PDA

View Full Version : problem wish A.exe on my friends laptop, please help



didsburydan
2009-09-15, 00:01
i need to get rid of this urgently as it is on a friends laptop which i borrowed and he will not be happy if i return it like this.

I basically have an A.exe process running which i can't get rid of. it is making browsing the internet very slow and i encounter crashes of google chrome and internet explorer. It can on occasion also use a very high % of my CPU which makes everything slow. Norton anti-protect is constantly telling me that it has blocked a worm. I have tried scanning with AVG but that returned nothing. I have also tried scanning with Malwarebytes but this crashes which trying to remove selected (namely when trying to remove twext.exe). I have also tried ad-aware but this closes itself after a few seconds of starting a scan.

PLEASE HELP, here is my HJT log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:00:33, on 14/09/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Acer\eManager\anbmServ.exe
C:\WINDOWS\msa.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Kontiki\KService.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\System32\alg.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Acer\eRecovery\Monitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\RTHDCPL.EXE
C:\acer\epm\epm-dm.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Kontiki\KHost.exe
C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Documents and Settings\robert holwett\tiuopu.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\DOCUME~1\ROBERT~1\LOCALS~1\Temp\a.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://news.bbc.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://global.acer.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\twext.exe,C:\WINDOWS\system32\sdra64.exe,
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [EPM-DM] c:\acer\epm\epm-dm.exe
O4 - HKLM\..\Run: [ePowerManagement] C:\Acer\ePM\ePM.exe boot
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [tiuopu] C:\Documents and Settings\robert holwett\tiuopu.exe
O4 - HKCU\..\Run: [PopRock] C:\DOCUME~1\ROBERT~1\LOCALS~1\Temp\a.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe (file missing)
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe

--
End of file - 11719 bytes
=================
No response: (http://forums.techguy.org/malware-removal-hijackthis-logs/860580-trouble-exe-please-help.html)
http://forums.techguy.org/malware-removal-hijackthis-logs/860580-trouble-exe-please-help.html

Waiting Room: http://forums.spybot.info/showthread.php?t=52004

shelf life
2009-09-21, 23:40
hi didsburydan,

Your log is several days old, if you still need help with the malware problem simply reply back.

didsburydan
2009-09-22, 01:20
yes, please, i am still in desperate need of help! :thanks:

shelf life
2009-09-22, 01:49
ok. Try running malwarebytes (after checking for updates) in safe mode.
To reach safe mode you would tap the f8 key during a computer restart, chose the first option: safe mode. Once at the safe mode desktop run MBAM and post the log;


Perform FULL SCAN, then click Scan.
When the scan is complete, click OK, then Show Results to view the results.

Be sure that everything is checked, and click *Remove Selected.*

*A restart of your computer may be required to remove some items.*

When completed, a log will open in Notepad. Please save it to a convenient location. The log can also be opened by going to Start > All Programs > Malwarebytes' Anti-Malware > Logs > log-date.txt
Post the log in your reply.

didsburydan
2009-09-23, 19:47
ok, i left my friend to save a log last night as i had to go to work while MB was running. I'm fairly sure he let the scan complete but i can't find a log anywhere. i've gone into the logs tab in MB but there is nothing listed. would it be ok to run a full scan again and post the log i get from that?

didsburydan
2009-09-23, 20:53
... there is a log when i logged into safe mode as admin, but it not visible where i saved it when i logged back into windows normally on a profile with admin priviledges.

didsburydan
2009-09-23, 21:58
ignore last two posts, here is the log:

Malwarebytes' Anti-Malware 1.41
Database version: 2792
Windows 5.1.2600 Service Pack 3 (Safe Mode)

22/09/2009 20:39:23
mbam-log-2009-09-22 (20-39-23).txt

Scan type: Full Scan (C:\|D:\|)
Objects scanned: 174815
Time elapsed: 1 hour(s), 16 minute(s), 59 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 7
Registry Values Infected: 7
Registry Data Items Infected: 7
Folders Infected: 4
Files Infected: 21

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127ad2-394b-70f5-c650-b97867baa1f7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127ad2-394b-70f5-c650-b97867baa1f7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c3d409df-0316-4fc0-89e2-dbdd885232a0} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c3d409df-0316-4fc0-89e2-dbdd885232a0} (Trojan.BHO) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Network\UID (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MSN\BN (Trojan.Ambler) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MSN\D1 (Trojan.Ambler) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MSN\D2 (Trojan.Ambler) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MSN\D3 (Trojan.Ambler) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MSN\gd (Trojan.Ambler) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MSN\pr (Trojan.Ambler) -> Quarantined and deleted successfully.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.FakeAlert) -> Data: c:\windows\system32\sdra64.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.FakeAlert) -> Data: system32\sdra64.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Backdoor.Bot) -> Data: c:\windows\system32\twext.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Backdoor.Bot) -> Data: system32\twext.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Hijack.Userinit) -> Bad: (C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\twext.exe,C:\WINDOWS\system32\sdra64.exe,) Good: (Userinit.exe) -> Quarantined and deleted successfully.

Folders Infected:
C:\Documents and Settings\LocalService\Application Data\twain_32 (Trojan.Zbot) -> Quarantined and deleted successfully.
C:\Documents and Settings\robert holwett\Application Data\twain_32 (Trojan.Zbot) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\lowsec (Stolen.data) -> Delete on reboot.
C:\WINDOWS\system32\twain_32 (Backdoor.Bot) -> Delete on reboot.

Files Infected:
C:\WINDOWS\msa.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\WINDOWS\Temp\fceqtgyosm.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\robert holwett\Local Settings\Temp\a.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\robert holwett\Local Settings\Temp\b.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\robert holwett\My Documents\Setup.exe (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\LocalService\Application Data\twain_32\user.ds (Trojan.Zbot) -> Quarantined and deleted successfully.
C:\Documents and Settings\robert holwett\Application Data\twain_32\user.ds (Trojan.Zbot) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\lowsec\user.ds (Stolen.data) -> Delete on reboot.
C:\WINDOWS\system32\lowsec\local.ds (Stolen.data) -> Delete on reboot.
C:\WINDOWS\system32\twain_32\local.ds (Backdoor.Bot) -> Delete on reboot.
C:\WINDOWS\system32\twain_32\user.ds (Backdoor.Bot) -> Delete on reboot.
C:\WINDOWS\system32\c2d.dat (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ca.dat (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\idm.dat (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\jc.dat (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\q1.dat (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\sdra64.exe (Trojan.FakeAlert) -> Delete on reboot.
C:\WINDOWS\system32\twext.exe (Backdoor.Bot) -> Delete on reboot.
C:\WINDOWS\system32\xd.dat (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\Tasks\{7B02EF0B-A410-4938-8480-9BA26420A627}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\WINDOWS\Tasks\{BB65B0FB-5712-401b-B616-E69AC55E2757}.job (Trojan.Downloader) -> Quarantined and deleted successfully.
=======================
Edit
http://forums.techguy.org/malware-removal-hijackthis-logs/860580-trouble-exe-please-help.html

Please let the techguy know you are already being assisted so they close that topic, thank you.

shelf life
2009-09-23, 23:41
ok good. We will get one more tool to use. Your friend should for sure change all passwords and monitor financial transactions if you did any on the computer.
The tool is SDFix. Only runs in safe mode. link and directions:


Download SDFix and save it to your Desktop.

http://downloads.andymanchesta.com/RemovalTools/SDFix.exe


Double click SDFix.exe and it will extract the files to %systemdrive%
(Drive that contains the Windows Directory, typically C:\SDFix)

Please then reboot your computer in Safe Mode by doing the following :

* Restart your computer
* After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
* Instead of Windows loading as normal, the Advanced Options Menu should appear;
* Select the first option, to run Windows in Safe Mode, then press Enter.
* Choose your usual account.

* Open the extracted SDFix folder and double click RunThis.bat to start the script.
* Type Y to begin the cleanup process.
* It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot.
* Press any Key and it will restart the PC.
* When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.
* Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt
(Report.txt will also be copied to Clipboard ready for posting back on the forum).
* Finally paste the contents of the Report.txt in your reply.

didsburydan
2009-09-24, 00:26
log is as follows

NB i encountered various error messages throughout this process. when trying to boot into safemode i got

Windows could not start because the following file is missin or corrupt <Windows root>\system32\ntoskrnl.exe

When i managed to get into safe mode and run SDFix i got several error messages when it was finishing, including:

CMD.exe - Corrupt File
The file or directory \Documents and Settings\robert holwett\Local Settings\Temp\etilqs_PYYy2ImQ8CQQvxY7ufGV is corrupt or unreadable. Please run Chkdsk utility
also \T2xxfhgGc0eCwyhrSqUe
also \fla39F.tmp

When i restarted into normal windows and SDFix was finishing and generating report is got CMD.exe - Corrupt file \SDFix\editreg.exe

When trying to get onto google chrome to post this i get a constant popup in my taskbar saying Windows -Corrupt file \Windows\Prefetch\CHROME.EXE-OO6D05A3.pf

don't know if any of this i important but i thought i'd mention it. here is log

SDFix: Version 1.240
Run by robert holwett on 23/09/2009 at 23:03

Microsoft Windows XP [Version 5.1.2600]
Running From: C:\SDFix

Checking Services :


Restoring Default Security Values
Restoring Default Hosts File

Rebooting


Checking Files :

Trojan Files Found:

C:\WINDOWS\antiv.exe - Deleted





Removing Temp Files

ADS Check :



Final Check :

catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-09-23 23:14:12
Windows 5.1.2600 Service Pack 3 FAT NTAPI

scanning hidden processes ...

scanning hidden services ...

HKLM\SYSTEM\CurrentControlSet\Services\GEARAspiWDMuvj

scanning hidden autostart entries ...

scanning hidden files ...


scan completed successfully
hidden processes: 0
hidden services: 1
hidden files: 0


Remaining Services :




Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Acer\\Acer Arcade\\PCMService.exe"="C:\\Program Files\\Acer\\Acer Arcade\\PCMService.exe:*:Enabled:CyberLink PowerCinema Resident Program"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Kontiki\\KService.exe"="C:\\Program Files\\Kontiki\\KService.exe:*:Enabled:Delivery Manager Service"
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"="C:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\uTorrent\\uTorrent.exe"="C:\\Program Files\\uTorrent\\uTorrent.exe:*:Enabled:ęTorrent"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\Microsoft Office\\Office12\\groove.exe"="C:\\Program Files\\Microsoft Office\\Office12\\groove.exe:*:Enabled:Microsoft Office Groove"
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"="C:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\AVG\\AVG8\\avgam.exe"="C:\\Program Files\\AVG\\AVG8\\avgam.exe:*:Enabled:avgam.exe"
"C:\\Program Files\\AVG\\AVG8\\avgdiag.exe"="C:\\Program Files\\AVG\\AVG8\\avgdiag.exe:*:Enabled:avgdiag.exe"
"C:\\Program Files\\AVG\\AVG8\\avgdiagex.exe"="C:\\Program Files\\AVG\\AVG8\\avgdiagex.exe:*:Enabled:avgdiagex.exe"
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"="C:\\Program Files\\AVG\\AVG8\\avgupd.exe:*:Enabled:avgupd.exe"
"C:\\Program Files\\AVG\\AVG8\\avgnsx.exe"="C:\\Program Files\\AVG\\AVG8\\avgnsx.exe:*:Enabled:avgnsx.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"="C:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"

Remaining Files :


File Backups: - C:\SDFix\backups\backups.zip

Files with Hidden Attributes :

Wed 17 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTICDMK7.dll"
Wed 17 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTIMPEG2.dll"
Wed 17 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTIMP3.dll"
Wed 17 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTIFCD3.dll"
Wed 17 Aug 2005 1,024 ...HR --- "C:\WINDOWS\system32\NTIBUN4.dll"
Sat 12 Sep 2009 49,152 ..SHR --- "C:\Documents and Settings\robert holwett\tiuopu.exe"
Sun 26 Aug 2007 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Mon 4 Jun 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Tue 2 Dec 2008 137,216 A..H. --- "C:\Documents and Settings\robert holwett\Desktop\SdaA-\~WRL3876.tmp"
Thu 19 Mar 2009 136,704 A..H. --- "C:\Documents and Settings\robert holwett\Desktop\SdaA-\~WRL1663.tmp"
Sun 27 Apr 2008 82,944 A..H. --- "C:\Documents and Settings\robert holwett\My Documents\ROB\Lab project\~WRL0002.tmp"

Finished!

shelf life
2009-09-24, 02:52
ok thanks for the info. You can delete the SDfix folder located at C:/
not sure what all the corrupt files are about. You should back up anything you cant afford to lose, just in case.

RE:uTorrent, There is plenty of malware that is distributed via p2p networks one can download and install. Files can be named anything and/or have malware payloads bundled in them.

Please do a online scan:

ESET online scanner:

http://www.eset.com/onlinescan/

uses Internet Explorer only
check "YES" to accept terms
click start button
allow the ActiveX component to install
click the start button. the Scanner will update.
check both "Remove found threats" and "Scan unwanted applications"
click scan
when done you can find the scan log at:C:\Program Files\EsetOnlineScanner\log.txt
please copy/paste that log in next reply.

didsburydan
2009-09-24, 20:41
Ok, here's the log but fyi the scan crashed at about 28% with the message OnlineCmdLineScanner.exe has encountered a problem and needs to close.

ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
# version=6
# iexplore.exe=6.00.2900.5512 (xpsp.080413-2105)
# OnlineScanner.ocx=1.0.0.6050
# api_version=3.0.2
# EOSSerial=0c61988a6a891746a2f8949284fc1d93
# end=finished
# remove_checked=true
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2009-09-24 06:38:00
# local_time=2009-09-24 07:38:00 (+0000, GMT Daylight Time)
# country="United Kingdom"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=1027 21 83 59 28626406250
# scanned=28560
# found=2
# cleaned=2
# scan_time=1204
C:\WINDOWS\system32\yxhl0.dll a variant of Win32/Spy.Ambler.AD trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\WINDOWS\system32\ixyp1.dll a variant of Win32/Spy.Ambler.AD trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C

shelf life
2009-09-25, 01:59
Ok.One more tool to download and run. Its called Combofix. There is a guide to read first. Read through the entire guide- make sure you understand what you need to do in preparation for using Combofix. Download combofix to your desktop, disable any AV etc as explained in the guide, double click the icon and follow the prompts as shown in the guide:

Preparation Guide (http://www.bleepingcomputer.com/combofix/how-to-use-combofix) for using Combofix.

didsburydan
2009-09-25, 20:48
combofix is not working. I got it running and it found first file C:\WINDOWS\system32\sfcfiles.dll but then i kept getting repeated error messages such as PV.cfxxe and Nircmd have encountered a problem and need to close. I clicked on don't send error report on all of these messages in order for combofix to continue running, but it hangs on sfcfiles.dll.

shelf life
2009-09-26, 01:40
ok. Try booting into safe mode and then running combofix from safe mode.

didsburydan
2009-09-28, 01:09
ok, no error messages this time but combofix is still hanging on
"System file in infected!! Attempting to restore C:\WINDOWS\system32\sfcfiles.dll

pretty sure i'm not just being impatient, i left it running while i was watching an hour long episode of the sopranos and it didn't move from that message. all anti virus stuff is disabled as per the guide instructions.

shelf life
2009-09-28, 02:55
dosnt sound good. lets try this:

Download Dr.Web CureIt to the desktop:

ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe

* Doubleclick the drweb-cureit icon to start the program.
* press start
* Allow the program to run the initial express scan
* This will scan the files currently running in memory. If something is found, click the YES button when it asks you if you want to cure it. This is only a short scan.
Note: A pop up may appear during this phase suggesting you purchase their program - click the X at the top right corner of this pop-up to close it.
* Once the short scan has finished, check the Complete scan box on the left side, even if nothing was found on the initial scan.
* Then click the small green arrow button on the right under the Dr.Web Antivirus picture to start the complete scan. (This scan will take several hours)
* During this complete scan - if Dr.Web finds an infection a window will pop up requesting your attention. Select the Cure button.
Note:(If the file cannot be cured, Dr.Web will automatically delete the file)
* Once the scan is complete, on the menu bar, click file and choose report list.
* Save the report to your desktop. The report will be called DrWeb.csv
* Note:this report will need to be renamed to Dr.Web.txt in order to post it on the forum.
* Close Dr.Web Cureit.
* Please post the Dr.Web.txt report in your next reply

didsburydan
2009-09-30, 23:33
ok, this also doesn't work. i think i may have a deeper rooted problem with my computer than malware, although it was fine before i got infected.
i tried it the program once and it started up ok and then crashed, went to safe mode to try it and got IO error on "Autorun BMP" and a message on taskbar saying 93.gu83.exe - corrupt file.

shelf life
2009-10-03, 00:44
hi,


i think i may have a deeper rooted problem with my computer than malware malware can cause deep rooted problems on a machine.

Try uninstalling combofix like this:
start>run and type in combofix /u
click ok or enter
Note; there is a space after the x and before the /

Try downloading a new copy of combofix but this time before you save it to your desktop, rename it to combofix1.exe. Then try running it. dont forget to disable any AV etc first.

didsburydan
2009-10-06, 19:02
ok,despite warning messages telling me numerous file were corrupt and unreadable i'm pretty sure combfix ran fully. here's my log:

ComboFix 09-10-05.01 - robert holwett 06/10/2009 16:01.1.1 - FAT32x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1014.640 [GMT 1:00]
Running from: c:\documents and settings\robert holwett\Desktop\ComboFix1.exe
AV: AVG Anti-Virus *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.

Overlay aborted ... Please run ComboFix once more
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\docume~1\ROBERT~1\LOCALS~1\Temp\dc62710146\93gu83.exe
c:\documents and settings\robert holwett\autorun.inf
c:\documents and settings\robert holwett\Local Settings\Temp\dc62710146\93gu83.exe
c:\documents and settings\robert holwett\tiuopu.exe
c:\documents and settings\robert holwett\tiuopu.scr
c:\program files\WinPCap
c:\windows\Installer\2a3c8f.msi
c:\windows\Installer\3051656.msp
c:\windows\Installer\417708.msi
c:\windows\Installer\41770b.msi
c:\windows\Installer\826eb.msp
c:\windows\Installer\826ec.msp
c:\windows\Installer\826ed.msp
c:\windows\Installer\826ee.msp
c:\windows\Installer\826ef.msp
c:\windows\Installer\826f0.msp
c:\windows\Installer\826f1.msp
c:\windows\Installer\826f2.msp
c:\windows\Installer\826f3.msp
c:\windows\Installer\87f8d1.msp
c:\windows\system32\mscomct2.dat
c:\windows\system32\mscorewr.dll
c:\windows\system32\msrfcint.dat
c:\windows\system32\ntrdectr.dat
c:\windows\system32\pthreadVC.dll

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_NPF
-------\Legacy_SFC
-------\Service_sfc


((((((((((((((((((((((((( Files Created from 2009-09-06 to 2009-10-06 )))))))))))))))))))))))))))))))
.

2009-10-05 09:18 . 2009-10-05 09:18 -------- d-----w- C:\ComboFix119319C
2009-10-05 09:13 . 2009-10-05 09:13 -------- d-----w- C:\ComboFix1
2009-09-28 13:40 . 2009-09-28 13:40 -------- d-----w- c:\documents and settings\robert holwett\Application Data\Jasc Software Inc
2009-09-28 13:40 . 2009-09-28 13:40 -------- d-----w- c:\documents and settings\All Users\Application Data\InstallShield
2009-09-28 13:39 . 2009-09-28 13:39 -------- d-----w- c:\program files\Common Files\Jasc Software Inc
2009-09-28 13:39 . 2009-09-28 13:39 -------- d-----w- c:\program files\Jasc Software Inc
2009-09-28 13:38 . 2009-09-28 13:38 -------- d-----w- c:\program files\Abbyy FineReader 6.0 Sprint
2009-09-28 13:37 . 2004-08-04 04:00 31744 ----a-w- c:\windows\system32\fxsroute.dll
2009-09-28 13:37 . 2004-08-04 04:00 132608 ----a-w- c:\windows\system32\fxsclntR.dll
2009-09-28 13:37 . 2004-08-04 04:00 11264 ----a-w- c:\windows\system32\fxssend.exe
2009-09-28 13:37 . 2004-08-04 04:00 111104 ----a-w- c:\windows\system32\fxscfgwz.dll
2009-09-28 13:36 . 2009-09-28 13:36 -------- d-----w- c:\program files\Dl_cats
2009-09-28 13:36 . 2004-08-04 04:00 9600 ----a-w- c:\windows\system32\drivers\hidusb.sys
2009-09-28 13:35 . 2001-08-17 21:36 87040 ----a-w- c:\windows\system32\wiafbdrv.dll
2009-09-28 13:33 . 2009-09-28 13:33 -------- d-----w- c:\temp\{9F5FBC24-EFE2-4f90-B498-EC0FB7D47D15}
2009-09-28 13:33 . 2009-09-28 13:33 -------- d-----w- C:\Temp
2009-09-28 13:31 . 2008-04-13 18:47 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2009-09-28 13:30 . 2004-08-04 04:00 31616 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2009-09-28 02:01 . 2009-09-28 02:01 -------- d-----w- c:\documents and settings\robert holwett\DoctorWeb
2009-09-24 18:14 . 2009-09-24 18:15 -------- d-----w- c:\program files\ESET
2009-09-23 22:01 . 2009-09-23 22:01 578560 ----a-w- c:\windows\system32\dllcache\user32.dll
2009-09-23 21:56 . 2009-09-23 21:56 -------- d-----w- c:\windows\ERUNT
2009-09-22 18:12 . 2009-09-22 18:12 -------- d-----w- c:\documents and settings\Administrator\Application Data\Malwarebytes
2009-09-20 18:17 . 2009-09-20 18:17 -------- d-----w- c:\program files\CCleaner
2009-09-15 00:13 . 2009-09-15 00:13 27656 ----a-w- c:\windows\system32\drivers\pxsec.sys
2009-09-15 00:13 . 2009-09-15 00:13 22024 ----a-w- c:\windows\system32\drivers\pxscan.sys
2009-09-15 00:13 . 2009-09-15 00:13 -------- d-----w- c:\program files\Prevx
2009-09-15 00:13 . 2009-09-15 00:13 -------- d-----w- c:\documents and settings\All Users\Application Data\PrevxCSI
2009-09-13 22:07 . 2009-09-13 22:07 -------- d-----w- c:\program files\Trend Micro
2009-09-13 20:42 . 2009-09-13 20:42 -------- d-----w- c:\documents and settings\robert holwett\Application Data\Malwarebytes
2009-09-13 20:42 . 2009-09-10 13:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-13 20:42 . 2009-09-13 20:42 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-09-13 20:42 . 2009-09-13 20:42 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-09-13 20:42 . 2009-09-10 13:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-09-13 18:45 . 2009-09-13 18:45 -------- d-----w- C:\$AVG8.VAULT$
2009-09-13 18:43 . 2009-09-13 18:43 12552 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2009-09-13 18:43 . 2009-09-13 18:43 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-09-13 18:43 . 2009-09-13 18:43 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-09-13 18:42 . 2009-09-13 18:42 335240 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-09-13 18:42 . 2009-09-13 18:42 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-09-13 18:42 . 2009-09-13 18:42 -------- d-----w- c:\windows\system32\drivers\Avg
2009-09-13 18:42 . 2009-09-13 18:42 -------- d-----w- c:\documents and settings\All Users\Application Data\AVG Security Toolbar
2009-09-13 18:42 . 2009-09-13 18:42 -------- d-----w- c:\program files\AVG
2009-09-13 18:42 . 2009-09-13 18:42 -------- d-----w- c:\documents and settings\All Users\Application Data\avg8
2009-09-13 18:35 . 2009-09-13 18:35 -------- d-----w- c:\documents and settings\robert holwett\Application Data\AVG8
2009-09-13 17:46 . 2009-07-03 14:49 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys
2009-09-13 17:45 . 2009-09-13 17:45 -------- d--h--w- c:\documents and settings\All Users\Application Data\{EF63305C-BAD7-4144-9208-D65528260864}
2009-09-13 17:45 . 2009-09-13 17:45 -------- d-----w- c:\program files\Lavasoft
2009-09-13 17:45 . 2009-09-13 17:45 -------- d-----w- c:\documents and settings\All Users\Application Data\Lavasoft
2009-09-09 09:37 . 2009-06-21 21:44 153088 ------w- c:\windows\system32\dllcache\triedit.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-09-28 13:34 . 2009-09-28 13:34 -------- d-----w- c:\program files\Dell Photo AIO Printer 924
2009-09-27 23:03 . 2007-05-25 15:54 90112 ----a-w- c:\windows\DUMP3cf9.tmp
2009-09-27 22:03 . 2007-05-25 15:54 90112 ----a-w- c:\windows\DUMP3c5d.tmp
2009-09-27 13:59 . 2007-05-25 15:54 90112 ----a-w- c:\windows\DUMP3c8c.tmp
2009-09-23 19:50 . 2007-05-25 15:54 90112 ----a-w- c:\windows\DUMP3d28.tmp
2009-09-23 18:44 . 2007-05-25 15:54 90112 ----a-w- c:\windows\DUMP48b1.tmp
2009-09-22 21:40 . 2007-05-25 15:54 90112 ----a-w- c:\windows\DUMP50ee.tmp
2009-09-22 16:57 . 2007-05-25 15:54 90112 ----a-w- c:\windows\DUMP3cab.tmp
2009-08-21 05:18 . 2009-08-21 05:18 -------- d-----w- c:\program files\PeerGuardian2
2009-08-20 17:53 . 2009-08-20 17:53 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-08-18 22:57 . 2007-05-26 00:02 90416 ----a-w- c:\documents and settings\robert holwett\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-08-09 06:21 . 2009-08-09 06:21 -------- d-----w- c:\program files\Reference Assemblies
2009-08-08 18:33 . 2009-08-08 18:33 -------- d-----w- c:\documents and settings\robert holwett\Application Data\vlc
2009-08-08 18:32 . 2009-08-08 18:32 -------- d-----w- c:\program files\VideoLAN
2009-08-08 18:10 . 2009-08-08 18:10 -------- d-----w- c:\program files\Common Files\DivX Shared
2009-08-05 09:01 . 2005-08-16 15:57 204800 ----a-w- c:\windows\system32\mswebdvd.dll
2009-07-17 19:01 . 2005-08-16 15:57 58880 ----a-w- c:\windows\system32\atl.dll
2009-07-13 22:43 . 2005-08-16 15:58 286208 ----a-w- c:\windows\system32\wmpdxm.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{A3BC75A2-1F87-4686-AA43-5347D756017C}"= "c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-09-02 1107200]

[HKEY_CLASSES_ROOT\clsid\{a3bc75a2-1f87-4686-aa43-5347d756017c}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
2009-09-02 10:58 1107200 ----a-w- c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-09-02 1107200]

[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-09-02 1107200]

[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2008-4-23 29696]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-09-13 18:43 11952 ----a-w- c:\windows\system32\avgrsstx.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Acer\\Acer Arcade\\PCMService.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\Kontiki\\KService.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\groove.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgam.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgdiag.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgdiagex.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=

R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\drivers\avgrkx86.sys [13/09/2009 19:43 12552]
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [13/09/2009 18:46 64160]
R0 pxscan;pxscan;c:\windows\system32\drivers\pxscan.sys [15/09/2009 01:13 22024]
R0 pxsec;pxsec;c:\windows\system32\drivers\pxsec.sys [15/09/2009 01:13 27656]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [13/09/2009 19:42 335240]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [13/09/2009 19:43 108552]
R2 CSIScanner;CSIScanner;c:\program files\Prevx\prevx.exe [15/09/2009 01:13 4368952]
S2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [13/09/2009 19:42 297752]
S3 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [03/07/2009 15:49 1028432]

--- Other Services/Drivers In Memory ---

*NewlyCreated* - INT15.SYS
.
Contents of the 'Scheduled Tasks' folder

2009-10-05 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-07-03 17:48]

2009-10-05 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-651552052-1045895897-2323511181-1005Core.job
- c:\documents and settings\robert holwett\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-07-29 19:59]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://news.bbc.co.uk/
uInternet Settings,ProxyOverride = *.local
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-10-06 16:13
Windows 5.1.2600 Service Pack 3 FAT NTAPI

scanning hidden processes ...

scanning hidden autostart entries ...

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
DLCCCATS = rundll32 c:\windows\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

scanning hidden files ...


c:\docume~1\ROBERT~1\LOCALS~1\Temp\WPDNSE\. 16941056 bytes
c:\docume~1\ROBERT~1\LOCALS~1\Temp\WPDNSE\. 16875520 bytes
c:\docume~1\ROBERT~1\LOCALS~1\Temp\WPDNSE\. 33718272 bytes
c:\docume~1\ROBERT~1\LOCALS~1\Temp\WPDNSE\. -1056997376 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 6717440 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\W 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5603328 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 5210112 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 5210112 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 6389760 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 6389760 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 7110656 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 7307264 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 6717440 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 2850816 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 7110656 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 7307264 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5603328 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 2850816 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 7307264 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 5210112 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 7307264 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 7307264 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes

didsburydan
2009-10-06, 19:03
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 5210112 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 7110656 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 5210112 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5603328 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 7307264 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\W 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 2850816 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 7110656 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 6717440 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 2850816 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 6717440 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 7110656 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 5210112 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 2850816 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5603328 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5603328 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 7307264 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes

didsburydan
2009-10-06, 19:05
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 2850816 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\W 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 6389760 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 2850816 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 7307264 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 6389760 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5603328 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\U 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\t 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 2850816 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 6717440 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5603328 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\k 2850816 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 6389760 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\W 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\M 7307264 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 6389760 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5472256 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 6717440 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Z 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5603328 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 6717440 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 5603328 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\e 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 7110656 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 6979584 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\x 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 6717440 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\P 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\c 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4358144 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\w 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 884736 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 2129920 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\R 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\I 4292608 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\b 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\i 7962624 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 4554752 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\K 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\K 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes

didsburydan
2009-10-06, 19:08
in fact, is there a way of attaching my log file to a post as it is massive!

didsburydan
2009-10-06, 19:10
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5341184 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6520832 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7962624 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5537792 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\K 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6848512 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\K 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Q 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 6782976 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6520832 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 6782976 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6520832 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6848512 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7176192 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 7634944 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 6782976 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\H 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Q 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 4620288 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\S 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6455296 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5079040 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 7634944 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 7634944 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6455296 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5079040 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 4620288 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\S 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6455296 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5079040 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Q 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6520832 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 7634944 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 7634944 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7176192 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 4947968 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6520832 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 4620288 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\S 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6520832 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\H 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\K 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6455296 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5079040 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes

didsburydan
2009-10-06, 19:11
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 7438336 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5341184 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7962624 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5537792 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6520832 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 4620288 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\S 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7962624 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5537792 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Q 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6520832 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6455296 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5079040 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3440640 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 8028160 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\/ 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6848512 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6848512 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 7438336 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 7438336 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6848512 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7962624 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5537792 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 4620288 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\S 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Q 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 7438336 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3637248 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\K 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7962624 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5537792 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5341184 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7962624 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5537792 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6848512 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\X 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7045120 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 6782976 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\H 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6455296 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5079040 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\K 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3702784 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 7634944 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7962624 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5537792 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Q 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\H 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6455296 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5079040 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 5341184 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\L 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\H 7700480 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5668864 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\T 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\o 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\u 4620288 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\S 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\m 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\v 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Q 5406720 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\E 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 6651904 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\Y 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\l 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 5931008 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\B 7372800 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\q 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3112960 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\h 7438336 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\n 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\g 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 7962624 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5537792 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3571712 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\z 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\F 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\O 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\y 3506176 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\K 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\+ 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\r 5734400 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\s 5144576 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\f 3375104 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\7 3244032 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\0 4489216 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\4 4423680 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3768320 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 7503872 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\N 4685824 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\8 2981888 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\1 3178496 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 3309568 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\6 3178496 bytes

didsburydan
2009-10-06, 19:13
there are pages and pages of the above and this continues until.....

c:\windows\TEMP\Temporary Internet Files\Content.IE5\p 7766016 bytes
c:\windows\TEMP\Temporary Internet Files\Content.IE5\9 0 bytes

scan completed successfully
hidden files: 18739

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'explorer.exe'(2288)
gasfkyymtddwcn.dll 10000000 36864 \\?\globalroot\systemroot\system32\gasfkyymtddwcn.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\AVG\AVG8\AVGRSX.EXE
c:\acer\EMANAGER\ANBMSERV.EXE
c:\program files\COMMON FILES\APPLE\MOBILE DEVICE SUPPORT\BIN\APPLEMOBILEDEVICESERVICE.EXE
c:\program files\BONJOUR\MDNSRESPONDER.EXE
c:\program files\JAVA\JRE6\BIN\JQS.EXE
c:\windows\SYSTEM32\WSCNTFY.EXE
c:\windows\SYSTEM32\IGFXTRAY.EXE
c:\windows\SYSTEM32\HKCMD.EXE
c:\windows\SYSTEM32\IGFXPERS.EXE
c:\program files\SYNAPTICS\SYNTP\SYNTPLPR.EXE
c:\program files\SYNAPTICS\SYNTP\SYNTPENH.EXE
c:\program files\ACER\ERECOVERY\MONITOR.EXE
c:\windows\RTHDCPL.EXE
c:\acer\EPM\EPM-DM.EXE
c:\program files\LAUNCH MANAGER\QTZGACER.EXE
c:\program files\JAVA\JRE6\BIN\JUSCHED.EXE
c:\program files\COMMON FILES\REAL\UPDATE_OB\REALSCHED.EXE
c:\program files\ITUNES\ITUNESHELPER.EXE
c:\program files\MICROSOFT OFFICE\OFFICE12\GROOVEMONITOR.EXE
c:\program files\DELL PHOTO AIO PRINTER 924\DLCCMON.EXE
c:\windows\SYSTEM32\DLCCCOMS.EXE
c:\program files\iPod\bin\iPodService.exe
.
**************************************************************************
.
Completion time: 2009-10-06 16:16 - machine was rebooted
ComboFix-quarantined-files.txt 2009-10-06 15:16

Pre-Run: 16,204,070,912 bytes free
Post-Run: 16,237,527,040 bytes free

WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect

18977 --- E O F --- 2009-09-15 01:33

shelf life
2009-10-07, 00:00
ok thanks for all the info. not sure what to make of all those temp files. They are out of place for temp. internet content
Copy paste whats below into notepad and save it so you can do it in safe mode:

To reach safe mode you would tap the f8 key during a computer restart, chose the first option from the list safe mode. Once at the safe mode desk top do this:

go to start>run and type in;

%temp%
click ok or enter
At the top chose Edit>select all then File>delete
Delete what you can

start run and type in:

%windir%\temp
click ok or enter
Edit>select all
File>delete

Also you can navigate here;
c:\windows\TEMP\Temporary Internet Files\
and delete everything in the
Content.IE5 folder

Start > Run and type:cleanmgr. Windows will scan. When done check these 3 and press *ok* to remove:

Temporary Files
Temporary Internet Files
Recycle Bin

reboot normally. We will get another download to use:
Please download: RootRepeal

http://ad13.geekstogo.com/RootRepeal.exe

Click the icon on your desktop to start.
Click on the Report tab at the bottom of the window
Next, Click on the Scan button
In the Select Scan Window check everything:

Drivers
Files
Processes
SSDT
Stealth Objects
Hidden Services

Click the OK button
In the next dialog window select all the drives that are listed
Click OK to start the scan

May take some time to complete.
When done click the Save Report button.
Save the report to your desktop
To Exit RootRepeal: click File>Exit
Post the report in your reply

didsburydan
2009-10-13, 05:02
sorry for the delay. could not delete everything in my temp folders. deleted what i could even when trying to do it manually. various messages encountered.
rootrepeal also not working, says exceptin address or could not load driver

shelf life
2009-10-13, 23:40
ok, no problem. thanks for all the info. You can remove combofix like this;

start>run and type in:
combofix /u
click ok or enter
Note: a space after the x and before the /

Download a new copy of combofix from this link below and save it to your desktop like before, disable any AV etc and run combofix. post the log.

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

After combofix is finished running try running rootrepeal again.

didsburydan
2009-10-15, 19:08
here's the combofix log will try rootrepeal later, gotta go to work now.
seemed to work ok though, even in normal windows. i think we're getting somewhere!! :eek::eek:

ComboFix 09-10-13.04 - robert holwett 14/10/2009 20:20:31.2.1 - FAT32x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1014.642 [GMT 1:00]
Running from: C:\Documents and Settings\robert holwett\Desktop\ComboFix.exe
AV: AVG Anti-Virus *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\system32\drivers\gasfkygkrkppxa.sys
C:\WINDOWS\system32\gasfkyawiwacat.dat
C:\WINDOWS\system32\gasfkykqpkduxf.dll
C:\WINDOWS\system32\gasfkyqhvpykdj.dll
C:\WINDOWS\system32\gasfkyqydjbrpw.dll
C:\WINDOWS\system32\gasfkytfqxehbq.dll
C:\WINDOWS\system32\gasfkytvoenliq.dat
C:\WINDOWS\system32\gasfkyxvkypdqe.dll
C:\WINDOWS\system32\gasfkyymtddwcn.dll
C:\WINDOWS\system32\lowsec
C:\WINDOWS\system32\lowsec\local.ds
C:\WINDOWS\system32\lowsec\user.ds
C:\WINDOWS\system32\lowsec\user.ds.lll
C:\WINDOWS\system32\sdra64.exe

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_gasfkyrfiguuvj
-------\Legacy_gasfkyrfiguuvj


((((((((((((((((((((((((( Files Created from 2009-09-14 to 2009-10-14 )))))))))))))))))))))))))))))))
.

2009-10-14 17:08:12 . 2009-10-14 17:08:12 0 d-----w- C:\FOUND.001
2009-10-13 05:20:07 . 2009-10-13 05:20:08 34816 ----a-w- C:\WINDOWS\system32\drivers\rootrepeal.sys
2009-10-05 09:13:18 . 2009-10-05 09:13:20 0 d-----w- C:\ComboFix1
2009-09-28 13:40:55 . 2009-09-28 13:40:56 0 d-----w- C:\Documents and Settings\robert holwett\Application Data\Jasc Software Inc
2009-09-28 13:40:20 . 2009-09-28 13:40:22 0 d-----w- C:\Documents and Settings\All Users\Application Data\InstallShield
2009-09-28 13:39:46 . 2009-09-28 13:39:48 0 d-----w- C:\Program Files\Common Files\Jasc Software Inc
2009-09-28 13:39:41 . 2009-09-28 13:39:42 0 d-----w- C:\Program Files\Jasc Software Inc
2009-09-28 13:38:39 . 2009-09-28 13:38:40 0 d-----w- C:\Program Files\Abbyy FineReader 6.0 Sprint
2009-09-28 13:37:39 . 2004-08-04 04:00:00 31744 ----a-w- C:\WINDOWS\system32\fxsroute.dll
2009-09-28 13:37:39 . 2004-08-04 04:00:00 132608 ----a-w- C:\WINDOWS\system32\fxsclntR.dll
2009-09-28 13:37:39 . 2004-08-04 04:00:00 11264 ----a-w- C:\WINDOWS\system32\fxssend.exe
2009-09-28 13:37:39 . 2004-08-04 04:00:00 111104 ----a-w- C:\WINDOWS\system32\fxscfgwz.dll
2009-09-28 13:36:46 . 2009-09-28 13:36:48 0 d-----w- C:\Program Files\Dl_cats
2009-09-28 13:36:25 . 2004-08-04 04:00:00 9600 ----a-w- C:\WINDOWS\system32\drivers\hidusb.sys
2009-09-28 13:35:03 . 2001-08-17 21:36:34 87040 ----a-w- C:\WINDOWS\system32\wiafbdrv.dll
2009-09-28 13:33:50 . 2009-09-28 13:33:52 0 d-----w- C:\temp\{9F5FBC24-EFE2-4f90-B498-EC0FB7D47D15}
2009-09-28 13:33:50 . 2009-09-28 13:33:52 0 d-----w- C:\Temp
2009-09-28 13:31:20 . 2008-04-13 18:47:38 25856 ----a-w- C:\WINDOWS\system32\drivers\usbprint.sys
2009-09-28 13:30:59 . 2004-08-04 04:00:00 31616 ----a-w- C:\WINDOWS\system32\drivers\usbccgp.sys
2009-09-28 02:01:04 . 2009-09-28 02:01:06 0 d-----w- C:\Documents and Settings\robert holwett\DoctorWeb
2009-09-24 18:14:58 . 2009-09-24 18:15:00 0 d-----w- C:\Program Files\ESET
2009-09-23 22:01:46 . 2009-09-23 22:01:48 578560 ----a-w- C:\WINDOWS\system32\dllcache\user32.dll
2009-09-23 21:56:45 . 2009-09-23 21:56:46 0 d-----w- C:\WINDOWS\ERUNT
2009-09-22 18:12:05 . 2009-09-22 18:12:06 0 d-----w- C:\Documents and Settings\Administrator\Application Data\Malwarebytes
2009-09-20 18:17:22 . 2009-09-20 18:17:24 0 d-----w- C:\Program Files\CCleaner
2009-09-15 00:13:16 . 2009-09-15 00:13:18 0 d-----w- C:\Program Files\Prevx
2009-09-15 00:13:02 . 2009-09-15 00:13:04 0 d-----w- C:\Documents and Settings\All Users\Application Data\PrevxCSI

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-09-28 13:34:04 . 2009-09-28 13:34:02 0 d-----w- C:\Program Files\Dell Photo AIO Printer 924
2009-09-28 02:15:32 . 2007-05-25 15:54:11 90112 ----a-w- C:\WINDOWS\DUMP1f2b.tmp
2009-09-27 23:03:22 . 2007-05-25 15:54:11 90112 ----a-w- C:\WINDOWS\DUMP3cf9.tmp
2009-09-27 22:03:02 . 2007-05-25 15:54:11 90112 ----a-w- C:\WINDOWS\DUMP3c5d.tmp
2009-09-27 13:59:52 . 2007-05-25 15:54:11 90112 ----a-w- C:\WINDOWS\DUMP3c8c.tmp
2009-09-23 19:50:24 . 2007-05-25 15:54:11 90112 ----a-w- C:\WINDOWS\DUMP3d28.tmp
2009-09-23 18:44:14 . 2007-05-25 15:54:11 90112 ----a-w- C:\WINDOWS\DUMP48b1.tmp
2009-09-22 21:40:12 . 2007-05-25 15:54:11 90112 ----a-w- C:\WINDOWS\DUMP50ee.tmp
2009-09-22 16:57:16 . 2007-05-25 15:54:11 90112 ----a-w- C:\WINDOWS\DUMP3cab.tmp
2009-09-13 22:07:20 . 2009-09-13 22:07:19 0 d-----w- C:\Program Files\Trend Micro
2009-09-13 20:42:58 . 2009-09-13 20:42:56 0 d-----w- C:\Documents and Settings\robert holwett\Application Data\Malwarebytes
2009-09-13 20:42:44 . 2009-09-13 20:42:43 0 d-----w- C:\Program Files\Malwarebytes' Anti-Malware
2009-09-13 20:42:44 . 2009-09-13 20:42:43 0 d-----w- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-09-13 18:43:02 . 2009-09-13 18:43:01 12552 ----a-w- C:\WINDOWS\system32\drivers\avgrkx86.sys
2009-09-13 18:43:02 . 2009-09-13 18:43:01 11952 ----a-w- C:\WINDOWS\system32\avgrsstx.dll
2009-09-13 18:43:02 . 2009-09-13 18:43:00 108552 ----a-w- C:\WINDOWS\system32\drivers\avgtdix.sys
2009-09-13 18:42:56 . 2009-09-13 18:42:55 335240 ----a-w- C:\WINDOWS\system32\drivers\avgldx86.sys
2009-09-13 18:42:56 . 2009-09-13 18:42:55 27784 ----a-w- C:\WINDOWS\system32\drivers\avgmfx86.sys
2009-09-13 18:42:28 . 2009-09-13 18:42:26 0 d-----w- C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar
2009-09-13 18:42:18 . 2009-09-13 18:42:17 0 d-----w- C:\Program Files\AVG
2009-09-13 18:42:18 . 2009-09-13 18:42:17 0 d-----w- C:\Documents and Settings\All Users\Application Data\avg8
2009-09-13 18:35:36 . 2009-09-13 18:35:35 0 d-----w- C:\Documents and Settings\robert holwett\Application Data\AVG8
2009-09-13 17:45:22 . 2009-09-13 17:45:21 0 d--h--w- C:\Documents and Settings\All Users\Application Data\{EF63305C-BAD7-4144-9208-D65528260864}
2009-09-13 17:45:12 . 2009-09-13 17:45:10 0 d-----w- C:\Program Files\Lavasoft
2009-09-13 17:45:12 . 2009-09-13 17:45:10 0 d-----w- C:\Documents and Settings\All Users\Application Data\Lavasoft
2009-09-10 13:54:06 . 2009-09-13 20:42:45 38224 ----a-w- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2009-09-10 13:53:50 . 2009-09-13 20:42:43 19160 ----a-w- C:\WINDOWS\system32\drivers\mbam.sys
2009-08-21 05:18:28 . 2009-08-21 05:18:26 0 d-----w- C:\Program Files\PeerGuardian2
2009-08-20 17:53:34 . 2009-08-20 17:53:45 411368 ----a-w- C:\WINDOWS\system32\deploytk.dll
2009-08-18 22:57:08 . 2007-05-26 00:02:38 90416 ----a-w- C:\Documents and Settings\robert holwett\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-08-05 09:01:48 . 2005-08-16 15:57:36 204800 ----a-w- C:\WINDOWS\system32\mswebdvd.dll
2009-07-17 19:01:06 . 2005-08-16 15:57:09 58880 ----a-w- C:\WINDOWS\system32\atl.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{A3BC75A2-1F87-4686-AA43-5347D756017C}"= "C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-09-02 10:58:20 1107200]

[HKEY_CLASSES_ROOT\clsid\{a3bc75a2-1f87-4686-aa43-5347d756017c}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
2009-09-02 10:58:20 1107200 ----a-w- C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-09-02 10:58:20 1107200]

[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll" [2009-09-02 10:58:20 1107200]

[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"kdx"="C:\Program Files\Kontiki\KHost.exe" [2007-04-23 10:23:14 1032640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LaunchApp"="Alaunch" [X]
"IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" [2005-06-07 19:02:00 94208]
"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [2005-06-07 18:59:00 77824]
"Persistence"="C:\WINDOWS\system32\igfxpers.exe" [2005-06-07 19:03:00 114688]
"AzMixerSel"="C:\Program Files\Realtek\InstallShield\AzMixerSel.exe" [2005-06-11 18:51:00 53248]
"SynTPLpr"="C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" [2004-10-08 13:44:24 98394]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2004-10-08 13:43:12 688218]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" [2004-08-04 04:00:00 208952]
"MSPY2002"="C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe" [2004-08-04 04:00:00 59392]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-04 04:00:00 455168]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-04 04:00:00 455168]
"EPM-DM"="c:\acer\epm\epm-dm.exe" [2005-08-11 18:21:00 200704]
"ePowerManagement"="C:\Acer\ePM\ePM.exe" [2005-03-15 09:03:06 2893824]
"LManager"="C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE" [2005-08-19 00:28:54 462848]
"eRecoveryService"="C:\Program Files\Acer\eRecovery\Monitor.exe" [2005-08-18 18:38:46 352256]
"SunJavaUpdateSched"="C:\Program Files\Java\jre6\bin\jusched.exe" [2009-08-20 17:53:34 149280]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-05-25 11:55:00 180269]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-05-27 09:50:30 413696]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-06-02 10:13:26 267048]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 23:47:42 31016]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2009-09-18 15:48:32 2022680]
"Malwarebytes Anti-Malware (reboot)"="C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" [2009-09-10 13:53:56 1312080]
"dlccmon.exe"="C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe" [2005-07-22 19:03:00 425984]
"DLCCCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll" [2005-06-07 18:38:10 69632]
"High Definition Audio Property Page Shortcut"="HDAShCut.exe" - C:\WINDOWS\system32\HdAShCut.exe [2005-01-07 16:07:16 61952]
"RTHDCPL"="RTHDCPL.EXE" - C:\WINDOWS\RTHDCPL.EXE [2005-08-09 14:17:00 14743552]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 00:12:16 15360]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2008-4-23 29696]

shelf life
2009-10-15, 23:25
hi,

ok good. See if you can get rootrepeal to run now and post its log.

You had a root kit on board. Root kits can hide from traditional tools.

Heres some older info. Dosnt mention the word root kit but it all still applies:

http://technet.microsoft.com/en-us/library/cc512587.aspx

didsburydan
2009-10-16, 07:05
ROOTREPEAL (c) AD, 2007-2009
==================================================
Scan Start Time: 2009/10/16 05:49
Program Version: Version 1.3.5.0
Windows Version: Windows XP SP3
==================================================

Drivers
-------------------
Name: dump_atapi.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_atapi.sys
Address: 0xAA78B000 Size: 98304 File Visible: No Signed: -
Status: -

Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xF7A66000 Size: 8192 File Visible: No Signed: -
Status: -

Name: rootrepeal.sys
Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys
Address: 0xA95D9000 Size: 49152 File Visible: No Signed: -
Status: -

Hidden/Locked Files
-------------------
Path: C:\HIBERFIL.SYS
Status: Locked to the Windows API!

Path: C:\Documents and Settings\All Users\Application Data\Kontiki\zdata.db-journal
Status: Invisible to the Windows API!

Path: c:\documents and settings\robert holwett\local settings\temp\etilqs_2px4j1avfadcvdscleq6
Status: Allocation size mismatch (API: 32768, Raw: 0)

Path: c:\documents and settings\robert holwett\local settings\application data\google\chrome\user data\default\history-journal
Status: Allocation size mismatch (API: 1081344, Raw: 65536)

Path: c:\documents and settings\robert holwett\local settings\application data\google\chrome\user data\default\history index 2009-10
Status: Allocation size mismatch (API: 1933312, Raw: 917504)

Path: c:\documents and settings\robert holwett\local settings\application data\google\chrome\user data\default\history index 2009-10-journal
Status: Allocation size mismatch (API: 1081344, Raw: 131072)

SSDT
-------------------
#: 041 Function Name: NtCreateKey
Status: Hooked by "Lbd.sys" at address 0xf760e87e

#: 247 Function Name: NtSetValueKey
Status: Hooked by "Lbd.sys" at address 0xf760ebfe

==EOF==

didsburydan
2009-10-16, 07:49
i've got 1 question as well. the usb memory stick that originally gave this laptop the virus... how do i go about cleaning that without sticking it in a usb slot and going through this drama again? it's got some stuff saved on it that i'm going to need pretty soon.

shelf life
2009-10-16, 23:28
hi didsburydan,

ok looking good. Please rescan and post one more hjt log. In answer to your question here is a utility for disabling the Windows auto-run feature, which will NOT be a feature in Windows 7.

http://research.pandasecurity.com/archive/Panda-USB-and-AutoRun-Vaccine.aspx

didsburydan
2009-10-17, 08:22
cheers for the info. here's the log.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 07:19:57, on 17/10/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Acer\eManager\anbmServ.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Kontiki\KService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\RTHDCPL.EXE
C:\acer\epm\epm-dm.exe
C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Acer\eRecovery\Monitor.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\Kontiki\KHost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://news.bbc.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [EPM-DM] c:\acer\epm\epm-dm.exe
O4 - HKLM\..\Run: [ePowerManagement] C:\Acer\ePM\ePM.exe boot
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [tiuopu] C:\Documents and Settings\robert holwett\tiuopu.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe (file missing)

--
End of file - 9284 bytes

didsburydan
2009-10-17, 09:09
im having trouble installing a fresh copy avg free. i had uninstalled avg trial edition using the removal tool.

here's a fresh hjt log. can you see anything that might be stopping me installing it?

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 08:08:45, on 17/10/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Acer\eManager\anbmServ.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Kontiki\KService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\RTHDCPL.EXE
C:\acer\epm\epm-dm.exe
C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
C:\Program Files\Acer\eRecovery\Monitor.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\Program Files\Kontiki\KHost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://news.bbc.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [EPM-DM] c:\acer\epm\epm-dm.exe
O4 - HKLM\..\Run: [ePowerManagement] C:\Acer\ePM\ePM.exe boot
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [tiuopu] C:\Documents and Settings\robert holwett\tiuopu.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\robert holwett\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe (file missing)

--
End of file - 8963 bytes

shelf life
2009-10-17, 21:24
hi,

start HJT, click the "Scan" button. check the items below, close any open windows, then click "Fixed checked"

O4 - HKCU\..\Run: [tiuopu] C:\Documents and Settings\robert holwett\tiuopu.exe

Reboot machine and take a look in C:\Documents and Settings\robert holwett\ and if present delete tiuopu.exe

Were you able to get AVG installed? There are several other free AV apps out there.

didsburydan
2009-10-17, 21:42
done.
is there anything else?

avg won't install, i'll try another program, any recommendations? i was just worried that i may have remnants of a previous install of avg or norton blocking my attempts.

shelf life
2009-10-18, 02:53
Dont see anything that would keep you from installing AVG. Norton makes a removal tool for some of there products but dont see anything in the log relating to Norton.

http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2005033108162039

Here are some options for AVG, I dont know if they apply to the free version or not, Using the installer you can chose to install, repair or uninstall:

http://www.pchell.com/virus/uninstallavg.shtml

Other (free) AV options;

Avira
http://www.free-av.com/

Avast
http://www.avast.com/eng/download-avast-home.html

Bitdefender Free Edition:
http://www.bitdefender.com/PRODUCT-14-en--BitDefender-Free-Edition.html

didsburydan
2009-10-18, 03:08
thank you. so, is it safe to say i am clean now? everything seems perfect this end. if so, i can't thank you enough. you've been a brilliant help.
one more question though... with the exception of combofix, are all the programs you've told me to run safe to use in inexperienced hands? i'm going to try and fix my mates laptop (the source of all this trouble) at some point.

shelf life
2009-10-18, 15:41
hi didsburydan,

ok your welcome. As far as I can tell you are clean. You read the MS technet article I linked to?

The author of combofix dosn't recommend people use combofix unless askec to by someone in a malware removal forum.

Rootrepeal can remove hidden files but you would have to know which ones to remove and not everything shown in a log is malware.

You can remove combofix with a tool:

Please download OTCleanIt and save it to desktop.

http://oldtimer.geekstogo.com/OTC.exe

Double-click OTC.exe.
Click the CleanUp! button.
Select Yes when the "Begin cleanup Process?" prompt appears.
If you are prompted to Reboot during the cleanup, select Yes.
The tool will delete itself once it finishes, if not delete it by yourself.

The rootrepeal icon can be deleted from your desktop.

One last thing to do is make a new restore point. The how and why:

One of the features of Windows ME, XP, Vista and Windows 7 is the System Restore option, however if malware infects a computer it is possible that the malware could be backed up in the System Restore archive. Therefore, clearing the restore points is a good idea after malware is removed and your computer appears to be functioning ok.

To reset your restore points, please note that you will need to log into your computer with an account which has full administrator access. You will know if the account has administrator access because you will be able to see the System Restore tab. If the tab is missing, you are logged in under a limited account.

(winXP)

1. Turn off System Restore. (deletes old possibly infected restore point)
On the Desktop, right-click My Computer.
Click Properties.
Click the System Restore tab.
Check Turn off System Restore.
Click Apply, and then click OK.

2. Reboot.

3. Turn ON System Restore.(creates a new restore point on a clean system)
On the Desktop, right-click My Computer.
Click Properties.
Click the System Restore tab.
UN-Check *Turn off System Restore*.
Click Apply, and then click OK, then reboot

And last some tips for your reference:

10 Tips for Reducing/Preventing Your Risk To Malware:

Simply knowing what constitutes a safe action on a computer and what may not will help you tremendously.

1) It is essential to keep your OS (http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=en-us),(Windows) browser (IE, FireFox) and other software up to date to "patch" vulnerabilities that could be exploited. Visit Windows Update frequently or use the auto-update feature. Staying updated is also necessary for web based applications like Java, Adobe Flash/Reader, QuickTime etc. Check there version status here. (http://secunia.com/vulnerability_scanning/online/)

2) Know what you are installing to your computer. Alot of software can come bundled with unwanted add-ons, like adware, toolbars and malware. Do not install any files from ads, popups or random links. Do not fall for fake warnings about virus and trojans being found on your computer and your then prompted to install software to remedy this. See also the signs (http://www.virusvault.us/signs1.html)that you may have malware on your computer.

3) Install and keep updated: one antivirus and two or three anti-malware applications. If not updated they will soon be worthless. If you frequently have malware then you should review your computer habits.

4) Refrain from clicking on links or attachments via E-Mail, IM, IRC, Chat Rooms, Blogs or Social Networking Sites, no matter how tempting or legitimate the message may seem.

5) Don't click on ads/pop ups or offers from websites requesting that you need to install software, media players or codecs to your computer--for any reason.

6) Don't click on offers to "scan" your computer. Install ActiveX Objects with care. Do you trust the website?

7) Set up and use limited (non-privileged) accounts for everyday use, rather than administrator accounts. Limited accounts (http://www.microsoft.com/protect/computer/advanced/useraccount.mspx) can help prevent *malware from installing and lessen its potential impact.*

8) Install and understand the limitations of a software firewall.

9) A tool (http://nsslabs.com/general/ie8-hardening-tool.html)for automatically hardening and securing Internet Explorer 8.0. Requires site registration for downloading. Changes some of the default settings of IE 8.0 Read the FAQ's.

10) Warez, cracks etc are very popular for carrying malware payloads. Avoid. If you install files via p2p (http://www.virusvault.us/p2p.html) networks then you are much more likely to encounter malicious code. There is plenty of malware distributed on the networks. Do you trust the source of the file? Do you really need another malware source?

A longer version in link below.

Happy Safe Surfing.