Ik heb helaas het (wederom) het trojan virus op mijn computer. Hierbij mijn log's van HITMANPRO en DDs.
Zou je me kunnen adviseren voor een goede virusscanner die ik kan aanschaffen?
DDS :
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16457
Run by Anne at 23:14:14 on 2013-01-13
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.4026.2437 [GMT 1:00]
.
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\HitmanPro\hmpsched.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BBSvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe
C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\HitmanPro\HitmanPro.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
C:\Windows\system32\igfxext.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\PLFSetI.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\sppsvc.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uSearch Page = shareware-ne.com
mStart Page = shareware-ne.com
mSearch Page = shareware-ne.com
mWinlogon: Userinit = userinit.exe,
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Aanmeldhulp voor Windows Live ID: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Skype Plug-In: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Google Update] "C:\Users\Anne\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
mRun: [sw_updater] "C:\Program Files (x86)\sw_updater\updater.exe"
mRun: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {3D3B42C2-11BF-4732-A304-A01384B70D68} - hxxp://picasaweb.google.nl/s/v/59.06/uploader2.cab" onclick="window.open(this.href);return false;
DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} - hxxp://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab" onclick="window.open(this.href);return false;
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab" onclick="window.open(this.href);return false;
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab" onclick="window.open(this.href);return false;
TCP: NameServer = 192.168.2.254
TCP: Interfaces\{1910C3A2-3CE9-4C45-A618-D5690404B72B} : DHCPNameServer = 10.10.60.1 61.88.88.88 8.8.8.8
TCP: Interfaces\{A152C309-3995-4BB7-AC03-9F7B05E5D960} : DHCPNameServer = 192.168.2.254
TCP: Interfaces\{A152C309-3995-4BB7-AC03-9F7B05E5D960}\3585535313447393242343 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{A152C309-3995-4BB7-AC03-9F7B05E5D960}\75962756C6563737047427966666964786 : DHCPNameServer = 192.168.176.254
TCP: Interfaces\{A152C309-3995-4BB7-AC03-9F7B05E5D960}\7616374756E6E65647775627B6 : DHCPNameServer = 10.0.0.254
TCP: Interfaces\{A152C309-3995-4BB7-AC03-9F7B05E5D960}\973726275656B65627 : DHCPNameServer = 192.168.0.1 8.8.8.8
TCP: Interfaces\{A152C309-3995-4BB7-AC03-9F7B05E5D960}\D497E647026427565602759666960213 : DHCPNameServer = 192.168.0.1
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
x64-mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0413&m=aspire_7715z&r=273601100815l0354z115t4792c01o" onclick="window.open(this.href);return false;
x64-mDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0413&m=aspire_7715z&r=273601100815l0354z115t4792c01o" onclick="window.open(this.href);return false;
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-Run: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
x64-Run: [mwlDaemon] C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
x64-Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
x64-Run: [PLFSetI] C:\Windows\PLFSetI.exe
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R1 mwlPSDFilter;mwlPSDFilter;C:\Windows\System32\drivers\mwlPSDFilter.sys [2009-6-2 22576]
R1 mwlPSDNServ;mwlPSDNServ;C:\Windows\System32\drivers\mwlPSDNserv.sys [2009-6-2 20016]
R1 mwlPSDVDisk;mwlPSDVDisk;C:\Windows\System32\drivers\mwlPSDVDisk.sys [2009-6-2 60464]
R2 BBSvc;BingBar Service;C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BBSvc.EXE [2012-6-11 193616]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2009-9-3 844320]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-6-4 1150496]
R2 HitmanProScheduler;HitmanPro Scheduler;C:\Program Files\HitmanPro\hmpsched.exe [2013-1-13 108904]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-11-19 399432]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-11-19 676936]
R2 MWLService;MyWinLocker Service;C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe [2009-8-6 311592]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-6-18 144640]
R2 Updater Service;Updater Service;C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-9-3 240160]
R3 hitmanpro37;HitmanPro 3.7 Support Driver;C:\Windows\System32\drivers\hitmanpro37.sys [2013-1-13 32152]
R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20);C:\Windows\System32\drivers\L1C62x64.sys [2009-9-3 58880]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2012-11-19 25928]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-13 160944]
S3 BBUpdate;BBUpdate;C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\SeaPort.EXE [2012-6-11 240208]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2010-10-27 48488]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-9-22 1493352]
S3 hwusbdev;Huawei DataCard USB PNP Device;C:\Windows\System32\drivers\ewusbdev.sys [2011-1-24 114560]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-6-18 50432]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-5-23 59392]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-9-28 53760]
S3 WatAdminSvc;Windows Activation Technologies-service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-2-28 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2013-01-13 22:03:32 -------- d-----w- C:\Program Files\HitmanPro
2013-01-13 22:02:44 -------- d-----w- C:\ProgramData\HitmanPro
2013-01-12 00:28:36 9125352 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{77228072-4E9C-4F88-8957-EC35C3E67B47}\mpengine.dll
2013-01-09 19:07:52 424448 ----a-w- C:\Windows\System32\KernelBase.dll
2012-12-28 15:23:36 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
2012-12-28 15:23:01 -------- d-----w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2012-12-28 15:23:01 -------- d-----w- C:\Program Files\iTunes
2012-12-28 15:23:01 -------- d-----w- C:\Program Files\iPod
2012-12-27 20:00:04 46080 ----a-w- C:\Windows\System32\atmlib.dll
2012-12-27 20:00:04 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
2012-12-27 20:00:02 367616 ----a-w- C:\Windows\System32\atmfd.dll
2012-12-27 20:00:01 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll
2012-12-17 21:22:24 -------- d-----w- C:\Users\Anne\AppData\Local\{4D1FB1CF-8818-48B8-B64E-37B6E8E0BF17}
.
==================== Find3M ====================
.
2012-12-07 13:20:16 441856 ----a-w- C:\Windows\System32\Wpc.dll
2012-12-07 13:15:31 2746368 ----a-w- C:\Windows\System32\gameux.dll
2012-12-07 12:26:17 308736 ----a-w- C:\Windows\SysWow64\Wpc.dll
2012-12-07 12:20:43 2576384 ----a-w- C:\Windows\SysWow64\gameux.dll
2012-12-07 11:20:04 30720 ----a-w- C:\Windows\System32\usk.rs
2012-12-07 11:20:03 43520 ----a-w- C:\Windows\System32\csrr.rs
2012-12-07 11:20:03 23552 ----a-w- C:\Windows\System32\oflc.rs
2012-12-07 11:20:01 45568 ----a-w- C:\Windows\System32\oflc-nz.rs
2012-12-07 11:20:01 44544 ----a-w- C:\Windows\System32\pegibbfc.rs
2012-12-07 11:20:01 20480 ----a-w- C:\Windows\System32\pegi-fi.rs
2012-12-07 11:20:00 20480 ----a-w- C:\Windows\System32\pegi-pt.rs
2012-12-07 11:19:59 20480 ----a-w- C:\Windows\System32\pegi.rs
2012-12-07 11:19:58 46592 ----a-w- C:\Windows\System32\fpb.rs
2012-12-07 11:19:57 40960 ----a-w- C:\Windows\System32\cob-au.rs
2012-12-07 11:19:57 21504 ----a-w- C:\Windows\System32\grb.rs
2012-12-07 11:19:57 15360 ----a-w- C:\Windows\System32\djctq.rs
2012-12-07 11:19:56 55296 ----a-w- C:\Windows\System32\cero.rs
2012-12-07 11:19:55 51712 ----a-w- C:\Windows\System32\esrb.rs
2012-11-30 05:45:35 362496 ----a-w- C:\Windows\System32\wow64win.dll
2012-11-30 05:45:35 243200 ----a-w- C:\Windows\System32\wow64.dll
2012-11-30 05:45:35 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2012-11-30 05:45:14 215040 ----a-w- C:\Windows\System32\winsrv.dll
2012-11-30 05:43:12 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2012-11-30 04:54:00 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2012-11-30 04:53:59 274944 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2012-11-30 03:23:48 338432 ----a-w- C:\Windows\System32\conhost.exe
2012-11-30 02:44:06 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2012-11-30 02:44:04 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2012-11-30 02:44:04 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2012-11-30 02:44:03 2048 ----a-w- C:\Windows\SysWow64\user.exe
2012-11-30 02:38:59 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2012-11-30 02:38:59 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2012-11-30 02:38:59 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2012-11-30 02:38:59 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2012-11-23 03:26:31 3149824 ----a-w- C:\Windows\System32\win32k.sys
2012-11-23 03:13:57 68608 ----a-w- C:\Windows\System32\taskhost.exe
2012-11-22 05:44:23 800768 ----a-w- C:\Windows\System32\usp10.dll
2012-11-22 04:45:03 626688 ----a-w- C:\Windows\SysWow64\usp10.dll
2012-11-20 05:48:49 307200 ----a-w- C:\Windows\System32\ncrypt.dll
2012-11-20 04:51:09 220160 ----a-w- C:\Windows\SysWow64\ncrypt.dll
2012-11-14 06:11:44 2312704 ----a-w- C:\Windows\System32\jscript9.dll
2012-11-14 06:04:11 1392128 ----a-w- C:\Windows\System32\wininet.dll
2012-11-14 06:02:49 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2012-11-14 05:57:46 599040 ----a-w- C:\Windows\System32\vbscript.dll
2012-11-14 05:57:35 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2012-11-14 05:52:40 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2012-11-14 02:09:22 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll
2012-11-14 01:58:15 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2012-11-14 01:57:37 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2012-11-14 01:49:25 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2012-11-14 01:48:27 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll
2012-11-14 01:44:42 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-11-09 05:45:32 750592 ----a-w- C:\Windows\System32\win32spl.dll
2012-11-09 05:45:09 2048 ----a-w- C:\Windows\System32\tzres.dll
2012-11-09 04:43:04 492032 ----a-w- C:\Windows\SysWow64\win32spl.dll
2012-11-09 04:42:49 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2012-11-02 05:59:11 478208 ----a-w- C:\Windows\System32\dpnet.dll
2012-11-02 05:11:31 376832 ----a-w- C:\Windows\SysWow64\dpnet.dll
2012-11-01 21:55:48 24064 ----a-w- C:\Windows\zoek-delete.exe
2012-11-01 05:43:42 2002432 ----a-w- C:\Windows\System32\msxml6.dll
2012-11-01 05:43:42 1882624 ----a-w- C:\Windows\System32\msxml3.dll
2012-11-01 04:47:54 1389568 ----a-w- C:\Windows\SysWow64\msxml6.dll
2012-11-01 04:47:54 1236992 ----a-w- C:\Windows\SysWow64\msxml3.dll
2012-10-16 08:38:37 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll
2012-10-16 08:38:34 350208 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll
2012-10-16 07:39:52 561664 ----a-w- C:\Windows\apppatch\AcLayers.dll
2011-02-01 18:03:03 1289576 ----a-w- C:\Program Files\wlsetup-web.exe
2011-02-01 17:32:42 9352392 ----a-w- C:\Program Files\msnm75.exe
2010-10-26 02:34:09 14259704 ----a-w- C:\Program Files\picasa38-setup.exe
2010-10-15 12:41:37 9227680 ----a-w- C:\Program Files\FCTBSetup.exe
2010-06-28 05:18:03 4466488 ----a-w- C:\Program Files\dopdf-7.exe
2010-05-21 06:31:30 21220841 ----a-w- C:\Program Files\DCPlusPlus-0.761.exe
2010-04-22 03:58:39 631280 ----a-w- C:\Program Files\SecureW2-package.exe
2010-03-02 10:21:14 2110728 ----a-w- C:\Program Files\Install_Facebook_Plug-In_1.0.3.exe
.
============= FINISH: 23:18:46,00 ===============
Attach:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 6-1-2010 23:52:23
System Uptime: 13-1-2013 23:09:33 (0 hours ago)
.
Motherboard: Acer | | Aspire 7715Z
Processor: Pentium(R) Dual-Core CPU T4300 @ 2.10GHz | uPGA-478 | 2100/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 454 GiB total, 47,07 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Microsoft Virtual WiFi Miniport-adapter
Device ID: {5D624F94-8850-40C3-A3FA-A4FD2080BAF3}\VWIFIMP\5&6CFADE&0&01
Manufacturer: Microsoft
Name: Microsoft Virtual WiFi Miniport-adapter
PNP Device ID: {5D624F94-8850-40C3-A3FA-A4FD2080BAF3}\VWIFIMP\5&6CFADE&0&01
Service: vwifimp
.
Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Description: Lexmark X422
Device ID: ROOT\IMAGE\0000
Manufacturer: Lexmark
Name: Lexmark X422
PNP Device ID: ROOT\IMAGE\0000
Service: usbscan
.
==== System Restore Points ===================
.
RP254: 3-12-2012 22:05:07 - Windows Update
RP255: 10-12-2012 20:38:20 - Windows Update
RP256: 13-12-2012 6:59:30 - Windows Update
RP257: 14-12-2012 1:32:34 - Windows Update
RP258: 17-12-2012 22:19:54 - Windows Update
RP259: 22-12-2012 11:21:48 - Windows Update
RP260: 27-12-2012 20:59:12 - Windows Update
RP261: 6-1-2013 19:01:07 - Windows Update
RP262: 9-1-2013 19:56:56 - Windows Update
RP263: 12-1-2013 1:03:26 - Windows Update
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
Acer Arcade Deluxe
Acer Crystal Eye webcam Ver:1.1.88.610
Acer ePower Management
Acer eRecovery Management
Acer GameZone Console
Acer GridVista
Acer Registration
Acer ScreenSaver
Acer Updater
Acrobat.com
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Flash Player Plugin
Adobe Reader X (10.1.0) - Nederlands
ALPS Touch Pad Driver
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
AusLogics BoostSpeed
Aventail Access Manager
Aventail Web Proxy Agent
AVG 2012
Bing Bar
Bonjour
Canon Inkjet Printer/Scanner/Fax Extended Survey Program
Canon MP Navigator EX 3.0
Compatibiliteitspakket voor het 2007 Microsoft Office system
D3DX10
DC++ 0.761
doPDF 7.1 printer
Freecorder 4.02B Application
Google Chrome
Google Talk Plugin
Google Toolbar for Internet Explorer
Google Update Helper
HitmanPro 3.7
iCloud
Identity Card
Intel(R) Graphics Media Accelerator Driver
Intel® Matrix Storage Manager
iTunes
Java Auto Updater
Java(TM) 6 Update 18
Junk Mail filter update
Launch Manager
LimeWire 4.18.8
Malwarebytes Anti-Malware versie 1.65.1.1000
Mesh Runtime
Messenger Companion
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile NLD Language Pack
Microsoft Application Error Reporting
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (Dutch) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (Dutch) 2007
Microsoft Office File Validation Add-In
Microsoft Office Groove MUI (Dutch) 2007
Microsoft Office InfoPath MUI (Dutch) 2007
Microsoft Office Office 64-bit Components 2007
Microsoft Office OneNote MUI (Dutch) 2007
Microsoft Office Outlook Connector
Microsoft Office Outlook MUI (Dutch) 2007
Microsoft Office PowerPoint MUI (Dutch) 2007
Microsoft Office PowerPoint Viewer 2007 (Dutch)
Microsoft Office Proof (Dutch) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proofing (Dutch) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (Dutch) 2007
Microsoft Office Shared 64-bit MUI (Dutch) 2007
Microsoft Office Shared MUI (Dutch) 2007
Microsoft Office Suite Activation Assistant
Microsoft Office Word MUI (Dutch) 2007
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Works
MobileMe Control Panel
MSVCRT
MSVCRT_amd64
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MyWinLocker
Nero 8 Lite 8.1.1.3
NTI Backup Now 5
NTI Backup Now Standard
NTI Media Maker 8
QuickTime
Realtek High Definition Audio Driver
SecureW2 EAP Suite 2.0.2 for Windows
Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition
Security Update for Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD (KB2478663)
Security Update for Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD (KB2518870)
SiteRanker
Skype Toolbars
Skype™ 5.10
Spotify
Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD
Tansee iPhone Transfer Photo
TuneUp Companion 2.2.7
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2760586) 32-Bit Edition
Update voor Microsoft Office Excel 2007 Help (KB963678)
Update voor Microsoft Office Powerpoint 2007 Help (KB963669)
Update voor Microsoft Office Word 2007 Help (KB963665)
Visual C++ 8.0 Runtime Setup Package (x64)
Visual Studio 2008 x64 Redistributables
VLC media player 1.0.3
Vuze
Welcome Center
Windows Live Communications Platform
Windows Live Essentials
Windows Live Family Safety
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Language Selector
Windows Live Mail
Windows Live Mesh
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen
Windows Live Messenger
Windows Live Messenger Companion Core
Windows Live MIME IFilter
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live Remote Client
Windows Live Remote Client Resources
Windows Live Remote Service
Windows Live Remote Service Resources
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Sync
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
WinRAR 4.10 (32-bit)
.
==== End Of File ===========================
Hitmanpro:
Code: Selecteer alles
HitmanPro 3.7.0.185
www.hitmanpro.com
Computer name . . . . : ANNE-PC
Windows . . . . . . . : 6.1.1.7601.X64/2
Safe Mode Boot . . . : NETWORK
User name . . . . . . : Anne-PC\Anne
UAC . . . . . . . . . : Disabled
License . . . . . . . : Trial (30 days left)
Scan date . . . . . . : 2013-01-13 23:03:34
Scan mode . . . . . . : Normal
Scan duration . . . . : 3m 20s
Disk access mode . . : Direct disk access (SRB)
Cloud . . . . . . . . : Internet
Reboot . . . . . . . : Yes
Threats . . . . . . . : 9
Traces . . . . . . . : 264
Objects scanned . . . : 1.487.779
Files scanned . . . . : 51.388
Remnants scanned . . : 391.371 files / 1.045.020 keys
Malware _____________________________________________________________________
C:\Users\Anne\wgsdgsdgdsgsd.exe -> Quarantined
Size . . . . . . . : 139.264 bytes
Age . . . . . . . : 1.9 days (2013-01-12 01:03:26)
Entropy . . . . . : 7.0
SHA-256 . . . . . : E3EB2707CBC53F3592729CD9263821554038DFFD81925C69EC320BB9EE40CB43
Product . . . . . : Microsoft® Windows® Operating System
Publisher . . . . : Microsoft Corporation
Description . . . : CTF Loader
Version . . . . . : 5.2.3790.1830
Copyright . . . . : © Microsoft Corporation. All rights reserved.
> G Data . . . . . . : Win32:Rootkit-gen [Rtk]
Fuzzy . . . . . . : 112.0
Startup
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\runctf.lnk
Malware remnants ____________________________________________________________
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\runctf.lnk (Ransomware) -> PendingDelete
HKLM\SOFTWARE\Classes\Interface\{30B15818-E110-4527-9C05-46ACE5A3460D}\ (Adware.Hotbar) -> Deleted
HKLM\SOFTWARE\Classes\Interface\{45A8F904-D9CA-439B-9CBB-11097B45D9E1}\ (Adware.Gamevance) -> Deleted
HKLM\SOFTWARE\Classes\Interface\{5272CCD4-4199-4B04-BF68-B28A0DCF0151}\ (Adware.Gamevance) -> Deleted
HKLM\SOFTWARE\Classes\Interface\{618AAD04-921F-44C2-BE38-C0818AF69861}\ (Adware.Hotbar) -> Deleted
HKLM\SOFTWARE\Classes\Interface\{B5D2ED96-62F9-4C2C-956D-E425B1F67337}\ (Adware.Hotbar) -> Deleted
HKLM\SOFTWARE\Classes\Interface\{D3A412E8-1E4B-47D2-9B12-F88291F5AFBB}\ (Adware.Hotbar) -> Deleted
HKLM\SOFTWARE\Classes\Interface\{F165085B-6B85-4AD5-AD00-95552A823F6D}\ (Adware.Gamevance) -> Deleted
Cookies _____________________________________________________________________
C:\Users\Anne\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\0ANYY8PO.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\0JBHZR7X.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\0JM5BNED.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\0LYCSC0Y.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\0SWWKEXK.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\1FNE06XF.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\1UNYNAZK.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\1ZZ11GOK.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\26DD7SI5.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\2ETIUT3W.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\2PS5J1W4.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\3N09F871.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\3TVVEWTY.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\43B5O0LP.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\4YKHK362.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\5DV5BERM.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\5ELUXXX9.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\5IXI0C6I.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\5W17UH58.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\631ZED5R.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\6HQ9YBPP.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\6PTDGK3F.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\6UAI8PXC.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\75WM7JOH.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\791FY0UF.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\7C1QUMOA.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\7FU7MHHT.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\7UMLFQ00.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\8QIU8903.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\9R9BLJZS.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\A0N3HY6K.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\A6SX4P6Y.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\AG025FDF.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@112.2o7[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@3mobile.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ad.ad-srv[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ad.m5prod[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ad.muzzy[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@adinterax[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@adlegend[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.admaxasia[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.as4x.tmcs.ticketmaster[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.associatedcontent[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.bcserving[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.cnn[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.financialcontent[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.foodbuzz[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.id-t[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.kilroytravels[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.monster[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.nmv[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.pc-helpforum[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.pointroll[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.travellogger[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.us.e-planning[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ads.weatherzone.com[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@adserver.adremedy[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@adserver.adtechus[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@adserver.itx[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@adserver.toscani-online[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@adservx.omg.com[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@adverterenophyves.hyves[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@advertstream[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@anheuserbusch.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@apmebf[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@asrverzekeringen.solution.weborama[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@associatedcontent.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@at.atwola[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@atwola[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@australiapost.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@avgtechnologies.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@bankwest.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@be.sitestat[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@bluestreak[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CA01U61U.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CA505VY7.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CA6Y2GR9.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CA6YXAA6.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CA829OMX.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CA8AOUB4.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAAIDNAK.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CACV3HAP.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CADDZD6S.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAGF2HMA.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAGSTORT.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAIG9AYC.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAII6Q85.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAJBIFEX.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAK3WJ0C.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAL78H4G.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CALM6QID.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CANV744J.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAPQVBAI.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAQ6O92P.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CARIVHD7.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CASR276N.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAU7HKVD.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAW2RQK3.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAWCYASS.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@CAYQ9YRL.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@cdn1.trafficmp[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@cdn4.specificclick[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@chitika[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@cms.trafficmp[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@content.yieldmanager[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@counter.hitslink[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@cpc.tmgadnetwerk[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@crisper.solution.weborama[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@de.sitestat[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@de.sitestat[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@detelegraaf.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@dmtracker[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@eas4.emediate[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@edsa.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ehg-adidas.hitbox[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ehg-ccbn.hitbox[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ehg-crain.hitbox[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ehg-starbucks.hitbox[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@f2network.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ffdmacintosh.solution.weborama[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ffdts.solution.weborama[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@findarticles[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@fuckmylife[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@hitbox[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@idfact.adservinginternational[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@idfactory.adservinginternational[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@in.getclicky[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@int.sitestat[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@int.sitestat[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@interclick[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@leeenterprises.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@livenation.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@marriottinternational.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@medianetworks.adservinginternational[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@microsoftsto.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@microsoftwlsearchcrm.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@nike.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@ohra.adservinginternational[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@optus.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@overture[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@pointroll[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@questionmarket[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@rainbowmedia.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@reagroup.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@realmedia[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@revenue[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@roommates.com.au.38155.fb.dbbsrv[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@rotator.adjuggler[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@siemens.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@simpel.adservinginternational[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@sparkle.adservinginternational[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@stat.dealtime[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@stat.onestat[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@stats.edgevertising[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@stats.ladotstats[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@stats.postbus51[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@stats.rabobank[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@stats.rabobank[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@stats.townnews[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@stepstone.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@surveymonkey.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@tacoda[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@thephonehouse.solution.weborama[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@tourismnz.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@tourismwesternaustralia.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@tpgpost.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@track.adform[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@trafficmp[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@translinksystemsbv.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@travelcomau.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@trinitymirror.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@valueclick[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@vdwp.solution.weborama[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@viator.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@warnerbros.112.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@worldticketcenter.122.2o7[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@www.mystats[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@xiti[1].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\anne@yadro[2].txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\B1GVIYRT.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\B83GL25E.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\BI2K9U08.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\BJ0B252L.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\BPNPXJ2Y.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\C9R9JF3B.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\CPELSFB7.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\EAH2Z0SR.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\EY2X6OXH.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\FFPFM6N6.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\FRJFON0A.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\FY9YMSJ4.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\GM9JFNDG.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\GP6KRXEJ.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\HDXSBN6U.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\HPVU7U0E.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\I1MJVLW0.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\JB7WIDLZ.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\K3HGYX2A.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\K6A1I6FA.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\K6ASJX69.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\KC9266YT.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\KGDIMUY5.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\KT2QVCO9.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\L6HAYQLI.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\LBZ8DUDR.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\LMA23IY8.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\M0TXF93I.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\M4TO8MC8.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\MUB61YB1.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\MUQ7LAJ4.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\N1KH3DZ4.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\NDZRC6NM.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\NZKDZ64A.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\OH0QBSIW.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\OKG6TUW1.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\PJ5TXZ66.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\POCX7UXO.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\QGVRZHYP.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\QORC4YP7.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\QP316D2R.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\QUHSBGK2.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\S1JN7M61.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\SCY7ALIG.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\SZ1YXOE2.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\T8WJXSWM.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\U52F8V52.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\UCY6I00I.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\UINXQVYW.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\UPEOLKZE.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\UXP2JBV6.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\V46BITT8.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\VK7UFHTL.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\WCLHNZHB.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\WMXHTYPY.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\WWO5KRMQ.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\X0R2LZ0C.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\X2VRR8L5.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\XA11RK03.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\XDDI967E.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\XNGH70NG.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\XOQ5J5TM.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\XU0L0SBO.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\XWSC1JNJ.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\XZ2I01G9.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\Y1834021.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\Y43HJMAB.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\Y5QV0JF8.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\YKF00URR.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\YWUQW06S.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\YZ17CDY8.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\Z35ZYSL2.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\ZLJAPL5A.txt
C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Cookies\ZN26P1AB.txt
Ik verneem graag van u.
Vriendelijke groet,
Anne