P8KdN15.exe
C:\Users\Mamasita\AppData\Local\Temp\P8s41b.exe
C:\Users\Mamasita\AppData\Local\Temp\p9Inys.exe
C:\Users\Mamasita\AppData\Local\Temp\p9w71a.exe
C:\Users\Mamasita\AppData\Local\Temp\PA9ahip.exe
C:\Users\Mamasita\AppData\Local\Temp\pacyFC.exe
C:\Users\Mamasita\AppData\Local\Temp\pAxUgD.exe
C:\Users\Mamasita\AppData\Local\Temp\pAziOU.exe
C:\Users\Mamasita\AppData\Local\Temp\pazQPA.exe
C:\Users\Mamasita\AppData\Local\Temp\PBa7GZ.exe
C:\Users\Mamasita\AppData\Local\Temp\Pd4kUv.exe
C:\Users\Mamasita\AppData\Local\Temp\pFiJD8G.exe
C:\Users\Mamasita\AppData\Local\Temp\pfKSC3t.exe
C:\Users\Mamasita\AppData\Local\Temp\PfyM1A.exe
C:\Users\Mamasita\AppData\Local\Temp\PhTJLg.exe
C:\Users\Mamasita\AppData\Local\Temp\PJT60mV.exe
C:\Users\Mamasita\AppData\Local\Temp\pKCJu3.exe
C:\Users\Mamasita\AppData\Local\Temp\pKpLZ2.exe
C:\Users\Mamasita\AppData\Local\Temp\Pludgio.exe
C:\Users\Mamasita\AppData\Local\Temp\PMmJaU.exe
C:\Users\Mamasita\AppData\Local\Temp\pmXTy8.exe
C:\Users\Mamasita\AppData\Local\Temp\PNHxwy.exe
C:\Users\Mamasita\AppData\Local\Temp\PnNiMi.exe
C:\Users\Mamasita\AppData\Local\Temp\pOmcyZ.exe
C:\Users\Mamasita\AppData\Local\Temp\PomilUS.exe
C:\Users\Mamasita\AppData\Local\Temp\POxI92a.exe
C:\Users\Mamasita\AppData\Local\Temp\PPIKuT.exe
C:\Users\Mamasita\AppData\Local\Temp\ppJJwS9.exe
C:\Users\Mamasita\AppData\Local\Temp\pPOCkH.exe
C:\Users\Mamasita\AppData\Local\Temp\pPQbFm.exe
C:\Users\Mamasita\AppData\Local\Temp\ppXbTXn.exe
C:\Users\Mamasita\AppData\Local\Temp\Pqe8FpC.exe
C:\Users\Mamasita\AppData\Local\Temp\pqP8rA.exe
C:\Users\Mamasita\AppData\Local\Temp\pquT1a.exe
C:\Users\Mamasita\AppData\Local\Temp\PreferencesJson.exe
C:\Users\Mamasita\AppData\Local\Temp\pt0XIH.exe
C:\Users\Mamasita\AppData\Local\Temp\ptccf3.exe
C:\Users\Mamasita\AppData\Local\Temp\pTmwex7.exe
C:\Users\Mamasita\AppData\Local\Temp\pu42UUS.exe
C:\Users\Mamasita\AppData\Local\Temp\PvsgegE.exe
C:\Users\Mamasita\AppData\Local\Temp\PW6mnnL.exe
C:\Users\Mamasita\AppData\Local\Temp\pwRReU.exe
C:\Users\Mamasita\AppData\Local\Temp\PxsZUpa.exe
C:\Users\Mamasita\AppData\Local\Temp\Pyb8Inz.exe
C:\Users\Mamasita\AppData\Local\Temp\pywVJ7T.exe
C:\Users\Mamasita\AppData\Local\Temp\PzdQ0o.exe
C:\Users\Mamasita\AppData\Local\Temp\pzHBwX.exe
C:\Users\Mamasita\AppData\Local\Temp\Q1ErT1.exe
C:\Users\Mamasita\AppData\Local\Temp\q1TawUp.exe
C:\Users\Mamasita\AppData\Local\Temp\q3eviw9.exe
C:\Users\Mamasita\AppData\Local\Temp\q3RHFy.exe
C:\Users\Mamasita\AppData\Local\Temp\Q3txTRw.exe
C:\Users\Mamasita\AppData\Local\Temp\Q6ZgZE.exe
C:\Users\Mamasita\AppData\Local\Temp\Q8ahWVp.exe
C:\Users\Mamasita\AppData\Local\Temp\q8JxwEm.exe
C:\Users\Mamasita\AppData\Local\Temp\Q8pk8cI.exe
C:\Users\Mamasita\AppData\Local\Temp\q9xdveT.exe
C:\Users\Mamasita\AppData\Local\Temp\qAFyB3.exe
C:\Users\Mamasita\AppData\Local\Temp\QALm56u.exe
C:\Users\Mamasita\AppData\Local\Temp\qAM5yX8.exe
C:\Users\Mamasita\AppData\Local\Temp\QbhKdF.exe
C:\Users\Mamasita\AppData\Local\Temp\QBkypQ5.exe
C:\Users\Mamasita\AppData\Local\Temp\qEvMK6w.exe
C:\Users\Mamasita\AppData\Local\Temp\QFCCC0.exe
C:\Users\Mamasita\AppData\Local\Temp\QGrB60.exe
C:\Users\Mamasita\AppData\Local\Temp\qh6sXF.exe
C:\Users\Mamasita\AppData\Local\Temp\qHhOHZ.exe
C:\Users\Mamasita\AppData\Local\Temp\QhW3raD.exe
C:\Users\Mamasita\AppData\Local\Temp\Qkmvuw0.exe
C:\Users\Mamasita\AppData\Local\Temp\QlUZKbT.exe
C:\Users\Mamasita\AppData\Local\Temp\QLyOwBb.exe
C:\Users\Mamasita\AppData\Local\Temp\QLzzRpn.exe
C:\Users\Mamasita\AppData\Local\Temp\qMxkXsB.exe
C:\Users\Mamasita\AppData\Local\Temp\qNPud1.exe
C:\Users\Mamasita\AppData\Local\Temp\qOOTVA.exe
C:\Users\Mamasita\AppData\Local\Temp\qoQCL32.exe
C:\Users\Mamasita\AppData\Local\Temp\Qou2Vv.exe
C:\Users\Mamasita\AppData\Local\Temp\qQkIEl.exe
C:\Users\Mamasita\AppData\Local\Temp\QriLRX.exe
C:\Users\Mamasita\AppData\Local\Temp\QRLnreT.exe
C:\Users\Mamasita\AppData\Local\Temp\QrRV7N0.exe
C:\Users\Mamasita\AppData\Local\Temp\QS4ggno.exe
C:\Users\Mamasita\AppData\Local\Temp\QSKONSi.exe
C:\Users\Mamasita\AppData\Local\Temp\qT1i7C.exe
C:\Users\Mamasita\AppData\Local\Temp\QT8DL1.exe
C:\Users\Mamasita\AppData\Local\Temp\qTBSnp.exe
C:\Users\Mamasita\AppData\Local\Temp\QTCsbqb.exe
C:\Users\Mamasita\AppData\Local\Temp\QTFtbg.exe
C:\Users\Mamasita\AppData\Local\Temp\QtJ3Jw.exe
C:\Users\Mamasita\AppData\Local\Temp\QtSyOo.exe
C:\Users\Mamasita\AppData\Local\Temp\QtZZDZa.exe
C:\Users\Mamasita\AppData\Local\Temp\QuxsKLd.exe
C:\Users\Mamasita\AppData\Local\Temp\QvATH64.exe
C:\Users\Mamasita\AppData\Local\Temp\qVfhfd.exe
C:\Users\Mamasita\AppData\Local\Temp\qvHUqAi.exe
C:\Users\Mamasita\AppData\Local\Temp\Qw3TlIR.exe
C:\Users\Mamasita\AppData\Local\Temp\Qx3rJd.exe
C:\Users\Mamasita\AppData\Local\Temp\QxltgJ.exe
C:\Users\Mamasita\AppData\Local\Temp\Qy36Te.exe
C:\Users\Mamasita\AppData\Local\Temp\QyEiR3t.exe
C:\Users\Mamasita\AppData\Local\Temp\QZK4Ou.exe
C:\Users\Mamasita\AppData\Local\Temp\QZN1ltV.exe
C:\Users\Mamasita\AppData\Local\Temp\R0dJlG.exe
C:\Users\Mamasita\AppData\Local\Temp\R0Qqt0.exe
C:\Users\Mamasita\AppData\Local\Temp\R13Hsy.exe
C:\Users\Mamasita\AppData\Local\Temp\R1sgGN.exe
C:\Users\Mamasita\AppData\Local\Temp\R2UyFG.exe
C:\Users\Mamasita\AppData\Local\Temp\R6BeUI.exe
C:\Users\Mamasita\AppData\Local\Temp\r7aTia.exe
C:\Users\Mamasita\AppData\Local\Temp\R7bVFKw.exe
C:\Users\Mamasita\AppData\Local\Temp\R7leJgO.exe
C:\Users\Mamasita\AppData\Local\Temp\R7qZw4.exe
C:\Users\Mamasita\AppData\Local\Temp\r7xffz.exe
C:\Users\Mamasita\AppData\Local\Temp\rAF1iHW.exe
C:\Users\Mamasita\AppData\Local\Temp\RaqKRx8.exe
C:\Users\Mamasita\AppData\Local\Temp\RbAn73.exe
C:\Users\Mamasita\AppData\Local\Temp\RbI7vJ.exe
C:\Users\Mamasita\AppData\Local\Temp\RDTr7vL.exe
C:\Users\Mamasita\AppData\Local\Temp\rdZXNJt.exe
C:\Users\Mamasita\AppData\Local\Temp\ReBcEFW.exe
C:\Users\Mamasita\AppData\Local\Temp\renRCkh.exe
C:\Users\Mamasita\AppData\Local\Temp\RfFT8Mv.exe
C:\Users\Mamasita\AppData\Local\Temp\RfpR9qe.exe
C:\Users\Mamasita\AppData\Local\Temp\RfTnle.exe
C:\Users\Mamasita\AppData\Local\Temp\RgDTvn.exe
C:\Users\Mamasita\AppData\Local\Temp\RggsRXM.exe
C:\Users\Mamasita\AppData\Local\Temp\RhdT6W.exe
C:\Users\Mamasita\AppData\Local\Temp\RHKDm8.exe
C:\Users\Mamasita\AppData\Local\Temp\RHrwLIb.exe
C:\Users\Mamasita\AppData\Local\Temp\rHXCag.exe
C:\Users\Mamasita\AppData\Local\Temp\rhXoK9.exe
C:\Users\Mamasita\AppData\Local\Temp\RIeCtNU.exe
C:\Users\Mamasita\AppData\Local\Temp\RiFqHR.exe
C:\Users\Mamasita\AppData\Local\Temp\rihW7a.exe
C:\Users\Mamasita\AppData\Local\Temp\rIwsXsU.exe
C:\Users\Mamasita\AppData\Local\Temp\rK1Ngx.exe
C:\Users\Mamasita\AppData\Local\Temp\rKFtzV.exe
C:\Users\Mamasita\AppData\Local\Temp\RKkTSr5.exe
C:\Users\Mamasita\AppData\Local\Temp\RkwqOK.exe
C:\Users\Mamasita\AppData\Local\Temp\rL4JGcm.exe
C:\Users\Mamasita\AppData\Local\Temp\RllGLTA.exe
C:\Users\Mamasita\AppData\Local\Temp\rmB4SUK.exe
C:\Users\Mamasita\AppData\Local\Temp\RMXrGT.exe
C:\Users\Mamasita\AppData\Local\Temp\rn33aSm.exe
C:\Users\Mamasita\AppData\Local\Temp\RnCTDR.exe
C:\Users\Mamasita\AppData\Local\Temp\RNiXDlS.exe
C:\Users\Mamasita\AppData\Local\Temp\rNKrhO.exe
C:\Users\Mamasita\AppData\Local\Temp\RO4c0yU.exe
C:\Users\Mamasita\AppData\Local\Temp\RP8Pf9.exe
C:\Users\Mamasita\AppData\Local\Temp\RQHHsNl.exe
C:\Users\Mamasita\AppData\Local\Temp\Rs9E5e.exe
C:\Users\Mamasita\AppData\Local\Temp\RsFwmk.exe
C:\Users\Mamasita\AppData\Local\Temp\rsTy0HM.exe
C:\Users\Mamasita\AppData\Local\Temp\rtLOiN3.exe
C:\Users\Mamasita\AppData\Local\Temp\RTSzRWy.exe
C:\Users\Mamasita\AppData\Local\Temp\rUBp9Rw.exe
C:\Users\Mamasita\AppData\Local\Temp\rvTNl3.exe
C:\Users\Mamasita\AppData\Local\Temp\rXOual.exe
C:\Users\Mamasita\AppData\Local\Temp\rXwqE7b.exe
C:\Users\Mamasita\AppData\Local\Temp\ry8TtW9.exe
C:\Users\Mamasita\AppData\Local\Temp\ryEbwZi.exe
C:\Users\Mamasita\AppData\Local\Temp\rz9DBU1.exe
C:\Users\Mamasita\AppData\Local\Temp\RzcK6qc.exe
C:\Users\Mamasita\AppData\Local\Temp\rZV0IMP.exe
C:\Users\Mamasita\AppData\Local\Temp\s1BRZx.exe
C:\Users\Mamasita\AppData\Local\Temp\s1T0vTJ.exe
C:\Users\Mamasita\AppData\Local\Temp\S2Iief.exe
C:\Users\Mamasita\AppData\Local\Temp\S2tVZLg.exe
C:\Users\Mamasita\AppData\Local\Temp\s40TB5.exe
C:\Users\Mamasita\AppData\Local\Temp\S46B6U.exe
C:\Users\Mamasita\AppData\Local\Temp\S4nsI78.exe
C:\Users\Mamasita\AppData\Local\Temp\s6xmVsf.exe
C:\Users\Mamasita\AppData\Local\Temp\s9QWATo.exe
C:\Users\Mamasita\AppData\Local\Temp\SaCTz2.exe
C:\Users\Mamasita\AppData\Local\Temp\SaHDbDg.exe
C:\Users\Mamasita\AppData\Local\Temp\Sbfty5.exe
C:\Users\Mamasita\AppData\Local\Temp\SbNx8p.exe
C:\Users\Mamasita\AppData\Local\Temp\sC7bKo.exe
C:\Users\Mamasita\AppData\Local\Temp\sCpiQb.exe
C:\Users\Mamasita\AppData\Local\Temp\ScwrtAU.exe
C:\Users\Mamasita\AppData\Local\Temp\SDc7oC.exe
C:\Users\Mamasita\AppData\Local\Temp\SDfn3I.exe
C:\Users\Mamasita\AppData\Local\Temp\sDTEDtM.exe
C:\Users\Mamasita\AppData\Local\Temp\SdUQi3.exe
C:\Users\Mamasita\AppData\Local\Temp\SF3ge3W.exe
C:\Users\Mamasita\AppData\Local\Temp\SfqEau.exe
C:\Users\Mamasita\AppData\Local\Temp\SFtTOV.exe
C:\Users\Mamasita\AppData\Local\Temp\sFvtpKC.exe
C:\Users\Mamasita\AppData\Local\Temp\SgBdFN.exe
C:\Users\Mamasita\AppData\Local\Temp\SgmiV0C.exe
C:\Users\Mamasita\AppData\Local\Temp\sGNDfK.exe
C:\Users\Mamasita\AppData\Local\Temp\Sh1o9sN.exe
C:\Users\Mamasita\AppData\Local\Temp\Sh5IBsK.exe
C:\Users\Mamasita\AppData\Local\Temp\ShgyXgF.exe
C:\Users\Mamasita\AppData\Local\Temp\ShmiIT.exe
C:\Users\Mamasita\AppData\Local\Temp\sI3sxsE.exe
C:\Users\Mamasita\AppData\Local\Temp\SifuM3g.exe
C:\Users\Mamasita\AppData\Local\Temp\SiRsTz6.exe
C:\Users\Mamasita\AppData\Local\Temp\sIwXB5.exe
C:\Users\Mamasita\AppData\Local\Temp\sknFOB.exe
C:\Users\Mamasita\AppData\Local\Temp\sL0BUvq.exe
C:\Users\Mamasita\AppData\Local\Temp\SlCGg2B.exe
C:\Users\Mamasita\AppData\Local\Temp\SmCnms.exe
C:\Users\Mamasita\AppData\Local\Temp\sN4B2P.exe
C:\Users\Mamasita\AppData\Local\Temp\SNWXfab.exe
C:\Users\Mamasita\AppData\Local\Temp\sO2kZo.exe
C:\Users\Mamasita\AppData\Local\Temp\sO86Tu.exe
C:\Users\Mamasita\AppData\Local\Temp\SoFJQcD.exe
C:\Users\Mamasita\AppData\Local\Temp\sOmW87U.exe
C:\Users\Mamasita\AppData\Local\Temp\SoyCkC.exe
C:\Users\Mamasita\AppData\Local\Temp\SPzmHTM.exe
C:\Users\Mamasita\AppData\Local\Temp\Sq70VcJ.exe
C:\Users\Mamasita\AppData\Local\Temp\SQb4tM.exe
C:\Users\Mamasita\AppData\Local\Temp\SQiNaV.exe
C:\Users\Mamasita\AppData\Local\Temp\sqlite3.exe
C:\Users\Mamasita\AppData\Local\Temp\sQUkin.exe
C:\Users\Mamasita\AppData\Local\Temp\sR3ig4e.exe
C:\Users\Mamasita\AppData\Local\Temp\sRtIAI.exe
C:\Users\Mamasita\AppData\Local\Temp\ssyGwWK.exe
C:\Users\Mamasita\AppData\Local\Temp\SsZITP.exe
C:\Users\Mamasita\AppData\Local\Temp\ST0pyDe.exe
C:\Users\Mamasita\AppData\Local\Temp\SteanA.exe
C:\Users\Mamasita\AppData\Local\Temp\STMquJ.exe
C:\Users\Mamasita\AppData\Local\Temp\stRf71O.exe
C:\Users\Mamasita\AppData\Local\Temp\STSoUT.exe
C:\Users\Mamasita\AppData\Local\Temp\sTTgCT4.exe
C:\Users\Mamasita\AppData\Local\Temp\sTyWsU0.exe
C:\Users\Mamasita\AppData\Local\Temp\STZsb4S.exe
C:\Users\Mamasita\AppData\Local\Temp\svL77gf.exe
C:\Users\Mamasita\AppData\Local\Temp\SvR8Pu8.exe
C:\Users\Mamasita\AppData\Local\Temp\swDR40n.exe
C:\Users\Mamasita\AppData\Local\Temp\SwGAXt.exe
C:\Users\Mamasita\AppData\Local\Temp\Sy8aSO.exe
C:\Users\Mamasita\AppData\Local\Temp\syZc7RQ.exe
C:\Users\Mamasita\AppData\Local\Temp\sZEdvJ.exe
C:\Users\Mamasita\AppData\Local\Temp\sZinEHX.exe
C:\Users\Mamasita\AppData\Local\Temp\szMUOza.exe
C:\Users\Mamasita\AppData\Local\Temp\SzPTGtv.exe
C:\Users\Mamasita\AppData\Local\Temp\T0ghyv.exe
C:\Users\Mamasita\AppData\Local\Temp\T0kSn9.exe
C:\Users\Mamasita\AppData\Local\Temp\T2EkpVb.exe
C:\Users\Mamasita\AppData\Local\Temp\T3dwfF.exe
C:\Users\Mamasita\AppData\Local\Temp\t3EvfD.exe
C:\Users\Mamasita\AppData\Local\Temp\T3qs7q.exe
C:\Users\Mamasita\AppData\Local\Temp\t3yoP2.exe
C:\Users\Mamasita\AppData\Local\Temp\t4NEsy.exe
C:\Users\Mamasita\AppData\Local\Temp\t63ixU.exe
C:\Users\Mamasita\AppData\Local\Temp\t6Nrbh.exe
C:\Users\Mamasita\AppData\Local\Temp\t6yJJK1.exe
C:\Users\Mamasita\AppData\Local\Temp\t72Rs7.exe
C:\Users\Mamasita\AppData\Local\Temp\T7flzf.exe
C:\Users\Mamasita\AppData\Local\Temp\T7MucT.exe
C:\Users\Mamasita\AppData\Local\Temp\T7VXDm.exe
C:\Users\Mamasita\AppData\Local\Temp\t8cMXu.exe
C:\Users\Mamasita\AppData\Local\Temp\TA3R4a.exe
C:\Users\Mamasita\AppData\Local\Temp\TAE5I4F.exe
C:\Users\Mamasita\AppData\Local\Temp\Tat7mec.exe
C:\Users\Mamasita\AppData\Local\Temp\TbKKupR.exe
C:\Users\Mamasita\AppData\Local\Temp\TcM9WC.exe
C:\Users\Mamasita\AppData\Local\Temp\tcnZbp.exe
C:\Users\Mamasita\AppData\Local\Temp\TCQGg7X.exe
C:\Users\Mamasita\AppData\Local\Temp\TdecUS.exe
C:\Users\Mamasita\AppData\Local\Temp\Tfplqy.exe
C:\Users\Mamasita\AppData\Local\Temp\tfxK3oA.exe
C:\Users\Mamasita\AppData\Local\Temp\tGRdSO.exe
C:\Users\Mamasita\AppData\Local\Temp\TgSPd4.exe
C:\Users\Mamasita\AppData\Local\Temp\ThEPTC.exe
C:\Users\Mamasita\AppData\Local\Temp\ThQFxo.exe
C:\Users\Mamasita\AppData\Local\Temp\tHUlp1.exe
C:\Users\Mamasita\AppData\Local\Temp\titSrx.exe
C:\Users\Mamasita\AppData\Local\Temp\tJNAvd.exe
C:\Users\Mamasita\AppData\Local\Temp\tJntTNL.exe
C:\Users\Mamasita\AppData\Local\Temp\TK0uZGB.exe
C:\Users\Mamasita\AppData\Local\Temp\tKI628.exe
C:\Users\Mamasita\AppData\Local\Temp\tKN10H.exe
C:\Users\Mamasita\AppData\Local\Temp\tKO1fg8.exe
C:\Users\Mamasita\AppData\Local\Temp\TKTSIF.exe
C:\Users\Mamasita\AppData\Local\Temp\TL7Lm7B.exe
C:\Users\Mamasita\AppData\Local\Temp\tLawcDD.exe
C:\Users\Mamasita\AppData\Local\Temp\TlFTf3.exe
C:\Users\Mamasita\AppData\Local\Temp\TLkROMt.exe
C:\Users\Mamasita\AppData\Local\Temp\tloZA3Q.exe
C:\Users\Mamasita\AppData\Local\Temp\tlybE9.exe
C:\Users\Mamasita\AppData\Local\Temp\TmdvFm.exe
C:\Users\Mamasita\AppData\Local\Temp\Tn5ISB.exe
C:\Users\Mamasita\AppData\Local\Temp\tnG3cE.exe
C:\Users\Mamasita\AppData\Local\Temp\to6037O.exe
C:\Users\Mamasita\AppData\Local\Temp\TobiTZ.exe
C:\Users\Mamasita\AppData\Local\Temp\ToMXSOW.exe
C:\Users\Mamasita\AppData\Local\Temp\ToolbarHelper.exe
C:\Users\Mamasita\AppData\Local\Temp\TpBHQ5g.exe
C:\Users\Mamasita\AppData\Local\Temp\TpO18wU.exe
C:\Users\Mamasita\AppData\Local\Temp\TpViXIN.exe
C:\Users\Mamasita\AppData\Local\Temp\tpXZaFf.exe
C:\Users\Mamasita\AppData\Local\Temp\Tq4ZBT.exe
C:\Users\Mamasita\AppData\Local\Temp\TQvPaO.exe
C:\Users\Mamasita\AppData\Local\Temp\trGo3I.exe
C:\Users\Mamasita\AppData\Local\Temp\tSZgc4E.exe
C:\Users\Mamasita\AppData\Local\Temp\tT0Ccwb.exe
C:\Users\Mamasita\AppData\Local\Temp\TT9qQM.exe
C:\Users\Mamasita\AppData\Local\Temp\TTfnLA.exe
C:\Users\Mamasita\AppData\Local\Temp\tTMFOq0.exe
C:\Users\Mamasita\AppData\Local\Temp\TTmTFnn.exe
C:\Users\Mamasita\AppData\Local\Temp\TtNg6K.exe
C:\Users\Mamasita\AppData\Local\Temp\tuEnmGk.exe
C:\Users\Mamasita\AppData\Local\Temp\TUnUGTr.exe
C:\Users\Mamasita\AppData\Local\Temp\Tv5BCuy.exe
C:\Users\Mamasita\AppData\Local\Temp\TViOApu.exe
C:\Users\Mamasita\AppData\Local\Temp\tVnRJF.exe
C:\Users\Mamasita\AppData\Local\Temp\TvZWbGa.exe
C:\Users\Mamasita\AppData\Local\Temp\tW2WLI.exe
C:\Users\Mamasita\AppData\Local\Temp\Tw4LD2.exe
C:\Users\Mamasita\AppData\Local\Temp\TwCmIza.exe
C:\Users\Mamasita\AppData\Local\Temp\TwQKTZ.exe
C:\Users\Mamasita\AppData\Local\Temp\twVHqhN.exe
C:\Users\Mamasita\AppData\Local\Temp\TWvJGKn.exe
C:\Users\Mamasita\AppData\Local\Temp\TwxoaVr.exe
C:\Users\Mamasita\AppData\Local\Temp\Tx2cHp.exe
C:\Users\Mamasita\AppData\Local\Temp\TXh9EO7.exe
C:\Users\Mamasita\AppData\Local\Temp\tXUguN6.exe
C:\Users\Mamasita\AppData\Local\Temp\TybnEK.exe
C:\Users\Mamasita\AppData\Local\Temp\Tydy6sk.exe
C:\Users\Mamasita\AppData\Local\Temp\TyGrwW.exe
C:\Users\Mamasita\AppData\Local\Temp\TyGwcZ4.exe
C:\Users\Mamasita\AppData\Local\Temp\TzV7LB.exe
C:\Users\Mamasita\AppData\Local\Temp\tZVAm4.exe
C:\Users\Mamasita\AppData\Local\Temp\TzzJdu.exe
C:\Users\Mamasita\AppData\Local\Temp\U0x7mzu.exe
C:\Users\Mamasita\AppData\Local\Temp\u18mfG.exe
C:\Users\Mamasita\AppData\Local\Temp\u1WNwUX.exe
C:\Users\Mamasita\AppData\Local\Temp\U2kqOqq.exe
C:\Users\Mamasita\AppData\Local\Temp\u39kSC2.exe
C:\Users\Mamasita\AppData\Local\Temp\u5yneB.exe
C:\Users\Mamasita\AppData\Local\Temp\u5Zx2s.exe
C:\Users\Mamasita\AppData\Local\Temp\u6JuAl.exe
C:\Users\Mamasita\AppData\Local\Temp\u6vR9h.exe
C:\Users\Mamasita\AppData\Local\Temp\U8Tk21.exe
C:\Users\Mamasita\AppData\Local\Temp\U97cEia.exe
C:\Users\Mamasita\AppData\Local\Temp\UAI1Wy.exe
C:\Users\Mamasita\AppData\Local\Temp\Ub16pq5.exe
C:\Users\Mamasita\AppData\Local\Temp\Uca3IP.exe
C:\Users\Mamasita\AppData\Local\Temp\uCLiTDC.exe
C:\Users\Mamasita\AppData\Local\Temp\ud75b8.exe
C:\Users\Mamasita\AppData\Local\Temp\udBXZh.exe
C:\Users\Mamasita\AppData\Local\Temp\uDGKZIy.exe
C:\Users\Mamasita\AppData\Local\Temp\UdJZKN.exe
C:\Users\Mamasita\AppData\Local\Temp\uE4cZg.exe
C:\Users\Mamasita\AppData\Local\Temp\UEaw62S.exe
C:\Users\Mamasita\AppData\Local\Temp\ueHg3SJ.exe
C:\Users\Mamasita\AppData\Local\Temp\UeoHyB7.exe
C:\Users\Mamasita\AppData\Local\Temp\Uf3g3B.exe
C:\Users\Mamasita\AppData\Local\Temp\uFTM5J9.exe
C:\Users\Mamasita\AppData\Local\Temp\UG1FTN.exe
C:\Users\Mamasita\AppData\Local\Temp\UgdpqGU.exe
C:\Users\Mamasita\AppData\Local\Temp\uhZXp5.exe
C:\Users\Mamasita\AppData\Local\Temp\Ui2KbEd.exe
C:\Users\Mamasita\AppData\Local\Temp\uJ2EH5Q.exe
C:\Users\Mamasita\AppData\Local\Temp\uJDmpxk.exe
C:\Users\Mamasita\AppData\Local\Temp\uk3pZDV.exe
C:\Users\Mamasita\AppData\Local\Temp\UKBMZ4.exe
C:\Users\Mamasita\AppData\Local\Temp\uktFgl.exe
C:\Users\Mamasita\AppData\Local\Temp\uLCPBps.exe
C:\Users\Mamasita\AppData\Local\Temp\uLgR4tp.exe
C:\Users\Mamasita\AppData\Local\Temp\Ulmt5F.exe
C:\Users\Mamasita\AppData\Local\Temp\ULsClK.exe
C:\Users\Mamasita\AppData\Local\Temp\uLyTPAn.exe
C:\Users\Mamasita\AppData\Local\Temp\uMrqOnT.exe
C:\Users\Mamasita\AppData\Local\Temp\UN1asM.exe
C:\Users\Mamasita\AppData\Local\Temp\uPh5C9.exe
C:\Users\Mamasita\AppData\Local\Temp\UpMNwB.exe
C:\Users\Mamasita\AppData\Local\Temp\uPUnmXG.exe
C:\Users\Mamasita\AppData\Local\Temp\UQ2x54.exe
C:\Users\Mamasita\AppData\Local\Temp\UQD4Svl.exe
C:\Users\Mamasita\AppData\Local\Temp\UQrav4T.exe
C:\Users\Mamasita\AppData\Local\Temp\uQV9UGJ.exe
C:\Users\Mamasita\AppData\Local\Temp\uqxcib.exe
C:\Users\Mamasita\AppData\Local\Temp\uRAqWnX.exe
C:\Users\Mamasita\AppData\Local\Temp\URlr4I.exe
C:\Users\Mamasita\AppData\Local\Temp\USGkLyy.exe
C:\Users\Mamasita\AppData\Local\Temp\UskvaB.exe
C:\Users\Mamasita\AppData\Local\Temp\usLkHd.exe
C:\Users\Mamasita\AppData\Local\Temp\uSREr5.exe
C:\Users\Mamasita\AppData\Local\Temp\uszfMp.exe
C:\Users\Mamasita\AppData\Local\Temp\utbS4l.exe
C:\Users\Mamasita\AppData\Local\Temp\UtkN0vH.exe
C:\Users\Mamasita\AppData\Local\Temp\uTLqK2.exe
C:\Users\Mamasita\AppData\Local\Temp\uTMvtAw.exe
C:\Users\Mamasita\AppData\Local\Temp\UTu7LCT.exe
C:\Users\Mamasita\AppData\Local\Temp\UuzeSI.exe
C:\Users\Mamasita\AppData\Local\Temp\Uv09in.exe
C:\Users\Mamasita\AppData\Local\Temp\uVZIbK.exe
C:\Users\Mamasita\AppData\Local\Temp\uwozWNe.exe
C:\Users\Mamasita\AppData\Local\Temp\UXphsLM.exe
C:\Users\Mamasita\AppData\Local\Temp\uyz3Rm.exe
C:\Users\Mamasita\AppData\Local\Temp\UzcLgSU.exe
C:\Users\Mamasita\AppData\Local\Temp\UZJbIqP.exe
C:\Users\Mamasita\AppData\Local\Temp\UZOkTn.exe
C:\Users\Mamasita\AppData\Local\Temp\uZPTvL.exe
C:\Users\Mamasita\AppData\Local\Temp\V19PkpE.exe
C:\Users\Mamasita\AppData\Local\Temp\v22DI9X.exe
C:\Users\Mamasita\AppData\Local\Temp\v4VLkWD.exe
C:\Users\Mamasita\AppData\Local\Temp\V8d3wT3.exe
C:\Users\Mamasita\AppData\Local\Temp\V8P22E8.exe
C:\Users\Mamasita\AppData\Local\Temp\v8ygXt.exe
C:\Users\Mamasita\AppData\Local\Temp\v91a9DI.exe
C:\Users\Mamasita\AppData\Local\Temp\V9BAC3u.exe
C:\Users\Mamasita\AppData\Local\Temp\VClbs9.exe
C:\Users\Mamasita\AppData\Local\Temp\vCtIbTb.exe
C:\Users\Mamasita\AppData\Local\Temp\VCX49dd.exe
C:\Users\Mamasita\AppData\Local\Temp\vdF9Jn.exe
C:\Users\Mamasita\AppData\Local\Temp\vDFmpRP.exe
C:\Users\Mamasita\AppData\Local\Temp\vDRMeM.exe
C:\Users\Mamasita\AppData\Local\Temp\VDRZo4.exe
C:\Users\Mamasita\AppData\Local\Temp\vFdlFe.exe
C:\Users\Mamasita\AppData\Local\Temp\VFhmTWr.exe
C:\Users\Mamasita\AppData\Local\Temp\VfHrpx.exe
C:\Users\Mamasita\AppData\Local\Temp\vfVOGFx.exe
C:\Users\Mamasita\AppData\Local\Temp\vGUB7n.exe
C:\Users\Mamasita\AppData\Local\Temp\VH4X8s6.exe
C:\Users\Mamasita\AppData\Local\Temp\VIBCcf.exe
C:\Users\Mamasita\AppData\Local\Temp\viLhv8v.exe
C:\Users\Mamasita\AppData\Local\Temp\VIsPgs.exe
C:\Users\Mamasita\AppData\Local\Temp\vJ8msa.exe
C:\Users\Mamasita\AppData\Local\Temp\vJTrd2U.exe
C:\Users\Mamasita\AppData\Local\Temp\vJwsi3b.exe
C:\Users\Mamasita\AppData\Local\Temp\vkksvqb.exe
C:\Users\Mamasita\AppData\Local\Temp\vkULsX.exe
C:\Users\Mamasita\AppData\Local\Temp\vL1lSHw.exe
C:\Users\Mamasita\AppData\Local\Temp\VLKz0TR.exe
C:\Users\Mamasita\AppData\Local\Temp\Vlrwyr.exe
C:\Users\Mamasita\AppData\Local\Temp\vmohAD.exe
C:\Users\Mamasita\AppData\Local\Temp\vN2rck.exe
C:\Users\Mamasita\AppData\Local\Temp\VNAV0G.exe
C:\Users\Mamasita\AppData\Local\Temp\vNGz78L.exe
C:\Users\Mamasita\AppData\Local\Temp\vP4bCT.exe
C:\Users\Mamasita\AppData\Local\Temp\vpI1So.exe
C:\Users\Mamasita\AppData\Local\Temp\VpXaff.exe
C:\Users\Mamasita\AppData\Local\Temp\VqHDiy.exe
C:\Users\Mamasita\AppData\Local\Temp\vqsCJz.exe
C:\Users\Mamasita\AppData\Local\Temp\VRfDri.exe
C:\Users\Mamasita\AppData\Local\Temp\Vrqsww.exe
C:\Users\Mamasita\AppData\Local\Temp\VrXcByG.exe
C:\Users\Mamasita\AppData\Local\Temp\VscuCrT.exe
C:\Users\Mamasita\AppData\Local\Temp\vSH12G.exe
C:\Users\Mamasita\AppData\Local\Temp\vtneOtd.exe
C:\Users\Mamasita\AppData\Local\Temp\Vu0tf7.exe
C:\Users\Mamasita\AppData\Local\Temp\vvAiyR.exe
C:\Users\Mamasita\AppData\Local\Temp\vVrNd0.exe
C:\Users\Mamasita\AppData\Local\Temp\vvrwQZ4.exe
C:\Users\Mamasita\AppData\Local\Temp\VVZOwpR.exe
C:\Users\Mamasita\AppData\Local\Temp\vxGpAB0.exe
C:\Users\Mamasita\AppData\Local\Temp\VXQG1g.exe
C:\Users\Mamasita\AppData\Local\Temp\vZ5FcJg.exe
C:\Users\Mamasita\AppData\Local\Temp\VzAQnh9.exe
C:\Users\Mamasita\AppData\Local\Temp\vZxrNTp.exe
C:\Users\Mamasita\AppData\Local\Temp\W0GOPP.exe
C:\Users\Mamasita\AppData\Local\Temp\W1zG8Fb.exe
C:\Users\Mamasita\AppData\Local\Temp\w2I5hKX.exe
C:\Users\Mamasita\AppData\Local\Temp\w2KsfAR.exe
C:\Users\Mamasita\AppData\Local\Temp\W39DaK.exe
C:\Users\Mamasita\AppData\Local\Temp\w4vsiZ.exe
C:\Users\Mamasita\AppData\Local\Temp\W5fDJa.exe
C:\Users\Mamasita\AppData\Local\Temp\w9xghnT.exe
C:\Users\Mamasita\AppData\Local\Temp\wAliDJQ.exe
C:\Users\Mamasita\AppData\Local\Temp\wcq3Ph.exe
C:\Users\Mamasita\AppData\Local\Temp\wCQAlbH.exe
C:\Users\Mamasita\AppData\Local\Temp\We9eHvq.exe
C:\Users\Mamasita\AppData\Local\Temp\WEFbbG8.exe
C:\Users\Mamasita\AppData\Local\Temp\wEq9TS.exe
C:\Users\Mamasita\AppData\Local\Temp\Wfi0r0.exe
C:\Users\Mamasita\AppData\Local\Temp\WfxyF8s.exe
C:\Users\Mamasita\AppData\Local\Temp\wG8Tfg.exe
C:\Users\Mamasita\AppData\Local\Temp\wgndaiZ.exe
C:\Users\Mamasita\AppData\Local\Temp\WH0798.exe
C:\Users\Mamasita\AppData\Local\Temp\wh20kqU.exe
C:\Users\Mamasita\AppData\Local\Temp\WH5w00.exe
C:\Users\Mamasita\AppData\Local\Temp\WhlHUc.exe
C:\Users\Mamasita\AppData\Local\Temp\wHx7JBJ.exe
C:\Users\Mamasita\AppData\Local\Temp\WI7e1q.exe
C:\Users\Mamasita\AppData\Local\Temp\WiXxGeA.exe
C:\Users\Mamasita\AppData\Local\Temp\WKRfs0N.exe
C:\Users\Mamasita\AppData\Local\Temp\wKToLH.exe
C:\Users\Mamasita\AppData\Local\Temp\WKU6vVZ.exe
C:\Users\Mamasita\AppData\Local\Temp\wl1AO89.exe
C:\Users\Mamasita\AppData\Local\Temp\WlKzthT.exe
C:\Users\Mamasita\AppData\Local\Temp\WlNZg6u.exe
C:\Users\Mamasita\AppData\Local\Temp\Wmgcex.exe
C:\Users\Mamasita\AppData\Local\Temp\WmSBeFO.exe
C:\Users\Mamasita\AppData\Local\Temp\wmtKwn.exe
C:\Users\Mamasita\AppData\Local\Temp\Wn6EZN.exe
C:\Users\Mamasita\AppData\Local\Temp\wNSx9w.exe
C:\Users\Mamasita\AppData\Local\Temp\WOXFEt.exe
C:\Users\Mamasita\AppData\Local\Temp\WpHRpF.exe
C:\Users\Mamasita\AppData\Local\Temp\wPMlQ3O.exe
C:\Users\Mamasita\AppData\Local\Temp\wQDrw7.exe
C:\Users\Mamasita\AppData\Local\Temp\wqR9oJU.exe
C:\Users\Mamasita\AppData\Local\Temp\WrFyy1H.exe
C:\Users\Mamasita\AppData\Local\Temp\WtlSQKt.exe
C:\Users\Mamasita\AppData\Local\Temp\WtVLvg.exe
C:\Users\Mamasita\AppData\Local\Temp\WUNEZiw.exe
C:\Users\Mamasita\AppData\Local\Temp\WvHNEz.exe
C:\Users\Mamasita\AppData\Local\Temp\WvOAmE.exe
C:\Users\Mamasita\AppData\Local\Temp\Ww7aAF.exe
C:\Users\Mamasita\AppData\Local\Temp\WwdrudH.exe
C:\Users\Mamasita\AppData\Local\Temp\wwzkG8L.exe
C:\Users\Mamasita\AppData\Local\Temp\WX0Zbe.exe
C:\Users\Mamasita\AppData\Local\Temp\WXoNpI.exe
C:\Users\Mamasita\AppData\Local\Temp\wyDLTtN.exe
C:\Users\Mamasita\AppData\Local\Temp\wZdhPV.exe
C:\Users\Mamasita\AppData\Local\Temp\wZwHqh.exe
C:\Users\Mamasita\AppData\Local\Temp\x19dKnm.exe
C:\Users\Mamasita\AppData\Local\Temp\X1fn1P.exe
C:\Users\Mamasita\AppData\Local\Temp\X1qbAv.exe
C:\Users\Mamasita\AppData\Local\Temp\x2MwIox.exe
C:\Users\Mamasita\AppData\Local\Temp\X2T7AOD.exe
C:\Users\Mamasita\AppData\Local\Temp\X4dAQ6.exe
C:\Users\Mamasita\AppData\Local\Temp\x4v5ry.exe
C:\Users\Mamasita\AppData\Local\Temp\x4v6dO.exe
C:\Users\Mamasita\AppData\Local\Temp\x7JXMTF.exe
C:\Users\Mamasita\AppData\Local\Temp\x7T5ka0.exe
C:\Users\Mamasita\AppData\Local\Temp\xafo06.exe
C:\Users\Mamasita\AppData\Local\Temp\XbNaDv.exe
C:\Users\Mamasita\AppData\Local\Temp\xBqC4b2.exe
C:\Users\Mamasita\AppData\Local\Temp\xBTb5Ui.exe
C:\Users\Mamasita\AppData\Local\Temp\XBVDx4.exe
C:\Users\Mamasita\AppData\Local\Temp\xC1dJE.exe
C:\Users\Mamasita\AppData\Local\Temp\Xc2Illl.exe
C:\Users\Mamasita\AppData\Local\Temp\XcglJAo.exe
C:\Users\Mamasita\AppData\Local\Temp\xdKlKD.exe
C:\Users\Mamasita\AppData\Local\Temp\xeEK9RO.exe
C:\Users\Mamasita\AppData\Local\Temp\XeK9Gi6.exe
C:\Users\Mamasita\AppData\Local\Temp\xemeFCb.exe
C:\Users\Mamasita\AppData\Local\Temp\xGRm0zc.exe
C:\Users\Mamasita\AppData\Local\Temp\XhEm9a.exe
C:\Users\Mamasita\AppData\Local\Temp\xIK89iw.exe
C:\Users\Mamasita\AppData\Local\Temp\xipnKJd.exe
C:\Users\Mamasita\AppData\Local\Temp\xkpKr55.exe
C:\Users\Mamasita\AppData\Local\Temp\Xl4AtRl.exe
C:\Users\Mamasita\AppData\Local\Temp\XlBTph.exe
C:\Users\Mamasita\AppData\Local\Temp\XLe5NBe.exe
C:\Users\Mamasita\AppData\Local\Temp\XLqi9FI.exe
C:\Users\Mamasita\AppData\Local\Temp\xlU1Brh.exe
C:\Users\Mamasita\AppData\Local\Temp\Xmc1T0.exe
C:\Users\Mamasita\AppData\Local\Temp\xNHfQb.exe
C:\Users\Mamasita\AppData\Local\Temp\XoJK9J.exe
C:\Users\Mamasita\AppData\Local\Temp\xOK4TL.exe
C:\Users\Mamasita\AppData\Local\Temp\xpada7e.exe
C:\Users\Mamasita\AppData\Local\Temp\xPCWCn.exe
C:\Users\Mamasita\AppData\Local\Temp\XplbQv.exe
C:\Users\Mamasita\AppData\Local\Temp\xq6lCFp.exe
C:\Users\Mamasita\AppData\Local\Temp\Xq7lOvP.exe
C:\Users\Mamasita\AppData\Local\Temp\xqu6wSr.exe
C:\Users\Mamasita\AppData\Local\Temp\Xqy2PN.exe
C:\Users\Mamasita\AppData\Local\Temp\xs3B1yh.exe
C:\Users\Mamasita\AppData\Local\Temp\XtMzyt.exe
C:\Users\Mamasita\AppData\Local\Temp\XUKiaOI.exe
C:\Users\Mamasita\AppData\Local\Temp\xUMO3ar.exe
C:\Users\Mamasita\AppData\Local\Temp\xVRpDzP.exe
C:\Users\Mamasita\AppData\Local\Temp\xw1qkw.exe
C:\Users\Mamasita\AppData\Local\Temp\xwAVqKX.exe
C:\Users\Mamasita\AppData\Local\Temp\XwF0hkQ.exe
C:\Users\Mamasita\AppData\Local\Temp\XwlrTbr.exe
C:\Users\Mamasita\AppData\Local\Temp\xWrbDT.exe
C:\Users\Mamasita\AppData\Local\Temp\XWS7TQM.exe
C:\Users\Mamasita\AppData\Local\Temp\xxHKHl.exe
C:\Users\Mamasita\AppData\Local\Temp\XXPb15.exe
C:\Users\Mamasita\AppData\Local\Temp\XzQlXL.exe
C:\Users\Mamasita\AppData\Local\Temp\y1con1.exe
C:\Users\Mamasita\AppData\Local\Temp\y3IdKe.exe
C:\Users\Mamasita\AppData\Local\Temp\y4h3Jz.exe
C:\Users\Mamasita\AppData\Local\Temp\y6zSCBx.exe
C:\Users\Mamasita\AppData\Local\Temp\y72NX5Q.exe
C:\Users\Mamasita\AppData\Local\Temp\ya3BbOl.exe
C:\Users\Mamasita\AppData\Local\Temp\yAUekes.exe
C:\Users\Mamasita\AppData\Local\Temp\yCvduh.exe
C:\Users\Mamasita\AppData\Local\Temp\ydAepe4.exe
C:\Users\Mamasita\AppData\Local\Temp\ydC4Ji.exe
C:\Users\Mamasita\AppData\Local\Temp\ydrftk.exe
C:\Users\Mamasita\AppData\Local\Temp\ydu2Kd.exe
C:\Users\Mamasita\AppData\Local\Temp\yeF8tW.exe
C:\Users\Mamasita\AppData\Local\Temp\yErss9l.exe
C:\Users\Mamasita\AppData\Local\Temp\yFmcGK4.exe
C:\Users\Mamasita\AppData\Local\Temp\yGnZBuI.exe
C:\Users\Mamasita\AppData\Local\Temp\yio8kT.exe
C:\Users\Mamasita\AppData\Local\Temp\yiX0Hvo.exe
C:\Users\Mamasita\AppData\Local\Temp\ykG1Kdo.exe
C:\Users\Mamasita\AppData\Local\Temp\yL7qo69.exe
C:\Users\Mamasita\AppData\Local\Temp\yR4aqb.exe
C:\Users\Mamasita\AppData\Local\Temp\yrgmdw.exe
C:\Users\Mamasita\AppData\Local\Temp\ySbGIcM.exe
C:\Users\Mamasita\AppData\Local\Temp\ysDKck.exe
C:\Users\Mamasita\AppData\Local\Temp\ySZIGKi.exe
C:\Users\Mamasita\AppData\Local\Temp\yvNDou.exe
C:\Users\Mamasita\AppData\Local\Temp\ywh0FG1.exe
C:\Users\Mamasita\AppData\Local\Temp\yxCm63o.exe
C:\Users\Mamasita\AppData\Local\Temp\yXDUvM.exe
C:\Users\Mamasita\AppData\Local\Temp\yXF0i9V.exe
C:\Users\Mamasita\AppData\Local\Temp\yxMxnW.exe
C:\Users\Mamasita\AppData\Local\Temp\yySllh6.exe
C:\Users\Mamasita\AppData\Local\Temp\yZlmLa.exe
C:\Users\Mamasita\AppData\Local\Temp\Z0avb9.exe
C:\Users\Mamasita\AppData\Local\Temp\Z0KRkEC.exe
C:\Users\Mamasita\AppData\Local\Temp\z0mWIq.exe
C:\Users\Mamasita\AppData\Local\Temp\z2q9pbB.exe
C:\Users\Mamasita\AppData\Local\Temp\Z3iSPo.exe
C:\Users\Mamasita\AppData\Local\Temp\z3mzqZd.exe
C:\Users\Mamasita\AppData\Local\Temp\Z4Cubl.exe
C:\Users\Mamasita\AppData\Local\Temp\Z4K7Sfg.exe
C:\Users\Mamasita\AppData\Local\Temp\Z4uP4A.exe
C:\Users\Mamasita\AppData\Local\Temp\z6rx9d.exe
C:\Users\Mamasita\AppData\Local\Temp\Z7GG9qn.exe
C:\Users\Mamasita\AppData\Local\Temp\Z7nP6y.exe
C:\Users\Mamasita\AppData\Local\Temp\z92eiF.exe
C:\Users\Mamasita\AppData\Local\Temp\ZATmAZK.exe
C:\Users\Mamasita\AppData\Local\Temp\zB81vR.exe
C:\Users\Mamasita\AppData\Local\Temp\ZbDwUT.exe
C:\Users\Mamasita\AppData\Local\Temp\Zbhi8NM.exe
C:\Users\Mamasita\AppData\Local\Temp\zBN3Z78.exe
C:\Users\Mamasita\AppData\Local\Temp\zbo7O1I.exe
C:\Users\Mamasita\AppData\Local\Temp\zbZHzyl.exe
C:\Users\Mamasita\AppData\Local\Temp\zDL3Nf2.exe
C:\Users\Mamasita\AppData\Local\Temp\zDmWXi1.exe
C:\Users\Mamasita\AppData\Local\Temp\Zeme8wJ.exe
C:\Users\Mamasita\AppData\Local\Temp\zFFnxik.exe
C:\Users\Mamasita\AppData\Local\Temp\zFRm1lM.exe
C:\Users\Mamasita\AppData\Local\Temp\ZH7i3Ne.exe
C:\Users\Mamasita\AppData\Local\Temp\zHdr3W.exe
C:\Users\Mamasita\AppData\Local\Temp\zINHwra.exe
C:\Users\Mamasita\AppData\Local\Temp\ZJmrGbB.exe
C:\Users\Mamasita\AppData\Local\Temp\ZJuTuWU.exe
C:\Users\Mamasita\AppData\Local\Temp\ZKF0rVr.exe
C:\Users\Mamasita\AppData\Local\Temp\ZkKGP3.exe
C:\Users\Mamasita\AppData\Local\Temp\ZkSrWq.exe
C:\Users\Mamasita\AppData\Local\Temp\zlJ4mFT.exe
C:\Users\Mamasita\AppData\Local\Temp\zMLyyA.exe
C:\Users\Mamasita\AppData\Local\Temp\ZNfS36e.exe
C:\Users\Mamasita\AppData\Local\Temp\znkkAQ.exe
C:\Users\Mamasita\AppData\Local\Temp\ZNQiEOk.exe
C:\Users\Mamasita\AppData\Local\Temp\ZNUApF.exe
C:\Users\Mamasita\AppData\Local\Temp\zO8qo1q.exe
C:\Users\Mamasita\AppData\Local\Temp\zO9yi34.exe
C:\Users\Mamasita\AppData\Local\Temp\ZoU9Xe.exe
C:\Users\Mamasita\AppData\Local\Temp\zPfcNF.exe
C:\Users\Mamasita\AppData\Local\Temp\ZQSHv99.exe
C:\Users\Mamasita\AppData\Local\Temp\ZR2mU7.exe
C:\Users\Mamasita\AppData\Local\Temp\ZrWxlWV.exe
C:\Users\Mamasita\AppData\Local\Temp\Zsl8Jox.exe
C:\Users\Mamasita\AppData\Local\Temp\ZSocHS.exe
C:\Users\Mamasita\AppData\Local\Temp\ZtaFxkI.exe
C:\Users\Mamasita\AppData\Local\Temp\zTAu5n6.exe
C:\Users\Mamasita\AppData\Local\Temp\zTIA0OL.exe
C:\Users\Mamasita\AppData\Local\Temp\zuJ4sdE.exe
C:\Users\Mamasita\AppData\Local\Temp\ZUOnlX.exe
C:\Users\Mamasita\AppData\Local\Temp\ZUOThd.exe
C:\Users\Mamasita\AppData\Local\Temp\ZUyIAC.exe
C:\Users\Mamasita\AppData\Local\Temp\ZVb42o.exe
C:\Users\Mamasita\AppData\Local\Temp\zWdbsvb.exe
C:\Users\Mamasita\AppData\Local\Temp\ZwNONTq.exe
C:\Users\Mamasita\AppData\Local\Temp\zWtLaXz.exe
C:\Users\Mamasita\AppData\Local\Temp\zXSrM3.exe
C:\Users\Mamasita\AppData\Local\Temp\ZxTlSf4.exe
C:\Users\Mamasita\AppData\Local\Temp\zxtm7P4.exe
C:\Users\Mamasita\AppData\Local\Temp\Zz5lKko.exe
C:\Users\Mamasita\AppData\Local\Temp\ZzgbxNE.exe
C:\Users\Mamasita\AppData\Local\Temp\zzVl5cs.exe
C:\Users\Mamasita\AppData\Local\Temp\zZZMJ20.exe
C:\Users\Mamasita\AppData\Local\Temp\_is2B9A.exe
C:\Users\Mamasita\AppData\Local\Temp\_is6F2F.exe
Some zero byte size files/folders:
==========================
C:\Windows\System32\oxaqv.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-02-13 18:39
==================== End Of Log ============================