Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Unsuccessful Malware Cleaning -- Multiple DLLHOST.EXE Processes Running


  • This topic is locked This topic is locked
15 replies to this topic

#1 I2M_Leon

I2M_Leon

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Philadelphia, PA
  • Local time:08:47 AM

Posted 04 November 2014 - 04:21 PM

Working on a client's retail POS computer (Windows 7 Professional, 32-bit), noticed it was very slow.  Checking running processes, found that 15-20 DLLHOST.EXE processes were running with large amounts of resources being consumed (CPU/RAM).  Tried shutting them down, but they just kept coming back.  Was able to stop them returning by killing explorer.exe, and left just the essential windows running that my client needed to conduct business -- this seemed to work as a temporary fix.  However, attempts to clean whatever malware is causing this were not completely successful.  Scans found some malware and removed, but this problem of the "creeping" DLLHOST.EXE processes still remains whenever explorer.exe is running.  As soon as I start explorer.exe, the DLLHOST.EXE processes start multiplying rapidly within minutes.

DDS.TXT -->

 

DDS (Ver_2012-11-20.01) - NTFS_x86 
Internet Explorer: 11.0.9600.17344  BrowserJavaVersion: 10.55.2
Run by pos at 16:07:48 on 2014-11-04
Microsoft Windows 7 Professional   6.1.7601.1.1252.1.1033.18.2012.1148 [GMT -5:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
SP: Microsoft Security Essentials *Enabled/Updated* {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\APC\PowerChute Personal Edition\mainserv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe
C:\check_mk_agent.exe
C:\Program Files\EPSON\EPuras\EPurasLog.exe
C:\Windows\system32\inetsrv\inetinfo.exe
C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
C:\Program Files\TightVNC\tvnserver.exe
C:\Program Files\APC\PowerChute Personal Edition\dataserv.exe
C:\Program Files\EPSON\EPuras\EPuras.exe
c:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\TeamViewer\Version7\TeamViewer.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\TeamViewer\Version7\tv_w32.exe
C:\Program Files\Realtek\Audio\HDA\RtDCpl.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\TightVNC\tvnserver.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\APC\PowerChute Personal Edition\apcsystray.exe
C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe
C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Program Files\FileMaker\FileMaker Pro 11\FileMaker Pro.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Microsoft Office\Office14\WINWORD.EXE
C:\Program Files\Microsoft Office\Office14\EXCEL.EXE
c:\program files\teamviewer\version7\TeamViewer_Desktop.exe
C:\Windows\system32\taskmgr.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\explorer.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
BHO: TmIEPlugInBHO Class: {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - 
BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office\office14\URLREDIR.DLL
BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
uRun: [Dxbomedia Update] regsvr32.exe c:\users\pos\appdata\local\dxbomedia\icuin28.dll
uRun: [CCleaner Monitoring] "c:\program files\ccleaner\CCleaner.exe" /MONITOR
uRun: [ChromeUpdate] c:\users\pos\appdata\roaming\frameworkupdate7\ChromeUpdate.exe
mRun: [RtHDVCpl] c:\program files\realtek\audio\hda\RtDCpl.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [IAStorIcon] c:\program files\intel\intel® rapid storage technology\IAStorIcon.exe
mRun: [RemoteControl9] "c:\program files\cyberlink\powerdvd9\PDVD9Serv.exe"
mRun: [PDVD9LanguageShortcut] "c:\program files\cyberlink\powerdvd9\language\Language.exe"
mRun: [RoxWatchTray] "c:\program files\common files\roxio shared\oem\12.0\sharedcom\RoxWatchTray12OEM.exe"
mRun: [Desktop Disc Tool] "c:\program files\roxio\oem\roxio burn\RoxioBurnLauncher.exe"
mRun: [Display] c:\program files\apc\powerchute personal edition\DataCollectionLauncher.exe
mRun: [tvncontrol] "c:\program files\tightvnc\tvnserver.exe" -controlservice -slave
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\apcups~1.lnk - c:\program files\apc\powerchute personal edition\Display.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\tm-t20~1.lnk - c:\program files\epson\tm-t20 software\tm20utl\TMRESTOREAPP.EXE
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: SoftwareSASGeneration = dword:1
IE: E&xport to Microsoft Excel - c:\progra~1\micros~1\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~1\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
IE: {7F9DB11C-E358-4ca6-A83D-ACC663939424} - {9999A076-A9E2-4C99-8A2B-632FC9429223}
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
TCP: NameServer = 8.8.8.8 8.8.4.4
TCP: Interfaces\{CBF1E028-82C3-4229-B485-4C2BC40FB890} : DHCPNameServer = 8.8.8.8 8.8.4.4
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - 
Notify: igfxcui - igfxdev.dll
SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2014-7-17 231800]
R1 MpKsl7802346d;MpKsl7802346d;c:\programdata\microsoft\microsoft antimalware\definition updates\{c7eafcab-86b7-47ff-95e1-ced627aa4efb}\MpKsl7802346d.sys [2014-11-4 39464]
R2 APC Data Service;APC Data Service;c:\program files\apc\powerchute personal edition\dataserv.exe [2011-8-24 21880]
R2 BrcmMgmtAgent;Broadcom Management Agent;c:\program files\broadcom\mgmtagent\BrcmMgmtAgent.exe [2010-6-29 127488]
R2 Check_MK_Agent;Check_MK_Agent;C:\check_mk_agent.exe [2012-2-12 97280]
R2 EpsonPuras;Epson Puras Service;c:\program files\epson\epuras\EPuras.exe [2011-4-20 438272]
R2 EpsonPurasLog;Epson Puras Log Service;c:\program files\epson\epuras\EPurasLog.exe [2011-4-20 323584]
R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;c:\program files\intel\intel® rapid storage technology\IAStorDataMgrSvc.exe [2012-1-18 13336]
R2 IntuitUpdateServiceV4;Intuit Update Service v4;c:\program files\common files\intuit\update service v4\IntuitUpdateService.exe [2012-8-23 13672]
R2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2012-8-30 95920]
R2 TeamViewer7;TeamViewer 7;c:\program files\teamviewer\version7\TeamViewer_Service.exe [2011-11-29 2924928]
R2 tvnserver;TightVNC Server;c:\program files\tightvnc\tvnserver.exe [2011-8-3 828944]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2012-1-18 349736]
R3 honeywell_enum;honeywell_enum;c:\windows\system32\drivers\honeywell_enum_21617.sys [2010-5-10 72584]
R3 k57nd60x;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\k57nd60x.sys [2012-1-18 349224]
R3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\NisSrv.exe [2014-8-22 288120]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 EPSON TM Parallel Port Driver;EPSON TM Parallel Port Driver;c:\windows\system32\drivers\tmlpt.sys [2011-4-20 18696]
S2 RoxWatch12;Roxio Hard Drive Watcher 12;c:\program files\common files\roxio shared\oem\12.0\sharedcom\RoxWatch12OEM.exe [2010-11-25 219632]
S3 BRSptSvc;BitRaider Mini-Support Service;c:\programdata\bitraider\BRSptSvc.exe [2013-6-5 914200]
S3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\ieetwcollector.exe [2014-10-15 108032]
S3 netvsc;netvsc;c:\windows\system32\drivers\netvsc60.sys [2010-11-20 126464]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-12-27 14848]
S3 RoxMediaDB12OEM;RoxMediaDB12OEM;c:\program files\common files\roxio shared\oem\12.0\sharedcom\RoxMediaDB12OEM.exe [2010-11-25 1116656]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-5-13 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2011-5-13 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2011-5-13 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [2011-5-13 114280]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
S3 SynthVid;SynthVid;c:\windows\system32\drivers\VMBusVideoM.sys [2010-11-20 19456]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-12-27 49664]
S3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-12-27 27136]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2012-1-28 1343400]
.
=============== Created Last 30 ================
.
2014-11-04 21:02:54 39464 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{c7eafcab-86b7-47ff-95e1-ced627aa4efb}\MpKsl7802346d.sys
2014-11-04 15:21:44 908840 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{c41631a6-6f10-43c4-9328-cd6e92da7db0}\gapaengine.dll
2014-11-04 15:20:32 8901368 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{c7eafcab-86b7-47ff-95e1-ced627aa4efb}\mpengine.dll
2014-11-03 15:21:32 908840 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{9e476108-0f6d-4340-a243-57b8ccb77b26}\gapaengine.dll
2014-11-03 15:20:57 8901368 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2014-11-02 15:20:56 908840 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{12a7acc0-5c60-4189-a0b5-c5deb047412a}\gapaengine.dll
2014-10-30 23:20:35 -------- d-----w- c:\users\pos\appdata\roaming\FrameworkUpdate7
2014-10-30 23:14:55 0 ----a-w- c:\users\pos\appdata\roaming\cymkkv.dll
2014-10-30 23:14:30 40960 ----a-w- c:\users\pos\appdata\roaming\zozbut.dll
2014-10-29 19:04:14 -------- d-----w- c:\program files\CCleaner
2014-10-29 18:54:13 -------- d-----w- C:\TDSSKiller_Quarantine
2014-10-29 18:15:07 -------- d-----w- c:\programdata\Malwarebytes' Anti-Malware (portable)
2014-10-29 17:52:48 -------- d-----w- C:\AdwCleaner
2014-10-29 16:41:28 113880 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-10-29 16:40:59 75480 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-10-29 16:40:59 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-10-29 16:40:59 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2014-10-29 16:40:20 -------- d-----w- c:\users\pos\appdata\roaming\Malwarebytes
2014-10-29 06:56:15 -------- d-----w- c:\programdata\XucuhXitko
2014-10-15 08:57:59 812736 ----a-w- c:\program files\internet explorer\iexplore.exe
2014-10-15 08:56:59 988160 ----a-w- c:\windows\system32\drmv2clt.dll
2014-10-11 23:41:30 -------- d-----w- c:\users\pos\appdata\local\IsolatedStorage
2014-10-11 23:29:28 -------- d-----w- c:\users\pos\appdata\roaming\Intuit
2014-10-11 23:26:12 -------- d-----w- c:\program files\common files\Intuit
2014-10-11 23:25:47 -------- d-----w- c:\program files\TurboTax
2014-10-11 23:25:32 -------- d-----w- c:\programdata\Intuit
.
==================== Find3M  ====================
.
2014-10-30 11:24:45 229000 ------w- c:\windows\system32\MpSigStub.exe
2014-10-10 01:44:58 230912 ----a-w- c:\windows\system32\generaltel.dll
2014-10-10 01:44:35 396288 ----a-w- c:\windows\system32\aepdu.dll
2014-10-10 01:39:38 302592 ----a-w- c:\windows\system32\aeinv.dll
2014-10-01 15:11:10 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-09-29 00:41:36 2379264 ----a-w- c:\windows\system32\win32k.sys
2014-09-25 22:32:04 2017280 ----a-w- c:\windows\system32\inetcpl.cpl
2014-09-25 01:40:50 519680 ----a-w- c:\windows\system32\qdvd.dll
2014-09-24 16:28:19 71344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-09-24 16:28:19 701104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-09-19 01:25:12 4201472 ----a-w- c:\windows\system32\jscript9.dll
2014-09-19 01:14:57 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-09-19 01:14:44 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2014-09-19 01:02:07 454656 ----a-w- c:\windows\system32\vbscript.dll
2014-09-19 01:01:47 61952 ----a-w- c:\windows\system32\iesetup.dll
2014-09-19 01:01:03 51200 ----a-w- c:\windows\system32\ieetwproxystub.dll
2014-09-19 00:59:40 61952 ----a-w- c:\windows\system32\MshtmlDac.dll
2014-09-19 00:50:16 112128 ----a-w- c:\windows\system32\ieUnatt.exe
2014-09-19 00:50:15 108032 ----a-w- c:\windows\system32\ieetwcollector.exe
2014-09-19 00:49:31 597504 ----a-w- c:\windows\system32\jscript9diag.dll
2014-09-19 00:44:23 646144 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-09-19 00:36:23 60416 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2014-09-19 00:18:55 1068032 ----a-w- c:\windows\system32\mshtmlmedia.dll
2014-09-18 23:59:11 1810944 ----a-w- c:\windows\system32\wininet.dll
2014-09-18 01:32:52 2363904 ----a-w- c:\windows\system32\msi.dll
2014-09-13 01:40:05 67072 ----a-w- c:\windows\system32\packager.dll
2014-09-09 21:47:10 2048 ----a-w- c:\windows\system32\tzres.dll
2014-09-04 05:04:15 372736 ----a-w- c:\windows\system32\rastls.dll
2014-08-29 01:44:52 37376 ----a-w- c:\windows\system32\tsgqec.dll
2014-08-29 01:44:52 2744320 ----a-w- c:\windows\system32\rdpcorets.dll
2014-08-29 01:44:51 4922368 ----a-w- c:\windows\system32\mstscax.dll
2014-08-29 01:44:49 269312 ----a-w- c:\windows\system32\aaclient.dll
2014-08-29 01:44:19 1050112 ----a-w- c:\windows\system32\mstsc.exe
2014-08-23 01:46:55 305152 ----a-w- c:\windows\system32\gdi32.dll
2014-08-19 02:41:38 50176 ----a-w- c:\windows\system32\setbcdlocale.dll
2014-08-19 02:41:22 50688 ----a-w- c:\windows\system32\appidapi.dll
2014-08-19 02:41:22 27648 ----a-w- c:\windows\system32\appidsvc.dll
2014-08-19 02:40:49 96768 ----a-w- c:\windows\system32\appidpolicyconverter.exe
2014-08-19 02:40:49 16896 ----a-w- c:\windows\system32\appidcertstorecheck.exe
2014-08-19 01:48:34 50176 ----a-w- c:\windows\system32\drivers\appid.sys
.
============= FINISH: 16:08:01.61 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,699 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:47 AM

Posted 09 November 2014 - 04:25 PM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/554745 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 Mako

Mako

  • Malware Response Team
  • 238 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:02:47 PM

Posted 11 November 2014 - 05:13 AM

Hi I2M_Leon,

Welcome to the BleepingComputer's Virus/Trojan/Spyware/Malware Removal forum. :welcome:
My name is Mako and I will be helping you with your computer problems.

Before we begin, please note the following:

  • Please stay with the topic until I tell you that your system is clean. Missing symptoms does not mean that everything is okay.
  • The instructions given are for your system only!
  • Please do not run any tools until requested! The reason for this is so I know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.
  • If you don't understand something don't hesitate to ask before running the tools.
  • As you may have noticed: I live in Belgium. Meaning that due to the time difference it can take some time before I'm able to get back to you. Please allow me 24h to reply to your topic before sending me a PM or giving this topic a bump.

Now let's get started...

 

The fact that there are multiple Dllhost.exe processes running isn't something to worry too much about. Even on a normal system there can be more than one Dllhost.exe process running. This is just some sort of clustering of programs that need to run. As some sort of build-in safety Windows has spread these programs over multiple (Dllhost.exe) processes.

 

However I would like to take a further look to make sure there is nothing wrong with your computer. 

:step1: ======Zoek.exe======

Take action to disable your antivirus and antispyware programs, as they may conflict with Zoek.exe
>> Info on how to disable your security applications > http://www.bleepingcomputer.com/forums/topic114351.html

Download 51a612a8b27e2-Zoek.pngzoek.exe to your desktop

  • If Internet Explorer, any other browser, or a security program issues a warning indicating the file is unsafe, please ignore, since it is a false warning.

Using Zoek.exe

  • On the Desktop, double-click Zoek.exe to start the tool.
    Windows Vista, 7 and 8 users right-click the file and select: Run as Administrator.
    Give the program a few seconds to appear.
  • Copy and paste the following script in the code box:
  • Note: This script is written for usage on this system only, do not use it on any other computer even if the problems are similar.
    filesrcm;
    startupall;
    chromelook;
    firefoxlook;
    c:\users\pos\appdata\roaming\cymkkv.dll;p
    c:\users\pos\appdata\roaming\zozbut.dll;p
    c:\programdata\XucuhXitko;vs
    emptyfolderscheck;delete
    
  • Click the "Run script" button and wait patiently.
  • When finished the logfile will be opened in notepad.
  • If a reboot is needed the logfile will be opened after reboot.
  • The zoek-results.log can also be found on your systemdrive.
  • Please post the logfile for further review in your next comment.

:step2: ==== MalwareByte's Anti-Malware (MBAM)====

Download 51a46ae42d560-malwarebytes_anti_malware.MalwareBytes Anti-Malware to your desktop.

  • Double-click mbam-setup-2.0.exe to start the installation of Malwarebytes Anti-Malware.
  • Follow the instructions on your screen to complete the installation. You can find the complete installation procedure here.
  • Click the Scan Now button, a threat scan will start automatically.
  • MalwareBytes Anti-Malware will now check for the latest updates. Click Update Now if new updates are available.
  • Your computer is now being scanned, please do not use your computer during the scan.
    • If no threats were found, click View detailed log.
      • Click Export and save the log as a .txt file on your Desktop or another location.
    • If the scan detected any threats, click Apply Actions.
      • To complete any actions taken you will be prompted to restart your computer...click on Yes.
      • After reboot, start Malwarebytes Anti-Malware again and click the History Tab at the top and select Application Logs.
      • Check the box next to Scan Log. Choose the most current scan and click View.
      • Click Export and save the log as a .txt file on your Desktop or another location.
  • Providing the MalwareBytes' Anti-Malware log file
    • Attach the log file you just saved to your next reply for further review.

Regards,

Mako

 

Member of UNITE Unified Network of Instructors and Trained Eliminators

Noticed any spelling or grammar errors in my reply? Please feel free to point them out to me, I'm always eager to learn. 


#4 I2M_Leon

I2M_Leon
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Philadelphia, PA
  • Local time:08:47 AM

Posted 11 November 2014 - 11:27 AM

 Zoek results:

 

 
Zoek.exe v5.0.0.0 Updated 10-November-2014
Tool run by pos on Tue 11/11/2014 at 10:46:54.69.
Microsoft Windows 7 Professional  6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\pos\Desktop\zoek.exe [Scan all users] [Script inserted] 
 
==== System Restore Info ======================
 
11/11/2014 10:49:58 AM Zoek.exe System Restore Point Created Succesfully.
 
==== Empty Folders Check ======================
 
C:\Program Files\AGEIA Technologies deleted successfully
C:\Program Files\Malwarebytes' Anti-Malware deleted successfully
C:\Program Files\MSXML 4.0 deleted successfully
C:\PROGRA~2\Malwarebytes' Anti-Malware (portable) deleted successfully
C:\PROGRA~2\Oracle deleted successfully
C:\PROGRA~2\XucuhXitko deleted successfully
C:\Users\Administrator.ROYALCG\AppData\Roaming\FileMaker Pro deleted successfully
C:\Users\pos\AppData\Roaming\FileMaker Pro deleted successfully
C:\Users\pos\AppData\Roaming\FrameworkUpdate7 deleted successfully
C:\Users\posuser\AppData\Roaming\FileMaker Pro deleted successfully
C:\Users\pos\AppData\Local\MigWiz deleted successfully
C:\Users\pos\AppData\Local\VirtualStore deleted successfully
C:\Users\posuser\AppData\Local\VirtualStore deleted successfully
 
==== Creating Sample_20141111_1050.zip ======================
 
failed to copy c:\users\pos\appdata\roaming\cymkkv.dll
Copied file c:\users\pos\appdata\roaming\zozbut.dll to sample\zozbut.dll
sample\zozbut.dll renamed to 83F0F7FE2E9C7286553FA6056A74E678
 
C:\Users\Public\Desktop\sample_20141111_1050.zip created successfully
 
==== Files Recently Created / Modified ======================
 
====== C:\Windows ====
====== C:\Users\pos\AppData\Local\Temp ====
2014-11-04 21:02:30 9109344E0DD07369654ADFEDD840845D 1042 ----a-w- C:\Users\pos\AppData\Local\Temp\nsmF4E8.tmp\notifykeysC.com
2014-11-04 21:00:55 ACC2B699EDFEA5BF5AAE45ABA3A41E96 6656 ----a-w- C:\Users\pos\AppData\Local\Temp\nsmF4E8.tmp\nsExec.dll
2014-11-04 20:59:55 C17103AE9072A06DA581DEC998343FC1 11264 ----a-w- C:\Users\pos\AppData\Local\Temp\nsmF4E8.tmp\System.dll
2014-11-04 20:59:55 7579ADE7AE1747A31960A228CE02E666 4096 ----a-w- C:\Users\pos\AppData\Local\Temp\nsmF4E8.tmp\UserInfo.dll
2014-10-31 03:38:57 9F2768E468D3360B37E5C17FCE085173 15594 ----a-w- C:\Users\pos\AppData\Local\Temp\50c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI\couponprinter[1].exe
2014-10-30 16:15:40 AD6F68A646E1152BAE144102C8D0BDD2 9861 ----a-w- C:\Users\pos\AppData\Local\Temp\39a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU\installer_adobe_flash_player_English[1].exe
====== Java Cache =====
====== C:\Windows\system32 =====
====== C:\Windows\system32\drivers =====
2014-10-29 16:41:28 6802E1A143C49D7BDAB0BF952E5A231C 113880 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-10-29 16:40:59 EA6FC4074EB53342249CCE7DAE9F3A85 75480 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-10-29 16:40:59 7A6526C8BD114DB7CA8930AB22D52A0B 51928 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-10-15 08:57:41 CD9214A6AE17D188D17C3CF8CB9CC693 184320 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2014-10-15 08:57:41 6C5139E4283249518F7743D7043775B3 31232 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys
2014-10-15 08:56:56 344D1FA0438A967F1A2BAA42C86D6E19 593920 ----a-w- C:\Windows\System32\drivers\PEAuth.sys
2014-10-15 08:56:49 E499E422412EF37576092A52648DB2B4 50176 ----a-w- C:\Windows\System32\drivers\appid.sys
====== C:\Windows\Tasks ======
2014-10-30 23:14:31 5060337607B3A64C60B472A39FA4C7C4 4026 ----a-w- C:\Windows\system32\Tasks\{8CFCFEF0-FBD5-3A37-BBF4-3420D62DC6ED}
====== C:\Windows\Temp ======
======= C:\Program Files =====
======= C: =====
====== C:\Users\pos\AppData\Roaming ======
2014-10-30 23:20:35 1795524A3394D6A75EDB2F89EEB5BC20 896 ---h--w- C:\Users\pos\AppData\Roaming\????
2014-10-30 23:14:55 !HASH: COULD NOT OPEN FILE !!!!! 0 ----a-w- C:\Users\pos\AppData\Roaming\cymkkv.dll
2014-10-30 23:14:30 83F0F7FE2E9C7286553FA6056A74E678 40960 ----a-w- C:\Users\pos\AppData\Roaming\zozbut.dll
2014-10-22 20:23:36 -------- d-----w- C:\Users\pos\AppData\Locallow\{CD740FB1-2956-4DD3-BF70-6B8BF8674B86}
2014-10-19 04:08:56 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\pos\AppData\Locallow\seetla.dll
2014-10-19 04:08:55 248E30811397DEF2314F397F4F867FEA 39424 ----a-w- C:\Users\pos\AppData\Locallow\ghejrm.dll
====== C:\Users\pos ======
2014-10-30 23:21:23 D2E80573D8B24F89985C364DA6BAD6CA 144 ---ha-w- C:\ProgramData\@system3.att
2014-10-30 23:20:55 BC6C307332DCA1E3CD78388A063CB42B 408 ----a-w- C:\ProgramData\@system.temp
2014-10-29 06:54:46 -------- d-----w- C:\ProgramData\Windows Genuine Advantage
 
====== C: exe-files ==
=== C: other files ==
2014-11-11 15:50:25 1E094955E91DE47E8A554D563CC91198 28879 ----a-w- C:\Users\Public\Desktop\sample_20141111_1050.zip
2014-11-04 21:02:30 9109344E0DD07369654ADFEDD840845D 1042 ----a-w- C:\Users\pos\AppData\Local\Temp\nsmF4E8.tmp\notifykeysC.com
2014-11-04 20:59:00 8B968045D75783A09592C3105F2865DA 688992 ------r- C:\Utilities\dds.com
 
==== Startup Registry Enabled ======================
 
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
 
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
 
[HKEY_USERS\S-1-5-21-3030310518-2139226461-1239957552-1001\Software\Microsoft\Windows\CurrentVersion\Run]
"Dxbomedia Update"="regsvr32.exe C:\Users\pos\AppData\Local\Dxbomedia\icuin28.dll"
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR"
 
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
 
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RtDCpl.exe"
"IgfxTray"="C:\Windows\system32\igfxtray.exe"
"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"
"Persistence"="C:\Windows\system32\igfxpers.exe"
"IAStorIcon"="C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe"
"RemoteControl9"="C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe"
"PDVD9LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"
"RoxWatchTray"="C:\Program Files\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"
"Desktop Disc Tool"="C:\Program Files\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"
"Display"="C:\Program Files\APC\PowerChute Personal Edition\DataCollectionLauncher.exe"
"tvncontrol"="C:\Program Files\TightVNC\tvnserver.exe -controlservice -slave"
"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"
"Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"
 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Dxbomedia Update"="regsvr32.exe C:\Users\pos\AppData\Local\Dxbomedia\icuin28.dll"
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR"
 
==== Startup Folders ======================
 
2012-01-27 23:17:02 1031 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\APC UPS Status.lnk
2012-02-01 19:13:46 1048 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TM-T20 Utility(Automatic Restore).lnk
 
==== Task Scheduler Jobs ======================
 
C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [09/24/2014 11:28 AM]
 
==== Other Scheduled Tasks ======================
 
"C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\system32\tasks\{8AC036B7-22C7-4D70-9FC3-BFF7C66C7C63}" [C:\Program Files\FileMaker\FileMaker Pro 11\FileMaker Pro.exe]
"C:\Windows\system32\tasks\{8CFCFEF0-FBD5-3A37-BBF4-3420D62DC6ED}" [C:\Windows\system32\regsvr32.exe]
"C:\Windows\system32\tasks\2BrightSparks\SyncBackPro\RCG-POS-pos\SyncBackPro" [C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe]
"C:\Windows\system32\tasks\2BrightSparks\SyncBackPro\RCG-POS-pos\SyncBackPro POS Backup" [C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe]
"C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe]
"C:\Windows\system32\tasks\Dell\Client System Update" ["C:\Program Files\Dell\ClientSystemUpdate\DellClientSystemUpdate.exe"]
"C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]
 
==== Firefox Extensions Registry ======================
 
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{22C7F6C6-8D67-4534-92B5-529A0EC09405}"="C:\Program Files\Trend Micro\Client Server Security Agent\bho\1056\FirefoxExtension" []
 
==== Chromium Look ======================
 
YouTube - pos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - pos\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Gmail - pos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
 
==== Chromium Startpages ======================
 
C:\Users\pos\AppData\Local\Google\Chrome\User Data\Default\Preferences
"urls_to_restore_on_startup": [ "http://www.google.com/" ]
"urls_to_restore_on_startup": [ "http://www.google.com/" ]
 
 
==== C:\zoek_backup content ======================
 
C:\zoek_backup (files=0 folders=0 0 bytes)
 
==== EOF on Tue 11/11/2014 at 10:54:13.00 ======================
 
 
Malwarebytes results are attached.
 
I am also attaching a screenshot of an error that kept popping up on every reboot -- except that after running Malwarebytes this time, it didn't appear anymore.  Not sure if it will be helpful, but including it anway.

Attached Files



#5 Mako

Mako

  • Malware Response Team
  • 238 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:02:47 PM

Posted 11 November 2014 - 04:14 PM

Greetings I2M_Leon,
 
Looks like there are some suspicious files on your computer. Let's clean this system of these junk files.  :wink:
 
:step1: ====Zoek.exe====

Start Zoek.exe 51a612a8b27e2-Zoek.png again.

Take action to disable your antivirus and antispyware programs, as they may conflict with Zoek.exe
>> Info on how to disable your security applications > http://www.bleepingcomputer.com/forums/topic114351.html

Using Zoek.exe

  • On the Desktop, double-click Zoek.exe to start the tool.
    Windows Vista, 7 and 8 users right-click the file and select: Run as Administrator.
    Give the program a few seconds to appear.
  • Copy and paste the following script in the code box:
  • Note: This script is written for usage on this system only, do not use it on any other computer even if the problems are similar.
    C:\Windows\system32\tasks\{8AC036B7-22C7-4D70-9FC3-BFF7C66C7C63};f
    {8AC036B7-22C7-4D70-9FC3-BFF7C66C7C63};c
    C:\Program Files\FileMaker;fs
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run];r
    "Dxbomedia Update"=-;r
    C:\Users\pos\AppData\Local\Dxbomedia;fs
    autoclean;
    
  • Click the "Run script" button and wait patiently.
  • When finished the logfile will be opened in notepad.
  • If a reboot is needed the logfile will be opened after reboot.
  • The zoek-results.log can also be found on your systemdrive.
  • Please post the logfile for further review in your next comment.

:step2: ====Uploading the sample====

There should be a file named sample_20141111_1050.zip on your desktop. Please upload this file to WeTransfer.
Click on the share button share-icon-android.png and select Link.
Now select the file from your desktop and provide the download link in your next post please.

:step3: ====OTL====

We need to create an OTL Report

  • Please download OTL from one of the following mirrors:
  • Save it to your desktop.
  • Double click on the otlicon.png icon on your desktop.
  • Click the "Scan All Users" checkbox.
  • Push the runscan.png button.
  • Two reports will open, copy and paste them in a reply here:
    • OTL.txt <-- Will be opened
    • Extra.txt <-- Will be minimized

Edited by Mako, 11 November 2014 - 04:16 PM.

Regards,

Mako

 

Member of UNITE Unified Network of Instructors and Trained Eliminators

Noticed any spelling or grammar errors in my reply? Please feel free to point them out to me, I'm always eager to learn. 


#6 I2M_Leon

I2M_Leon
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Philadelphia, PA
  • Local time:08:47 AM

Posted 12 November 2014 - 01:57 PM

The Zoek script left my client's POS software (FileMaker Pro / MOBY) in an unusable condition.  I had to restore the system to a point before we started.  I reran the original Zoek script (at the beginning of this thread) and also reran Malwarebytes; both logs are listed below.  For future Zoek cleaning scripts, please exclude making changes to anything related to FileMaker, as it is part of the client's POS system.  Thanks!

Zoek log:

 

Zoek.exe v5.0.0.0 Updated 11-November-2014
Tool run by pos on Wed 11/12/2014 at 13:25:07.90.
Microsoft Windows 7 Professional  6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\pos\Desktop\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-11-11-155413.log 10068 bytes
C:\zoek-results2014-11-12-160344.log 148673 bytes

==== Empty Folders Check ======================

C:\Users\pos\AppData\Roaming\FileMaker Pro deleted successfully
C:\Users\pos\AppData\Local\VirtualStore deleted successfully
C:\Users\posuser\AppData\Local\Google deleted successfully

==== Creating Sample_20141112_0127.zip ======================
 
Process iexplore.exe killed
Copied file c:\users\pos\appdata\roaming\cymkkv.dll to sample\cymkkv.dll
Copied file c:\users\pos\appdata\roaming\zozbut.dll to sample\zozbut.dll
sample\cymkkv.dll renamed to D41D8CD98F00B204E9800998ECF8427E
sample\zozbut.dll renamed to 5B958D8723061663A191B53583BA181A

C:\Users\Public\Desktop\sample_20141112_0127.zip created successfully

==== Files Recently Created / Modified ======================

====== C:\Windows ====
====== C:\Users\pos\AppData\Local\Temp ====
2014-11-04 21:02:30 9109344E0DD07369654ADFEDD840845D 1042 ----a-w- C:\Users\pos\AppData\Local\Temp\nsmF4E8.tmp\notifykeysC.com
2014-11-04 21:00:55 ACC2B699EDFEA5BF5AAE45ABA3A41E96 6656 ----a-w- C:\Users\pos\AppData\Local\Temp\nsmF4E8.tmp\nsExec.dll
2014-11-04 20:59:55 C17103AE9072A06DA581DEC998343FC1 11264 ----a-w- C:\Users\pos\AppData\Local\Temp\nsmF4E8.tmp\System.dll
2014-11-04 20:59:55 7579ADE7AE1747A31960A228CE02E666 4096 ----a-w- C:\Users\pos\AppData\Local\Temp\nsmF4E8.tmp\UserInfo.dll
2014-10-31 03:38:57 9F2768E468D3360B37E5C17FCE085173 15594 ----a-w- C:\Users\pos\AppData\Local\Temp\50c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI\couponprinter[1].exe
2014-10-30 16:15:40 AD6F68A646E1152BAE144102C8D0BDD2 9861 ----a-w- C:\Users\pos\AppData\Local\Temp\39a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU\installer_adobe_flash_player_English[1].exe
====== Java Cache =====
====== C:\Windows\system32 =====
====== C:\Windows\system32\drivers =====
2014-10-29 16:41:28 8E2E9CCD873ABF180F48BCAEEEBE347D 114904 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-10-29 16:40:59 EA6FC4074EB53342249CCE7DAE9F3A85 75480 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-10-29 16:40:59 7A6526C8BD114DB7CA8930AB22D52A0B 51928 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-10-15 08:57:41 CD9214A6AE17D188D17C3CF8CB9CC693 184320 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2014-10-15 08:57:41 6C5139E4283249518F7743D7043775B3 31232 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys
2014-10-15 08:56:56 344D1FA0438A967F1A2BAA42C86D6E19 593920 ----a-w- C:\Windows\System32\drivers\PEAuth.sys
2014-10-15 08:56:49 E499E422412EF37576092A52648DB2B4 50176 ----a-w- C:\Windows\System32\drivers\appid.sys
====== C:\Windows\Tasks ======
2014-10-30 23:14:31 5060337607B3A64C60B472A39FA4C7C4 4026 ----a-w- C:\Windows\system32\Tasks\{8CFCFEF0-FBD5-3A37-BBF4-3420D62DC6ED}
====== C:\Windows\Temp ======
======= C:\Program Files =====
======= C: =====
====== C:\Users\pos\AppData\Roaming ======
2014-11-11 23:35:16 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp
2014-11-11 23:35:16 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp
2014-11-11 23:35:13 -------- d-----w- C:\Users\Default\AppData\Local\Temp
2014-11-11 23:35:13 -------- d-----w- C:\Users\Default User\AppData\Local\Temp
2014-10-30 23:14:55 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\pos\AppData\Roaming\cymkkv.dll
2014-10-30 23:14:30 5B958D8723061663A191B53583BA181A 40960 ----a-w- C:\Users\pos\AppData\Roaming\zozbut.dll
2014-10-19 04:08:56 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\pos\AppData\Locallow\seetla.dll
2014-10-19 04:08:55 248E30811397DEF2314F397F4F867FEA 39424 ----a-w- C:\Users\pos\AppData\Locallow\ghejrm.dll
====== C:\Users\pos ======
2014-11-12 16:03:53 -------- d-----r- C:\Windows\system32\config\systemprofile\Searches
2014-10-30 23:21:23 D2E80573D8B24F89985C364DA6BAD6CA 144 ---ha-w- C:\ProgramData\@system3.att
2014-10-30 23:20:55 BC6C307332DCA1E3CD78388A063CB42B 408 ----a-w- C:\ProgramData\@system.temp
2014-10-29 06:54:46 -------- d-----w- C:\ProgramData\Windows Genuine Advantage

====== C: exe-files ==
=== C: other files ==
2014-11-12 18:27:45 9B7BFB54804B720B4F15989A1EB817DF 29096 ----a-w- C:\Users\Public\Desktop\sample_20141112_0127.zip
2014-11-11 15:50:25 1E094955E91DE47E8A554D563CC91198 28879 ----a-w- C:\Users\Public\Desktop\sample_20141111_1050.zip

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-3030310518-2139226461-1239957552-1001\Software\Microsoft\Windows\CurrentVersion\Run]
"Dxbomedia Update"="regsvr32.exe C:\Users\pos\AppData\Local\Dxbomedia\icuin28.dll"
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR"

[HKEY_USERS\S-1-5-21-3030310518-2139226461-1239957552-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Run]
"Dxbomedia Update"="regsvr32.exe C:\Users\pos\AppData\Local\Dxbomedia\icuin28.dll"
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RtDCpl.exe"
"IgfxTray"="C:\Windows\system32\igfxtray.exe"
"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"
"Persistence"="C:\Windows\system32\igfxpers.exe"
"IAStorIcon"="C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe"
"RemoteControl9"="C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe"
"PDVD9LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"
"RoxWatchTray"="C:\Program Files\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"
"Desktop Disc Tool"="C:\Program Files\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"
"Display"="C:\Program Files\APC\PowerChute Personal Edition\DataCollectionLauncher.exe"
"tvncontrol"="C:\Program Files\TightVNC\tvnserver.exe -controlservice -slave"
"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"
"Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Dxbomedia Update"="regsvr32.exe C:\Users\pos\AppData\Local\Dxbomedia\icuin28.dll"
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR"

==== Startup Folders ======================

2012-01-27 23:17:02 1031 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\APC UPS Status.lnk
2012-02-01 19:13:46 1048 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TM-T20 Utility(Automatic Restore).lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [11/12/2014 01:28 PM]

==== Other Scheduled Tasks ======================

"C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\system32\tasks\{8AC036B7-22C7-4D70-9FC3-BFF7C66C7C63}" [C:\Program Files\FileMaker\FileMaker Pro 11\FileMaker Pro.exe]
"C:\Windows\system32\tasks\{8CFCFEF0-FBD5-3A37-BBF4-3420D62DC6ED}" [C:\Windows\system32\regsvr32.exe]
"C:\Windows\system32\tasks\2BrightSparks\SyncBackPro\RCG-POS-pos\SyncBackPro" [C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe]
"C:\Windows\system32\tasks\2BrightSparks\SyncBackPro\RCG-POS-pos\SyncBackPro POS Backup" [C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe]
"C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe]
"C:\Windows\system32\tasks\Dell\Client System Update" ["C:\Program Files\Dell\ClientSystemUpdate\DellClientSystemUpdate.exe"]
"C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{22C7F6C6-8D67-4534-92B5-529A0EC09405}"="C:\Program Files\Trend Micro\Client Server Security Agent\bho\1056\FirefoxExtension" []

==== Chromium Look ======================

YouTube - pos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - pos\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Gmail - pos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== Chromium Startpages ======================

C:\Users\pos\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.google.com/",
"homepage": "http://www.google.com/",
"urls_to_restore_on_startup": [ "http://www.google.com/" ]
"urls_to_restore_on_startup": [ "http://www.google.com/" ]

==== C:\zoek_backup content ======================

C:\zoek_backup (files=904 folders=89 448663040 bytes)

==== EOF on Wed 11/12/2014 at 13:32:06.84 ======================

Malwarebytes Log is attached.

Attached Files



#7 Mako

Mako

  • Malware Response Team
  • 238 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:02:47 PM

Posted 12 November 2014 - 04:40 PM

Hello I2M_Leon,
 
Because Zoek.exe found multiple empty folders of FileMaker I assumed this program was no longer in use. In the following Zoek.exe script the removal of FileMaker has been removed.
 
:step1: ====Zoek.exe====

Start Zoek.exe 51a612a8b27e2-Zoek.png again.

Take action to disable your antivirus and antispyware programs, as they may conflict with Zoek.exe
>> Info on how to disable your security applications > http://www.bleepingcomputer.com/forums/topic114351.html

Using Zoek.exe
  • On the Desktop, double-click Zoek.exe to start the tool.
    Windows Vista, 7 and 8 users right-click the file and select: Run as Administrator.
    Give the program a few seconds to appear.
  • Copy and paste the following script in the code box:
  • Note: This script is written for usage on this system only, do not use it on any other computer even if the problems are similar.
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run];r
    "Dxbomedia Update"=-;r
    C:\Users\pos\AppData\Local\Dxbomedia;fs
    autoclean;
    
  • Click the "Run script" button and wait patiently.
  • When finished the logfile will be opened in notepad.
  • If a reboot is needed the logfile will be opened after reboot.
  • The zoek-results.log can also be found on your systemdrive.
  • Please post the logfile for further review in your next comment.
:step2: ====Uploading the sample====

There should be a file named sample_20141112_0127.zip on your desktop. Please upload this file to WeTransfer.
Click on the share button share-icon-android.png and select Link.
Now select the file from your desktop and provide the download link in your next post please.

*The other sample file you can delete*

:step3: ====OTL====

We need to create an OTL Report
  • Please download OTL from one of the following mirrors:
  • Save it to your desktop.
  • Double click on the otlicon.png icon on your desktop.
  • Click the "Scan All Users" checkbox.
  • Push the runscan.png button.
  • Two reports will open, copy and paste them in a reply here:
    • OTL.txt <-- Will be opened
    • Extra.txt <-- Will be minimized

Regards,

Mako

 

Member of UNITE Unified Network of Instructors and Trained Eliminators

Noticed any spelling or grammar errors in my reply? Please feel free to point them out to me, I'm always eager to learn. 


#8 I2M_Leon

I2M_Leon
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Philadelphia, PA
  • Local time:08:47 AM

Posted 12 November 2014 - 07:20 PM

Zoek Sample File Link:
 
 
Zoek log:
 
Zoek.exe v5.0.0.0 Updated 11-November-2014
Tool run by pos on Wed 11/12/2014 at 18:40:57.57.
Microsoft Windows 7 Professional  6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\pos\Desktop\zoek.exe [Scan all users] [Script inserted] 
 
==== Older Logs ======================
 
C:\zoek-results2014-11-11-155413.log 10068 bytes
C:\zoek-results2014-11-12-160344.log 148673 bytes
C:\zoek-results2014-11-12-183206.log 10696 bytes
 
==== Deleting CLSID Registry Keys ======================
 
 
==== Deleting CLSID Registry Values ======================
 
 
==== Deleting Services ======================
 
 
==== Registry Fix Code ======================
 
Windows Registry Editor Version 5.00
 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] 
"Dxbomedia Update"=- 
 
==== Deleting Files \ Folders ======================
 
C:\Users\pos\AppData\Local\Dxbomedia not found
C:\Users\pos\AppData\Roaming\cymkkv.dll deleted
C:\Users\pos\AppData\Roaming\zozbut.dll deleted
C:\Windows\system32\config\systemprofile\Searches deleted
"C:\check_mk_agent.exe" deleted
 
==== Firefox Extensions Registry ======================
 
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{22C7F6C6-8D67-4534-92B5-529A0EC09405}"="C:\Program Files\Trend Micro\Client Server Security Agent\bho\1056\FirefoxExtension" []
 
==== Chromium Look ======================
 
 
==== Chromium Startpages ======================
 
C:\Users\pos\AppData\Local\Google\Chrome\User Data\Default\Preferences
"urls_to_restore_on_startup": [ "http://www.google.com/" ]
"urls_to_restore_on_startup": [ "http://www.google.com/" ]
 
 
==== Set IE to Default ======================
 
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU
 
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
 
==== All HKCU SearchScopes ======================
 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google  Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{4FA1CAF5-483A-4747-95B0-93FAC8E7328B} Unknown  Url="Not_Found"
 
==== Deleting CLSID Registry Keys ======================
 
HKEY_USERS\S-1-5-21-3030310518-2139226461-1239957552-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CA1377B-DC1D-4A52-9585-6E06050FAC53} deleted successfully
HKEY_USERS\S-1-5-21-3030310518-2139226461-1239957552-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1CA1377B-DC1D-4A52-9585-6E06050FAC53} deleted successfully
HKEY_USERS\S-1-5-21-3030310518-2139226461-1239957552-1001\Software\Microsoft\Internet Explorer\SearchScopes\{4FA1CAF5-483A-4747-95B0-93FAC8E7328B} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{1CA1377B-DC1D-4A52-9585-6E06050FAC53} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CA1377B-DC1D-4A52-9585-6E06050FAC53} deleted successfully
 
==== Deleting CLSID Registry Values ======================
 
HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\{22C7F6C6-8D67-4534-92B5-529A0EC09405} deleted successfully
 
==== Empty IE Cache ======================
 
C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Administrator.ROYALCG\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Administrator.ROYALCG\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Administrator.ROYALCG\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\100c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1018\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1028\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\102c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1034\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1040\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1044\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1054\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1070\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1078\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1084\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1094\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1098\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\10ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\10b8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\10c4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\10e0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\10e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\10f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1114\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\112c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\113c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1140\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1150\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1170\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\11a4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\11bc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\11d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\11d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\11dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\11ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\11f0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1228\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\122c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1230\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1244\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1254\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1260\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\126c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1274\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1280\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1290\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1294\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\129c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\12a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\12d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\12e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1308\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1310\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1318\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1320\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1338\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1340\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1344\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1348\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\134c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1358\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1364\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1388\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1390\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1398\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\13a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\13b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\13e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1404\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1408\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1418\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\141c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1428\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1430\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\143c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\145c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1468\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1488\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\149c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\14b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\14dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1500\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1518\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\151c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1520\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1538\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1578\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\157c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1584\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1590\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\159c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\15a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\15d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\15e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1608\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1678\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\167c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1684\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1690\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\16a4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\16b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\16bc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\16d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1710\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1720\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1728\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1768\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1788\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1790\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\17a4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\17d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\17d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\17e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\180c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1810\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1854\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1858\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\185c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\187c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1884\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\18b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\18c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\18d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\18dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\18e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1914\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1928\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1930\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1938\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\193c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1948\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1954\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1970\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1990\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1994\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\19a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\19ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\19b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\19b8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\19cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\19e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a40\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a5c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a60\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a70\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a8c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1a9c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1aa4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1aac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1ab4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1ab8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1acc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1b18\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1b28\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1b34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1b48\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1b4c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1b6c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1b74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1b78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1b98\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1ba0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1bac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1bb0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1bb4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1bb8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1be0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1be8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1c08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1c0c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1c10\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1c24\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1c44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1c68\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1c74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1c90\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1cb4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1ce4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1d04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1d20\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1d24\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1d2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1d44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1d54\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1d64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1dcc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1dd0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1ddc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1df0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1df4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e00\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e0c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e14\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e54\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e58\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e5c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1e6c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1eb0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1ec0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1ec4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1ec8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1ed8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f0c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f18\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f20\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f38\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f40\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f68\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f6c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f70\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f80\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1f98\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1fa4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1fb0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1fb8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1fd8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1fdc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\1fe4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2004\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2018\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2040\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2050\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\205c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2088\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\209c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\20a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\20d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\20d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\20dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\212c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2134\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2138\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2190\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\21ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\21b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\21c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\21c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\21fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2200\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\220c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2220\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2268\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\22b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\22dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\22f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2310\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2318\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\232c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\238c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2390\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\23d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\23ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2418\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2444\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2464\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2470\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2484\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2488\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\24a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\24bc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\24d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\24d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\24f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2518\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2578\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2580\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2590\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\25a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\25c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\25dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\25f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2604\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\260c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2610\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2638\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2658\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2674\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\26a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\26b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\26bc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2704\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2734\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2770\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2778\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2780\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2788\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2794\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2798\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2804\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2810\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\282c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\284c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2870\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\28b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\28b8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\28d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\28e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\28f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\29c4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2a28\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2a64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2a8c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2abc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2ad8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2b08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2b44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2b9c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2d6c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\31dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\323c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\33e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\34e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\379c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\389c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\38e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\3918\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\39a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\39cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\39e0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\39e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\3b3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\3b48\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\4050\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\408\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\4098\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\40a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\40c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\40e0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\4de0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\4fa0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\4fc4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\5374\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\53b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\53ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\5698\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\5728\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\592c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\5974\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\5c4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\5c64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\6134\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\6498\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\66b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\680c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\69d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\6bfc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\6cc4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\6d18\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\6ff8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7120\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7128\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7134\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\71f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\722c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7250\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\72c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\73f0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7460\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7494\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7570\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7778\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\784\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7938\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7c78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7ce0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7e20\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\7f44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8008\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\80a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\819c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8234\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8288\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8374\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\83f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8600\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\879c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\87b8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\88ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\88b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\88c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8944\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\89a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\89f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8aec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8b10\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8be4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8c80\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8d08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8d34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8d74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8e30\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8e58\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8e64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8e88\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8eec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8f3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\8f68\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\944\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\af0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\af4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\afc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\b5c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\b90\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\b98\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\b9c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\d60\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\d94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\e78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\e98\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\ed0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\edc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\ee8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\f24\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\posuser\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\posuser\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\posuser\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pos\AppData\Local\Temp\2c64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2c98\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2d64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2d94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2e44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2ed0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2f60\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2f78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2f94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2fc4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2fc8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\2ffc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3014\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3030\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3080\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\30d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\31fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3244\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\32a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\32c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\32d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3334\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3344\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3350\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\358c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\35f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\362c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3638\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\371c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3764\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\37b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\37d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\380\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3818\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\388\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3b44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3b74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3b7c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3bc8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3bcc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3bf0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3bf8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3cfc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3dd0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3e3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3eac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\3f50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\416c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4270\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4280\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\42f0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\434c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\43a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\43b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\43fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4468\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4528\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\452c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\454\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4584\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4598\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\459c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\45a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\45d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\45d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\45ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\45f0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4640\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\46ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\46f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4704\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4748\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\478\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1W2KFDP3 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\47a4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\480\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB14OVR4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\48c4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\48e0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4930\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4964\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\49b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4a74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4af4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4bd0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4c00\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4c14\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4cac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4d3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4d84\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4da4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4dd4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4e14\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4e1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4e44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4eb0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4f44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4f8c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\4fd8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5004\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5030\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5040\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5070\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\50a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\50c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\50cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\510c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5110\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5168\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\51b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\51c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\51e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5264\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\52a4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\52bc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\52d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\532c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5390\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\53f0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\541c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\546c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5474\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\548\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\54e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\54f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\555c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\558\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\55c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\562c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\564c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\567c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\56c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\573c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5788\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5820\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5840\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5868\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5898\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\58b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\58fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5920\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5928\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\59a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\59d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\59e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\59ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5a94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5b4c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5b74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5b90\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5bdc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5c20\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5c34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5cf4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5d08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5de4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5e70\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5ea4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5ec8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5eec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5f24\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5f74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5f80\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\5f94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6018\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6090\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\60b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6138\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\615c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\61b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\61c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\61e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6210\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6244\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6268\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\62c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\62c4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\62f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6320\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6358\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6364\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\63cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\63d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\63d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\63d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6410\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6424\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6428\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\644\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6468\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\647c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\64b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6550\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6670\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6680\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\66ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\671c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6738\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\675c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\67ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\67cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\67e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\685c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\68c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\68f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\690\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6920\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\692c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\694c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6950\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\698c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\69b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\69e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6a38\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6ac4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6acc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6ae8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6b1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6b78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6b88\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6be0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6c4c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6c58\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6c84\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6cd4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB14OVR4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6d28\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6d40\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6dc8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6de8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6df8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6e10\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6e34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6e50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6e5c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6e74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6e78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6f08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6f34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6f4c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6f58\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\6f78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\700c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\702c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7098\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\70c4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\70fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7144\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7148\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7154\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\715c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\71dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7248\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7278\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\72d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7384\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7398\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\73a4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\73d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\73ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\73f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\73f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7414\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7424\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7430\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7440\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7458\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\748\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\74dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7508\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\758\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\75e0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7670\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7694\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\76ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\76e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7770\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\77bc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\77e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\78c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\78d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\78e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\78ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\790\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7900\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7908\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\791c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\793c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7950\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\79ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\79b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\79c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\79d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7a04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7a44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7a74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7a7c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7a94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7b04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7b60\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7b68\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7ba8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7bc4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7bd8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7c18\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7c3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7c9c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7cb8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7cd4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7d04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7d24\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7d2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7d30\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7d3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7d40\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7d60\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7e0c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7e18\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7e94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7eb0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7ec4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\7fa8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\802c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\804\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\81c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\820\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8238\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\823c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\828\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8318\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\83b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\840\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8400\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8428\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8594\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\85c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\85f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\860c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8660\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\86c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\86d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\871c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\87e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\87fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8814\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8828\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8958\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8970\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\89dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8a50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8a90\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8ae8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8b1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8b4c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8b94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8b98\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8bcc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8c08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8c10\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8c18\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8c1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8c2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8c3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8cc0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8cc4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8d78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8ddc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8e08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8ebc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8f04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8f24\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8f30\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8f7c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\8ffc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\94c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\954\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\968\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\9b8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\9c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\a00\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\a34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\a48\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\a50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\a54\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\a5c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\ad4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\bcc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\be0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\bfc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\c58\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\c70\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\d8c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\d9c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\db4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\ddc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\dfc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\e08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\e1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB14OVR4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\e30\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\e74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D0XBWE0U will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\ee0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\ee4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\f0c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\f2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB14OVR4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\f34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\f7c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4 will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\f80\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H will be deleted at reboot
C:\Users\pos\AppData\Local\Temp\fbc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G will be deleted at reboot
 
==== Empty FireFox Cache ======================
 
No FireFox Profiles found
 
==== Empty Chrome Cache ======================
 
C:\Users\pos\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
 
==== Empty All Flash Cache ======================
 
Flash Cache Emptied Successfully
 
==== Empty All Java Cache ======================
 
Java Cache cleared successfully
 
==== C:\zoek_backup content ======================
 
C:\zoek_backup (files=906 folders=89 448704586 bytes)
 
==== Empty Temp Folders ======================
 
C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Administrator.ROYALCG\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\pos\AppData\Local\Temp will be emptied at reboot
C:\Users\posuser\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
 
==== After Reboot ======================
 
==== Empty Temp Folders ======================
 
C:\Windows\Temp successfully emptied
C:\Users\pos\AppData\Local\Temp successfully emptied
 
==== Empty Recycle Bin ======================
 
C:\$RECYCLE.BIN successfully emptied
 
==== Deleting Files / Folders ======================
 
"C:\check_mk_agent.exesearch"  not found
"C:\Users\pos\AppData\Local\Temp\2c64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\2c98\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\2d64\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\2d94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\2e44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\2ed0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\2f60\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\2f78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\2f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4" not found
"C:\Users\pos\AppData\Local\Temp\2f94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\2fc4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\2fc8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\2ffc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\3014\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\3030\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\3080\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\30d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\31fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\3244\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\32a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\32c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\32d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\3334\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\3344\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\3350\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\358c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\35f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\362c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\3638\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\371c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\3764\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\37b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\37d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\380\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\3818\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\388\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\3b44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\3b74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\3b7c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\3bc8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\3bcc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\3bf0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\3bf8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\3cfc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\3dd0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\3e3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\3eac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\3f50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\416c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\4270\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\4280\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\42f0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\434c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\43a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\43b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\43fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4468\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4528\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\452c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\454\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4584\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4598\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\459c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\45a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\45d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\45d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\45ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\45f0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4640\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\46ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\46f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\4704\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4748\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\478\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1W2KFDP3" not found
"C:\Users\pos\AppData\Local\Temp\47a4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\480\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB14OVR4" not found
"C:\Users\pos\AppData\Local\Temp\48c4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\48e0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\4930\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\4964\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\49b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\4a74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4af4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\4bd0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\4c00\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\4c14\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4cac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4d3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4d84\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4da4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4dd4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\4e14\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4e1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\4e44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4eb0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4f44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\4f8c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\4fd8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\5004\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\5030\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5040\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5070\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\50a8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\50c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\50cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\510c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\5110\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\5168\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\51b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\51c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\51e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5264\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\52a4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\52bc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\52d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\532c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5390\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\53f0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\541c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\546c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5474\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\548\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\54e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\54f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\555c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\558\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\55c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\562c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\564c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\567c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\56c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\573c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\5788\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5820\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\5840\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\5868\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\5898\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\58b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\58fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5920\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\5928\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\59a0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\59d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\59e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\59ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\5a94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5b4c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5b74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\5b90\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\5bdc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\5c20\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\5c34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5cf4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\5d08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\5de4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5e70\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\5ea4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\5ec8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5eec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\5f24\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\5f74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\5f80\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\5f94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\6018\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6090\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\60b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6138\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\615c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\61b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\61c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\61e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\6210\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6244\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\6268\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\62c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\62c4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\62f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\6320\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\6358\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6364\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\63cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\63d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\63d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\63d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\6410\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6424\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\6428\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\644\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\6468\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\647c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\64b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\6550\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6670\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\6680\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\66ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\671c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\6738\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\675c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\67ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\67cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\67e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\685c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\68c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\68f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\690\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\6920\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\692c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\694c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\6950\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\698c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\69b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\69e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\6a38\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\6ac4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\6acc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6ae8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6b1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6b78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6b88\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6be0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\6c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\6c4c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6c58\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6c84\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\6cc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6cd4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\6d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB14OVR4" not found
"C:\Users\pos\AppData\Local\Temp\6d28\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\6d40\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6dc8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6de8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6df8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6e10\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6e34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\6e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4" not found
"C:\Users\pos\AppData\Local\Temp\6e50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6e5c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\6e74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\6e78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4" not found
"C:\Users\pos\AppData\Local\Temp\6ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\6f08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\6f34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\6f4c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\6f58\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\6f78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\700c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\702c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\7098\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\70c4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\70fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7144\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\7148\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\7154\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\715c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\71dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7248\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\7278\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\72d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7384\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7398\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\73a4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\73d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\73ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\73f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\73f8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7414\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\7424\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7430\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\7440\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7458\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\748\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\74dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7508\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\758\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\75e0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\7670\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7694\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\76ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\76e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7770\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\77bc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\77e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\78c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\78d4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\78e8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\78ec\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\790\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\7900\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\7908\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\791c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\793c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7950\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\79ac\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\79b0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\79c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\79d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7a04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7a44\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7a74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7a7c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7a94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\7b04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\7b60\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7b68\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\7ba8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\7bc4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7bd8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7c18\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\7c3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\7c9c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\7cb8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\7cd4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\7d0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\7d04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7d24\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7d2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7d30\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7d3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7d40\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7d60\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\7e0c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7e18\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\7e94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\7eb0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\7ec4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\7fa8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\802c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\804\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\81c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\820\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\8238\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\823c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\828\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\8318\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\83b4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\840\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\8400\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\8428\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\8594\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\85c0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\85f4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\860c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\8660\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\86c8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\86d8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\871c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\87e4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\87fc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\8814\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\8828\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\8958\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\8970\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\89dc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\8a50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\8a90\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\8ae8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\8b1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\8b4c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\8b94\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\8b98\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\8bcc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\8c08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\8c10\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\8c18\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\8c1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\8c2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\8c3c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\8cc0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
"C:\Users\pos\AppData\Local\Temp\8cc4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\8d78\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\8ddc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B7GM8LR8" not found
"C:\Users\pos\AppData\Local\Temp\8e08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\8ebc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\8f04\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\8f24\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\8f30\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YFNGPAZY" not found
"C:\Users\pos\AppData\Local\Temp\8f7c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8UO54PY" not found
"C:\Users\pos\AppData\Local\Temp\8ffc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\94c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\954\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\968\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\9b8\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\9c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4" not found
"C:\Users\pos\AppData\Local\Temp\a00\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\a34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\a48\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\a50\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\a54\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\a5c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\ad4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\bcc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4" not found
"C:\Users\pos\AppData\Local\Temp\be0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\bfc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LXCEWAPU" not found
"C:\Users\pos\AppData\Local\Temp\c58\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\c70\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\d8c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5I7KSR" not found
"C:\Users\pos\AppData\Local\Temp\d9c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\db4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\ddc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\dfc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\e08\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\e1c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB14OVR4" not found
"C:\Users\pos\AppData\Local\Temp\e30\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EQF4PGYW" not found
"C:\Users\pos\AppData\Local\Temp\e74\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D0XBWE0U" not found
"C:\Users\pos\AppData\Local\Temp\ee0\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\ee4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\f0c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\f2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YB14OVR4" not found
"C:\Users\pos\AppData\Local\Temp\f34\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U4TSEMI" not found
"C:\Users\pos\AppData\Local\Temp\f7c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BQF40XP4" not found
"C:\Users\pos\AppData\Local\Temp\f80\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5IJ6K59H" not found
"C:\Users\pos\AppData\Local\Temp\fbc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G76SVI5G" not found
 
==== EOF on Wed 11/12/2014 at 19:00:09.66 ======================
OTL.txt:
 
OTL logfile created on: 11/12/2014 7:02:04 PM - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\pos\Desktop
 Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17358)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
1.96 Gb Total Physical Memory | 1.14 Gb Available Physical Memory | 58.24% Memory free
3.93 Gb Paging File | 3.01 Gb Available in Paging File | 76.60% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 220.09 Gb Total Space | 156.36 Gb Free Space | 71.04% Space Free | Partition Type: NTFS
Drive D: | 570.66 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
 
Computer Name: RCG-POS | User Name: pos | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2014/11/12 19:00:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\POS\Desktop\OTL.exe
PRC - [2014/10/23 10:21:34 | 004,825,880 | ---- | M] (Piriform Ltd) -- C:\Program Files\CCleaner\CCleaner.exe
PRC - [2014/09/12 04:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2014/08/22 11:44:44 | 000,022,192 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2014/08/22 11:44:40 | 000,288,120 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\NisSrv.exe
PRC - [2014/08/22 11:41:00 | 000,974,432 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2014/02/24 12:46:32 | 016,957,992 | ---- | M] (2BrightSparks Pte Ltd) -- C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe
PRC - [2013/07/02 09:16:32 | 000,507,264 | ---- | M] (Oracle Corporation) -- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
PRC - [2012/11/22 21:48:41 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2012/08/23 11:37:16 | 000,013,672 | ---- | M] (Intuit Inc.) -- C:\Program Files\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
PRC - [2012/01/18 20:55:39 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2011/11/29 05:07:08 | 002,924,928 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
PRC - [2011/11/29 05:07:08 | 002,673,024 | ---- | M] (TeamViewer GmbH) -- c:\Program Files\TeamViewer\Version7\TeamViewer_Desktop.exe
PRC - [2011/11/29 05:07:06 | 009,948,032 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\TeamViewer.exe
PRC - [2011/11/29 04:33:26 | 000,116,608 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version7\tv_w32.exe
PRC - [2011/08/24 14:57:48 | 000,021,880 | ---- | M] (Schneider Electric) -- C:\Program Files\APC\PowerChute Personal Edition\dataserv.exe
PRC - [2011/08/24 14:48:02 | 000,705,912 | ---- | M] (Schneider Electric) -- C:\Program Files\APC\PowerChute Personal Edition\mainserv.exe
PRC - [2011/08/24 14:42:48 | 000,673,144 | ---- | M] (Schneider Electric) -- C:\Program Files\APC\PowerChute Personal Edition\apcsystray.exe
PRC - [2011/08/03 08:23:54 | 000,828,944 | ---- | M] (GlavSoft LLC.) -- C:\Program Files\TightVNC\tvnserver.exe
PRC - [2011/04/20 01:39:22 | 000,438,272 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files\EPSON\EPuras\EPuras.exe
PRC - [2011/04/20 01:38:26 | 000,323,584 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files\EPSON\EPuras\EPurasLog.exe
PRC - [2010/11/17 11:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2010/11/05 23:54:22 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2010/11/05 23:54:20 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
PRC - [2010/10/01 17:55:28 | 000,087,336 | ---- | M] (CyberLink Corp.) -- C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe
PRC - [2010/06/29 17:11:50 | 000,127,488 | ---- | M] (Broadcom Corporation) -- C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe
PRC - [2009/08/26 17:49:00 | 002,691,072 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Program Files\Realtek\Audio\HDA\RtDCpl.exe
PRC - [2009/07/13 20:14:21 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inetsrv\inetinfo.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2014/10/16 10:26:33 | 000,475,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\5df6c5bd9088121e6a65ba0d1e127bcf\IAStorUtil.ni.dll
MOD - [2014/10/16 10:11:38 | 000,774,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b3011370dcbf33751d3b9dce8091c6c6\System.Runtime.Remoting.ni.dll
MOD - [2014/10/16 10:11:04 | 012,435,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1453d9e9a4989833ef3db4b22549ba1a\System.Windows.Forms.ni.dll
MOD - [2014/10/16 10:10:56 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\836e10dfd0811b303553216f5cb092ef\System.Drawing.ni.dll
MOD - [2014/10/16 10:10:50 | 005,467,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
MOD - [2014/10/16 10:10:46 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\237d509a79aeef6e4635b09450d98f2a\System.Configuration.ni.dll
MOD - [2014/10/16 10:10:32 | 003,348,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d97a5aa0eb7697aca7c6e90ae471af2b\WindowsBase.ni.dll
MOD - [2014/10/16 10:10:29 | 007,991,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
MOD - [2014/09/12 09:35:03 | 000,014,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\f473a3fb0073a13849f5206103f64a99\IAStorCommon.ni.dll
MOD - [2014/09/12 09:30:16 | 011,497,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
MOD - [2010/11/24 23:44:02 | 000,375,280 | ---- | M] () -- c:\Program Files\Common Files\Roxio Shared\DLLShared\SQLite352.dll
MOD - [2010/11/17 11:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
 
 
========== Services (SafeList) ==========
 
SRV - File not found [Auto | Stopped] -- C:\check_mk_agent.exe -- (Check_MK_Agent)
SRV - [2014/11/12 13:28:22 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/09/18 19:50:15 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2014/09/12 04:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/08/22 11:44:44 | 000,022,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2014/08/22 11:44:40 | 000,288,120 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2013/06/05 13:38:47 | 000,914,200 | ---- | M] (BitRaider, LLC) [On_Demand | Stopped] -- C:\ProgramData\BitRaider\BRSptSvc.exe -- (BRSptSvc)
SRV - [2013/05/26 23:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2012/08/23 11:37:16 | 000,013,672 | ---- | M] (Intuit Inc.) [Auto | Running] -- C:\Program Files\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe -- (IntuitUpdateServiceV4)
SRV - [2012/01/28 03:00:29 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2011/11/29 05:07:08 | 002,924,928 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe -- (TeamViewer7)
SRV - [2011/08/24 14:57:48 | 000,021,880 | ---- | M] (Schneider Electric) [Auto | Running] -- C:\Program Files\APC\PowerChute Personal Edition\dataserv.exe -- (APC Data Service)
SRV - [2011/08/24 14:48:02 | 000,705,912 | ---- | M] (Schneider Electric) [Auto | Running] -- C:\Program Files\APC\PowerChute Personal Edition\mainserv.exe -- (APC UPS Service)
SRV - [2011/08/03 08:23:54 | 000,828,944 | ---- | M] (GlavSoft LLC.) [Auto | Running] -- C:\Program Files\TightVNC\tvnserver.exe -- (tvnserver)
SRV - [2011/04/20 01:39:22 | 000,438,272 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\EPSON\EPuras\EPuras.exe -- (EpsonPuras)
SRV - [2011/04/20 01:38:26 | 000,323,584 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\EPSON\EPuras\EPurasLog.exe -- (EpsonPurasLog)
SRV - [2010/11/25 06:34:18 | 000,219,632 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe -- (RoxWatch12)
SRV - [2010/11/25 06:33:18 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe -- (RoxMediaDB12OEM)
SRV - [2010/11/05 23:54:22 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2010/06/29 17:11:50 | 000,127,488 | ---- | M] (Broadcom Corporation) [Auto | Running] -- C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe -- (BrcmMgmtAgent)
SRV - [2009/07/13 20:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc)
SRV - [2009/07/13 20:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/13 20:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009/07/13 20:14:21 | 000,013,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\inetsrv\inetinfo.exe -- (IISADMIN)
 
 
========== Driver Services (SafeList) ==========
 
DRV - File not found [File_System | On_Demand | Stopped] -- C:\programdata\bitraider\BRDriver.sys -- (BRDriver)
DRV - [2014/07/17 17:05:08 | 000,095,920 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2012/08/23 09:44:32 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2012/08/23 09:41:34 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV - [2012/08/23 09:40:25 | 000,049,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2012/01/27 17:50:59 | 000,072,584 | ---- | M] (Jungo) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\honeywell_enum_21617.sys -- (honeywell_enum)
DRV - [2011/05/13 03:21:06 | 000,136,808 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdm.sys -- (ssadmdm)
DRV - [2011/05/13 03:21:06 | 000,121,064 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadbus.sys -- (ssadbus)
DRV - [2011/05/13 03:21:06 | 000,114,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadserd.sys -- (ssadserd)
DRV - [2011/05/13 03:21:06 | 000,012,776 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdfl.sys -- (ssadmdfl)
DRV - [2011/04/19 23:07:20 | 000,018,696 | ---- | M] (SEIKO EPSON CORPORATION) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\tmlpt.sys -- (EPSON TM Parallel Port Driver)
DRV - [2010/12/02 16:35:58 | 000,349,224 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\k57nd60x.sys -- (k57nd60x)
DRV - [2010/11/20 16:29:03 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\netvsc60.sys -- (netvsc)
DRV - [2010/11/20 16:29:03 | 000,062,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\dmvsc.sys -- (dmvsc)
DRV - [2010/11/20 16:29:03 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/11/20 16:29:03 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
DRV - [2010/11/20 16:29:03 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusVideoM.sys -- (SynthVid)
DRV - [2010/11/20 16:29:03 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2010/11/20 16:29:03 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
DRV - [2010/09/03 11:39:22 | 000,088,064 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\basp.sys -- (Blfp)
DRV - [2009/11/16 21:21:24 | 002,748,064 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTDVHDA.sys -- (IntcAzAudAddService)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 
 
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = 
 
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = 
 
IE - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USREL/1
IE - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..\SearchScopes,DefaultScope = {012E1000-F331-11DB-8314-0800200C9A66}
IE - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: "URL" = http://www.google.com/search?q={searchTerms}
IE - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
========== FireFox ==========
 
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw_1211151.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll File not found
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
 
 
 
========== Chrome  ==========
 
CHR - homepage: http://www.google.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
CHR - homepage: http://www.google.com/
CHR - Extension: YouTube = C:\Users\POS\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\POS\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Gmail = C:\Users\POS\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
 
O1 HOSTS File: ([2009/06/10 16:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O4 - HKLM..\Run: []  File not found
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [Display] C:\Program Files\APC\PowerChute Personal Edition\DataCollectionLauncher.exe (Schneider Electric)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [PDVD9LanguageShortcut] C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe (CyberLink Corp.)
O4 - HKLM..\Run: [RemoteControl9] C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe (CyberLink Corp.)
O4 - HKLM..\Run: [RoxWatchTray] C:\Program Files\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe (Sonic Solutions)
O4 - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtDCpl.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [tvncontrol] C:\Program Files\TightVNC\tvnserver.exe (GlavSoft LLC.)
O4 - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour\ExplorerPlugin.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKU\.DEFAULT\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: clonewarsadventures.com ([]* in )
O15 - HKU\S-1-5-19\..Trusted Domains: freerealms.com ([]* in )
O15 - HKU\S-1-5-19\..Trusted Domains: soe.com ([]* in )
O15 - HKU\S-1-5-19\..Trusted Domains: sony.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: clonewarsadventures.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: freerealms.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: soe.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: sony.com ([]* in )
O15 - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..Trusted Domains: intuit.com ([ttlc] https in Trusted sites)
O15 - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3030310518-2139226461-1239957552-1001\..Trusted Domains: sony.com ([]* in Trusted sites)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 8.8.8.8 8.8.4.4
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CBF1E028-82C3-4229-B485-4C2BC40FB890}: DhcpNameServer = 8.8.8.8 8.8.4.4
O18 - Protocol\Handler\tmpx {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\Client Server Security Agent\bho\1056\TmIEPlg.dll File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 16:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2010/03/03 01:13:40 | 000,000,067 | R--- | M] () - D:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{100201fc-4241-11e1-b9b5-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{100201fc-4241-11e1-b9b5-806e6f6e6963}\Shell\AutoRun\command - "" = D:\TMInstallNavi.exe -- [2011/04/27 05:25:59 | 000,866,304 | R--- | M] (Seiko Epson Corporation)
O33 - MountPoints2\{a870d36b-75b6-11e2-a0c6-d4bed98afe6d}\Shell - "" = AutoRun
O33 - MountPoints2\{a870d36b-75b6-11e2-a0c6-d4bed98afe6d}\Shell\AutoRun\command - "" = F:\LGAutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2014/11/12 19:01:42 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\pos\Desktop\OTL.exe
[2014/11/12 19:00:13 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2014/11/12 18:57:02 | 000,000,000 | ---D | C] -- C:\Windows\Temp
[2014/11/12 18:57:02 | 000,000,000 | ---D | C] -- C:\Users\pos\AppData\Local\Temp
[2014/11/12 14:44:29 | 000,000,000 | ---D | C] -- C:\Users\pos\AppData\Roaming\FileMaker Pro
[2014/11/12 13:52:38 | 000,000,000 | ---D | C] -- C:\Users\pos\AppData\Local\VirtualStore
[2014/11/11 10:34:47 | 000,000,000 | ---D | C] -- C:\zoek_backup
[2014/10/29 14:04:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2014/10/29 14:04:14 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2014/10/29 13:54:13 | 000,000,000 | ---D | C] -- C:\TDSSKiller_Quarantine
[2014/10/29 12:52:48 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/10/29 11:41:28 | 000,114,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
[2014/10/29 11:41:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2014/10/29 11:40:59 | 000,075,480 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
[2014/10/29 11:40:59 | 000,051,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
[2014/10/29 11:40:59 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
[2014/10/29 11:40:20 | 000,000,000 | ---D | C] -- C:\Users\pos\AppData\Roaming\Malwarebytes
[2014/10/29 01:54:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Windows Genuine Advantage
[2014/10/15 03:58:20 | 000,396,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aepdu.dll
[2014/10/15 03:58:20 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\generaltel.dll
[2014/10/15 03:58:19 | 002,379,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2014/10/15 03:58:19 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aeinv.dll
[2014/10/15 03:58:09 | 000,646,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2014/10/15 03:58:09 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2014/10/15 03:58:09 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollector.exe
[2014/10/15 03:58:09 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\JavaScriptCollectionAgent.dll
[2014/10/15 03:58:09 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwproxystub.dll
[2014/10/15 03:58:09 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2014/10/15 03:58:08 | 000,365,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2014/10/15 03:58:08 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollectorres.dll
[2014/10/15 03:58:07 | 000,440,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2014/10/15 03:58:07 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2014/10/15 03:58:06 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2014/10/15 03:58:06 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MshtmlDac.dll
[2014/10/15 03:58:05 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9diag.dll
[2014/10/15 03:58:04 | 004,201,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2014/10/15 03:58:03 | 000,677,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2014/10/15 03:58:03 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2014/10/15 03:58:02 | 000,678,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2014/10/15 03:58:02 | 000,607,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2014/10/15 03:58:02 | 000,331,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2014/10/15 03:58:01 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2014/10/15 03:58:01 | 002,017,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2014/10/15 03:58:01 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2014/10/15 03:58:00 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2014/10/15 03:57:57 | 000,156,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscorier.dll
[2014/10/15 03:57:56 | 000,081,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mscories.dll
[2014/10/15 03:57:54 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aaclient.dll
[2014/10/15 03:57:54 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsgqec.dll
[2014/10/15 03:57:53 | 002,744,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorets.dll
[2014/10/15 03:57:41 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorekmts.dll
[2014/10/15 03:57:03 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\packager.dll
[2014/10/15 03:56:59 | 000,988,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drmv2clt.dll
[2014/10/15 03:56:59 | 000,744,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\blackbox.dll
[2014/10/15 03:56:58 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmdrmsdk.dll
[2014/10/15 03:56:56 | 003,208,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mf.dll
[2014/10/15 03:56:56 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AUDIOKSE.dll
[2014/10/15 03:56:56 | 000,409,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ci.dll
[2014/10/15 03:56:56 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drmmgrtn.dll
[2014/10/15 03:56:55 | 003,970,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2014/10/15 03:56:55 | 000,521,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2014/10/15 03:56:55 | 000,455,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe
[2014/10/15 03:56:55 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDump.dll
[2014/10/15 03:56:55 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AudioSes.dll
[2014/10/15 03:56:54 | 003,914,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2014/10/15 03:56:54 | 001,329,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2014/10/15 03:56:54 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\evr.dll
[2014/10/15 03:56:53 | 000,374,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AudioEng.dll
[2014/10/15 03:56:53 | 000,354,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfplat.dll
[2014/10/15 03:56:52 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscp.dll
[2014/10/15 03:56:51 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msnetobj.dll
[2014/10/15 03:56:51 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfps.dll
[2014/10/15 03:56:51 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\audiodg.exe
[2014/10/15 03:56:51 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rrinstaller.exe
[2014/10/15 03:56:50 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\appidpolicyconverter.exe
[2014/10/15 03:56:50 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\appidapi.dll
[2014/10/15 03:56:50 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\setbcdlocale.dll
[2014/10/15 03:56:49 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfpmp.exe
[2014/10/15 03:56:49 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\appidcertstorecheck.exe
[2014/10/15 03:56:48 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2014/10/15 03:56:48 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwmp.dll
[2014/10/15 03:56:48 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.ocx
[2014/10/15 03:56:48 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxmasf.dll
[2014/10/15 03:56:48 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mferror.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2014/11/12 19:00:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\pos\Desktop\OTL.exe
[2014/11/12 18:59:04 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/11/12 18:59:00 | 1582,047,232 | -HS- | M] () -- C:\hiberfil.sys
[2014/11/12 18:40:14 | 000,024,064 | ---- | M] () -- C:\Windows\zoek-delete.exe
[2014/11/12 18:28:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/11/12 14:56:14 | 000,001,216 | ---- | M] () -- C:\Users\pos\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch FileMaker Pro.lnk
[2014/11/12 14:55:14 | 000,031,312 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/11/12 14:55:14 | 000,031,312 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/11/12 14:52:46 | 000,811,262 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2014/11/12 14:52:46 | 000,170,360 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2014/11/12 13:53:22 | 000,114,904 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
[2014/11/12 13:28:21 | 000,701,104 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2014/11/12 13:28:21 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2014/11/12 13:27:45 | 000,029,096 | ---- | M] () -- C:\Users\Public\Desktop\sample_20141112_0127.zip
[2014/11/11 10:50:25 | 000,028,879 | ---- | M] () -- C:\Users\Public\Desktop\sample_20141111_1050.zip
[2014/11/11 10:26:26 | 001,294,848 | ---- | M] () -- C:\Users\pos\Desktop\zoek.exe
[2014/11/07 20:13:12 | 000,001,161 | ---- | M] () -- C:\Users\pos\Documents\END OF DAY.tab
[2014/10/31 09:50:50 | 000,000,144 | -H-- | M] () -- C:\ProgramData\@system3.att
[2014/10/31 09:50:34 | 000,000,408 | ---- | M] () -- C:\ProgramData\@system.temp
[2014/10/30 06:24:45 | 000,229,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2014/10/30 00:29:43 | 000,000,578 | ---- | M] () -- C:\Users\pos\Desktop\MOBY - Shortcut.lnk
[2014/10/29 14:21:44 | 000,367,630 | ---- | M] () -- C:\Users\pos\Documents\cc_20141029_152117.reg
[2014/10/29 14:04:20 | 000,000,971 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014/10/29 13:14:39 | 000,075,480 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
[2014/10/16 10:03:31 | 000,396,960 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2014/11/12 18:57:03 | 000,024,064 | ---- | C] () -- C:\Windows\zoek-delete.exe
[2014/11/12 18:38:38 | 001,294,848 | ---- | C] () -- C:\Users\pos\Desktop\zoek.exe
[2014/11/12 14:56:14 | 000,001,216 | ---- | C] () -- C:\Users\pos\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch FileMaker Pro.lnk
[2014/11/12 13:27:45 | 000,029,096 | ---- | C] () -- C:\Users\Public\Desktop\sample_20141112_0127.zip
[2014/11/11 10:50:25 | 000,028,879 | ---- | C] () -- C:\Users\Public\Desktop\sample_20141111_1050.zip
[2014/11/07 20:13:12 | 000,001,161 | ---- | C] () -- C:\Users\pos\Documents\END OF DAY.tab
[2014/10/30 18:21:23 | 000,000,144 | -H-- | C] () -- C:\ProgramData\@system3.att
[2014/10/30 18:20:55 | 000,000,408 | ---- | C] () -- C:\ProgramData\@system.temp
[2014/10/30 00:29:43 | 000,000,578 | ---- | C] () -- C:\Users\pos\Desktop\MOBY - Shortcut.lnk
[2014/10/29 14:21:22 | 000,367,630 | ---- | C] () -- C:\Users\pos\Documents\cc_20141029_152117.reg
[2014/10/29 14:04:20 | 000,000,971 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014/10/11 18:27:52 | 000,000,451 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
[2013/02/05 16:22:20 | 000,020,480 | ---- | C] () -- C:\Windows\System32\SyncBackPro.dll
[2012/08/20 14:42:57 | 000,000,046 | ---- | C] () -- C:\Users\pos\jagex_cl_runescape_LIVE.dat
[2012/08/20 14:42:57 | 000,000,024 | ---- | C] () -- C:\Users\pos\random.dat
[2012/01/26 17:14:50 | 000,000,008 | RHS- | C] () -- C:\ProgramData\ntuser.pol
 
========== ZeroAccess Check ==========
 
[2009/07/13 23:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/06/24 20:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 16:29:20 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/13 20:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
< End of report >
 
Extra.txt:
 
OTL Extras logfile created on: 11/12/2014 7:02:04 PM - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\pos\Desktop
 Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17358)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
1.96 Gb Total Physical Memory | 1.14 Gb Available Physical Memory | 58.24% Memory free
3.93 Gb Paging File | 3.01 Gb Available in Paging File | 76.60% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 220.09 Gb Total Space | 156.36 Gb Free Space | 71.04% Space Free | Partition Type: NTFS
Drive D: | 570.66 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
 
Computer Name: RCG-POS | User Name: pos | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
 
[HKEY_USERS\S-1-5-21-3030310518-2139226461-1239957552-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
========== Authorized Applications List ==========
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{083A0BB3-DF7E-4F9B-8CED-2F321440BA86}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{2F95C759-75AB-47B6-8C49-C72A379F5CE1}" = lport=58193 | protocol=6 | dir=in | name=pando media booster | 
"{46B733C0-BAFF-48C2-B7FC-D1B7AB0DAC5B}" = rport=80 | protocol=6 | dir=out | app=c:\program files\common files\intuit\update service v4\intuitupdateservice.exe | 
"{6E567258-358F-421D-8AA5-BB0D71166499}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe | 
"{79AD27B7-E37A-4693-9FF0-BF561E9DB31B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{CDE9A606-765B-4FB8-B918-AC018474C363}" = lport=58193 | protocol=17 | dir=in | name=pando media booster | 
"{DA4B11B1-0C59-43E4-BB35-512299321546}" = lport=58193 | protocol=17 | dir=in | name=pando media booster | 
"{EB39885D-30C6-40FF-8B32-2F72C74FD77C}" = lport=58193 | protocol=6 | dir=in | name=pando media booster | 
"{F4884C8B-FE85-4E0C-9D67-1AFB54058D51}" = rport=80 | protocol=6 | dir=out | app=c:\program files\common files\intuit\update service v4\intuitupdater.exe | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0DAF8C57-004A-4562-8CC1-C04992F6F83D}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version7\teamviewer.exe | 
"{39DA8882-389F-47D3-BF5A-D71F1AEF9E02}" = dir=in | app=c:\program files\cyberlink\powerdvd9\powerdvd cinema\powerdvdcinema.exe | 
"{566EF76F-5BEF-4678-B7F4-CA8F4033714A}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | 
"{61ABF5EA-71A5-4B8A-B7C4-9F751A50433A}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | 
"{70EC13D6-DA44-434B-B324-EA3E971CDF5D}" = dir=in | app=c:\program files\cyberlink\powerdvd9\powerdvd9.exe | 
"{8A98DFA0-3E02-4BBE-AAED-9805987848C2}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version7\teamviewer.exe | 
"{9045FF21-A5EB-4F1E-91C8-5DC4FEBFB1FF}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{9841139B-3C85-40E4-8DD8-435240A13B60}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | 
"{A3BB0779-29E3-4EFC-A522-EF9ED1DE4F2E}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version7\teamviewer_service.exe | 
"{B5D023D1-8943-42AF-8EC0-05C0B78B5006}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe | 
"{C93D858C-870F-4CF9-B1E3-1D374E2226FB}" = protocol=6 | dir=in | app=c:\program files\tightvnc\vncviewer.exe | 
"{D9A2740B-84C1-406E-860E-2C350E48DC09}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version7\teamviewer_service.exe | 
"{E0AC581D-41B6-4C48-982F-06F10D8F3260}" = protocol=17 | dir=in | app=c:\program files\tightvnc\tvnserver.exe | 
"{E1C62EDC-9460-4B43-866A-676DC0491CC2}" = protocol=6 | dir=in | app=c:\program files\epson\tm-t20 software\tm20utl\tm20utl.exe | 
"{EDCBB721-F5AC-4502-9CC8-08FBAB5618D3}" = protocol=6 | dir=in | app=c:\program files\tightvnc\tvnserver.exe | 
"{F3E0AF00-2EC8-477C-8064-6C419A5F5CAC}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | 
"{F7CF72E5-5426-416B-BD07-7B24B4D6F200}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | 
"{F9C4ABB9-D0BE-46EC-972A-E7CACB249455}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe | 
"{FD9D6062-4218-4A7B-B5C8-86D660BFA5AA}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{FED0F98F-6C13-4821-972A-569EBD2CCC01}" = protocol=17 | dir=in | app=c:\program files\epson\tm-t20 software\tm20utl\tm20utl.exe | 
"{FF637D61-F4F2-442F-BE37-6DCD9E79E5C4}" = protocol=17 | dir=in | app=c:\program files\tightvnc\vncviewer.exe | 
"TCP Query User{8E246C7F-CD2A-4E82-AFD7-48E059FD0CCA}C:\program files\filemaker\filemaker pro 11\filemaker pro.exe" = protocol=6 | dir=in | app=c:\program files\filemaker\filemaker pro 11\filemaker pro.exe | 
"TCP Query User{DFE19353-801F-4290-B8B0-652490335C5F}C:\program files\filemaker\filemaker pro 11\filemaker pro.exe" = protocol=6 | dir=in | app=c:\program files\filemaker\filemaker pro 11\filemaker pro.exe | 
"UDP Query User{860EB437-CCAD-4CB6-B308-B792747B0C5D}C:\program files\filemaker\filemaker pro 11\filemaker pro.exe" = protocol=17 | dir=in | app=c:\program files\filemaker\filemaker pro 11\filemaker pro.exe | 
"UDP Query User{973FEDAD-2EBD-459B-8407-9BCA32F52968}C:\program files\filemaker\filemaker pro 11\filemaker pro.exe" = protocol=17 | dir=in | app=c:\program files\filemaker\filemaker pro 11\filemaker pro.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0A3925EA-5B0E-401B-A189-7419149747B2}" = Adobe AIR
"{107F27B7-8EE4-4B3A-9CE5-497B120369DC}" = Microsoft Security Client
"{11FF6AF6-0141-4EF8-829A-989459A1E5D8}" = EPSON Advanced Printer Driver 4
"{26A24AE4-039D-4CA4-87B4-2F83217055FF}" = Java 7 Update 55
"{2B2B45B1-3CA0-4F8D-BBB3-AC77ED46A0FE}" = Dell Client System Update
"{3138EAD3-700B-4A10-B617-B3F8096EE30D}" = Dell Edoc Viewer
"{3250260C-7A95-4632-893B-89657EB5545B}" = PhotoShowExpress
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel® Rapid Storage Technology
"{4903D172-DCCB-392F-93A3-34CA9D47FE3D}" = Microsoft .NET Framework 4.5.1
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4BB82AD9-0CF6-4E14-BD75-C1AB657C2914}" = EPSON APD4 Point and Print Support
"{4CA54C97-67B1-4507-9BE0-0ED39C24FA32}" = TurboTax 2012 wpaiper
"{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}" = Google Earth
"{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}" = Roxio BackOnTrack
"{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}" = Roxio File Backup
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{64973F6A-8754-43D1-BDD0-FC6F0546347B}" = Broadcom NetXtreme-I Netlink Driver and Management Installer
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{6F0BBEFE-BE1C-419B-BA1F-D36C9E7915BC}" = Roxio Creator Starter
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7746BFAA-2B5D-4FFD-A0E8-4558F4668105}" = Roxio Burn
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{80F825D2-ED4E-4C83-8A1E-D25160384B97}" = Wizards Event Reporter
"{89EC099E-958D-462E-972C-385591946978}" = TurboTax 2012 WinPerFedFormset
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}" = NVIDIA PhysX
"{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010
"{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010
"{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010
"{90140000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2010
"{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010
"{90140000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010
"{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010
"{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{90140000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2010
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A00EC4E-27E1-42C4-98DD-662F32AC8870}" = Sonic CinePlayer Decoder Pack
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A121EEDE-C68F-461D-91AA-D48BA226AF1C}" = Roxio Activation Module
"{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9.5
"{A8B1F076-965D-4663-A9D4-C2FB58A42AE4}" = TurboTax 2012 WinPerTaxSupport
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.09)
"{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}" = DirectX 9 Runtime
"{B7FB9195-E9FC-4316-930E-D799D5D712F7}" = Dell Backup and Recovery Manager
"{BE0AC13A-77D2-11E0-B15B-81BA4824019B}" = PowerChute Personal Edition 3.0.0.1
"{C673F620-14F0-44CA-B494-E4C9A26DA78F}" = EPSON TM-T20 Utility Ver.1.12
"{E83F5F27-43F3-4163-ABE5-F68C989286ED}" = TurboTax 2012 wrapper
"{EACCC991-8E8C-4397-8854-349506741FC9}" = FileMaker Pro 11
"{EACCC991-8E8C-4397-8854-349506741FC9}_FileMaker" = FileMaker Pro 11
"{EF56258E-0326-48C5-A86C-3BAC26FC15DF}" = Roxio Creator Starter
"{F014B696-28C5-4554-802F-A15380418F53}" = TurboTax 2012 WinPerReleaseEngine
"{F06B5C4C-8D2E-4B24-9D43-7A45EEC6C878}" = Roxio Creator Starter
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel® Graphics Media Accelerator Driver
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F7FB3BB5-6F56-404B-87CA-528E53735F67}" = VMware Zimbra Connector for Microsoft Outlook
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel® Control Center
"7-Zip" = 7-Zip 9.20
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX
"Adobe Shockwave Player" = Adobe Shockwave Player 12.1
"BitRaider Web Client" = BitRaider Web Client
"CCleaner" = CCleaner
"FileZilla Client" = FileZilla Client 3.5.3
"FUSION WOL_is1" = FUSION WOL v1.0
"InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9.5
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.3.1025
"Microsoft Security Client" = Microsoft Security Essentials
"Office14.SingleImage" = Microsoft Office Home and Business 2010
"SyncBackPro_is1" = SyncBackPro
"TeamViewer 7 Host" = TeamViewer 7 Host
"TightVNC" = TightVNC 2.0.4
"TurboTax 2012" = TurboTax 2012
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 11/11/2014 12:16:43 PM | Computer Name = RCG-POS | Source = WinMgmt | ID = 10
Description = 
 
Error - 11/12/2014 11:59:21 AM | Computer Name = RCG-POS | Source = WinMgmt | ID = 10
Description = 
 
Error - 11/12/2014 12:10:36 PM | Computer Name = RCG-POS | Source = MsiInstaller | ID = 11706
Description = 
 
Error - 11/12/2014 12:12:21 PM | Computer Name = RCG-POS | Source = Application Hang | ID = 1002
Description = The program explorer.exe version 6.1.7601.17567 stopped interacting
 with Windows and was closed. To see if more information about the problem is available,
 check the problem history in the Action Center control panel.    Process ID: 7f4    Start
 Time: 01cffe9217139549    Termination Time: 0    Application Path: C:\Windows\explorer.exe
 
Report
 Id: a701a9a5-6a86-11e4-9c32-842b2bbafcd3  
 
Error - 11/12/2014 2:07:53 PM | Computer Name = RCG-POS | Source = WinMgmt | ID = 10
Description = 
 
Error - 11/12/2014 2:52:17 PM | Computer Name = RCG-POS | Source = WinMgmt | ID = 10
Description = 
 
Error - 11/12/2014 2:59:55 PM | Computer Name = RCG-POS | Source = MsiInstaller | ID = 11706
Description = 
 
Error - 11/12/2014 3:05:25 PM | Computer Name = RCG-POS | Source = MsiInstaller | ID = 11706
Description = 
 
Error - 11/12/2014 3:48:13 PM | Computer Name = RCG-POS | Source = WinMgmt | ID = 10
Description = 
 
Error - 11/12/2014 7:59:34 PM | Computer Name = RCG-POS | Source = WinMgmt | ID = 10
Description = 
 
[ System Events ]
Error - 11/12/2014 2:07:28 PM | Computer Name = RCG-POS | Source = Microsoft Antimalware | ID = 2004
Description = %%860 has encountered an error trying to load signatures and will 
attempt reverting back to a known-good set of signatures.     Signatures Attempted: %%824
 
Error
 Code: 0x80070002     Error description: The system cannot find the file specified.      Signature
 version: 0.0.0.0;0.0.0.0     Engine version: 0.0.0.0
 
Error - 11/12/2014 2:07:37 PM | Computer Name = RCG-POS | Source = Service Control Manager | ID = 7000
Description = The EPSON TM Parallel Port Driver service failed to start due to the
 following error:   %%20
 
Error - 11/12/2014 2:52:07 PM | Computer Name = RCG-POS | Source = Service Control Manager | ID = 7000
Description = The EPSON TM Parallel Port Driver service failed to start due to the
 following error:   %%20
 
Error - 11/12/2014 3:48:02 PM | Computer Name = RCG-POS | Source = Service Control Manager | ID = 7000
Description = The EPSON TM Parallel Port Driver service failed to start due to the
 following error:   %%20
 
Error - 11/12/2014 7:50:59 PM | Computer Name = RCG-POS | Source = Service Control Manager | ID = 7030
Description = The PEVSystemStart service is marked as an interactive service.  However,
 the system is configured to not allow interactive services.  This service may not
 function properly.
 
Error - 11/12/2014 7:51:00 PM | Computer Name = RCG-POS | Source = Service Control Manager | ID = 7030
Description = The PEVSystemStart service is marked as an interactive service.  However,
 the system is configured to not allow interactive services.  This service may not
 function properly.
 
Error - 11/12/2014 7:51:00 PM | Computer Name = RCG-POS | Source = Service Control Manager | ID = 7030
Description = The PEVSystemStart service is marked as an interactive service.  However,
 the system is configured to not allow interactive services.  This service may not
 function properly.
 
Error - 11/12/2014 7:51:00 PM | Computer Name = RCG-POS | Source = Service Control Manager | ID = 7030
Description = The PEVSystemStart service is marked as an interactive service.  However,
 the system is configured to not allow interactive services.  This service may not
 function properly.
 
Error - 11/12/2014 7:51:00 PM | Computer Name = RCG-POS | Source = Service Control Manager | ID = 7030
Description = The PEVSystemStart service is marked as an interactive service.  However,
 the system is configured to not allow interactive services.  This service may not
 function properly.
 
Error - 11/12/2014 7:59:14 PM | Computer Name = RCG-POS | Source = Service Control Manager | ID = 7000
Description = The EPSON TM Parallel Port Driver service failed to start due to the
 following error:   %%20
 
 
< End of report >


#9 Mako

Mako

  • Malware Response Team
  • 238 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:02:47 PM

Posted 13 November 2014 - 11:44 AM

Hello again,

This is looking quite good.  :thumbup2: 

:step1: ====aswMBR====

Please download aswMBR ( 4.5MB ) to your desktop.

  • Double click the aswMBR.exe icon, and click Run.
  • When asked if you'd like to "download the latest Avast! virus definitions", click Yes.
  • Click the Scan button to start the scan.
  • On completion of the scan, click the save log button, save it to your desktop, then copy and paste it in your next reply.

:step2: ====AdwCleaner====

Please download AdwCleaner by Xplode and save to your Desktop.
Double click on AdwCleaner.exe to run the tool. Vista/Windows 7/8 users right-click and select Run As Administrator

  • The tool will start to update the database, please wait a bit.
  • Click on the Scan button.
  • AdwCleaner will begin to scan your computer.
  • Click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S#].txt) will open automatically (where the largest value of # represents the most recent report).
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.

Good luck!


Regards,

Mako

 

Member of UNITE Unified Network of Instructors and Trained Eliminators

Noticed any spelling or grammar errors in my reply? Please feel free to point them out to me, I'm always eager to learn. 


#10 Mako

Mako

  • Malware Response Team
  • 238 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:02:47 PM

Posted 16 November 2014 - 04:12 AM

Greetings I2M_Leon,

Are you still with me...?


Regards,

Mako

 

Member of UNITE Unified Network of Instructors and Trained Eliminators

Noticed any spelling or grammar errors in my reply? Please feel free to point them out to me, I'm always eager to learn. 


#11 I2M_Leon

I2M_Leon
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Philadelphia, PA
  • Local time:08:47 AM

Posted 17 November 2014 - 12:17 AM

Sorry, had a couple of days I didn't have access.  Here is the aswMBR log:
 
aswMBR version 1.0.1.2252 Copyright© 2014 AVAST Software
Run date: 2014-11-16 23:43:35
-----------------------------
23:43:35.955    OS Version: Windows 6.1.7601 Service Pack 1
23:43:35.955    Number of processors: 2 586 0x170A
23:43:35.955    ComputerName: RCG-POS  UserName: pos
23:43:55.564    Initialize success
23:43:55.735    VM: initialized successfully
23:43:55.735    VM: Intel CPU supported 
23:43:59.312    VM: supported disk I/O iaStor.sys
23:45:06.650    AVAST engine defs: 14111601
23:49:01.087    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
23:49:01.087    Disk 0 Vendor: WDC_WD25 19.0 Size: 238475MB BusType: 3
23:49:01.243    VM: Disk 0 MBR read successfully
23:49:01.243    Disk 0 MBR scan
23:49:01.321    Disk 0 Windows VISTA default MBR code
23:49:01.321    Disk 0 Partition 1 00     DE Dell Utility DELL 4.1       39 MB offset 63
23:49:01.414    Disk 0 Partition 2 80 (A) 07    HPFS/NTFS NTFS        13066 MB offset 81920
23:49:01.430    Disk 0 Boot: NTFS     code=1
23:49:01.508    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       225368 MB offset 26841088
23:49:01.570    Disk 0 scanning sectors +488394752
23:49:02.070    Disk 0 scanning C:\Windows\system32\drivers
23:49:19.900    Service scanning
23:49:36.686    Service MpKsl6e5e949e c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9664EAAB-8CD5-46F5-8201-DBD636CD6153}\MpKsl6e5e949e.sys **LOCKED** 32
23:49:57.169    Modules scanning
23:49:57.169    Disk 0 trace - called modules:
23:49:57.200    ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll 
23:49:57.216    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x875f4030]
23:49:57.216    3 CLASSPNP.SYS[8919959e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x85728028]
23:49:57.886    AVAST engine scan C:\Windows
23:50:01.880    AVAST engine scan C:\Windows\system32
23:55:08.436    AVAST engine scan C:\Windows\system32\drivers
23:55:28.357    AVAST engine scan C:\Users\pos
23:56:52.114    File: C:\Users\pos\AppData\LocalLow\ghejrm.dll  **INFECTED** Win64:Agent-F [Trj]
23:58:01.269    AVAST engine scan C:\ProgramData
23:59:40.860    File: C:\ProgramData\Windows Genuine Advantage\{184F0DA7-E144-4758-974C-CA34F04C2DAA}\msiexec.exe  **INFECTED** Win32:Malware-gen
23:59:41.031    File: C:\ProgramData\Windows Genuine Advantage\{1C71619C-5CED-46BB-9B93-4C9F70EA0FE2}\msiexec.exe  **INFECTED** Win32:Malware-gen
23:59:42.685    Disk 0 statistics 3045361/0/278 @ 5.50 MB/s
23:59:42.685    Scan finished successfully
00:00:25.444    Disk 0 MBR has been saved successfully to "C:\Users\pos\Desktop\MBR.dat"
00:00:25.460    The log file has been saved successfully to "C:\Users\pos\Desktop\aswMBR.txt"
 
AdwCleaner required a reboot which has left the computer in BIOS startup awaiting a F1 key-press (always does this), so I will have to wait until Tuesday to get the log when I have physical access to the computer again.  However, AdwCleaner did not appear to find anything to clean.


#12 Mako

Mako

  • Malware Response Team
  • 238 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:02:47 PM

Posted 17 November 2014 - 11:57 AM

Hi,

 

Thanks for the log. I'll wait for the AdwCleaner log. :)

In the meantime: is the computer still acting strange? 


Regards,

Mako

 

Member of UNITE Unified Network of Instructors and Trained Eliminators

Noticed any spelling or grammar errors in my reply? Please feel free to point them out to me, I'm always eager to learn. 


#13 I2M_Leon

I2M_Leon
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Philadelphia, PA
  • Local time:08:47 AM

Posted 18 November 2014 - 10:27 AM

OK, here's the AdwCleaner log.  The client reports the computer has been performing well since the earlier cleanings.

 

# AdwCleaner v4.101 - Report created 17/11/2014 at 00:15:00
# Updated 09/11/2014 by Xplode
# Database : 2014-11-16.1 [Live]
# Operating System : Windows 7 Professional Service Pack 1 (32 bits)
# Username : pos - RCG-POS
# Running from : C:\Users\pos\Desktop\AdwCleaner.exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
 
***** [ Scheduled Tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.17420
 
 
-\\ Google Chrome v
 
 
*************************
 
AdwCleaner[R0].txt - [2858 octets] - [29/10/2014 12:52:52]
AdwCleaner[R1].txt - [847 octets] - [17/11/2014 00:03:21]
AdwCleaner[S0].txt - [2962 octets] - [29/10/2014 12:58:50]
AdwCleaner[S1].txt - [769 octets] - [17/11/2014 00:15:00]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [828 octets] ##########


#14 Mako

Mako

  • Malware Response Team
  • 238 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:02:47 PM

Posted 18 November 2014 - 11:09 AM

Hello again,
 
Great news! Let's do one final scan to make sure everything is alright. After that, and the results of the scan are good, I think we can conculde that this system is clean.
 
====Farbar Recovery Scan Tool====

Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system, download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Right-click FRST then click "Run as administrator" (XP users: click run after receipt of Windows Security Warning - Open File).
  • When the tool opens, click Yes to disclaimer.
  • Press the Scan button.
  • When finished, it will produce a log called FRST.txt in the same directory the tool was run from.
  • Please copy and paste the log in your next reply.

Note 2: The first time the tool is run it generates another log (Addition.txt - also located in the same directory the tool was run from). Please also paste that, along with the FRST.txt into your next reply.


Regards,

Mako

 

Member of UNITE Unified Network of Instructors and Trained Eliminators

Noticed any spelling or grammar errors in my reply? Please feel free to point them out to me, I'm always eager to learn. 


#15 Mako

Mako

  • Malware Response Team
  • 238 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:02:47 PM

Posted 21 November 2014 - 05:43 AM

Greetings I2M_Leon,

 

Are you still there...? :hello:

Please reply within the next 24h to this topic, otherwise it will be closed.


Regards,

Mako

 

Member of UNITE Unified Network of Instructors and Trained Eliminators

Noticed any spelling or grammar errors in my reply? Please feel free to point them out to me, I'm always eager to learn. 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users