SafeBytes Anti-Malware Fully Removes FindWide


Free Scanner detects all malware on your PC.

To remove malware, you will need to purchase the licensed version of the software.

Threat Data

Name: FindWide Category: Browser Hijacker Threat Level: 1/10

FindWide Information

FindWide is a browser add-on that is typically bundled together with a wide variety of freeware/shareware programs. This happens legally, by having the checkbox for the program enabled by default in the installer software of other programs. Security experts mark this software as a Browser Hijacker, as it changes users’ homepage and new tab pages, and redirects web searches through their search.findwide.com. The search results are usually a collection of sponsored links mixed with actual search results from the Yahoo search engine. We recommend removal of this software with the help of a reliable anti-virus software, such as Safebytes Anti-Malware.

Alternate Detections and Aliases

PUA.Toolbar.TNT2, FindWide, Trojan.Win32.Generic!BT, Adware.Toolbar.334, a variant of Win32/Toolbar.TNT2.A potentially unwanted, Artemis!EAD8939321DD, Artemis, PUA.Win32.TNT2.BH, a variant of Win32/Toolbar.TNT2.H, Artemis!2ED84ECBF2B0, Artemis, Suspicious_GEN.F47V0801, PUA.Win32.TNT2.bB

About Browser Hijacker

Browser hijackers (sometimes referred to as hijackware) are a kind of malicious software that modifies internet browser configurations without the user’s knowledge or approval. These hijacks appear to be raising at an astonishing rate across the world, and it can be really nefarious and often harmful too. Browser hijackers can do more than just changing homepages. Often, hijackers will force hits to websites of their preference either to increase web traffic generating higher ad earnings or to obtain a commission for every user visiting there. While it might appear harmless, these tools are made by malicious individuals who always try to take full advantage of you, so that hackers could earn money from your naive and distraction. Browser hijackers could also permit other destructive programs without your knowledge to further damage your personal computer.

Browser hijacking signs and symptoms
There are various signs of browser hijacking. Below are some of them: you find unauthorized modifications to your internet browser’s homepage; bookmark and new tab are also modified; The default search page of browser is altered; you notice multiple toolbars on the web browser; unstoppable flurries of popup ads show up on your personal computer screen; webpages load slowly and sometimes incomplete; you’re disallowed entry to certain websites, including the site of an antimalware software manufacturer like SafeBytes.

How it infects your computer
Browser hijackers infect PCs by numerous means, including through a file-share, a drive-by download or an infected e-mail attachment. They could also be deployed via the installation of an internet browser toolbar, extension or add-on. Also, certain shareware and freeware can put the hijacker within your PC through “bundling” technique. A good example of popular browser hijacker is the most recent Chinese malicious software known as “Fireball”, which has attacked 250 million computer systems around the globe. It works as a hijacker but can be turned into a full-functioning malware downloader later on.

Browser hijackers will interrupt the user’s web surfing experience significantly, keep track of the websites frequented by users and steal private information, cause difficulty in connecting to the net, and eventually create stability issues, causing programs and system to crash.

Learn how to remove a browser hijacker
Certain browser hijacking could be simply reversed by finding and removing the corresponding malware software through your control panel. But, many browser hijackers are difficult to eliminate manually. Regardless of how much you attempt to get rid of it, it might keep returning over and over. Inexperienced PC users shouldn’t ever attempt for the manual form of removal, since it requires comprehensive computer knowledge to perform fixes on the system registry and HOSTS file.

You might opt for automatic browser hijacker removal by just installing and running reliable anti-malware software. In order to eliminate persistent browser hijackers quickly and effectively, install the award-winning Anti-Malware tool Safebytes Anti-Malware. And employ a PC optimizer, like Total System Care, to get rid of all related files in the registry and repair browser problems.

Infected with FindWide? Scan your PC


Is Malware Blocking Safebytes Anti-Malware from Installing? Click Here for Install Help

*SafeBytes Anti-Malware scanner is for malware detection. You have the choice of buying the software for malware removal. If you wish to uninstall SafeBytes Anti-Malware, learn how.

Can’t Install Safebytes Anti-malware due to the presence of a Malware? Do This!

Malware could potentially cause a great deal of damage to your computer. Certain malware variants modify web browser settings by adding a proxy server or modify the computer’s DNS configuration settings. When this happens, you’ll be unable to visit certain or all of the websites, and thus unable to download or install the required security software to remove the computer virus. If you are reading this article, chances are you’re stuck with a malware infection which is preventing you to download or install Safebytes Anti-Malware program on your computer. There are a few options you could try to get around with this problem.

Install in Safe Mode with Networking
If the malware is set to run at Windows startup, then booting in Safe Mode should prevent it. Since only the minimal programs and services start up in Safe Mode, there are seldom any reasons for issues to occur. To launch your Windows XP, Vista or 7 computer in Safe Mode with Networking, do as instructed below.

1) At power on/start-up, tap the F8 key in one-second intervals. This should bring up the Advanced Boot Options menu.
2) Select Safe Mode with Networking using arrow keys and hit ENTER.
3) When this mode loads, you should have the internet. Now, obtain the malware removal software you need by utilizing the browser. To install the application, follow the directions within the setup wizard.
4) After installation, run a complete scan and allow the program eliminate the threats it detects.

Download the anti-malware software using an alternate internet browser
Malicious code can exploit vulnerabilities in a specific web browser and block access to all antivirus software websites. If you are not able to download the security software program using Internet Explorer, it means malware may be targeting IE’s vulnerabilities. Here, you must switch over to another internet browser such as Firefox or Chrome to download Safebytes Anti-malware program.

Create a portable USB antivirus for removing viruses
Another solution is to save and run antivirus program entirely from a Thumb drive. Follow these steps to use a thumb drive to fix your corrupted system.
1) On a clean PC, install Safebytes Anti-Malware.
2) Connect the pen drive to a USB port on the uninfected computer.
3) Double click on the downloaded file to open the installation wizard.
4) Choose USB flash drive as the place when the wizard asks you exactly where you wish to install the program. Follow activation instructions.
5) Now, insert the thumb drive into the infected computer.
6) Double-click the Safebytes Anti-malware icon on the pen drive to run the software.
7) Hit the “Scan” button to run a full system scan and remove viruses automatically.

If no other method of downloading and installing an anti-malware program works, then you’ve got no other choice than to hit the last resort: the complete Windows reinstallation, the only solution proven to have a 100% success rate at virus removal. If you’re already a Safebytes customer, you can call our toll-free number 1-844-377-4107 to get product support from our technical staff.
Still can’t install Safebytes Anti-Malware? View other possible causes of installation issues.

SafeBytes Security Suite Benefits

To protect your personal computer from various internet-based threats, it’s very important to install anti-malware software on your personal computer. However, with countless numbers of antimalware companies in the market, these days it is hard to decide which one you should purchase for your computer. Some are good ones, some are ok types, while some are merely bogus anti-malware software that can ruin your PC themselves! You must purchase a tool that has gained a strong reputation and detects not only viruses but other types of malware as well. Amongst few good programs, SafeBytes Anti-Malware is the strongly recommended program for the security conscious individual.

SafeBytes antimalware is a highly-effective and easy-to-use protection tool which is designed for end users of all levels of IT literacy. This program could easily identify, eliminate, and protect your PC from the most advanced malware attacks such as spyware, adware, trojan horses, ransomware, worms, PUPs, parasites as well as other possibly damaging software applications.

SafeBytes anti-malware takes computer protection to a whole new level with its advanced features. The following are a few of the great ones:

Anti-Malware Protection: With a critically acclaimed malware engine, SafeBytes offers multi-layered protection that is designed to find and eliminate threats which are hidden deep inside your computer’s operating system.

Real-time Protection: Malware programs attempting to enter the system are identified and stopped as and when detected by the SafeBytes real-time protection shields. This software will continuously monitor your PC for any suspicious activity and updates itself continuously to keep current with the newest threats.

Fast Scan: This tool has one of the quickest and most efficient virus scanning engine in the industry. The scans are very accurate and take a short amount of time to complete.

Website Filtering: Safebytes allots all sites a unique safety ranking that helps you to have an idea of whether the webpage you’re just about to visit is safe to browse or known to be a phishing site.

Minimal CPU Usage: This application is not “heavy” on your computer’s resources, so you’ll not see any overall performance issues when SafeBytes is operating in the background.

24/7 Live Expert Support: You will get 24/7 technical assistance to promptly resolve any problem with your security tool.

To sum it up, SafeBytes has formulated a meaningful anti-malware solution which is aimed to protect you against all manner of malware. Malware issues can become a thing of the past when you put this software program to use. If you’re looking for a comprehensive antivirus program that’s still simple enough to use, SafeBytes Anti-Malware is just what you need!

Technical Details and Manual Removal

To eliminate FindWide manually, navigate to the Add/Remove programs list in the Windows Control Panel and select the offending program you want to get rid of. For web browser plug-ins, go to your web browser’s Addon/Extension manager and select the plug-in you want to remove or disable. You will probably also want to reset your web browser.

Lastly, examine your hard disk for all of the following and clean your computer registry manually to get rid of leftover application entries following uninstalls. Please keep in mind that only experienced users should attempt to manually edit the registry because deleting any single vital system file leads to a serious problem or perhaps a computer crash. Furthermore, certain malicious programs have the capability to defend against its removal. It is recommended that you do the removal procedure in Windows Safe Mode.

    C:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldbC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldbC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension StateC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldbC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldbC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldbC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldbC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldbC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldbC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfmC:\Windows\system32\CatRoot2\dberr.txt
    C:\Windows\system32\CatRoot2\edb.chk
    C:\Windows\system32\CatRoot2\edb.log
    C:\Windows\system32\CatRoot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb
    C:\Windows\system32\CatRoot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb
    C:\Windows\Tasks\User_Feed_Synchronization-D101D692-0FE5-445A-8321-807D5E479784.job
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\History-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Preferences_bak
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a0
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a2
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a3
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Cache\f_0006a4
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0132.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb%#MANIFEST#%0134.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000131
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000133
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0020.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0022.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0025.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0028.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0032.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb%#MANIFEST#%0033.ldb
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a0f2732a20c315596e77329863de46eeff277137\index.txt
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm%#MANIFEST#%0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe0003.log
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old
    C:\user\current\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\container.dat
    C:\user\current\AppData\Local\Microsoft\Feeds Cache\JH03F1SX\ieonlinews.microsoft[1]
    C:\user\current\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
    C:\user\current\AppData\Local\Microsoft\Feeds\5588ACFD-6436-411B-A5CE-666AE6A92D3D~\Internet Explorer Suggested Sites~.feed-ms
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\DOMStore\F59J15BW\www.microsoft[1].xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieSiteList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EmieUserList\container.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\EUPP\HTMLSelectionConfig.xml
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\imagestore\wfsggez\imagestore.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.6C5949C3-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C5-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C7-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\6C5949C8-C584-11E7-85D7-000C292C812A.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCacheLock.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\AppCache\BMYYGKVC\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_16.db
    C:\user\current\AppData\Local\Microsoft\Windows\Explorer\iconcache_idx.db
    C:\user\current\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\IECompatUaCache\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\counters.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4f-c2d29a[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\bullet[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\epb[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ErrorPageTemplate[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\meversion[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ms-edge-specs[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\ping[2].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEN64GBO4\script[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\c[1].gif
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[2].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[3].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[4].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\favicon[5].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\httpErrorPagesScripts[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\jquery-1.9.1.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\known_providers_download_v1[1].xml
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\meCore.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ms-edge-hero-v2[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\MWFMDL2[1].woff
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\ping[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\REZlo1[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IEJNJM8FV\welcomeie11[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L250-w[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L-b6864d[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\cartcount[1].htm
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\info_48[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\INSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_install[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\latest_revision[1].php
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\MeControl[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms-icons[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\ms[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\PARTNER[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\searchus-offer-screen[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\style[1].css
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\su_32[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\BNBIQG8L\UNINSTALL[1].TNT
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\background_gradient[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\errorPageStrings[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\favicon[2].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\meBoot.min[1].js
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\microsoft-gray[1].png
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\ms-logo[1].jpg
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\navcancl[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\silentauth1e04dfbf[1]
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\IE\YWXNXNXC\su_16[1].ico
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SmartScreenCache.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesM5NNAKR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookiesOXW4IXQ.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\I0VLA06N.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\IAELAXAR.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\NDHPVB7L.txt
    C:\user\current\AppData\Local\Microsoft\Windows\INetCookies\DNTException\container.dat
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.chk
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100069.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006A.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006B.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006C.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006D.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006E.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V010006F.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100070.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V0100071.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log
    C:\user\current\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
    C:\user\current\AppData\Local\TNT2.0.0.1378\Autorun.inf
    C:\user\current\AppData\Local\TNT2.0.0.1378\crx.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\ffassist.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\GLOBALUNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\hmac.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\ie8starter.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\iehpr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\iestage2.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\IEToolbar64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\INSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\LastSession.log
    C:\user\current\AppData\Local\TNT2.0.0.1378\log.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\npTNT2Ghost.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OldStyleSB.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\OSD958B.OSD
    C:\user\current\AppData\Local\TNT2.0.0.1378\PARTNER.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\passport64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\pinnedSearch_FindWide.htm
    C:\user\current\AppData\Local\TNT2.0.0.1378\progress.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\regsvr.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\RemoteSkin.wms
    C:\user\current\AppData\Local\TNT2.0.0.1378\safari.safariextz
    C:\user\current\AppData\Local\TNT2.0.0.1378\sqlite.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\Tnt2Cbt.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2User.exe
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TNT2UserPS64.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\TntMagicDel.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UNINSTALL.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\UninstallDlg.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\untar.1.dll
    C:\user\current\AppData\Local\TNT2.0.0.1378\UPDATE.TNT
    C:\user\current\AppData\Local\TNT2.0.0.1378\xpi.tar
    C:\user\current\AppData\Local\TNT2.0.0.1378\zipunzip.1.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\icon.ico
    C:\user\current\AppData\Local\TNT2\Profiles250\inst.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.5.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\partner.dat
    C:\user\current\AppData\Local\TNT2\Profiles250\PARTNER.NaN.TNT
    C:\user\current\AppData\Local\TNT2\Profiles250\passport.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\passport64.dll
    C:\user\current\AppData\Local\TNT2\Profiles250\runt.ini
    C:\user\current\AppData\Local\TNT2\Profiles250\tnt_32x32.png
    C:\user\current\AppData\Local\TNT2\Profiles250\toolbar10250@search.us.com.xpi
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\ContentBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData77A2B8C3D6561744552D69E6BD54B0_3716D9E6C5C0BA820AA1A0A430B2BEBC
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataD6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaDataBADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData385D66FC0D184E05CF52F82EF524C0_5F146F572BF4DCA3E33C620B37D44C0C
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_230101012E1733B3199F7763353FFFED
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_630C216384EED621E315155FC3C22DB4
    C:\user\current\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C46E7B0F942663A1EDC8D9D6D7869173_D9B9F37ECE595B0B7B6AA12451D392CF
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinationsf7b5f1e01b83767.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions.ini
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome.manifest
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\install.rdf
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\fos.xml
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.js
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\content\toolbar.xul
    C:\user\current\AppData\Roaming\Mozilla\Firefox\Profiles\m209eabf.default\extensions\toolbar10250@search.us.com\chrome\skin\tnt_32x32.png
    C:\user\current\Downloads\SearchUS-TB10250-w.exe