![]() ![]() "WINWORD.EXE" touched file "C:\Windows\Microsoft.NET\Framework\v\clr.dll" "WINWORD.EXE" touched file "C:\Windows\Fonts\StaticCache.dat" "WINWORD.EXE" touched file "C:\Windows\Globalization\Sorting\s" "WINWORD.EXE" touched file "C:\Windows\AppPatch\sysmain.sdb" Opens the MountPointManager (often used to detect additional infection locations) "next.gif" has type "GIF image data version 89a 11 x 11" ![]() "cvglobal.xsl" has type "XML 1.0 document UTF-8 Unicode (with BOM) text with CRLF line terminators" "cvglobalstrings.xml" has type "XML 1.0 document ASCII text with CRLF line terminators" "office12.js" has type "UTF-8 Unicode (with BOM) text with CRLF line terminators" "tbgradient.gif" has type "GIF image data version 89a 1 x 22" "back.gif" has type "GIF image data version 89a 11 x 11" "clvgraybg.gif" has type "GIF image data version 89a 1 x 24" "page-rsd.png" has type "PNG image data 21 x 17 4-bit colormap non-interlaced" "clvbluebg.gif" has type "GIF image data version 89a 1 x 24" "help.gif" has type "GIF image data version 89a 16 x 16" "clv14titlebarbg.png" has type "PNG image data 1 x 52 8-bit/color RGBA non-interlaced" "Office12.js" has type "UTF-8 Unicode (with BOM) text with CRLF line terminators" "toc.xsl" has type "XML 1.0 document UTF-8 Unicode (with BOM) text with CRLF line terminators" "content.css" has type "UTF-8 Unicode (with BOM) text with very long lines with CRLF line terminators" Launches the Microsoft Office Help Viewer "\Sessions\1\BaseNamedObjects\Local\ZonesLockedCacheCounterMutex" ![]() "\Sessions\1\BaseNamedObjects\Local\ZonesCacheCounterMutex" ![]() "\Sessions\1\BaseNamedObjects\Local\ZoneAttributeCacheCounterMutex" "\Sessions\1\BaseNamedObjects\Local\ZonesCounterMutex" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3CA1.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3C8C.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3C81.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3C44.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3C2F.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3C10.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3BFB.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3BEF.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3BDA.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3BCF.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3BBA.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3B87.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3B7C.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3B71.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3B66.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3AE3.tmp" "CLVIEW.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\IMT3AD8.tmp" "WINWORD.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\~DF0715168E8A81FF9E.TMP" "WINWORD.EXE" created file "C:\Users\%USERNAME%\AppData\Local\Temp\~DFB2455847ABA8B6E6.TMP" ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |