cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 02-07-2016
Executado por Jessica (administrador) em JESSICA-PC (02-07-2016 21:10:56)
Executando a partir de C:\Users\Jessica\Downloads
Perfis Carregados: Jessica (Perfis Disponíveis: Jessica)
Platform: Windows 7 Professional Service Pack 1 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 11 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(Beijing Fantasy Game Network Technology Co., Ltd.) C:\Program Files (x86)\Simcake\2.6.96.1800\SimcakeSvc.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\9EBF27A9-1466703041-E011-B243-000418403687\knsr34C3.tmp
() C:\Program Files (x86)\WeatherTool\2.0.0.10766\WeatherService.exe
(ShenZhen Enode Techology co,.Ltd) C:\Program Files (x86)\WeatherTool\2.0.0.10766\weather.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [115048 2011-09-16] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [7139256 2016-03-29] (AVAST Software)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\ GbPluginBb: C:\Program Files (x86)\GbPlugin\gbieh.dll [2016-06-16] (Banco do Brasil)
Winlogon\Notify\ GbPluginCef: C:\Program Files (x86)\GbPlugin\gbiehCef.dll [2015-09-22] (Caixa Economica Federal)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-10-27] (Atheros Communications)
HKU\S-1-5-21-2853590018-3436884561-3977635187-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [149040 2007-03-07] (Nero AG)
HKU\S-1-5-21-2853590018-3436884561-3977635187-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8810200 2016-06-10] (Piriform Ltd)
HKU\S-1-5-21-2853590018-3436884561-3977635187-1000\...\MountPoints2: {bdd1cb55-cd9b-11e5-8d8e-806e6f6e6963} - D:\Multilaser.Exe
ShellExecuteHooks: - {98C066AB-D735-4339-9E52-A34875141B56} - C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Cookies\kfupy.dll [417984 2016-06-23] ()
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399003} - C:\Program Files (x86)\GbPlugin\gbiehcef.dll [1888480 2015-09-22] (Caixa Economica Federal)
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399F83} - C:\PROGRAM FILES (X86)\GbPlugin\gbieh.dll [1947872 2016-06-16] (Banco do Brasil)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll [2016-02-07] (AVAST Software)

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Hosts: Há mais de uma entrada no Hosts. Veja a seção Hosts do Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{03DA3F9E-39AD-438F-B6CD-41D7226097DB}: [NameServer] 4.4.4.4,8.8.8.8
Tcpip\..\Interfaces\{03DA3F9E-39AD-438F-B6CD-41D7226097DB}: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{42929EFC-6ECC-465F-B836-C3DAB730BAA1}: [DhcpNameServer] 192.168.25.1

Internet Explorer:
==================
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2016-02-07] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2016-02-07] (AVAST Software)
BHO-x32: Auxiliar de Conexão de Conta da Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540000} -> C:\PROGRAM FILES (X86)\GBPLUGIN\gbieh.dll [2016-06-16] (Banco do Brasil)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540003} -> C:\Program Files (x86)\GbPlugin\gbiehcef.dll [2015-09-22] (Caixa Economica Federal)

FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [Nenhum Arquivo]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Nenhum Arquivo]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll [2010-04-01] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\Alwil Software\Avast5\WebRep\FF [2016-02-07]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\Alwil Software\Avast5\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\Alwil Software\Avast5\SafePrice\FF [2016-02-07]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\Alwil Software\Avast5\SafePrice\FF

Chrome:
=======
CHR HomePage: ChromeDefaultData2 -> hxxp://google.com/
CHR StartupUrls: ChromeDefaultData2 -> "hxxps://www.google.com/"
CHR Profile: C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2
CHR Extension: (Google Apresentações) - C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-06-23]
CHR Extension: (Google Docs) - C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\aohghmighlieiainnegkcijnfilokake [2016-06-23]
CHR Extension: (Avast Antivirus 2016) - C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\bjdkkdbjfibhebekciadblbomanfdlck [2016-07-02]
CHR Extension: (Planilhas do Google) - C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-06-23]
CHR Extension: (Documentos Google off-line) - C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-06-23]
CHR Extension: (Avast Online Security) - C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-06-05]
CHR Extension: (GBBD Banco do Brasil) - C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\jkafhcogdnfhkmiepeebkkdbdphnjfll [2016-02-11]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-07]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChromeSp.crx [2016-02-07]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx [2016-02-07]

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [322176 2014-10-27] (Windows (R) Win 7 DDK provider) [Arquivo não assinado]
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [237096 2016-02-07] (AVAST Software)
R2 GbpSv; C:\Program Files (x86)\GbPlugin\gbpsv.exe [631520 2016-06-17] (GAS Tecnologia)
R2 gidotuguzbt; C:\Program Files (x86)\9EBF27A9-1466703041-E011-B243-000418403687\knsr34C3.tmp [405504 2016-06-23] () [Arquivo não assinado]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-11-21] (Intel Corporation)
R3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [271920 2007-03-07] (Nero AG)
R2 SimcakeSVC; C:\Program Files (x86)\Simcake\2.6.96.1800\SimcakeSvc.exe [115880 1667-11-24] (Beijing Fantasy Game Network Technology Co., Ltd.)
R2 TheDesktopWeatherService; C:\Program Files (x86)\WeatherTool\2.0.0.10766\WeatherService.exe [149752 2015-07-21] ()
R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [1058864 2016-05-11] (GAS Tecnologia LTDA)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S2 ArhCntservice; "C:\Program Files (x86)\Arahick\ArhCntservice.html5" {79740E79-A383-47A7-B513-3DF6563D007F} {8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [X]
S2 ddophprokalymdls; "C:\Program Files (x86)\Ddophprokaly\ddophprokalymdls.xhtm5" {79740E79-A383-47A7-B513-3DF6563D007F} {8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [X]

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-02-07] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-02-07] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-03-09] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-02-07] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-02-07] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-03-09] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [463744 2016-02-25] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [165344 2016-02-07] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287016 2016-02-10] (AVAST Software)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 GBPRCM; C:\Program Files (x86)\GbPlugin\gbprcm64.sys [29912 2015-12-08] (GAS Tecnologia)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-11-21] (Intel Corporation)
R2 memudrv; C:\Program Files (x86)\Simcake\Microvirt\MEmuHyperv\MEmuDrv.sys [260328 2016-01-16] (Microvirt Corporation)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16056 2016-02-07] (SlimWare Utilities, Inc.)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Apple, Inc.) [Arquivo não assinado]
R3 Warsaw_PP; C:\Program Files (x86)\GbPlugin\wsftprp64.sys [24792 2015-12-08] (GAS Tecnologia LTDA)
R4 WinDivert1.1; C:\Program Files\Diebold\Warsaw\WinDivert64.sys [38104 2015-07-07] (Basil)
R1 wsddfac; C:\Windows\System32\drivers\wsddfac.sys [101080 2016-07-02] (GAS Tecnologia)
R1 wsddpp; C:\Windows\system32\drivers\wsddpp.sys [103640 2015-03-18] (GAS Tecnologia)
S1 gbpddfac; system32\drivers\gbpddfac64.sys [X]
S0 gbpddreg; system32\drivers\gbpddreg64.sys [X]
S1 MPCKpt; system32\DRIVERS\MPCKpt.sys [X]

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Um Mês Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-07-02 21:10 - 2016-07-02 21:12 - 00015763 _____ C:\Users\Jessica\Downloads\FRST.txt
2016-07-02 21:10 - 2016-07-02 21:10 - 00000000 ____D C:\FRST
2016-07-02 21:07 - 2016-07-02 21:09 - 02390016 _____ (Farbar) C:\Users\Jessica\Downloads\FRST64.exe
2016-07-02 20:52 - 2016-07-02 21:09 - 56876993 _____ C:\Users\Jessica\Downloads\iTunes6464Setup.exe
2016-07-02 15:04 - 2016-07-02 15:04 - 00142328 ____H C:\Windows\system32\mlfcache.dat
2016-07-02 14:50 - 2016-07-02 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Simcake
2016-06-29 02:15 - 2016-07-02 14:50 - 00002002 _____ C:\Users\Public\Desktop\MEmu.lnk
2016-06-29 02:15 - 2016-06-29 02:15 - 00000000 ____D C:\Users\Jessica\Downloads\MEmu Download
2016-06-29 02:14 - 2016-07-02 16:04 - 00000000 ____D C:\Users\Jessica\Documents\GTA San Andreas User Files
2016-06-29 02:14 - 2016-06-29 02:16 - 00000000 ____D C:\Users\Jessica\.MemuHyperv
2016-06-29 02:12 - 2016-06-29 02:16 - 00000000 ____D C:\Users\Jessica\.android
2016-06-29 02:10 - 2016-07-02 14:51 - 00000000 ____D C:\Program Files (x86)\Simcake
2016-06-29 01:57 - 2016-06-29 01:57 - 00001914 _____ C:\Users\Public\Desktop\GTA San Andreas.lnk
2016-06-29 01:57 - 2016-06-29 01:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2016-06-29 01:57 - 2016-06-29 01:57 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
2016-06-29 01:26 - 2016-06-29 01:29 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Jessica\Downloads\spybot-2.4.exe
2016-06-27 22:38 - 2013-07-30 12:04 - 00001003 ____N C:\Users\Jessica\Downloads\README.txt
2016-06-27 22:03 - 2016-06-27 22:03 - 00000000 ____D C:\Windows\SysWOW64\directx
2016-06-27 21:09 - 2016-06-27 21:09 - 01081929 _____ C:\Windows\SysWOW64\vns869F.tmp
2016-06-27 19:13 - 2016-06-27 19:14 - 00000000 ____D C:\Program Files\WinRAR
2016-06-25 13:41 - 2016-06-25 13:41 - 00000000 ____D C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome
2016-06-25 12:23 - 2016-06-29 01:12 - 00000000 ____D C:\Users\Jessica\AppData\LocalLow\uTorrent
2016-06-25 12:23 - 2016-06-25 12:23 - 00002651 _____ C:\Users\Jessica\Desktop\µTorrent.lnk
2016-06-25 12:23 - 2016-06-25 12:23 - 00002651 _____ C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2016-06-25 12:19 - 2016-06-29 02:26 - 00000000 ____D C:\Users\Jessica\AppData\Roaming\uTorrent
2016-06-25 12:13 - 2016-06-25 12:13 - 00000000 ____D C:\Users\Public\Documents\Baidu
2016-06-24 21:42 - 2016-06-24 21:42 - 00002798 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2016-06-24 21:42 - 2016-06-24 21:42 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-06-24 21:42 - 2016-06-24 21:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-06-24 21:42 - 2016-06-24 21:42 - 00000000 ____D C:\Program Files\CCleaner
2016-06-24 15:30 - 2016-07-02 14:46 - 00000000 ____D C:\Users\Jessica\AppData\Roaming\WeatherTool
2016-06-24 15:30 - 2016-06-24 15:30 - 00000000 ____D C:\Program Files (x86)\WeatherTool
2016-06-23 17:06 - 2016-06-23 17:39 - 00000000 ____D C:\Program Files\Recuva
2016-06-23 15:07 - 2016-06-23 16:52 - 00000000 ____D C:\Users\Todos os Usuários\tools
2016-06-23 15:07 - 2016-06-23 16:52 - 00000000 ____D C:\Users\Jessica\AppData\Roaming\Tools
2016-06-23 15:07 - 2016-06-23 16:52 - 00000000 ____D C:\ProgramData\tools
2016-06-23 15:06 - 2016-06-24 19:22 - 00000000 ____D C:\Users\Todos os Usuários\ToolsUpdatePlatform
2016-06-23 15:06 - 2016-06-24 19:22 - 00000000 ____D C:\ProgramData\ToolsUpdatePlatform
2016-06-23 15:06 - 2016-06-23 15:08 - 00000000 ____D C:\Windows\system32\SSL
2016-06-23 15:06 - 2016-06-23 15:06 - 00000000 ____D C:\Users\Jessica\AppData\Roaming\MCorp
2016-06-23 15:03 - 2016-06-23 15:03 - 00000000 ____D C:\Users\Public\Documents\Guid
2016-06-23 14:42 - 2016-06-23 15:34 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
2016-06-23 14:36 - 2016-06-23 14:36 - 00008982 _____ C:\Windows\System32\Tasks\Ddophprokaly Module
2016-06-23 14:35 - 2016-06-24 18:13 - 00000000 ____D C:\Program Files (x86)\mpck
2016-06-23 14:35 - 2016-06-24 11:03 - 00000000 ____D C:\Program Files (x86)\Max Driver Updater
2016-06-23 14:30 - 2016-07-02 16:44 - 00000000 ____D C:\Program Files (x86)\9EBF27A9-1466703041-E011-B243-000418403687
2016-06-23 14:18 - 2016-06-23 14:27 - 00008978 _____ C:\Windows\System32\Tasks\Arahick Controls
2016-06-23 14:16 - 2016-06-23 14:29 - 00000000 ____D C:\Users\Jessica\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108
2016-06-23 13:07 - 2016-06-23 13:07 - 02373068 _____ C:\Windows\chromebrowser.exe
2016-06-23 11:16 - 2016-06-29 02:14 - 00000000 ____D C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2016-06-16 18:20 - 2016-05-23 20:37 - 00394960 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-06-16 18:20 - 2016-05-23 19:54 - 00346312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-06-16 18:20 - 2016-05-21 14:28 - 25802752 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-06-16 18:20 - 2016-05-21 13:57 - 20341248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-06-16 18:20 - 2016-05-20 19:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-06-16 18:20 - 2016-05-20 19:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-06-16 18:20 - 2016-05-20 19:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-06-16 18:20 - 2016-05-20 19:10 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-06-16 18:20 - 2016-05-20 19:09 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-06-16 18:20 - 2016-05-20 19:09 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-06-16 18:20 - 2016-05-20 19:09 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-06-16 18:20 - 2016-05-20 19:08 - 02895360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-06-16 18:20 - 2016-05-20 19:08 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-06-16 18:20 - 2016-05-20 19:02 - 06051328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-06-16 18:20 - 2016-05-20 19:00 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-06-16 18:20 - 2016-05-20 18:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-06-16 18:20 - 2016-05-20 18:57 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-06-16 18:20 - 2016-05-20 18:57 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-06-16 18:20 - 2016-05-20 18:57 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-06-16 18:20 - 2016-05-20 18:56 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-06-16 18:20 - 2016-05-20 18:56 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-06-16 18:20 - 2016-05-20 18:55 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-06-16 18:20 - 2016-05-20 18:54 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-06-16 18:20 - 2016-05-20 18:54 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-06-16 18:20 - 2016-05-20 18:54 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-06-16 18:20 - 2016-05-20 18:54 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-06-16 18:20 - 2016-05-20 18:50 - 02287104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-06-16 18:20 - 2016-05-20 18:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-06-16 18:20 - 2016-05-20 18:48 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-06-16 18:20 - 2016-05-20 18:45 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-06-16 18:20 - 2016-05-20 18:45 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-06-16 18:20 - 2016-05-20 18:44 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-06-16 18:20 - 2016-05-20 18:44 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-06-16 18:20 - 2016-05-20 18:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-06-16 18:20 - 2016-05-20 18:41 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-06-16 18:20 - 2016-05-20 18:33 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-06-16 18:20 - 2016-05-20 18:33 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-06-16 18:20 - 2016-05-20 18:32 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-06-16 18:20 - 2016-05-20 18:29 - 13815808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-06-16 18:20 - 2016-05-20 18:28 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-06-16 18:20 - 2016-05-20 18:27 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-06-16 18:20 - 2016-05-20 18:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-06-16 18:20 - 2016-05-20 18:26 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-06-16 18:20 - 2016-05-20 18:25 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-06-16 18:20 - 2016-05-20 18:23 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-06-16 18:20 - 2016-05-20 18:23 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-06-16 18:20 - 2016-05-20 18:22 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-06-16 18:20 - 2016-05-20 18:21 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-06-16 18:20 - 2016-05-20 18:19 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-06-16 18:20 - 2016-05-20 18:14 - 04610048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-06-16 18:20 - 2016-05-20 18:12 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-06-16 18:20 - 2016-05-20 18:11 - 15420928 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-06-16 18:20 - 2016-05-20 18:11 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-06-16 18:20 - 2016-05-20 18:09 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-06-16 18:20 - 2016-05-20 18:09 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-06-16 18:20 - 2016-05-20 18:08 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-06-16 18:20 - 2016-05-20 18:08 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-06-16 18:20 - 2016-05-20 18:07 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-06-16 18:20 - 2016-05-20 18:07 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-06-16 18:20 - 2016-05-20 18:06 - 02131968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-06-16 18:20 - 2016-05-20 17:46 - 02597888 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-06-16 18:20 - 2016-05-20 17:42 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-06-16 18:20 - 2016-05-20 17:38 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-06-16 18:20 - 2016-05-20 17:38 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-06-16 18:20 - 2016-05-20 17:34 - 01544192 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-06-16 18:20 - 2016-05-20 17:23 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-06-16 17:05 - 2016-05-12 14:20 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-06-16 17:05 - 2016-05-12 14:20 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-06-16 17:05 - 2016-05-12 14:15 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-06-16 17:05 - 2016-05-12 14:15 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-06-16 17:05 - 2016-05-12 14:15 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-06-16 17:05 - 2016-05-12 14:15 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-06-16 17:05 - 2016-05-12 14:15 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-06-16 17:05 - 2016-05-12 14:14 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-06-16 17:05 - 2016-05-12 12:18 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2016-06-16 17:05 - 2016-05-12 12:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-06-16 17:05 - 2016-05-12 11:58 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-06-16 17:05 - 2016-05-12 11:58 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-06-16 17:05 - 2016-05-12 11:58 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-06-16 17:05 - 2016-05-12 11:58 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-06-16 17:05 - 2016-05-12 11:58 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-06-16 17:05 - 2016-05-12 11:58 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-06-16 17:05 - 2016-05-12 11:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-06-16 17:05 - 2016-05-12 11:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-06-16 17:05 - 2016-05-12 11:51 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-06-16 17:05 - 2016-05-12 10:05 - 00459640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-06-16 17:05 - 2016-05-12 10:05 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-06-16 17:05 - 2016-05-12 10:04 - 00249352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2016-06-16 17:04 - 2016-06-06 13:58 - 00041704 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-06-16 17:04 - 2016-06-06 13:50 - 01204224 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-06-16 17:04 - 2016-06-03 10:05 - 01413120 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-06-16 17:04 - 2016-05-27 10:06 - 00569856 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-06-16 17:04 - 2016-05-27 10:06 - 00544256 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-06-16 17:04 - 2016-05-27 10:06 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-06-16 17:04 - 2016-05-27 10:06 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2016-06-16 17:04 - 2016-05-22 10:06 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-06-16 17:02 - 2016-05-18 13:10 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-06-16 17:02 - 2016-05-18 13:09 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-06-16 17:02 - 2016-05-13 19:15 - 00382184 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-06-16 17:02 - 2016-05-13 19:09 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-06-16 17:02 - 2016-05-13 19:09 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-06-16 17:02 - 2016-05-13 19:09 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-06-16 17:02 - 2016-05-13 19:09 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-06-16 17:02 - 2016-05-13 18:54 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-06-16 17:02 - 2016-05-13 18:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2016-06-16 17:02 - 2016-05-13 18:49 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-06-16 17:02 - 2016-05-13 18:49 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2016-06-16 17:02 - 2016-05-13 18:27 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-06-16 17:02 - 2016-05-12 14:15 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll
2016-06-16 17:02 - 2016-05-12 14:14 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-06-16 17:02 - 2016-05-12 14:14 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2016-06-16 17:02 - 2016-05-12 14:14 - 00502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2016-06-16 17:02 - 2016-05-12 14:14 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2016-06-16 17:02 - 2016-05-12 14:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2016-06-16 17:02 - 2016-05-12 14:14 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2016-06-16 17:02 - 2016-05-12 14:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll
2016-06-16 17:02 - 2016-05-12 12:18 - 00591872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2016-06-16 17:02 - 2016-05-12 12:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
2016-06-16 17:02 - 2016-05-12 12:18 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2016-06-16 17:02 - 2016-05-12 12:18 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll
2016-06-16 17:02 - 2016-05-12 12:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
2016-06-16 17:02 - 2016-05-12 12:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe
2016-06-16 17:02 - 2016-05-12 12:03 - 03217408 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-06-16 17:02 - 2016-05-12 11:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll
2016-06-16 17:02 - 2016-05-12 11:57 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe
2016-06-16 17:02 - 2016-05-11 14:02 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-06-16 17:02 - 2016-05-11 14:02 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-06-16 17:02 - 2016-05-11 14:02 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-06-16 17:02 - 2016-05-11 14:02 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-06-16 17:02 - 2016-05-11 12:19 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2016-06-16 17:02 - 2016-05-11 12:19 - 00351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-06-16 17:02 - 2016-05-11 12:19 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-06-16 17:02 - 2016-05-11 12:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-06-16 17:02 - 2016-05-11 12:11 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2016-06-16 17:02 - 2016-05-11 12:01 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2016-06-16 17:02 - 2016-05-11 11:58 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-06-16 17:02 - 2016-04-09 03:58 - 14186496 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-06-16 17:02 - 2016-04-09 03:54 - 12881408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-06-16 17:02 - 2016-03-09 16:00 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-06-16 17:02 - 2016-03-09 15:40 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-06-16 17:01 - 2016-04-14 13:46 - 00114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2016-06-16 17:01 - 2016-04-14 13:42 - 03243520 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-06-16 17:01 - 2016-04-14 13:42 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-06-16 17:01 - 2016-04-14 13:42 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2016-06-16 17:01 - 2016-04-14 13:42 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-06-16 17:01 - 2016-04-14 13:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2016-06-16 17:01 - 2016-04-14 12:33 - 02365440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-06-16 17:01 - 2016-04-14 12:33 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-06-16 17:01 - 2016-04-14 12:33 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2016-06-16 17:01 - 2016-04-14 12:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2016-06-16 17:01 - 2016-04-14 12:19 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2016-06-16 17:01 - 2016-04-14 12:11 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2016-06-16 17:01 - 2016-04-09 03:57 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-06-16 17:01 - 2016-04-09 03:54 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-06-16 17:01 - 2016-04-09 02:53 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-06-16 17:01 - 2016-04-09 02:44 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-06-08 22:28 - 2016-06-08 22:29 - 00000000 ____D C:\Users\Jessica\Downloads\Material Guarda Civil Advise

==================== Um Mês Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-07-02 21:04 - 2016-02-07 12:25 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-02 20:50 - 2016-02-10 16:41 - 00000000 ____D C:\Users\Jessica\AppData\Local\ElevatedDiagnostics
2016-07-02 20:48 - 2016-03-18 15:49 - 00000000 ____D C:\Users\Jessica\AppData\Local\CrashDumps
2016-07-02 20:08 - 2009-07-14 01:45 - 00018176 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-07-02 20:08 - 2009-07-14 01:45 - 00018176 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-07-02 20:04 - 2016-02-07 14:49 - 00000000 ____D C:\Program Files (x86)\WinRAR
2016-07-02 19:54 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-07-02 19:33 - 2016-02-07 14:39 - 00004184 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-07-02 19:32 - 2016-02-16 07:53 - 00101080 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\wsddfac.sys
2016-07-02 19:32 - 2016-02-16 07:49 - 00000000 ____D C:\Program Files (x86)\GbPlugin
2016-07-02 19:32 - 2016-02-07 12:24 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-02 19:32 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-29 02:14 - 2016-02-07 10:15 - 00000000 ____D C:\Users\Jessica
2016-06-29 01:57 - 2016-02-07 12:14 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-06-27 21:50 - 2016-02-11 11:17 - 00000000 ____D C:\Users\Jessica\AppData\Roaming\PhotoScape
2016-06-27 20:09 - 2016-02-11 09:45 - 00000000 ____D C:\Windows\System32\Tasks\Games
2016-06-24 22:23 - 2016-02-16 07:49 - 00000000 ____D C:\Users\Todos os Usuários\GbPlugin
2016-06-24 22:23 - 2016-02-16 07:49 - 00000000 ____D C:\ProgramData\GbPlugin
2016-06-24 21:48 - 2011-02-07 01:53 - 00000000 ____D C:\Windows\Panther
2016-06-24 20:49 - 2009-07-14 14:55 - 00706722 _____ C:\Windows\system32\prfh0416.dat
2016-06-24 20:49 - 2009-07-14 14:55 - 00148060 _____ C:\Windows\system32\prfc0416.dat
2016-06-24 20:49 - 2009-07-14 02:13 - 01637920 _____ C:\Windows\system32\PerfStringBackup.INI
2016-06-24 20:47 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\NDF
2016-06-24 20:39 - 2016-04-05 12:40 - 00000000 ____D C:\Users\Jessica\Documents\LEIS
2016-06-24 20:38 - 2016-04-29 19:30 - 00000000 ___RD C:\Users\Jessica\Documents\Scanned Documents
2016-06-24 20:09 - 2015-10-14 12:58 - 00000000 ____D C:\Users\Jessica\Documents\Concurso
2016-06-24 15:32 - 2016-02-10 10:37 - 00000000 ____D C:\Users\Jessica\AppData\Local\Ahead
2016-06-23 19:50 - 2016-02-11 10:11 - 00000000 ____D C:\Users\Todos os Usuários\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2016-06-23 19:50 - 2016-02-11 10:11 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2016-06-23 15:39 - 2016-02-07 14:47 - 00001290 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-06-23 15:18 - 2016-02-11 11:26 - 00002355 _____ C:\Users\Jessica\Desktop\Inicializador de aplicativos do Google Chrome.lnk
2016-06-23 14:31 - 2016-02-07 12:26 - 00002229 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-06-23 04:47 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache
2016-06-22 19:17 - 2016-02-11 11:43 - 00000000 ____D C:\Users\Jessica\AppData\Local\Microsoft Games
2016-06-20 14:08 - 2009-07-14 01:45 - 00414808 _____ C:\Windows\system32\FNTCACHE.DAT
2016-06-18 16:56 - 2016-02-17 09:57 - 00000000 ____D C:\Windows\system32\appraiser
2016-06-18 15:11 - 2016-02-14 00:07 - 00000000 ____D C:\Windows\system32\MRT
2016-06-18 14:51 - 2016-02-14 00:07 - 142482544 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-06-13 19:31 - 2011-02-07 01:22 - 00484008 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-06-04 18:02 - 2016-04-05 12:39 - 00000000 ____D C:\Users\Jessica\Documents\CF_CP_CPP
2016-06-04 01:39 - 2016-02-19 16:06 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Arquivos na raiz de alguns diretórios =======

2016-02-07 12:48 - 2016-02-07 12:48 - 6871040 _____ () C:\Program Files (x86)\GUTFED9.tmp
2016-02-10 22:11 - 2016-02-10 22:11 - 0000057 _____ () C:\ProgramData\Ament.ini

Alguns arquivos em TEMP:
====================
C:\Users\Jessica\AppData\Local\Temp\1014.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1044.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\104E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1057.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\10C1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\10D5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\10E1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1110.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1140.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\116E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\118F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1191.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\11C5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\11EE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\11F1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\120B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\126A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\128B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\12C8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\12DA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1317.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\131D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1376.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1377.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\13E3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1404.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1424.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1437.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1442.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1453.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\14A0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\14B2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\14F3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\14FF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\154B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\155E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\156D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\156E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\15BD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\15CF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\15DC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\161B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\163B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\167A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\16B9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\16D9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\16F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1708.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\172F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1732.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1737.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1738.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1766.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1787.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\17F5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1854.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\188F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1910.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1981.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\19E7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1A6E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1A88.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1B6E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1BF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1BF5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1C02.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1C6C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1CB7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1D2E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1D32.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1D81.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1DA2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1DD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1DDF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1DEA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1E15.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1E2E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1E5E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1E8D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1EBE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1EEB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1F0A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1F3A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1F99.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\1FF8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\200D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2038.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2047.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\20B5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\20C0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2104.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2172.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\21BB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\21D1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2220.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\226E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\227A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\227E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2286.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\22CD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\232C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\238A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\23B7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\23D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\23E9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2438.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\245B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2497.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\24F5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2507.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\251A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2554.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\25A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\25C2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\26.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2610.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2611.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2638.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2670.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\26A6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\26BF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\26F5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\271D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\276C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2797.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\27B1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\27CB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\27D9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2829.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2888.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\288C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\28E7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2936.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\293E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2977.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\29A4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\29F3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\29F5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2A2B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2A61.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2AB0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2B03.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2B0F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2B6D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2B6E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2BBD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2C1C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2C6B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2C96.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2CC9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2CD8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2CDB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2CF4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2CF5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2D18.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2D77.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2D8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2DA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2DC0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2DD6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2E25.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2E83.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2EAD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2ECB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2ED2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2EDE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2F26.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2F31.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2F77.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2F8F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2FEE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\2FF5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\300.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3037.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\304D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3092.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\309C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\310A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\310B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3159.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\31BB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\31DA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\31E6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3205.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\324A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3258.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3264.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3283.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\32C3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\32C6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3330.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\336F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\339.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\33A0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\33B2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\33CE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\342C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\343A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\345.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\348B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\34D9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\34DA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3539.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3577.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3588.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\35E6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3645.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\365D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\367F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\36A3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\36F2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3751.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\37A0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\37B9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\37FF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\385D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\388.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\38AC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\38AF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\390B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3940.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\394C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\395A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\39B8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3A17.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3A27.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3A76.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3AC5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3AC7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3B01.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3B23.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3B72.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3BD1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3BDD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3C2F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3C8E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3C9C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3CED.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3D4B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3DAA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3DC0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3DE1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3E08.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3E2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3E57.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3E5C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3E6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3E91.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3EC4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3F86.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3FBA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\3FF4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4095.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\40AE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\40DE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\41CE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4217.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4218.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\42C1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4307.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4351.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\43E4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4431.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4433.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4479.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4492.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\44B9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\44F0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4503.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\453F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4599.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\45AD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\460C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\463E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\465B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\46AD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\46C9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4718.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\472F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4768.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4777.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\47D5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4810.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\483.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4834.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4862.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4878.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4893.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\48E2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4931.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\494D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\498B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\498F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\49D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\49D0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\49FD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4A4C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4A57.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4A9B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4AA0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4AFA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4B49.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4B57.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4B70.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4B71.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4BA8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4BBF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4C06.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4C55.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4C89.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4C8B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4CB4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4D12.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4D2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4D5F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4D61.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4D84.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4DD0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4DE3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4E16.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4E1F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4E7D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4EDC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4EDD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4F3A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4F4B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4F99.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4FA2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\4FE8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5047.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5058.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\50A3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\50A5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\50D1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5104.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5162.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\51C1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5220.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\522A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\523D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\527E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\52DD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\533B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5382.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\538A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\53D9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\53DE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5438.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\546F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5487.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\54E6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\550.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5544.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5557.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5593.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\55F2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5616.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5618.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5650.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\56AF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\56C2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\56DC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\570E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\575B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\575D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\578.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\579E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\57BB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\581A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\585A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5869.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\58B1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\58C7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\58C8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5911.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5917.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5976.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5993.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\59D5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\59F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5A24.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5A73.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5A9C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5AD1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5ADC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5AF6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5B30.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5B60.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5B8E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5BDD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5BF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5C3C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5C52.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5C63.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5C7D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5C9B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5CEA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5D48.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5D93.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5D96.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5D97.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5DCB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5DF6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5E45.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5E56.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5EA3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5EF2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5EFE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5F33.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5F61.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\5FBF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\600E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\604A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6061.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\606D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\60AA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\60B4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\60BC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\611A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6169.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6170.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\61D1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\61DE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\61F7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6208.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6246.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\625C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\62B4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\62CA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6313.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\631B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6321.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6339.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6358.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6371.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\63B6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\63C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\63D0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\641F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6434.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\647D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\64C2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\64DC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\652B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\653C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\658A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\65E8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\65EB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6637.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6647.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6696.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\66CA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\66E5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6705.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6734.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6787.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6792.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\67F1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\67FB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\681F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6850.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\689F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\68FD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6948.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\695C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\69D5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6A72.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6AC4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6B00.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6B08.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6B30.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6B9D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6BA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6C49.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6C4B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6CC7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6CF5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6D4B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6DA9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6DB2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6DF1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6E37.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6E9D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6EAB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6EB4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6F71.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\6F88.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7004.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7073.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\70E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\70F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7136.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\713F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\714B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\718.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\71BD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\721.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7246.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\724A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\72E7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\72F3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\731B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7352.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\737D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7384.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\73B0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\740F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7421.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\745E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7480.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\74DE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\753D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\757C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\75EA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7648.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\767B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7697.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7734.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7783.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\77E2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\783B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\787.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\787F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\78AD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\78DD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\793C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7A08.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7A20.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7A38.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7A4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7A57.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7A97.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7AB5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7AE0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7B15.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7B52.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7B73.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7BB1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7BC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7BD5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7BE2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7C00.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7C40.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7C9D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7CBE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7CEC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7D4B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7D51.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7D9A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7DC8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7DD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7E08.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7E27.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7E86.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7EC3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7ED5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7F12.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7F5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7F70.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7F72.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7FCF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7FD1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\7FE0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\801B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\802F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\807C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\808D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8128.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\812A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8189.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\81A6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\81D8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\81E1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8237.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8295.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\831E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\832C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8332.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8381.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\83B6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\83E0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\84.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\847D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\84D4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\84DB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\850.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\853.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\853A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\855F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8589.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\859.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\85BA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8693.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\86B7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\86B8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\86F2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8750.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8754.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\877F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\87AF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\87B2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\880E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8821.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\886C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\888F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\88AC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\88BB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\88ED.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\891A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\894C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8954.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8969.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\89BA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\89C7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8A2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8A26.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8A85.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8AE3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8AF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8B51.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8B70.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8B9A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8BB0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8BCF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8BFF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8C13.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8C3D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8C5E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8C7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8CAB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8CAD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8D0B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8D38.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8D6A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8D8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8DB6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8DB9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8E08.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8E24.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8E55.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8E76.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8E83.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8EA7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8EC5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8F10.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8F14.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8F6F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8F73.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8FAD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8FCE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\8FD1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\901.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\902C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9030.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\907F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9089.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\908C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\90C9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\90DD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\90E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\913C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\919B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\91A5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\91F9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9200.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9242.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9248.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\92A7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\92AF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9305.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\932A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\934C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9364.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\93C3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\93F8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9440.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9474.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\94A1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\94BE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\954C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\95AA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\960.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\961.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9618.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\964.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9667.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9677.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\96C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\96D6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\96D7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9734.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9783.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\97FD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9801.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9850.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\98BE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\990D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9917.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\996C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9975.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\99A5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\99C4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\99CA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9A19.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9A40.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9A78.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9AA0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9AC7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9B0C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9B26.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9B4C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9B75.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9BD3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9C09.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9C26.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9C32.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9C58.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9C81.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9CB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9CC6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9CE1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9D01.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9D0E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9D6D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9DDB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9E3A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9E4A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9E89.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9EE7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9F55.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9F64.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\9FA4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A003.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A03F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A062.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A0C0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A11B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A11F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A17D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A1DC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A1F5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A1F6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A20.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A22B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A254.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A28A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A2B2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A307.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A311.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A32F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A356.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A36F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A3BE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A3C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A3C5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A3F4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A40.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A423.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A43C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A487.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A48B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A491.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A4E0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A4EA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A53F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A548.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A58E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A5A7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A5D0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A5ED.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A606.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A64B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A655.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A69A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A6B3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A6F9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A701.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A712.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A748.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A780.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A7A6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A7B4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A7FE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A815.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A86C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A883.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A8E1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A8F9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A930.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A94B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A968.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A97.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A98F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A9B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A9B7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\A9EE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AA2D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AA3D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AA44.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AA8C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AAC2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AAEA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AB49.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AB5E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ABA8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ABEB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ABF7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AC55.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ACA7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ACB4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ACF5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AD12.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AD2A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AD61.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ADC0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AE0F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AE1F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AE6E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AE7C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AECC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AF1B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AF4D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AF6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AF7A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AFC9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\AFE4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B037.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B05.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B061.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B0A5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B0A6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B0F4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B153.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B15C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B1B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B1B1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B200.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B22D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B236.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B25F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B2AE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B301.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B30D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B311.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B35C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B370.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B3BA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B3DE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B3E2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B419.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B46B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B47.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B477.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B498.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B4C6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B525.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B575.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B584.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B5E2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B634.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B641.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B68D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B69F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B6BE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B6FE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B74D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B7AC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B80A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B816.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B859.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B8B8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B8EE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B916.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B932.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B96.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B975.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\B9C4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BA23.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BA2A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BA72.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BAD0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BB2F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BB8D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BBA3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BBEC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BC0B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BC5A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BC7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BC9B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BCB9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BD08.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BD66.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BDD5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BE23.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BE33.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BE82.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BE8F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BEF0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BF5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\BF75.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C0D3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C0F0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C13B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C15.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C2B2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C353.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C361.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C40A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C4DB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C5FE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C66E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C6DE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C7D3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C92.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C95D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C989.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C9BA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\C9BD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CA09.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CAF4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CB12.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CB3F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CBAF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CC0E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CC1E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CC2D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CD14.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CD37.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CDF3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CDF4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CEBE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CEE9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CF0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CF71.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CFC8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\CFE8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D0D1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D0DD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D14B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D1AD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D1F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D1FB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D2C5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D329.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D3D0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D48.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D48B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D4A1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D57C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D584.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D5DB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D6C8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D6E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D6FC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D72B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D7F6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D855.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D950.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\D9CB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DA94.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DB0A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DB15.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DB22.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DB74.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DB78.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DB90.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DC1D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DC44.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DC4C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DC84.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DCD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DD3E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DD75.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DD8E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DDCC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DE88.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DE89.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DE9D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DFA2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\DFB8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E03E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E09C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E0AD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E100.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E10A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E178.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E18B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E19.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E1B7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E1D7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E209.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E274.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E292.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E2A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E2A6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E2B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E2F2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E301.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E370.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E3C0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E3CC.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E3ED.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E40D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E47C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E4B9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E544.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E548.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E575.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E5E1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E62F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E63F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E643.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E651.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E72C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E77C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E7D5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E805.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E817.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E8A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E8DE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E912.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E94C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E95D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E980.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\E9CB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EA2C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EA87.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EAA3.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EAE8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EAF7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EB02.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EB72.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EB9E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ECD7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ECEA.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\ED92.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EDD5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EF09.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\EF6B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F080.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F0A0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F0E2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F13D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F16E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F17.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F1CD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F218.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F22A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F2B6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F2C7.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F2F1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F34.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F342.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F3A2.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F3D1.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F40E.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F43F.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F4B9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F4EB.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F52A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F567.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F5F5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F65C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F66.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F692.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F700.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F768.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F78C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F7B.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F80A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F831.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F8E4.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F8EF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F943.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\F9B8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FA2D.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FA48.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FA6C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FAE9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FB20.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FB70.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FB96.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FBC5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FBF.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FC2C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FC5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FC78.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FC81.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FCD8.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FD8A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FDD9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FE01.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FE20.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FE38.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FE5C.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FE6.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FE9.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FEAE.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FEC5.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FECD.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FF7A.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FF89.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\FFA0.tmp.exe
C:\Users\Jessica\AppData\Local\Temp\fsd31C.exe
C:\Users\Jessica\AppData\Local\Temp\fsd5F7D.exe
C:\Users\Jessica\AppData\Local\Temp\s3.exe


==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2016-06-27 20:02

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité