Trojan.Win32.SwrortProxy_54c3659b59

by malwarelabrobot on January 6th, 2015 in Malware Descriptions.

mzpefinder_pcap_file.YR, TrojanSwrortProxy.YR, BankerGeneric.YR (Lavasoft MAS)
Behaviour: Banker, Trojan


The description has been automatically generated by Lavasoft Malware Analysis System and it may contain incomplete or inaccurate information.

Requires JavaScript enabled!

Summary
Dynamic Analysis
Static Analysis
Network Activity
Map
Strings from Dumps
Removals

MD5: 54c3659b59006108688659ee2693a1db
SHA1: 093e3d1904e9db50831d1c3db024343115f601d0
SHA256: 7c2738d2782d77e229f0714c10e7d31bd1a96f59adc133431bec28f8d6b8ebcd
SSDeep: 12288:rQHUqIgxHAZMgVbueIIh4FhxCUQfZhLycUsY:E0qLxHjeI04FX6BhyoY
Size: 508336 bytes
File type: EXE
Platform: WIN32
Entropy: Packed
PEID: UPolyXv05_v6
Company: no certificate found
Created at: 2013-05-20 02:52:48
Analyzed on: Windows7Ada SP1 64-bit


Summary:

Trojan. A program that appears to do one thing but actually does another (a.k.a. Trojan Horse).

Payload

No specific payload has been found.

Process activity

The Trojan creates the following process(es):

syesubc3_p2v3.exe:2396
noneCodesignFilesBundle.exe:3540
TPAutoConnSvc.exe:1776
du340b.exe:4088
du340b.exe:3620
du340b.exe:1192
TuneUpUtilitiesApp64.exe:3696
TuneUpUtilities2014WORLDW1D_en-US.exe:4020
SkypeSetupFull.exe:3324
MsiExec.exe:2648
MsiExec.exe:3304
MsiExec.exe:3172
MsiExec.exe:1872
roadie.exe:3992
TUInstallHelper.exe:3452
TUInstallHelper.exe:2552
TUInstallHelper.exe:1992
TUInstallHelper.exe:1188
TUInstallHelper.exe:3888
TUInstallHelper.exe:1680
TUInstallHelper.exe:1112
TUInstallHelper.exe:1660
ProcessManager64.exe:2980
waol-0.4343.19.1.exe:3636
aol-desktop-9.7 Rev 4343.19.exe:1188
regsvr32.exe:208
regsvr32.exe:1728
regsvr32.exe:2348
regsvr32.exe:3212
regsvr32.exe:2612
%original file name%.exe:3852
TuneUpSystemStatusCheck.exe:2400
TuneUpUtilitiesService64.exe:3612
TuneUpUtilitiesService64.exe:1828
flashax.exe:3716

The Trojan injects its code into the following process(es):

du340b.exe:3960
RunDll32.exe:2788
Skype.exe:2788

Mutexes

The following mutexes were created/opened:
No objects were found.

File activity

The process syesubc3_p2v3.exe:2396 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsjBF78.tmp\SkypeSetupFull.exe (2608075 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7QBP14P\SkypeSetupFull[1].exe (2451641 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsjBF78.tmp\inetc.dll (53 bytes)

The process noneCodesignFilesBundle.exe:3540 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tpspd\Dacldll.dll (1568 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\marketing.xml (5 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\style.xml (953 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comp01.000 (339445 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\rbm.bin (13 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\backup.ini (2 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\AOLVPChk.dll (1568 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\muinst\muinst.exe (14600 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\txt\PRIVACY.txt (12 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\Vwpt.exe (61190 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\txt\EULA.txt (26 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps.ini (7 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\sysinfo\SiNdInst.dll (1568 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\VMPCache.mtz (8 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\default.xml (1 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\VPPrePop.exe (1568 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\AOLTheme.mtx (387 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\installer.swf (7168 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\progress.xml (2 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tb\tbinst.dll (1568 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\flash\flashax.exe (39122 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\gui.ini (8 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\txt\CLIENTDETAILS.txt (2 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\installOmniture.ini (56 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\setup.ini (2 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\message.xml (2 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\media.ini (128 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\installOmniture.loc (1 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\screens.xml (3 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\txt\TOS.txt (27 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\error.xml (361 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tpspd\tsverchk.dll (1568 bytes)

The process du340b.exe:4088 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\7861.ico (64 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\syesubc3_p2v3.exe (5013 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\47A647BD-4905-48C7-9539-A95F199019A4 (117 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\B8DCC36F-4F05-445F-B1EE-FD8FC38CBBDA (4 bytes)

The process du340b.exe:3960 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\3596.ico (64 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\TuneUpUtilities2014WORLDW1D_en-US.exe (1145153 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\B8DCC36F-4F05-445F-B1EE-FD8FC38CBBDA (5 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\47A647BD-4905-48C7-9539-A95F199019A4 (117 bytes)

The process TuneUpUtilities2014WORLDW1D_en-US.exe:4020 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM7A13.tmp (2 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM6C3A.tmp (94 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\Lang_en-US.msi (3 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\AvgRep.xml (371 bytes)
C:\ProgramData\TuneUp Software\TUU2014\TUInstallLog_2015-01-05_17-15-02.log (105619 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM6C6B.tmp (357 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\AvgRep.xml (316 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM6C3B.tmp (1170 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\tuneupmsi.7z (13861 bytes)
C:\ProgramData\Common Files\D66CD7FF-5B94-2BEF-EE5D-155F17BE19A5.dat (184 bytes)
C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}\Base.msi (12814 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM6C1A.tmp (104 bytes)
C:\Windows\MSIDBOPEN_READONLY (100 bytes)

The process SkypeSetupFull.exe:3324 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7396C420A8E1BC1DA97F1AF0D10BAD21 (554 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Cookies\ELTD7C7O.txt (127 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7396C420A8E1BC1DA97F1AF0D10BAD21 (1056 bytes)
C:\ProgramData\Skype\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\Skype.msi (353229 bytes)

The process RunDll32.exe:2788 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\du340b.exe (20815 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\du340b.exe (20815 bytes)

The process MsiExec.exe:2648 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Windows\Installer\MSI86EE.tmp (634 bytes)
C:\Windows\Installer\MSI873D.tmp (634 bytes)

The process MsiExec.exe:3304 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Windows\Installer\MSI44CC.tmp (167 bytes)
C:\Windows\Installer\MSI455B.tmp (167 bytes)
C:\Windows\Installer\MSI48D9.tmp (167 bytes)
C:\ProgramData\Skype\SKY4568.tmp (5572 bytes)
C:\Windows\Installer\MSI52A0.tmp (167 bytes)
C:\Windows\Installer\MSI453A.tmp (167 bytes)
C:\Windows\Installer\MSI457B.tmp (167 bytes)

The process MsiExec.exe:3172 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Windows\Installer\MSI46E5.tmp (167 bytes)
C:\Windows\Installer\MSI5175.tmp (167 bytes)
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_DBEBBB72D7CF896A67503824FF19F0BB (1 bytes)
C:\Windows\Installer\MSI50F7.tmp (155 bytes)
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6 (1504 bytes)
C:\Windows\Installer\MSI505A.tmp (167 bytes)
C:\Windows\Installer\MSI48E9.tmp (167 bytes)
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6 (1 bytes)
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_DBEBBB72D7CF896A67503824FF19F0BB (1504 bytes)
C:\Windows\Installer\MSI5136.tmp (167 bytes)

The process MsiExec.exe:1872 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Windows\Installer\MSI8970.tmp (634 bytes)

The process roadie.exe:3992 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ROWYV75Q\errorPageStrings[1] (2 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acscore.exe (158874 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\noneCodesignFilesBundle.exe (3757313 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\~rD7F6.tmp (3176 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpgc.exe (7776 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\waol-0.4343.19.1.exe (173242 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpchk.dll (680 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\postproc.exe (4712 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT (672 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\instSup.dll (10208 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\783GTYVS\background_gradient[1] (453 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\783GTYVS\httpErrorPagesScripts[1] (8 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\setup.exe (22520 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\046C1ZNT\ErrorPageTemplate[1] (2 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\AcsInstA.dll (6592 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpinst.exe (518183 bytes)
C:\Windows\nsreg.dat (732 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\browser\aolbwsrlp.exe (12992 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acslang.exe (185689 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7QBP14P\info_48[1] (4 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\instSup.dll (10208 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC (1504 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tb\tbsetup.exe (53004 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\search\aolSearchInstaller.exe (1924 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acsrollb.exe (18800 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_F9BDF410D651FF0504A529F7A107038D (1 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\browser\aolbwsrinst.exe (129423 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\046C1ZNT\bullet[1] (447 bytes)
C:\Users\"%CurrentUserName%"\Desktop\Retry AOL Desktop 9.7 Download.lnk (1 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\gui.dll (61584 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_F9BDF410D651FF0504A529F7A107038D (1536 bytes)
C:\IPH.PH (3490 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\AcsInstA.dll (6592 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acslaeu.exe (126020 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\instph.dll (12076 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ROWYV75Q\down[1] (748 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\sysinfo\SinfInst.exe (90632 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tpspd\wbsetup.exe (71832 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\msvcr9\msvc9rt.exe (130583 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC (1 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\toolbar\aol_toolbar.exe (472904 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\ecuinst.exe (34008 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7QBP14P\dnserrordiagoff_webOC[1] (6 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acsshutd.exe (1928 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Mozilla\registry.dat (732 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 (680 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\ecuchk.dll (392 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\AcsInstC.dll (5572 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\parcon\AOLParconLink.exe (7336 bytes)

The process TUInstallHelper.exe:3452 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-lb.png (469 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Opera_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_9_16x16.png (789 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_check_16.png (998 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_22_16x16.png (404 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ras_modem.ico (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Unneeded_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TUProduct.db (8 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DiskSpaceExplorer_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_KillServiceTimeout_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg8_16x16.png (349 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\bar_system.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderView_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\balloon_close.png (296 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegistryDefrag_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\shredder.avi (13 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\status.js (8 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ocm_status_background.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Save2_16x16.png (587 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_TTL_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MUICache_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ExeFiles_16x16.png (811 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_bl.png (147 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\so_bg_small.jpg (800 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_economy_active.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SitePreferences_16x16.png (680 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_questionMark.ico (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_JumpToKey_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_17_16x16.png (351 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SearchFile_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskBarButtonAppearance_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_activate_hov.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Messenger_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Services_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\delete_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_6_16x16.png (621 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GoogleEarth_16x16.png (949 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_3_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NetPlaces_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_oneclick_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_balloon_standard.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\glyph_down.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_EnergyOptions_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_mr.png (119 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates4_16x16.png (236 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_bm.png (298 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_UserInfo_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TUDiskCleaner.dat (11 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Privacy_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uninstall_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Refresh_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_mm.png (115 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyComputer_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_balloon_turbo.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LastURL_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Favorites_16x16.png (732 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\classic_windowsvista.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Tip_16x16.png (750 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_repeat_16x16.png (951 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyComputer_16x16.png (622 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_left.png (220 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Effects_16x16.png (742 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_explorergroup_expanded_16x16.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Button.Pressed.png (486 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegCleaner_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Animation_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-ml.png (160 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BalloonTooltip_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_28_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\hint_l.gif (850 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_rating_activation_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_snaptobutton_32x32.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_bm.png (292 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_mr.png (221 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DLLFile_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-bm.png (167 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_14_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\info.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_tm.png (115 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_mr.png (127 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-hover-full.png (970 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Integrator_16x16.png (778 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\tuinstallhelper.log (980 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_RescueCenterProtection_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_left.png (178 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\icon_change_appearance.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DetailPanel_24x24.png (845 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cache_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-bm.png (762 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SoftwareSection_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_mr.png (131 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_tm.png (124 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TTL_32x32.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_20_16x16.png (309 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-rb.png (619 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwapFile_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VisualStyles_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\header_repeat.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_bm.png (181 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_liveoptimizer_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-tl.png (312 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProgramUpdate_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\info-progress-segment.png (783 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_user_male_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_bm.png (134 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_scan_left.png (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OpenOffice_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\questionMark.png (10 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Box.Yellow.png (438 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon3.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Animation_16x16.png (585 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_mm.png (181 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-tl.png (753 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TaskScheduling_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\main.html (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_1_16x16.png (150 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback5.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il11_16x16.png (637 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ScreenSaver_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_turbomode_128x128.png (20 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PictureFaxViewer_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RAM2_16x16.png (324 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_explorergroup_collapsed_16x16.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\divider.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_bl.png (152 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Nero_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_bm.png (164 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\button_icon_scan.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\header.css (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_12_16x16.png (548 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_title.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Cont.NoFtr.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legend_icon_win.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ScreenRes_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_KillAppTimeout_16x16.png (604 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_fixeddrive_64x64.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_WindowsDefender_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\dropdown_arrow.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_ml.png (121 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_tl.png (216 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Display.png (18 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ChatProtocols_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Protection_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_mm.png (111 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_RWIN_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Refresh2_16x16.png (832 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shredder_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg2_16x16.png (523 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16.png (691 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il4_16x16.png (639 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il9_16x16.png (536 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentFileList_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_bar.png (926 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_tl.png (390 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Fetch_48x48.png (8 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckMarkGreen_16x16.png (529 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CopyUserSettings_16x16.png (886 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_balloon_economy.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_directx_il_0_16x16.png (376 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-lb.png (761 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il7_16x16.png (654 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PDIntroduction_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SavedPasswords_16x16.png (770 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckOK_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_deactivate_hov.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DumpFiles_16x16.png (865 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_15_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_0_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_economy_hover.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_tr.png (222 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Effects_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Cleaning_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\box_background_green.png (223 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Information_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_logonui_create_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\arrow-top.png (625 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_details_watermark.png (9 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates5_16x16.png (185 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_right_clear.png (243 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\bullet.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_0_16x16.png (144 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Background.Big.Left.Seperator.png (149 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SecurityCenter_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\hint_x.png (207 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_mr.png (198 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_mr.png (122 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_bm.png (154 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Score_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\logo.png (8 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shares_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_13_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_ml.png (317 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_tl.png (186 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\format4js.js (23 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_10_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Background.Wizard.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_shutdownwin7_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rating_preview.png (10 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FontsFolder_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_10_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.color.js (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_bar_standard.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentDocs_16x16.png (934 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\starrating.png (484 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Cookies_16x16.png (693 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_3_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FixedDisk_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\integrator_loading.jpg (2415 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TUTemplate.wim (29822 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_bg.gif (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wrench_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_20_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_16x16.ico (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il8_16x16.png (824 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Print_24x24.png (478 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_standard_mode_progress.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_DesktopBackground_16x16.png (677 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ODBC_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_br.png (220 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_ml.png (310 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemCache_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ACDSee_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\button_deactivate_hov.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IE_16x16.png (895 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-br.png (788 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il3_16x16.png (675 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OperaSpeedDialSearch_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_ShortcutCleaner_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_12_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Objects_16x16.png (781 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-tm.png (156 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_left_vista.png (136 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ShortcutCleaner_24x24.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\VistaLogo.png (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il10_16x16.png (717 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_disk_doctor_24x24.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckMarkGreen_128x128.png (24 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Delayed_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_standard_pressed.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_mr.png (271 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SecurityCenter_16x16.png (787 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg6_16x16.png (361 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il13_16x16.png (682 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PicturePreview_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.countdown.js (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Systemdevices.png (12 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_tl.png (211 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderBar_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_ml.png (156 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_GooglePicasa_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Googledesktop_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_bl.png (191 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_File_16x16.png (457 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Hint_16x16.png (745 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates0_16x16.png (727 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\hint_arr_tl.png (187 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Overview.png (29 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shutdown_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_3_16x16.png (663 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_t.gif (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FontSmoothing_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Camera_16x16.png (753 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_6_16x16.png (533 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder32_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\file_icon_other.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devicemanager_16x16.png (640 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LogOff_16x16.png (931 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.ico_alpha_processmanagerdetails_6_16x16.png (563 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_web-search_24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyComputer_64x64.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewFolder_16x16.png (559 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_5_32x32.png (567 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_LightBulb_16x16.png (723 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_ml.png (313 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_10_16x16.png (600 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_grey_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_turbo_pressed.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_warning_hover.png (14 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FormData_32x32.png (649 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TUFileIdentification.db (5210 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_2_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-rt.png (625 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Keyboard_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_tr.png (235 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\gadget.xml (664 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_br.png (231 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Google_16x16.png (799 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_9_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_tm.png (246 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_exclamationmark_red_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_ml.png (131 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IniFile_16x16.png (649 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\button_activate_hov.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Properties_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Refresh_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Alexa_32x32.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_16x16.png (903 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Chrome_disabled.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-bl.png (787 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\h3_separator.gif (45 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ws_logo.jpg (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_MTU_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Green.png (331 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_4_16x16.png (152 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_pic.png (33 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_InternetCache_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg4_16x16.png (804 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_mbg_left.png (502 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Silverlight_32x32.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-rm.png (770 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_9_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\dashboard_modes_bg_sprite.png (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il4_16x16.png (786 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_tempfiles_16x16.png (562 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_4_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FontsFolder_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_rating_activation_16x16.png (684 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_1_16x16.png (364 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon4.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_tm.png (259 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\texture.jpg (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Mouse_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\bar_selection.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LogonScreen_Create_16x16.png (997 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_no_internet.ico (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback_bg.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\button_icon_remove.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_warning.png (14 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\window_minimize.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateW7_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Messenger_16x16.png (756 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_br.png (227 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_9_16x16.png (139 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Chrome_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\js\debug.js (35 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_24_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LostCluster_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\um_sidebar.XP.css (174 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility_uiVista.css (148 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\ico_alpha_reportcenter_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_KillServiceTimeout_16x16.png (987 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileSelection_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_11_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_mm.png (135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_mr.png (122 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_bl.png (201 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inputdevices_ilhover_1_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\loading.gif (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Windows7Default.tls (1135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rd_wait_1.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NTFSOptions_32x32.png (870 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Delayed_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_sel_tile.png (241 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_integration_32x32.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Button.Active.png (455 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_7_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\ratingInfohintSeparator.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_QuickLaunchBar_16x16.png (724 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_bl.png (182 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CleanHardDisk_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_2_16x16.png (538 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\css\oem.css (35 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_btn_clean_left.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Disk_Doctor_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_tm.png (135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_tl.gif (104 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Content_m.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\com.js (744 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\window_close.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\js\duplicatefilefinder.js (35 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\nag-auto-resize.js (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Windows.png (24 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-rt.png (830 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\bar_mask.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap.switch-1.8.js (13 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_diskspaceexplorer.png (15 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_mm.png (224 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\tfi_rating_optional.png (575 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TimeSync_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_red.png (194 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_unknown_16x16.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-bm.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap.switch-1.8.min.js (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il1_16x16.png (294 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IEPictureToolbar_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legend_icon_shutdown.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MUICache_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_bar_vista_blue.png (929 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_tm.png (374 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_tm.png (163 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_8_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_16_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_folderup_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\empty.gif (807 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_def_right.png (816 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_WindowsFunctions_16x16.png (709 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Database_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sound_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_8_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-rm.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_5_16x16.png (151 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_m.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderPreview_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\classic_windows7.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_bottom_middle.png (195 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_drivedefrag_analysereport.png (14 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SavedPasswords_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_bl.png (157 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ResetCategories_16x16.png (896 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Failed_72x72.png (9 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_PerformanceAdvisor_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherMozillaData_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartUp_Deactivate_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-cleanup-analyze.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Performance_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_lan_corporate.ico (19 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_header_bottom_middle.jpg (387 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\js\integrator.js (32 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg1_16x16.png (391 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BackupCopy_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\graph_icon_shutdown.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_7_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TaskScheduling_16x16.png (759 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_tr.png (204 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_hover_r.png (432 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_bl.png (231 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_14_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap-2.3.2.min.js (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il15_16x16.png (768 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon8.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_7_16x16.png (615 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_lostclusters_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devices_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_table_tm.gif (152 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_2_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_UPnP_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_UAC_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FilesAndFolders_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NetConnectionPerm_16x16.png (684 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\jquery.js (1135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Help_16x16.png (790 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AutoPlay_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rc_di_unknown.tico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_eco_mode_progress.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ICS_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_firefox_tabcolor_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuwizardservices.dat (696 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Help_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateVista_16x16.png (967 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Footer_r.png (286 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\glyph_up.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_tr.png (266 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CheckmarkGreen_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uninstallmanager_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.js (55 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_liveOptimizer_40x40.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inputdevices_ilhover_3_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_firefox_tabwidth_32x32.png (909 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback1.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ColorCount_16x16.png (785 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\OverviewFontStyle_uiVista.css (127 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Manual_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon1.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_noSSLwarn_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_10_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NotNeededLanguagePacks_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_mm.png (115 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_8_16x16.png (145 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateW7_16x16.png (999 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il14_16x16.png (461 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Proxy_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilSmall_0_16x16.png (549 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_mr.png (341 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_container.png (753 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_3_16x16.png (737 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AeroGlass_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Info_Small_16x16.png (563 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LastDownloadLocation_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ActiveWndTracking_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Small.Green.png (362 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckMarkGreen_2_16x16.png (782 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\list_glyph_roll_out.png (858 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Arrow.Grey.png (192 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_W7_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback3.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\play-icon.png (645 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RCArrow_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\WizPic-bg.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-fix-process.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_right.png (146 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ColorDepth_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\so_detail_background.jpg (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_undelete.png (28 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_ml.png (163 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_disabled.png (628 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_invalidkey_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_l.png (326 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_4_16x16.png (695 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Background.Content.png (13 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentlyUsedList_16x16.png (721 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_mr.png (227 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_ProgramDeactivator_24x24.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_gainDiskSpace_40x40.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\report.htm (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Information_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_12_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_header_top_left.jpg (392 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_1_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_hover_m.png (305 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GooglePicasa_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Properties_16x16.png (474 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_MTU_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Safari.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_mr.png (162 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskBarJumpLists_16x16.png (711 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwapFile_16x16.png (696 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_QuickClean_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_scan_right.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_tl.png (189 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\cm_diskspace9x.png (12 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg5_16x16.png (392 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_PCICard_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sidebar_32x32.png (996 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap-2.3.2.js (12 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\commandlinks.css (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_SearchIndex_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_bar_vista_red.png (926 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Nav_Down_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HelpFile_16x16.png (687 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rt_li_unknown.tico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\switch-off.png (659 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_5_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg0_16x16.png (616 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_details_pnl_bg.gif (855 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NotNeededLanguagePacks_32_32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_br.png (181 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_r.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskBarJumpLists_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ConfirmDelete_32x32.png (558 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cache_16x16.png (721 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_3_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_10_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXP_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\css\main.css (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_filetype_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-tm.png (890 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SYNAttacks_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\chevrons_collapse.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_maintenance_40x40.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SharedFolder_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\bg_align.gif (521 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates6_16x16.png (177 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_mm.png (197 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_left.png (281 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_selection.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_popup_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_foldersearch_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Cube_16x16.png (971 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_windowsmessanger_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_br.png (117 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover.png (722 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_16x16.png (747 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_standard_active.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-br.png (410 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il8_16x16.png (780 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TUEnergyOptRating.xml (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OpenWith_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_critical_hover.png (15 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DriveDefrag_180x180.png (25 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_bm.png (119 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateW7_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_pipelining_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\css\integrator.css (34 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\minimize_hover.png (340 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il2_16x16.png (692 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_1_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_ml.png (305 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_tl.png (184 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\window_like.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentDocument_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_icon_shutdown.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Alexa_48x48.png (8 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwapFile_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il6_16x16.png (562 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Flash_disabled.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\visual-counter-bg.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_12_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inet_conn.ico (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsFirewall_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsFirewall_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Fetch_32x32.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_special_elements_16x16.png (592 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IconDisplay_16x16.png (728 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Silverlight.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-tr.png (451 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VisualStyles_24x24.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Boot_16x16.png (700 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VistaOrb_Create_16x16.png (981 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_1_16x16.png (711 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_tl.png (147 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Services_16x16.png (773 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AutoLogon_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_bl.gif (104 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_mm.png (115 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wrench_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Mail_16x16.png (608 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_4_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VisualStyles_16x16.png (790 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Disk_Doctor_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Opera.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegistryEditor_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16_small_grey.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_r.png (222 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ZoomIn_16x16.png (650 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap-2.3.2.css (1135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sidebar_16x16.png (643 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_1_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_m.png (307 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Information2_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_regwizard2_72x72.png (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OpenWith_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_11_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_bm.png (164 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ScanDisk_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wrench_16x16.png (862 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_22_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegistryDefrag_24x24.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_header_topic_separator.png (148 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_bm.png (164 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legende_dot_blue.png (212 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_r.png (419 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\impactgraphinfo.js (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Rename_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Logon_16x16.png (809 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_bg.gif (126 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_filetype_16x16.png (614 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Nav_Up_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentFileList_16x16.png (716 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_KillServiceTimeout_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\icon_modify_settings.png (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_18_16x16.png (439 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_tr.png (235 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Move_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecyclerFull_16x16.png (928 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_bm.png (154 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_21_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_br.png (135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_8_16x16.png (551 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\regwiz_privacy.diz (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uninstallmanager_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Firewall_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il17_16x16.png (755 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Footer_m.png (150 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_hibernation_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TUSysinfo_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RemoteRegistry_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\BrowserCleaner_128.png (18 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_InternetCache_16x16.png (908 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_21_16x16.png (248 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_13_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LastDownloadLocation_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_bm.png (121 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16_small.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DesktopShortcuts_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\css\pillar_problem_details.css (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devicemanager_W7_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemControl_24x24.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_InternetSettings_16x16.png (684 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ExplorerDetails_16x16.png (644 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap-2.3.2.min.css (1135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_br.png (181 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_home_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_check_22_overlay.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-hover-empty.png (970 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IE_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_system.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AppPaths_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_8_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Codec_32x32.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewFolder_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Help_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\tfi_rating_necessary.png (583 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MinWinArrangement_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\loading_blue.gif (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_bl.png (181 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_middle_vista.png (151 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_wms_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_tr.png (203 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_RWIN_16x16.png (998 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_winrestorepoints_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_mr.png (168 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ecomodeconfig_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\button_deactivate_hov.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinStarted_16x16.png (560 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ToolBarBg_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-bm.png (180 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-optimize-registry.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_W7_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-bl.png (611 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Properties_24x24.png (792 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_bl.png (147 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\bg_button.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherOperaData_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Content_l.png (298 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Box_16x16.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentlyUsedStartMenu_16x16.png (803 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ActionCenter_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_bl.png (247 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_4_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_RWIN_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\back_icon.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-gray.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_updatewizard_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il0_16x16.png (442 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Line.Horizontal.png (269 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Run_16x16.png (564 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemRestore_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_Opened_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inputdevices_ilhover_2_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility_ui2000XP.css (138 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\switch-on.png (562 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_tr.png (117 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DocShortcut_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_9_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_7_16x16.png (454 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Drive_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\css\avg.css (14 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilSmall_2_16x16.png (692 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_turbo_active.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXP_16x16.png (605 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ThumbnailView_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\services.tico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_type.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_bm.png (164 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il12_16x16.png (717 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_activate.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_middle.png (181 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PicturePreview_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_24_16x16.png (504 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-gray-light.png (179 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop_16x16.png (531 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MemoryUsage_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuShowDelay_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_def_left.png (324 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherWebsiteData_16x16.png (960 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-lt.png (722 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_History_16x16.png (727 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ColumnCheck_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\window_settings.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_JavaScript_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_bm.png (163 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_7_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\button_icons.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_tm.png (120 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_5_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_StartUp_Manager_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LogOff_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\blank.gif (43 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_10_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_23_16x16.png (325 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_5_16x16.png (577 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_mr.png (119 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Keys_16x16.png (657 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\h3_separator.gif (45 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Background.Nav.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop2_16x16.png (769 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback4.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_tl.png (238 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Software_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg7_16x16.png (703 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_ml.png (179 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\pillar_problem_details.htm (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_6_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SpeedOptimizer_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_mm.png (396 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OpenOffice_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_br.png (147 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\hdr_app_right.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_2_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupoptimizer_24x24.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Session_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Button.Deactivated.png (381 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\overlay_03.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_11_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates10_16x16.png (676 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_15_16x16.ico (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_regwizard_128x128.png (36 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_tm.png (115 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\hdr_app_tile.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_tr.png (567 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Uninstall_Manager_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HelpFile_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\prototype-1.7.1.mod.js (12 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ocm_impact_medium_64x64.png (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_ProgramDeactivator_32.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legend_selection.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_ml.png (285 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\VistaDefault.tls (1135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_scan_mid.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\VistaDefault.tla (1135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_ml.png (256 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\empty_vista.ico (15 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SynAttacks_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inputdevices_ilhover_0_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_EnergyOptions_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_bar_turbo.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_safari_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\button_deactivate.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TempSetupData_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_bl.png (207 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_header_top_right.jpg (413 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\sum_sidebody.htm (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_edge_bottom_left.png (343 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GettingStarted_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NetConnections_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_0_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\shortcut_cleaner_16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GoArrow_16x16.png (629 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_tr.png (202 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileShortCut_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Undo_16x16.png (594 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_mm.png (142 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SitePreferences_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_opera_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_turbo_default.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_6_16x16.png (392 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_mbg_right.png (528 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\minimize_pressed.png (298 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_br.png (159 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_tl.png (171 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MissingTypeLib_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates9_16x16.png (186 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legend_reduction.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_shares_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ocm_warning_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Nero_16x16.png (925 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Star_12x12.png (570 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_12_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_tr.png (189 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_bm.png (278 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_5_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_bar_economy.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Info_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ACDSee_16x16.png (929 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_bl.png (117 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Symbols_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devicemanager_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_satellite.ico (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_RAM_16x16.png (144 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_1_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_19_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WebUpload_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartUp_Activate_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinStyler_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Taskbar_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Replace_16x16.png (897 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates7_16x16.png (150 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_3_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_bm.png (121 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_0_16x16.png (524 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\graph_icon_startup.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_KillAppTimeout_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ExtractSymbolPackage_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_economy_default.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ActionCenter_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileType_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates3_16x16.png (619 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpControl_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_9_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Keys_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-gray-small.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_8_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentDocs_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_ml.png (199 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_tm.png (131 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_selected_m.png (294 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Session_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_br.png (147 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_tl.png (363 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\picture_16.png (547 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_icon_win.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CheckBoxChecked_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_MTU_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Hibernation_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.focus.js (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Cookies_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_mr.png (160 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_bm.png (123 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uac_W7_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_2_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il3_16x16.png (490 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-tl.png (552 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_br.png (117 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Messenger_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_public_network.ico (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_UndeleteTo_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Caption.Grey.png (543 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_TTL_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-rb.png (865 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\video_16.png (737 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\empty.gif (807 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_programDeactivator_40x40.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_13_16x16.png (764 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_3_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Red.png (355 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_tm.png (133 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_ProgramDeactivator_16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BHO_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery-1.4.2.js (1205 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\um_sidebar.css (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_RAM_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_br.png (173 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\cog_icons_sprite.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FireFox_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_11_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ControlPanel_W7_16x16.png (804 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Taskbar_16x16.png (860 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\symbol_error.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HelpFile_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\box_background_yellow.png (237 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AeroGlass_16x16.png (753 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\logotu.png (36 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\FileSearch.avi (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TuneUpOnline_16x16.png (880 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_web-search_16.png (963 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_History_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\bar_arrow.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RestartError_16x16.png (788 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\flight_mode_airplane_large.png (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FixedDisk_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegistryEditor_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\bar_active.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewFolder_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\footer_repeat.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\button_activate.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\system-restore-point_add_16x16.png (934 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Database_16x16.png (975 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\Overview.css (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_selected_r.png (429 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_mm.png (161 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_14_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_left_clear.png (232 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Effects_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_vista_start_logo_16x16.png (883 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_1_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_9_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_tr.gif (103 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_8_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_2_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_StartUp_Manager_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Windows_Circle_16x16.png (946 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\list_glyph_roll_in.png (849 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DocShortcut_16x16.png (649 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ocm_ok_32x32.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Hdr.png (498 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_11_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Help_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OutlookMinToTray_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Key_16x16.png (702 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_IODevices.png (15 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_tr.png (220 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_bm.png (115 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_16x16.png (547 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_tr.png (221 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\serverdownload.avi (61 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_7_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_right.png (240 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_tl.png (304 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_zerobytefiles_16x16.png (763 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_mm.png (197 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MissingKey_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_border_right.png (139 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\button_arrow.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates1_16x16.png (509 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Yellow.png (359 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_tr.png (184 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\filter.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CHMHelp_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Hibernation_16x16.png (930 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_tl.png (188 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rt_li_risky.tico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sound_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_folderup_16x16.png (625 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Footer_l.png (275 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_disabled_l.png (310 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legend_system.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_header_bottom_right.jpg (402 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_16_16x16.png (292 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwapMouseButtons_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\eula_country.diz (294 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BackupCopy_16x16.png (703 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\envelope_128x128.png (10 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LightBulb_16x16.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-tm.png (562 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Flash.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SearchIndex_16x16.png (742 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_registrydefrag_135x128.png (25 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewApp_16x16.png (490 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_ml.png (232 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-tl.png (218 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXP_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-lm.png (962 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_down_oldstyle.bmp (194 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_def_tile.png (257 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\airplaine.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_tr.png (252 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_middle.png (172 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_4_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_edge_bottom_right.png (365 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MRU_16x16.png (713 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_registrycleaner_128x128.png (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_tl.png (237 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartUp_Manager_24x24.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Ftr.Dark.png (433 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg10_16x16.png (783 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_0_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_btn_clean_middle.png (324 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CLSID_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\bg_gadget.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ChatProtocols_16x16.png (727 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Protection_16x16.png (503 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VisualStyles_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\arrow-top.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_home_16x16.png (717 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AeroGlass_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\cm_weroff.jpg (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_mm.png (147 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\delete_files_128.png (15 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_Hidden_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_10_16x16.png (130 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\um_sidebar_body.htm (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\button_activate.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_economy_turbo_mode_24x24.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\header.jpg (27 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\sprintf.js (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_br.png (217 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_7_16x16.png (153 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon2.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\impactgraphinfo.css (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_drive_ssd_16.png (482 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\cm_tools.png (526 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TUProgramManager.dat (248 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_economy_pressed.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\loading.gif (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_br.png (176 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Mozilla.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_directx_190x66.png (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OpenOffice_16x16.png (807 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-optimize-systemload.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_5_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Memory_16x16.png (642 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\cm_privacy.gif (997 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_mr.png (183 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery-2.0.2.min.js (1135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo.png (23 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Mail_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-tr.png (689 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LastURL_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Favorites_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Delete_16x16.png (739 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FontsFolder_16x16.png (827 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Boot_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_7_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il1_16x16.png (479 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_br.png (181 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_firefox_tabclose_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_UAC_W7_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BootScreen_Create_16x16.png (780 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_27_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DuplicateFinder_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_bl.png (180 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_disabled_r.png (404 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\divider_gradient_overlay.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_mr.png (279 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_shredder_128x128.png (30 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\status-icons.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_bm.png (128 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_4_16x16.png (430 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility.js (9 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_br.png (242 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AppPaths_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_PCICard_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_User_16x16.png (888 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_IE_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_fiberoptic.ico (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Nav_Right_16x16.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ErrorNotify_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuResponsiveness_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Save_16x16.png (683 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_opera_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HiddenDrive_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TCPIP_3D_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_devicemanager_W7_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentlyUsedList_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_btn_clean_right.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_gaindiskspace_24x24.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuFile_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\icon_computer.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FixedDisk_16x16.png (417 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\sm_sidebar.css (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MultipleDrives_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-cleanup-gds.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legend_icon_startup.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ControlPanel_16x16.png (705 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Views_24x24.png (520 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Drive_16x16.png (345 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_multiple_selection.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IniFile_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_ml.png (187 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shield_W7_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_nav_left_24x24.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.easing.js (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_bm.png (115 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_top100_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Keyboard_16x16.png (330 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-tm.png (173 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyDocuments_W7_16x16.png (819 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Move_16x16.png (572 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Ftr.Norm.png (431 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_tl.png (117 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderOptions_16x16.png (592 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_ml.png (119 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_4_16x16.png (273 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_16x16.png (423 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RemoteRegistry_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_report.html (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\AppIcon_32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon5.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_EnergyOptions_16x16.png (846 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_foldersearch_16x16.png (590 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\cm_weroff_W7.jpg (44 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_6_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OperaSpeedDial_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_4_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FireFox_16x16.png (947 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility_base.htm (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_table_tr.gif (347 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_recyclebin_16x16.png (795 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewApp_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon6.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_bl.png (197 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LostCluster_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16_small_ani1.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_bm.png (131 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\tuneup.js (20 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_blue.png (193 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HomePage_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SecurityCenter_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileAndFolder_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_nav_right_24x24.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\sum_sidebody.htm (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SoftwareSection_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rc_di_suggest_remove.tico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\classic_windowsxp.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\arrow_left.png (189 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility.css (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SharedFile_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\css\duplicatefilefinder.css (18 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\delete_browser_16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wer_16x16.png (985 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Icon_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Fetch_16x16.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_disabled_m.png (302 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherWebsiteData_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\dropdown_checkmark.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_icon_startup.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_JumpToKey_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyComputer_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_hover_l.png (336 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\js\pillar_problem_details.js (9 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\dashboard_statuses_icons.png (38 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\arrow_right.png (197 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_tm.png (133 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_liveoptimizer_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_empty_16x16.png (173 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_14_16x16.png (569 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\SimpleQuestionMark_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\tfi_rating_unknown.png (565 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_Opened_16x16.png (559 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Defrag_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RCBackupRestore_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MFUPrograms_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_critical.png (14 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_timeserver_il2_32x32.png (772 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_14_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\SysteamHealth_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\button_deactivate_grey.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AutoComplete_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CopyFile_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\close_pressed.png (458 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Chrome.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_bl.png (196 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsMail_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_check_32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_br.png (220 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Uninstall_16x16.png (610 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DeactivateAll_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_mm.png (221 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shield_W7_16x16.png (899 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_bg_light.gif (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_tm.png (131 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_tm.png (160 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\sign_ok.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Battery.png (378 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_ml.png (239 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_30_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_header_bottom_left.jpg (375 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_tm.png (263 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SendTo_16x16.png (777 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\throbber_ani_alpha_12.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.layerbutton.js (14 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentlyUsedStartMenu_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Office_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Button.Hover.png (491 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\song_16.png (536 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\cm_report_noui_nodebug.jpg (12 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_ml.png (121 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Warning_16x16.png (627 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_2_16x16.png (151 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Delayed_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\3rdPartyCredits.html (1205 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_noSSLwarn_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Settings_48x48.png (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_WindowsDefender_16x16.png (334 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Update_Wizard_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_passwordsaving_32x32.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AddToList_16x16.png (622 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Critical_16x16.png (732 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Profile_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsSearchTerms_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuResponsiveness_16x16.png (642 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\dse_table_base.css (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\header.jpg (57 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\index.html (8 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_listitem_check.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Opera_disabled.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_bl.png (189 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Favorites_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-tr.png (318 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Update_Wizard_128x128.png (21 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_logo.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_23_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Settings_24x24.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_tl.png (183 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_tasksymbol_32x32.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\main.js (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Mouse_16x16.png (817 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HideUser_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_InternetHistory_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_ml.png (127 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IconDisplay_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherMozillaData_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TempSetupData_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_bg2.gif (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_standard_hover.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXPtrue_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RASConnection_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Application_32x32.png (993 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uac_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_oneclick_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ScreenRes_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_11_16x16.png (536 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_standard_default.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\button_deactivate.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\special-status_con-faild-16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Protection_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\update.avi (29 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_ml.png (119 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXP_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Images.xml (2415 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_turbo_mode_progress.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_1_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_31_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TerminateProcess_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_JumpToKey_16x16.png (709 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_bl.png (191 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_br.gif (104 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_repair_16x16.png (524 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-tr.png (396 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_tl.png (174 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\resize_icon.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Googledesktop_16x16.png (947 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IEContextMenu_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il5_16x16.png (737 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_SystemSettings2_16x16.png (646 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Explorer.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_14_16x16.png (410 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\so_bg.jpg (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_25_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_mm.png (145 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_1_16x16.png (351 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_tl.png (163 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\hdr_app_left.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devicemanager_W7_16x16.png (696 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\bgPDIntroductionWindow.png (17 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_0_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_New_16x16.png (774 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_bl.png (117 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Taskbar_and_Desktop_16x16.png (753 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\bg_error.png (8 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\graph_icon_win.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_br.png (249 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_ImportantServices_16x16.png (872 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Header_m.png (149 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Small.Red.png (340 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_activate_grey.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Arrow.Black.png (228 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_bm.gif (44 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon7.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Small.Yellow.png (326 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_3_16x16.png (153 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\OCM_FirstStart_background.jpg (15 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Communication.png (23 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_reduction.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il16_16x16.png (829 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_lan_private.ico (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Silverlight_disabled.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\sc_RepairWizard.png (25 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_tm.png (155 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_tl.png (238 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_tr.png (221 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_transparent.png (155 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuResponsiveness_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\h3_separator.gif (45 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\checkmark_blue.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_3_16x16.png (750 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg3_16x16.png (425 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_bl.png (162 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_update_wizard_32x32.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuBar_16x16.png (714 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_tl.png (188 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateVista_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_0_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CompSpeak_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_128x128.png (14 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tusigdata.tudb (1205 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentDocs_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TUProgramManager.db (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg9_16x16.png (611 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shutdown_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shortcut_16x16.png (719 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_arrowrightgreen_16x16.png (681 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Seperator.png (189 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Info_16x16.png (636 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-mr.png (173 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemExtensions_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_6_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_5_16x16.png (256 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_29_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Taskbar_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rt_li_dangerous.tico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_bl.png (226 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_tr.png (720 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_browser_settings_16x16.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_bm.png (270 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il0_16x16.png (701 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_mbg_middle.png (167 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\empty.gif (807 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_BrowserCacheCleared_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_2_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_tl.png (177 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_tr.png (145 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_tm.png (362 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\browser_base.css (555 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IconPackageNew_16x16.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\integrator.html (49 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_tm.gif (50 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Power.png (471 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Services_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_tr.png (778 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IniFile_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Windows_Circle_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Windows_Orb_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\special-status_loading-16x16.gif (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupoptimizer_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_chartbar_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_tm.png (262 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_ml.png (206 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderSave_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinFlag_16x16.png (859 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MouseWheel_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_normal.png (722 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_8_16x16.png (303 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_tabs.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_26_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ODBC_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_4_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_mm.png (142 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_9_16x16.png (235 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_12_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_turbomode_32x32.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_safari_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\empty.gif (807 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\windows-functions_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\close_normal.png (476 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rt_li_trusted.tico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PCICard_16x16.png (604 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ocm_header_background.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_bl.png (257 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_middle.png (162 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-blue.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DriveDefrag_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_turbo_hover.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Office_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckMarkGreen_2_72x72.png (8 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\pom_infobox.htm (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_gaindiskspace_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Googledesktop_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_24x24.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MinToTray_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Boot2_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_6_16x16.png (153 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilSmall_1_16x16.png (364 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-ml.png (144 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_mm.png (187 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Flash_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DesktopShortcuts_16x16.png (731 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_arrowright_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_2_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_winrestorepoints_16x16.png (885 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskBarButtonFlash_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Content_r.png (269 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legende_dop_red.png (212 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_x_button.bmp (476 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Delete_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_wms_32x32.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\footer.jpg (23 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Undo_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateVista_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwitchWindows_16x16.png (586 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_0_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecyclerFull_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Settings_32x32.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sidebar_W7_16x16.png (671 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\button_activate_hov.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_5_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_tm.png (164 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_deactivate_grey.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Explorer_disabled.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Functions_16x16.png (634 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\close_hover.png (485 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Manual_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_19_16x16.png (245 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IEMediaBar_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_br.png (169 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-lt.png (488 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_vista_start_logo_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_tl.png (175 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_StartUp_Manager_16x16.png (564 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HistoryNavigation_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\chevrons_expand.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_DesktopBackground_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_bl.png (141 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Unneeded_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Chart_128x128.png (27 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-fix-windows.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Users_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_devicemanager_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_deactivate.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_right_vista.png (135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ocm_impact_high_64x64.png (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\Logo.png (9 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_18_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_good_hover.png (16 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_tr.png (186 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_tr.png (658 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_6_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_TTL_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_mr.png (232 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Unneeded_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyDocuments_16x16.png (785 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\button_activate_grey.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cddrives_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_6_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileAndFolder_16x16.png (814 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowTitle_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_bm.png (133 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_lostclusters_16x16.png (958 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_l.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_mm.png (337 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SharedFile_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Header_l.png (278 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\path_arrow.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Clock_32x32.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemExtensions_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuConfig_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_11_16x16.png (407 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_turbomodeconfig_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_Styler_CreatePackage_128x128.png (25 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\list_blue_line_left.png (290 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\delete_files_16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManager_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\empty.gif (807 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsSearchTerms_16x16.png (859 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Software_16x16.png (601 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il7_16x16.png (360 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_3_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_selected_l.png (360 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_tr.png (177 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_tm.png (178 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MTU_32x32.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ocm_impact_none_64x64.png (8 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery-2.0.2.js (2555 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_2_16x16.png (632 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OrangeArrow_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_W7_16x16.png (848 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_ml.png (163 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_multiple_selection_detail.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-mr.png (157 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MailBlockAttachments_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_13_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DumpFiles_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_tr.png (117 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_activationwizard_128x128.png (13 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Manual_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\logo_diskdoctor_128x128.png (21 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_sel_left.png (306 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_tr.png (166 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DocShortcut_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DriveDefrag_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_mr.png (193 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TCPIP_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IconPackageAdd_16x16.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_tempfiles_32x32.png (839 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IEHTMLEditor_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-br.png (331 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_styler_24x24.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_2_16x16.png (337 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CopyUserSettings.png (25 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilSmall_3_16x16.png (551 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Delete_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemDrive_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rc_di_dont_touch.tico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Nav_Left_16x16.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\VistaDefault.tbs (15 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_systemDrive_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_mr.png (360 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_6_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_0_16x16.png (555 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_15_16x16.png (339 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_13_32x32.ico (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GoogleEarth_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_sel_right.png (924 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_13_16x16.png (687 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_turboMode_40x40.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\minimize_normal.png (324 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_br.png (180 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_mm.png (178 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Line.Vertical.png (276 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\shortcut-cleaner_128.png (12 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_logonui_create_16x16.png (955 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\special-status_not-allowed-16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ColorDepth_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_tm.png (338 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_mr.png (336 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legende_overlay.png (308 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Memory_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop2_24x24.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-lm.png (619 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_l.png (219 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskScheduling_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wer_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_table_tl.gif (344 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_10_16x16.png (248 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_border_left.png (134 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CLSID_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\window_icons.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-br.png (702 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_RAM_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Windows_W7.png (26 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_SearchIndex_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_tl.png (456 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CHMHelp_16x16.png (947 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Animation_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\sm_sidebar.js (740 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\empty.ico (766 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\task_topic.png (268 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\js\proxy.js (7 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_no_conn.ico (22 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_tl.png (117 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CommandPrompt_32x32.png (610 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Rename_16x16.png (379 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\sm_sidebar.js (738 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\btn-grip.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_b.gif (45 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_4_16x16.png (551 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_good.png (16 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_4_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_tm.png (259 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il5_16x16.png (573 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates2_16x16.png (669 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback2.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_16_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FormData_16x16.png (375 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Mozilla_disabled.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_zerobytefiles_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Network_16x16.png (537 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_bm.png (156 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Cont.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_2_16x16.png (549 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Header_r.png (314 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_br.png (153 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Uninstall_Manager_48x48.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Drive_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_notification_32x32.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProgramUpdate_16x16.png (752 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_timeserver_il1_32x32.png (748 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderPreview_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_bl.png (174 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\default.css (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\box_header_top_middle.jpg (388 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_user_female_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\legend_active.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DLLFile_32x32.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_5_16x16.png (303 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MultipleDrives.ico (15 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\switch.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LiveMsgr_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Information_16x16.png (763 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\intro.htm (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_DesktopBackground_48x48.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_right.png (290 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CPU_16x16.png (605 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Print_16x16.png (477 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_rating_deactivation_16x16.png (767 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Modem_16x16.png (625 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_unknown_16x16.ico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rc_di_you_decide.tico (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-bl.png (386 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Software_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\OverviewFontStyle_ui2000XP.css (117 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Score_16x16.png (594 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMessenger_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_KillAppTimeout_48x48.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_12_16x16.png (586 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Error_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_mm.png (217 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Firefox_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_WindowsDefender_48x48.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ResetCategory_16x16.png (783 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_SystemProblemsSolved_24x24.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\exportregistry.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il2_16x16.png (643 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-bl.png (318 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Logo.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_opera_16x16.png (870 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewApp_24x24.png (883 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_12x12.png (499 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates8_16x16.png (222 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherOperaData_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegCleaner_24x24.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Uninstall_Manager_16x16.png (605 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_mr.png (344 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star_dark-grey_small.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\rd_wait_2.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_16x16_small.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NetConnections_16x16.png (379 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\tfi_rating_unnecessary.png (578 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_mm.png (158 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_0_16x16.png (807 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\throbber_ani_alpha_12.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\visual-counter-full.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_br.png (207 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GooglePicasa_16x16.png (882 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\bar_bg.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\impactgraphinfo_body.htm (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_InternetHistory_16x16.png (825 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_17_16x16.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\sign_bulb.png (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_middle_clear.png (135 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_br.png (227 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_tm.png (122 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_yellow.png (146 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_folder_64x64.png (4 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Office_16x16.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Safari_disabled.png (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_chartbar_16x16.png (682 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Nero_48x48.png (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BootAndError_32x32.png (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\icon_ProgramDeactivator_64.png (6 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-blue-light.png (179 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16_small_ani2.ico (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\regwiz_country.diz (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\sm_sidebar.css (5 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_active.png (1 bytes)

The process TUInstallHelper.exe:2552 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

%Program Files% (x86)\TuneUp Utilities 2014\vcl120.bpl (49 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\MSI_D6.bpl (659 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\SysControls.bpl (69 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\VisControls.bpl (425 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\cefcomponent.bpl (155 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities 2014\TUReportData.10.tudb (428 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUShredder.bpl (110 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\xmlrtl120.bpl (954 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TuApplications.bpl (49 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\dxCoreD12.bpl (45 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\tulic.dll (634 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TuneUpRPC32.dll (225 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUKernel.bpl (614 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\tuinstallhelper.log (980 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUShell.bpl (77 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\vclx120.bpl (208 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUCompression.bpl (335 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\ntrtl60.bpl (307 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUBasic.bpl (155 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUIECacheClass.bpl (69 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUIcoEngineerDirTree.bpl (147 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\MainControls.bpl (823 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\dxThemeD12.bpl (57 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\dxGDIPlusD12.bpl (73 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\CDB11BBC2AB64E8AAD5D785922A6466A (3 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\PerlRegEx.bpl (163 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\avgreplibx.dll (585 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUApps.bpl (94 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\PowerManager.bpl (458 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\dxBarD12.bpl (49 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\rtl120.bpl (49 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\AppInitialization.bpl (282 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\Html.bpl (495 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities 2014\TUReportData.10.tudb-journal (6156 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\Traces.bpl (491 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUDiskCleanerClass.bpl (634 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\CommonForms.bpl (143 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUBase.bpl (36 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TURar.bpl (45 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUSafariClass.bpl (45 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUSqlDB32.dll (610 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\DEC.bpl (307 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\SysInfo.bpl (471 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUTransl.bpl (122 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\XMLComponents.bpl (212 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\VirtualTreesR.bpl (610 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUParams.dll (262 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\GR32_D6.bpl (450 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\vclimg120.bpl (270 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\cxLibraryD12.bpl (856 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\ProgramRating.bpl (217 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\dxComnD12.bpl (16 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUOperaClass.bpl (86 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\SchedAgent_2007.bpl (131 bytes)

The process TUInstallHelper.exe:1992 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\tuinstallhelper.log (980 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\AvgRep.xml (1113 bytes)

The process TUInstallHelper.exe:1188 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\tuinstallhelper.log (980 bytes)

The process TUInstallHelper.exe:3888 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\tuinstallhelper.log (980 bytes)

The process TUInstallHelper.exe:1680 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\tuinstallhelper.log (980 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Update Wizard.lnk (2 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\9ZET84BIVDLS7DAQHAVH.temp (1924 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\DiskExplorer.exe (450 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Uninstall Manager.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\ShortcutCleaner.exe (118 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Program Deactivator.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Disk Space Explorer.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Shortcut Cleaner.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\Shredder.exe (167 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\DuplicateFinder.exe (749 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Registry Cleaner.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Economy Mode.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\Integrator.exe (49 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\SystemInformation.exe (290 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Disk Cleaner.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Shredder.lnk (2 bytes)
C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\Styler.exe (921 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\RegistryDefrag.exe (159 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Undelete.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Setting Center.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Optimization Report.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\EnergyOptimizer.exe (303 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Duplicate Finder.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\RegistryCleaner.exe (315 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\ProgramDeactivator.exe (352 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\RescueCenter.exe (208 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp 1-Click Maintenance.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Styler.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\RegistryEditor.exe (339 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\TuneUp Utilities Help.lnk (1 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\DiskCleaner.exe (471 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\UpdateWizard.exe (253 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\TuneUp Utilities - Start Center.lnk (1 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Browser Cleaner.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\SystemControl.exe (1 bytes)
C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\OneClick.exe (462 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Repair Wizard.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp StartUp Manager.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\BrowserCleaner.exe (122 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\StartUpManager.exe (327 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\Report.exe (147 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\RepairWizard.exe (167 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Disk Doctor.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp System Control.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp System Information.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\StartupOptimizer.exe (278 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Rescue Center.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\Undelete.exe (225 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\SettingCenter.exe (335 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Registry Editor.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\TuneUp Software Website.url (48 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\TuneUp Utilities 2014.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\DriveDefrag.exe (196 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\ProcessManager.exe (380 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Live Optimization.lnk (2 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\UninstallManager.exe (270 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\DiskDoctor.exe (167 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Registry Defrag.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp StartUp Optimizer.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Drive Defrag.lnk (2 bytes)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Process Manager.lnk (2 bytes)

The process TUInstallHelper.exe:1112 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\tuinstallhelper.log (980 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\AvgRep.xml (938 bytes)

The process TUInstallHelper.exe:1660 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\tuinstallhelper.log (980 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUAnalyzeInfo.dll (200 bytes)
C:\Windows\SysWOW64\authuitu.dll (25 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\authuitu-x86.dll (28 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\TUTuningIndex.dll (716 bytes)
C:\Windows\System32\TURegOpt.exe (40 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\DseShExt-x86.dll (32 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\SDShelEx-win32.dll (32 bytes)

The process waol-0.4343.19.1.exe:3636 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\Public\Desktop\AOL Desktop 9.7 Install.lnk (1 bytes)
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\flash\flashax.exe (146 bytes)
C:\IPH.PH (312 bytes)

The process aol-desktop-9.7 Rev 4343.19.exe:1188 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\message.js (277 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsuBD96.tmp\System.dll (21 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Progress.htm (804 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\roadie.exe (7392 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\roadie.bin (4 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Preparing.htm (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\NoFiles.htm (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\dlgui.dll (25824 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsuBD96.tmp\CertHelper.dll (1913 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\FailedLaunch.htm (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\NoQualify.htm (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Error.htm (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Cancelled.htm (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\dlgui.ini (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\NoConn.htm (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Grats.htm (792 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\DownloadError.htm (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsuBD95.tmp (20605 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Cancelling.htm (987 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\CancelConfirm.htm (993 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\roadie.ini (606 bytes)

The process regsvr32.exe:208 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Windows\System32\authuitu.dll (29 bytes)
%Program Files% (x86)\TuneUp Utilities 2014\authuitu-x64.dll (32 bytes)

The process regsvr32.exe:2348 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

%Program Files% (x86)\TuneUp Utilities 2014\SDShelEx-x64.dll (32 bytes)

The process regsvr32.exe:3212 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

%Program Files% (x86)\TuneUp Utilities 2014\DseShExt-x64.dll (28 bytes)

The process regsvr32.exe:2612 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

%Program Files% (x86)\TuneUp Utilities 2014\TUAnalyzeInfo64.dll (258 bytes)

The process %original file name%.exe:3852 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\button.bmp (2 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll (29135 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\nsisdl.dll (31 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\rmi\aol-desktop-9.7 Rev 4343.19.exe (18976 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\System.dll (23 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\skinnedbutton.dll (13 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nse279D.tmp (18798 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\nsDialogs.dll (21 bytes)

The process TuneUpSystemStatusCheck.exe:2400 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_turbo.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_good.png (16 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_pressed.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\logotu.png (36 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\css\main.css (5 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_pressed.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_pressed.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_active.png (2 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\main.js (7 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\blank.gif (43 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_warning_hover.png (14 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_good_hover.png (16 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_warning.png (14 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\css\main.css (5 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_warning_hover.png (14 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_economy.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_critical.png (14 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_active.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_pressed.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_standard.png (2 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_standard.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_good.png (16 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_button.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\logo.png (8 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_active.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_active.png (2 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_default.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\main.html (3 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_default.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\gadget.xml (664 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\main.html (3 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\logo.png (8 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_critical_hover.png (15 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_hover.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\logotu.png (36 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_default.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_hover.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_standard.png (2 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\gadget.xml (664 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_hover.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_hover.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_error.png (8 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\jquery.js (601 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\status.js (8 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\blank.gif (43 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_default.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_gadget.png (5 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\jquery.js (601 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_turbo.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_warning.png (14 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_pressed.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\main.js (7 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_active.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\status.js (8 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_hover.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_critical_hover.png (15 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_active.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_economy.png (2 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_standard.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_gadget.png (5 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_economy.png (2 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_turbo.png (2 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_economy.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_critical.png (14 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_pressed.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_error.png (8 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_hover.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_button.png (1 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\com.js (744 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_default.png (1 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\com.js (744 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_turbo.png (2 bytes)
%Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\sprintf.js (6 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\sprintf.js (6 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_good_hover.png (16 bytes)
%Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_default.png (1 bytes)

The process TuneUpUtilitiesService64.exe:1828 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\ProgramData\TuneUp Software\TuneUp Utilities\TUProgMan.10.tudb (34063 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\TUTuningIndex.10.2.tudb-journal (29886 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\TUProgMan.10.tudb-journal (85394 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\TUProgManagerCache.10.tudb-journal (31886 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\TUUtilitiesSvc.13.tudb-journal (38210 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\Program Statistics\ProgramStatistics.2013.tudb-journal (73912 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\Program Statistics\ProgramStatistics.2013.tudb-mjCA02AE900 (107 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\TUTuningIndex.10.2.tudb (1411 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\AvgRep.xml (1218 bytes)
C:\Windows\Temp\etilqs_Q5hOgLg9rm0fou9 (251 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\TUProgManagerCache.10.tudb (28094 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\TUUtilitiesSvc.13.tudb (5001 bytes)
C:\ProgramData\TuneUp Software\TuneUp Utilities\Program Statistics\ProgramStatistics.2013.tudb (17805 bytes)

The process Skype.exe:2788 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\capsLock.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\msa-logos-135x25.png (903 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\exclamation_20x20.png (513 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (331 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\uk.js (1235 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-arabic.eot (2068 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-greek.eot (29 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\retina\login.css (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\nl.js (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-cyrillic.ttf (1924 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27 (1360 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\backgroundNoCloud.png (4 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\pt.js (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (884 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\da.js (181 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\tr.js (1339 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (588 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1DAF2884EC4DFA96BA4A58D4DBC9C406 (1764 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1768 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\et.js (1611 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (620 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (578 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\arrow_up_20x20.png (436 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\exclamation_20x20.png (720 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\connection.png (865 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\button-right-35x35.png (691 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\platform\mac.css (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-xbox-25x25.png (965 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (10 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (374 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\exclamation_20x20.png (515 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\skype-logo-136x60.png (4 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (908 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\046C1ZNT\externalSettings[1].js (77 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\loader_15fps.gif (6 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-skype-25x25.png (822 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (620 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-greek.woff (1983 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\no.js (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-latin.woff (2033 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-win-25x25.png (533 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27 (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\lt.js (10 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (743 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\el.js (1024 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\loader.png (3 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\skype-logo-136x60.png (5 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (370 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\dropdown_hover_32x32.png (267 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ru.js (1550 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\capslock_20x20.png (380 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-hebrew.eot (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\back_20x20-inverted.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-greek.ttf (2950 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-latin.eot (2281 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\caret_right.png (1175 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\ticked_not_10x10.png (191 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1 (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-hebrew.woff (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\cs.js (11 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\capslock_20x20.png (380 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-greek.eot (1760 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (344 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (200 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-office-25x25.png (783 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\picture.jpg (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\platform\win.css (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\es.js (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (345 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (759 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\loader.gif (1086 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\BE4SQDQ82ES91AFRPXC1.temp (893 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (201 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\platform\unix.css (6 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (391 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (201 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\fi.js (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (331 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-latin.ttf (6389 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-darker-left-35x35.png (545 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\icons.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-hebrew.eot (6 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-cyrillic.eot (1030 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-office-25x25.png (722 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\messageTop.png (265 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-latin.woff (3950 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\msAccountOverlay.png (93 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ar.js (991 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\arrow_up_20x20_8bit.png (220 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\FXE3XPHPHO9T2HVSOQ68.temp (893 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\caret_left.png (1690 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1DAF2884EC4DFA96BA4A58D4DBC9C406 (2 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\msDefaultPicture.png (584 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\bg.js (483 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\msa-logos-135x25.png (3 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (560 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-arabic.ttf (2813 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ko.js (13 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-arabic.eot (891 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared_dynco\dc.db (285114 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\button-right-35x35.png (469 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\loader_30fps.gif (1520 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-greek.ttf (3150 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (578 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (97 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\inputfields.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (792 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-xbox-25x25.png (956 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\dropdown_hover_32x32.png (256 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\it.js (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\facebook.png (315 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\back_20x20-inverted.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (900 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-cyrillic.eot (1145 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\dropdown_32x32.png (269 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\de.js (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (581 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 (944 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-right-35x35.png (475 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (423 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-latin.eot (3125 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (753 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-darker-middle-35x35.png (233 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-greek.woff (242 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (201 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Cookies\BNIPP64G.txt (585 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-hebrew.eot (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-skype-25x25.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\js\login.js (4742 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\caret_left.png (998 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\login.css (902 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\zh-hant.js (1322 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\buttons.png (4 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (2 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\skypelogo.png (1428 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-skype-25x25.png (815 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\V25WNQADQITZW301LAO0.temp (893 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ja.js (1581 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\messageBottomShort.png (279 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (796 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-cyrillic.woff (317 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (97 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (132 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (2 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\button-middle-35x35.png (230 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\he.js (1103 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-win-25x25.png (558 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\skypeicon.png (618 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\capsLockShort.png (327 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\button-left-35x35.png (469 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\back_20x20-inverted.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-cyrillic.woff (1077 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (7 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\sl.js (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\vi.js (14 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\hu.js (335 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\index.html (18 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F (1152 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (375 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-greek.ttf (1929 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\id.js (7 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\ticked_not_10x10.png (191 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (924 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-cyrillic.ttf (1250 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-hebrew.ttf (16 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-cloud-35x25.png (837 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-arabic.woff (2921 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login.md5 (34 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-latin.ttf (4726 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared_httpfe\queue.db (9692 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC9005F5466BD463DF06D711B370595F (70 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\fr.js (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\skype-logo-136x60.png (4 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\M2COED01VGD6EJUYTH6Y.temp (893 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\ticked_10x10.png (284 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\messageTopShort.png (256 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (781 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-cyrillic.woff (354 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\ticked_10x10.png (256 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (685 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\zh-hans.js (11 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-hebrew.woff (754 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\checkbox.png (551 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-cloud-35x25.png (839 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (7 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (7 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-latin.eot (2669 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\msAccount.png (93 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\en.js (7 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (698 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\background.png (13 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\back_20x20.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\logoanim.gif (14 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (799 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\dropdown_hover_32x32.png (270 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (609 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\arrow_up_20x20.png (514 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (597 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-win-25x25.png (519 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\skype.png (697 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-darker-right-35x35.png (542 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\dropdown_32x32.png (256 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\msa-logos-135x25.png (3 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Cookies\C9EF3M8G.txt (345 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (380 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (6 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\capslock_20x20.png (466 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared.tmp (3532 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ro.js (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1 (1456 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (905 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (911 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\DataRv\offline-storage-ecs.data (24 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-hebrew.ttf (1417 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\sk.js (770 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (609 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (405 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\caret_right.png (995 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Cookies\N9RR4UNZ.txt (123 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-arabic.ttf (3449 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-arabic.woff (2314 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-hebrew.ttf (1680 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\arrow_up_20x20.png (436 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\back_20x20.png (399 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-cyrillic.ttf (1782 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\dropdown_32x32.png (267 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (477 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-arabic.eot (515 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (345 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\ticked_10x10.png (257 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\msAccountColour.png (118 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-hebrew.woff (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-arabic.woff (2080 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\button-left-35x35.png (492 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\pt-br.js (1858 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (794 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (334 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-greek.eot (1044 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (582 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\th.js (243 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (379 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\messageBottom.png (301 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (7 bytes)
C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4309200C3DBAD0F6F0DFACE9165FD092 (727 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-latin.ttf (5307 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared_httpfe\queue.db-journal (22756 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-cloud-35x25.png (924 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-xbox-25x25.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\sr-latn.js (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (792 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\back_20x20.png (452 bytes)
%Program Files% (x86)\Skype\Updater\Updater.dll (102 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (829 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\plus.png (605 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-office-25x25.png (718 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\dropdown.png (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-left-35x35.png (489 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-latin.woff (3756 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared_dynco\dc.db-journal (443887 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\ticked_not_10x10.png (191 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\pl.js (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\sv.js (8 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (630 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login.js (5 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-arabic.ttf (3167 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (335 bytes)
C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\DataRv\offline-storage.data (90586 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\hr.js (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-middle-35x35.png (233 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ca.js (9 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-greek.woff (1118 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\button-middle-35x35.png (230 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (2 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-cyrillic.eot (1950 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\lv.js (466 bytes)

The process flashax.exe:3716 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):

C:\Windows\SysWOW64\Macromed\Flash\Flash10h.ocx (732 bytes)
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.dll (311 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\F9A9.tmp (626 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\F9AA.tmp (464 bytes)
C:\Windows\SysWOW64\Macromed\Flash\FlashInstall.log (1 bytes)
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe (464 bytes)

Registry activity

The process syesubc3_p2v3.exe:2396 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies]
"CachePrefix" = "Cookie:"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "89 9F 69 0B 0B 29 D0 01"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecision" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History]
"CachePrefix" = "Visited:"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content]
"CachePrefix" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionReason" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionReason" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadNetworkName" = "Network 3"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecision" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 43 00 00 00 09 00 00 00 00 00 00 00"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecision" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionReason" = "1"

"WpadDecisionTime" = "89 9F 69 0B 0B 29 D0 01"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionTime" = "89 9F 69 0B 0B 29 D0 01"

Proxy settings are disabled:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

The Trojan deletes the following value(s) in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDetectedUrl"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyOverride"
"AutoDetect"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyServer"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDetectedUrl"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"

The process TPAutoConnSvc.exe:1776 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKLM\SOFTWARE\ThinPrint\TPPrnUI\NPI456AB0 (HP LaserJet Professional M1212nf MFP)#:1]
"TrayData" = "2,Tray 3, 3,Tray 2, 1,Tray 1, 4,Manual Feed, 7,Auto Select"
"FormData" = "1,2159,2794,Letter¶40,40,2086,2712, 5,2159,3556,Legal¶40,40,2086,3474, 9,2100,2970,A4¶39,39,2032,2890, 7,1842,2667,Executive¶40,40,1761,2585, 258,2159,3302,8.5 x 13 (custom)¶40,40,2086,3220, 11,1480,2100,A5¶39,39,1408,2020, 70,1050,1480,A6¶39,39,975,1399, 13,1820,2570,B5 (JIS)¶39,39,1747,2490, 264,1950,2700,16K 195x270¶39,39,1882,2620, 263,1840,2600,16K 184x260¶39,39,1761,2520, 257,1970,2730,16K 197x273¶39,39,1896,2650, 43,1000,1480,Japanese Postcard¶39,39,921,1399, 82,1480,2000,Double Japan Postcard Rotated¶39,39,1408,1919, 20,1046,2413,Envelope #10¶40,40,975,2331, 37,983,1905,Envelope Monarch¶40,40,907,1823, 34,1760,2500,Envelope B5¶39,39,1693,2420, 28,1620,2290,Envelope C5¶39,39,1544,2209, 27,1100,2200,Envelope DL¶39,39,1029,2120"
"DelAfterCreate" = "1"

[HKU\.DEFAULT\Printers\DevModes2]
"NPI456AB0 (HP LaserJet Professional M1212nf MFP)#:1" = "4E 00 50 00 49 00 34 00 35 00 36 00 41 00 42 00"

The Trojan deletes the following registry key(s):

[HKLM\SOFTWARE\ThinPrint\TPPrnUI\NPI456AB0 (HP LaserJet Professional M1212nf MFP)#:1]

The process du340b.exe:4088 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "10 CD EF 1E 0B 29 D0 01"

[HKLM\System\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations" = "\??\%Program Files% (x86)\Google\Update\1.3.24.15, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\python.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\, , \??\C:\Users\"%CurrentUserName%"\AppData\Roaming\rmi\aol-desktop-9.7 Rev 4343.19.exe, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp, , \??\C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\du340b.exe,"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionReason" = "1"
"WpadDetectedUrl" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 41 00 00 00 09 00 00 00 00 00 00 00"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecision" = "0"

Proxy settings are disabled:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

The Trojan deletes the following value(s) in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoDetect"
"ProxyOverride"
"ProxyServer"
"AutoConfigURL"

The Trojan disables automatic startup of the application by deleting the following autorun value:

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"OCDLMgr"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"OCDLMgr"

The process du340b.exe:3960 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "10 CD EF 1E 0B 29 D0 01"
"WpadDecisionReason" = "1"
"WpadDetectedUrl" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 42 00 00 00 09 00 00 00 00 00 00 00"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecision" = "0"

Proxy settings are disabled:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

The Trojan deletes the following value(s) in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoDetect"
"ProxyOverride"
"ProxyServer"
"AutoConfigURL"

The Trojan disables automatic startup of the application by deleting the following autorun value:

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"OCDLMgr"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"OCDLMgr"

The process TuneUpUtilitiesApp64.exe:3696 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCU\Software\TuneUp\Utilities\14.0\UtilitiesService\LiveOptimization]
"Count" = "1"

[HKCU\Software\TuneUp\Utilities\14.0\Notifications]
"ShowNotifications" = "4294966236"
"ShowTrayIcon" = "4294967295"

The process TuneUpUtilities2014WORLDW1D_en-US.exe:4020 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Wow6432Node\CLSID\{D66CD7FF-5B94-2BEF-EE5D-155F17BE19A5} ]
"data" = "b6bc748a8b0547cd8009d11910c5e887"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect" = "1"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"Flags" = "8"
"x-sid" = "1_tuu2014x_xx-xx_2200546"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History]
"CachePrefix" = "Visited:"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"Install" = "2015-01-05 17:15:02"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "0"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"tbar" = "0-0-0-0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "09 60 00 23 0B 29 D0 01"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content]
"CachePrefix" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached]
"{17FE9752-0B5A-4665-84CD-569794602F5C} {7F9185B0-CB92-43C5-80A9-92277A4F7B54} 0xFFFF" = "01 00 00 00 00 00 00 00 CB AA 67 30 0B 29 D0 01"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"CurSID" = "2200546"
"mid" = "YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZQ~~"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Setup]
"(Default)" = "{04F8C7B6-DE1D-40E2-B1E8-8815B1F7C820}"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"Download" = "2015-01-05 17:15:00"

"frp" = ""
"SID" = "2200546"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 47 00 00 00 09 00 00 00 00 00 00 00"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies]
"CachePrefix" = "Cookie:"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionReason" = "1"
"WpadDecision" = "0"

Proxy settings are disabled:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

The Trojan deletes the following value(s) in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyOverride"
"AutoDetect"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyServer"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"

The process SkypeSetupFull.exe:3324 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCU\Software\Classes\Local Settings\MuiCache\29\52C64B7E]
"LanguageList" = "en-US, en"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl" = ""

[HKLM\SOFTWARE\Wow6432Node\Skype\Installer]
"DownloadContentLength" = "0"

[HKLM\SOFTWARE\Wow6432Node\Skype\Phone\UI]
"InstallExitCode" = "50001"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionReason" = "1"

[HKLM\SOFTWARE\Wow6432Node\Skype\Installer]
"C2CIE" = "255"
"C2CFF" = "255"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer]
"GlobalAssocChangedCounter" = "35"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadNetworkName" = "Network 3"

[HKLM\SOFTWARE\Wow6432Node\Skype\Installer]
"MSNHPIE" = "255"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "0"

[HKLM\SOFTWARE\Wow6432Node\Skype\Installer]
"MSNHPGC" = "255"
"BINGSRCHIE" = "255"
"DonwloadLastModified" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "00 F2 6D 0F 0B 29 D0 01"

[HKLM\SOFTWARE\Wow6432Node\Skype\Phone\UI]
"FinishedInstallation" = "1420478096"

[HKLM\SOFTWARE\Wow6432Node\Skype\Phone]
"FE_Label" = "550"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecision" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content]
"CachePrefix" = ""

[HKLM\SOFTWARE\Wow6432Node\Skype\Phone\UI\General]
"SkypeSetup" = "SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce"

[HKLM\SOFTWARE\Wow6432Node\Skype\Installer]
"DownloadETag" = ""
"BINGSRCHGC" = "255"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionTime" = "10 CD EF 1E 0B 29 D0 01"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History]
"CachePrefix" = "Visited:"

[HKLM\SOFTWARE\Wow6432Node\Skype\Installer]
"YSRCH" = "255"
"C2CGC" = "255"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 45 00 00 00 09 00 00 00 00 00 00 00"

[HKLM\SOFTWARE\Wow6432Node\Skype\Installer]
"MSNHPFF" = "255"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecision" = "0"

[HKLM\SOFTWARE\Wow6432Node\Skype\Installer]
"yhp" = "255"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies]
"CachePrefix" = "Cookie:"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionReason" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionReason" = "1"

"WpadDecision" = "0"

[HKLM\SOFTWARE\Wow6432Node\Skype\Installer]
"BINGSRCHFF" = "255"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionTime" = "10 CD EF 1E 0B 29 D0 01"

Proxy settings are disabled:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

To automatically run itself each time Windows is booted, the Trojan adds the following link to its file to the system registry autorun key:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype" = "%Program Files% (x86)\Skype\Phone\Skype.exe /minimized /regrun"

The Trojan deletes the following value(s) in system registry:

[HKLM\SOFTWARE\Wow6432Node\Skype\Phone\UI]
"FinishedInstallation"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDetectedUrl"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyOverride"
"AutoDetect"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyServer"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDetectedUrl"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"

[HKLM\SOFTWARE\Wow6432Node\Skype\Phone\UI]
"InstallType"
"InstalledUDP"

The process RunDll32.exe:2788 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "89 9F 69 0B 0B 29 D0 01"

[HKLM\System\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations" = "\??\%Program Files% (x86)\Google\Update\1.3.24.15, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\python.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\, , \??\C:\Users\"%CurrentUserName%"\AppData\Roaming\rmi\aol-desktop-9.7 Rev 4343.19.exe, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll,"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionReason" = "1"
"WpadDetectedUrl" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 40 00 00 00 09 00 00 00 00 00 00 00"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecision" = "0"

Proxy settings are disabled:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

The Trojan deletes the following value(s) in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"
"ProxyServer"
"ProxyOverride"
"AutoDetect"

The process MsiExec.exe:2648 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Wow6432Node\CLSID\{64A3D41B-61A5-4834-9A42-FDE180191267}]
"ProductType" = "01 00 00 00 C8 34 7B F6 DF 07 01 00 01 00 05 00"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"LicenseType" = "3"
"LicenseExpired" = "0"

[HKCR\Wow6432Node\CLSID\{64A3D41B-61A5-4834-9A42-FDE180191267}]
"Version" = "52"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"LicenseBeta" = "0"

The process MsiExec.exe:3172 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKU\.DEFAULT\SOFTWARE\Classes\Local Settings\MuiCache\29\52C64B7E]
"LanguageList" = "en-US, en"

The process MsiExec.exe:1872 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"ProductKey" = "TAKRP-HXBLL-R7QNG-AGWOP-W62SU-UKMXG"

The process roadie.exe:3992 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCU\Software\Classes\Local Settings\MuiCache\29\52C64B7E]
"LanguageList" = "en-US, en"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History]
"CachePrefix" = "Visited:"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionReason" = "1"

[HKCU\Software\America Online\VID]
"VID" = "7112392493116416-284416134303502"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadNetworkName" = "Network 3"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "89 9F 69 0B 0B 29 D0 01"

[HKLM\SOFTWARE\Wow6432Node\America Online\IPH\waol_0.4343.19.1]
"SuperAttemptID" = "AED94D8D-D83C-4751-AE7D-B78F01D97A25"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecision" = "0"

[HKLM\System\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations" = "\??\%Program Files% (x86)\Google\Update\1.3.24.15, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\python.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\, , \??\C:\Users\"%CurrentUserName%"\AppData\Roaming\rmi\aol-desktop-9.7 Rev 4343.19.exe, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp, , \??\C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\du340b.exe, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\roadie.exe,"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content]
"CachePrefix" = ""

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer]
"GlobalAssocChangedCounter" = "40"

[HKLM\SOFTWARE\Wow6432Node\{31ADB854-D2B8-4bcd-A48B-0284831E89C5}]
"0" = "C:\Users\"%CurrentUserName%"\AppData\Local\Temp\roadie.exe"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionReason" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionTime" = "00 F2 6D 0F 0B 29 D0 01"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies]
"CachePrefix" = "Cookie:"

[HKLM\SOFTWARE\Wow6432Node\America Online\IPH\waol_0.4343.19.1]
"DLComplete" = "0"
"DLResSessions" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 44 00 00 00 09 00 00 00 00 00 00 00"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecision" = "0"

[HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\3921C115C15D0ECA5CCB5BC4F07D21D8050B566A]
"Blob" = "0F 00 00 00 01 00 00 00 14 00 00 00 B3 1D A1 8F"

[HKLM\SOFTWARE\Wow6432Node\America Online\IPH\waol_0.4343.19.1]
"InstSessions" = "0"

[HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\2796BAE63F1801E277261BA0D77770028F20EEE4]
"Blob" = "0F 00 00 00 01 00 00 00 14 00 00 00 5D 82 AD B9"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionReason" = "1"

[HKLM\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\A1446BCE0C874DF0F2C3F61DA5C9A2BCF9DAB204]
"Blob" = "14 00 00 00 01 00 00 00 14 00 00 00 61 A6 99 6D"

[HKLM\SOFTWARE\Wow6432Node\America Online\IPH\waol_0.4343.19.1]
"DLSessions" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionTime" = "00 F2 6D 0F 0B 29 D0 01"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecision" = "0"

[HKLM\SOFTWARE\Wow6432Node\America Online\IPH\waol_0.4343.19.1]
"CDSessions" = "0"

Proxy settings are disabled:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

The Trojan deletes the following registry key(s):

[HKLM\SOFTWARE\Wow6432Node\{31ADB854-D2B8-4bcd-A48B-0284831E89C5}]

The Trojan deletes the following value(s) in system registry:

[HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates]
"3921C115C15D0ECA5CCB5BC4F07D21D8050B566A"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDetectedUrl"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyServer"
"ProxyOverride"
"AutoDetect"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Internet Explorer\LowRegistry]
"AddToFavoritesInitialSelection"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDetectedUrl"

[HKCU\Software\Microsoft\Internet Explorer\LowRegistry]
"AddToFeedsInitialSelection"

[HKLM\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates]
"A1446BCE0C874DF0F2C3F61DA5C9A2BCF9DAB204"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"

[HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates]
"2796BAE63F1801E277261BA0D77770028F20EEE4"

The process TUInstallHelper.exe:3452 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Rtng.Simple.Proto]
"SimpleHeader" = "76 7F A5 C1 38 6A 7E C5 D2 52 8F 9D 1A C4 18 FE"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"x-sid" = "1_tuu2014k_en-US_2200546"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"UILanguage" = "en-US"

[HKCR\Rtng.Simple.Proto]
"SimpleBodyPrefix" = "D9 47 6B CA D8 DE C6 D2 FE 75 E9 C7 58 E8 95 0F"
"SimpleBodySuffix" = "06 67 20 DA 36 EF 72 C4 AC 2D 79 D2 34 59 59 C6"

The process TUInstallHelper.exe:2552 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Rtng.Simple.Proto]
"SimpleBodyPrefix" = "D9 47 6B CA D8 DE C6 D2 FE 75 E9 C7 58 E8 95 0F"
"SimpleBodySuffix" = "06 67 20 DA 36 EF 72 C4 AC 2D 79 D2 34 59 59 C6"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"x-sid" = "1_tuu2014k_en-US_2200546"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"UILanguage" = "en-US"

[HKCR\Rtng.Simple.Proto]
"SimpleHeader" = "76 7F A5 C1 38 6A 7E C5 D2 52 8F 9D 1A C4 18 FE"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities]
"T-E-S-T-T-U-N-E-U-P-U-T-I-L-I-T-I-E-S" = ""

The Trojan deletes the following value(s) in system registry:

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities]
"T-E-S-T-T-U-N-E-U-P-U-T-I-L-I-T-I-E-S"

The process TUInstallHelper.exe:1992 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Rtng.Simple.Proto]
"SimpleBodyPrefix" = "D9 47 6B CA D8 DE C6 D2 FE 75 E9 C7 58 E8 95 0F"
"SimpleBodySuffix" = "06 67 20 DA 36 EF 72 C4 AC 2D 79 D2 34 59 59 C6"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"x-sid" = "1_tuu2014t_en-US_2200546"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"UILanguage" = "en-US"
"mid" = "YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZQ~~"

[HKCR\Rtng.Simple.Proto]
"SimpleHeader" = "76 7F A5 C1 38 6A 7E C5 D2 52 8F 9D 1A C4 18 FE"

The process TUInstallHelper.exe:1188 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Rtng.Simple.Proto]
"SimpleHeader" = "76 7F A5 C1 38 6A 7E C5 D2 52 8F 9D 1A C4 18 FE"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"x-sid" = "1_tuu2014k_en-US_2200546"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"UILanguage" = "en-US"

[HKCR\Rtng.Simple.Proto]
"SimpleBodyPrefix" = "D9 47 6B CA D8 DE C6 D2 FE 75 E9 C7 58 E8 95 0F"
"SimpleBodySuffix" = "06 67 20 DA 36 EF 72 C4 AC 2D 79 D2 34 59 59 C6"

The process TUInstallHelper.exe:3888 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Wow6432Node\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\TuneUp Undelete]
"Icon" = "%Program Files% (x86)\TuneUp Utilities 2014\Undelete.exe,0"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"FirstStart" = "83 D1 4D 48 A5 D1 B5 E8 66 FE 3C 82 26 9B 64 9B"
"RunPodRevertAll" = "1"

[HKCR\Rtng.Simple.Proto]
"SimpleBodyPrefix" = "D9 47 6B CA D8 DE C6 D2 FE 75 E9 C7 58 E8 95 0F"
"SimpleBodySuffix" = "06 67 20 DA 36 EF 72 C4 AC 2D 79 D2 34 59 59 C6"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"x-sid" = "1_tuu2014k_en-US_2200546"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"UILanguage" = "en-US"

[HKCR\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\TuneUp Undelete]
"(Default)" = "TuneUp Undelete"

[HKCR\Wow6432Node\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\TuneUp Undelete\Command]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\Undelete.exe"

[HKCR\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\TuneUp Undelete]
"Icon" = "%Program Files% (x86)\TuneUp Utilities 2014\Undelete.exe,0"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"PKStatus" = "t"
"InstallDate" = "5A F6 73 AC 39 83 E4 40"

[HKCR\Rtng.Simple.Proto]
"SimpleHeader" = "76 7F A5 C1 38 6A 7E C5 D2 52 8F 9D 1A C4 18 FE"

[HKCR\Wow6432Node\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\TuneUp Undelete]
"(Default)" = "TuneUp Undelete"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities]
"T-E-S-T-T-U-N-E-U-P-U-T-I-L-I-T-I-E-S" = ""

[HKCR\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\TuneUp Undelete\Command]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\Undelete.exe"

The Trojan deletes the following value(s) in system registry:

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"PKH"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities]
"T-E-S-T-T-U-N-E-U-P-U-T-I-L-I-T-I-E-S"

The process TUInstallHelper.exe:1680 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"ProgManSub" = "TuneUp Program Deactivator|Relieves your system by disabling programs that are rarely used or not needed.|ProgramDeactivator.exe"
"ShredderSub" = "TuneUp Shredder|Deletes files and directories with the highest level of security.|Shredder.exe"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"x-sid" = "1_tuu2014k_en-US_2200546"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"UILanguage" = "en-US"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E]
"@zipfldr.dll,-10148" = "Compressed (zipped) folder"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"EnergyOptimizerSub" = "TuneUp Economy Mode|Enables optimum use of your PCs energy-saving potential.|EnergyOptimizer.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"FXSRESM.dll,-120" = "Fax recipient"

[HKCR\Rtng.Simple.Proto]
"SimpleBodyPrefix" = "D9 47 6B CA D8 DE C6 D2 FE 75 E9 C7 58 E8 95 0F"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@%Program Files%\Common Files\Microsoft Shared\Ink]
"mip.exe,-291" = "Math Input Panel"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"mstsc.exe,-4000" = "Remote Desktop Connection"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@%Program Files%\Common Files\Microsoft Shared\Ink]
"ShapeCollector.exe,-298" = "Personalize Handwriting Recognition"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"odbcint.dll,-1310" = "Data Sources (ODBC)"
"miguiresource.dll,-201" = "Task Scheduler"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"RepairWizardSub" = "TuneUp Repair Wizard|Fixes typical computer and display issues.|RepairWizard.exe"
"DesktopOCM" = "TuneUp 1-Click Maintenance|Carries out TuneUp 1-Click Maintenance.|OneClick.exe"
"DriveDefragSub" = "TuneUp Drive Defrag|Analyzes and defragments your hard disks.|DriveDefrag.exe"
"BrowserCleanerSub" = "TuneUp Browser Cleaner|Provides options for cleaning up installed browsers.|BrowserCleaner.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"NetProjW.dll,-501" = "Connect to a Network Projector"
"OobeFldr.dll,-33056" = "Getting Started"
"sdcpl.dll,-101" = "Backup and Restore"
"msinfo32.exe,-100" = "System Information"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32\WindowsPowerShell\v1.0]
"powershell.exe,-101" = "Windows PowerShell ISE"
"powershell.exe,-102" = "Windows PowerShell ISE (x86)"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"pmcsnap.dll,-700" = "Print Management"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"RegDefragSub" = "TuneUp Registry Defrag|Defragments the registry and reduces its size.|RegistryDefrag.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"gameux.dll,-10082" = "Games Explorer"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"MenuHelpSub" = "TuneUp Utilities Help|Shows the TuneUp Utilities help file.|main_vista_7.chm"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"recdisc.exe,-2000" = "Create a System Repair Disc"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"StylerSub" = "TuneUp Styler|Allows you to personalize the appearance of Windows.|Styler.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"SnippingTool.exe,-15051" = "Snipping Tool"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E]
"@sendmail.dll,-21" = "Desktop (create shortcut)"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"StartUpOptimizerSub" = "TuneUp StartUp Optimizer|Optimizes system startup and shutdown.|StartupOptimizer.exe"
"RegCleanerSub" = "TuneUp Registry Cleaner|Cleans the registry by removing invalid references and entries.|RegistryCleaner.exe"

[HKCR\Rtng.Simple.Proto]
"SimpleHeader" = "76 7F A5 C1 38 6A 7E C5 D2 52 8F 9D 1A C4 18 FE"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32\migwiz]
"wet.dll,-588" = "Windows Easy Transfer"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"MenuIntegratorSub" = "TuneUp Utilities 2014|Starts TuneUp Utilities 2014.|Integrator.exe"
"RegEditSub" = "TuneUp Registry Editor|Helps you when editing and browsing through the registry.|RegistryEditor.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"rstrui.exe,-100" = "System Restore"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"DesktopIntegrator" = "TuneUp Utilities 2014|Starts TuneUp Utilities 2014.|Integrator.exe"
"SettingCenterSub" = "TuneUp Setting Center|A central point for modifying all TuneUp Utilities settings.|SettingCenter.exe"
"UninstallManagerSub" = "TuneUp Uninstall Manager|Shows all installed programs and allows you to uninstall programs.|UninstallManager.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"dfrgui.exe,-103" = "Disk Defragmenter"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"ReportCenterSub" = "TuneUp Optimization Report|Shows the TuneUp Optimization Report.|Report.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"AuthFWGP.dll,-20" = "Windows Firewall with Advanced Security"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Taskband]
"FavoritesChanges" = "7"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"MdSched.exe,-4001" = "Windows Memory Diagnostic"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"UpdateWizardSub" = "TuneUp Update Wizard|Keeps your version of TuneUp Utilities always up to date.|UpdateWizard.exe"
"WebsiteSub" = "TuneUp Software Website|http://www.tune-up.com"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"ie4uinit.exe,-737" = "Internet Explorer (No Add-ons)"
"msconfig.exe,-126" = "System Configuration"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Taskband]
"FavoritesResolve" = "CC 02 00 00 4C 00 00 00 01 14 02 00 00 00 00 00"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"ie4uinit.exe,-731" = "Internet Explorer"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"RescueCenterSub" = "TuneUp Rescue Center|Allows you to undo changes made to your system.|RescueCenter.exe"
"DiscspaceExplorerSub" = "TuneUp Disk Space Explorer|Shows the memory allocation of files, folders and hard disks.|DiskExplorer.exe"
"OCMSub" = "TuneUp 1-Click Maintenance|Carries out TuneUp 1-Click Maintenance.|OneClick.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"miguiresource.dll,-101" = "Event Viewer"
"XpsRchVw.exe,-102" = "XPS Viewer"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"DuplicateFinderSub" = "TuneUp Duplicate Finder|Deletes duplicate files that waste valuable space on your hard drive|DuplicateFinder.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"filemgmt.dll,-2204" = "Services"
"wsecedit.dll,-718" = "Local Security Policy"

[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache\%Program Files% (x86)\TuneUp Utilities 2014]
"Integrator.exe" = "TuneUp Utilities - Start Center"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"ShortCutCleanerSub" = "TuneUp Shortcut Cleaner|Fixes broken shortcuts.|ShortcutCleaner.exe"

[HKCR\Rtng.Simple.Proto]
"SimpleBodySuffix" = "06 67 20 DA 36 EF 72 C4 AC 2D 79 D2 34 59 59 C6"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"SNTSearch.dll,-505" = "Sticky Notes"
"sud.dll,-1" = "Default Programs"
"msra.exe,-100" = "Windows Remote Assistance"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"ProcessManagerSub" = "TuneUp Process Manager|Manages the programs currently running on your system.|ProcessManager.exe"
"DiskDoctorSub" = "TuneUp Disk Doctor|Checks the file system and the hard disk sectors.|DiskDoctor.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"SyncCenter.dll,-3000" = "Sync Center"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"DiskCleanerSub" = "TuneUp Disk Cleaner|Provides options for freeing up disk space.|DiskCleaner.exe"
"MenuIntegratorProgramsRoot" = "TuneUp Utilities 2014|Starts TuneUp Utilities 2014.|Integrator.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"WindowsAnytimeUpgradeUI.exe,-1" = "Windows Anytime Upgrade"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32\migwiz]
"wet.dll,-591" = "Windows Easy Transfer Reports"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"MenuShortcuts" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Taskband]
"Favorites" = "00 7C 01 00 00 14 00 1F 80 C8 27 34 1F 10 5C 10"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"wdc.dll,-10021" = "Performance Monitor"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E]
"@sendmail.dll,-4" = "Mail recipient"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"FXSRESM.dll,-114" = "Windows Fax and Scan"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"SystemInfoSub" = "TuneUp System Information|Shows comprehensive information about your system.|SystemInformation.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@%Program Files%\Windows Sidebar]
"sidebar.exe,-1005" = "Desktop Gadget Gallery"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"mycomput.dll,-300" = "Computer Management"
"AccessibilityCpl.dll,-10" = "Ease of Access Center"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32\Speech\SpeechUX]
"sapi.cpl,-5555" = "Windows Speech Recognition"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Taskband]
"FavoritesVersion" = "2"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"displayswitch.exe,-320" = "Connect to a Projector"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"StartUpManagerSub" = "TuneUp StartUp Manager|Allows you to configure system startup.|StartUpManager.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@%Program Files%\Windows Journal]
"Journal.exe,-3074" = "Windows Journal"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"AllUsers" = "1"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E]
"LanguageList" = "en-US, en"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"wucltux.dll,-1" = "Windows Update"
"wdc.dll,-10030" = "Resource Monitor"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"UndeleteSub" = "TuneUp Undelete|Restores files already deleted from the Recycle Bin.|Undelete.exe"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"mblctr.exe,-1008" = "Windows Mobility Center"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"FolderName" = "TuneUp Utilities 2014"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"comres.dll,-3410" = "Component Services"
"SoundRecorder.exe,-100" = "Sound Recorder"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@%Program Files%\Common Files\Microsoft Shared\Ink]
"TipTsf.dll,-80" = "Tablet PC Input Panel"

[HKCU\Software\Classes\Local Settings\MuiCache\2B\52C64B7E\@C:\Windows\system32]
"iscsicpl.dll,-5001" = "iSCSI Initiator"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Shortcuts]
"PinWandIntegrator" = "TuneUp Utilities 2014|Starts TuneUp Utilities 2014.|Integrator.exe"
"LiveOptimizerSub" = "TuneUp Live Optimization|Ensures optimal performance in every situation.|SettingCenter.exe"
"SystemControlSub" = "TuneUp System Control|Allows you to modify Windows settings.|SystemControl.exe"
"SubFolderName" = "All functions"

The Trojan deletes the following registry key(s):

[HKCU\Software\Classes\Local Settings\MuiCache\2A]
[HKCU\Software\Classes\Local Settings\MuiCache\2A\52C64B7E]

The process TUInstallHelper.exe:1112 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Rtng.Simple.Proto]
"SimpleBodyPrefix" = "D9 47 6B CA D8 DE C6 D2 FE 75 E9 C7 58 E8 95 0F"
"SimpleBodySuffix" = "06 67 20 DA 36 EF 72 C4 AC 2D 79 D2 34 59 59 C6"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"x-sid" = "1_tuu2014t_en-US_2200546"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"UILanguage" = "en-US"
"mid" = "YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZQ~~"

[HKCR\Rtng.Simple.Proto]
"SimpleHeader" = "76 7F A5 C1 38 6A 7E C5 D2 52 8F 9D 1A C4 18 FE"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities]
"T-E-S-T-T-U-N-E-U-P-U-T-I-L-I-T-I-E-S" = ""

The Trojan deletes the following value(s) in system registry:

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities]
"T-E-S-T-T-U-N-E-U-P-U-T-I-L-I-T-I-E-S"

The process TUInstallHelper.exe:1660 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Interface\{442A106D-3726-4376-913C-5DEAF6BE10E8}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Wow6432Node\CLSID\{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}]
"(Default)" = "TuneUp Shredder Shell Extension"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\SIDData\2200546]
"x-sid" = "1_tuu2014k_en-US_2200546"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"UILanguage" = "en-US"

[HKCR\AppID\{B265684E-D47E-498F-95E0-AFA2EE3F5532}]
"(Default)" = "TUTuningIndex"

[HKCR\Interface\{F1F72E58-A077-4078-BEC3-12D707EC00E2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer]
"GlobalAssocChangedCounter" = "36"

[HKCR\Interface\{806A02D9-D780-42D5-872F-006E8BDF6DD7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Rtng.Simple.Proto]
"SimpleBodyPrefix" = "D9 47 6B CA D8 DE C6 D2 FE 75 E9 C7 58 E8 95 0F"

[HKCR\AppID\{8C2A41FD-E2DC-40A1-BE90-0D15107E48AC}]
"(Default)" = "TUAnalyzeInfo"

[HKCR\Interface\{BE59ADC7-3E37-4618-BFA8-8419DF9FF7CC}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Wow6432Node\CLSID\{7986d495-ce42-4926-8afc-26dfa299cadb}\InProcServer32]
"{00711705-12C5-420B-A4E5-6413F2AB3C7B}" = "authui.dll"

[HKCR\Interface\{AB057655-D248-44FD-ACD3-1E08E782697D}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{BE59ADC7-3E37-4618-BFA8-8419DF9FF7CC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{806A02D9-D780-42D5-872F-006E8BDF6DD7}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{849B00DB-C8F7-47A7-808E-182974D311AA}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Interface\{849B00DB-C8F7-47A7-808E-182974D311AA}]
"(Default)" = "_ITuningIndexEvents"

[HKCR\Directory\shellex\ContextMenuHandlers\TuneUp Disk Space Explorer Shell Extension]
"(Default)" = "{4838CD50-7E5D-4811-9B17-C47A85539F28}"

[HKCR\Wow6432Node\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\ProgID]
"(Default)" = "TUTuningIndex.TuningIndex.1"

[HKCR\Wow6432Node\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\VersionIndependentProgID]
"(Default)" = "TUAnalyzeInfo.TUAnalyzeResult"

[HKCR\Wow6432Node\CLSID\{00711705-12C5-420B-A4E5-6413F2AB3C7B}]
"(Default)" = "TuneUp WinLogon Extension"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect" = "1"

[HKCR\Wow6432Node\CLSID\{4838CD50-7E5D-4811-9B17-C47A85539F28}\InProcServer32]
"ThreadingModel" = "Apartment"

[HKCR\Interface\{BE59ADC7-3E37-4618-BFA8-8419DF9FF7CC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\TypeLib\{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}\1.0\HELPDIR]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014"

[HKCR\Wow6432Node\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Interface\{AB057655-D248-44FD-ACD3-1E08E782697D}]
"(Default)" = "ITuningIndexCallback"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult.1\CLSID]
"(Default)" = "{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}"

[HKCR\Interface\{89BAD2AF-D87F-426E-965E-03FAA54AF0E9}]
"(Default)" = "ITuningIndexVersionInfo"

[HKCR\TypeLib\{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}\1.0]
"(Default)" = "TUTuningIndex 1.0 Type Library"

[HKCR\Wow6432Node\Interface\{442A106D-3726-4376-913C-5DEAF6BE10E8}\TypeLib]
"Version" = "1.0"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult\CurVer]
"(Default)" = "TUAnalyzeInfo.TUAnalyzeResult.1"

[HKCR\Interface\{F1F72E58-A077-4078-BEC3-12D707EC00E2}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Wow6432Node\CLSID\{00711705-12C5-420B-A4E5-6413F2AB3C7B}\InProcServer32]
"ThreadingModel" = "Apartment"

[HKCR\Wow6432Node\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\InprocServer32]
"ThreadingModel" = "Free"

[HKCR\Wow6432Node\Interface\{806A02D9-D780-42D5-872F-006E8BDF6DD7}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult]
"(Default)" = "TUAnalyzeResult Class"

[HKCR\Interface\{89BAD2AF-D87F-426E-965E-03FAA54AF0E9}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}]
"(Default)" = "TuningIndex Class"

[HKCR\Wow6432Node\CLSID\{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}\InProcServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\SDShelEx-win32.dll"

[HKCR\Interface\{F1F72E58-A077-4078-BEC3-12D707EC00E2}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{AB057655-D248-44FD-ACD3-1E08E782697D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"CurRIT" = "2"

[HKCR\TypeLib\{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}\1.0\0\win32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TUTuningIndex.dll"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult.1]
"(Default)" = "TUAnalyzeResult Class"

[HKCR\Interface\{442A106D-3726-4376-913C-5DEAF6BE10E8}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\ContextMenuHandlers\TuneUp Shredder Shell Extension]
"(Default)" = "{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}"

[HKCR\Wow6432Node\Interface\{442A106D-3726-4376-913C-5DEAF6BE10E8}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Wow6432Node\Interface\{F1F72E58-A077-4078-BEC3-12D707EC00E2}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{849B00DB-C8F7-47A7-808E-182974D311AA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Rtng.Simple.Proto]
"SimpleHeader" = "76 7F A5 C1 38 6A 7E C5 D2 52 8F 9D 1A C4 18 FE"

[HKCR\Wow6432Node\Interface\{AB057655-D248-44FD-ACD3-1E08E782697D}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\AppID\TUTuningIndex.DLL]
"AppID" = "{B265684E-D47E-498F-95E0-AFA2EE3F5532}"

[HKCR\TUTuningIndex.TuningIndex\CurVer]
"(Default)" = "TUTuningIndex.TuningIndex.1"

[HKCR\Interface\{F1F72E58-A077-4078-BEC3-12D707EC00E2}]
"(Default)" = "ITuningIndexMessageList"

[HKCR\TypeLib\{2175E935-D63F-488A-ACEC-6FAA64232D59}\1.0]
"(Default)" = "TUAnalyzeInfo 1.0 Type Library"

[HKCR\Wow6432Node\Interface\{AB057655-D248-44FD-ACD3-1E08E782697D}]
"(Default)" = "ITuningIndexCallback"

[HKCR\Wow6432Node\Interface\{AB057655-D248-44FD-ACD3-1E08E782697D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{F1F72E58-A077-4078-BEC3-12D707EC00E2}]
"(Default)" = "ITuningIndexMessageList"

[HKCR\Wow6432Node\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\InprocServer32]
"ThreadingModel" = "Apartment"

[HKCR\Wow6432Node\Interface\{89BAD2AF-D87F-426E-965E-03FAA54AF0E9}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\TUTuningIndex.TuningIndex.1]
"(Default)" = "TuningIndex Class"

[HKCR\TypeLib\{2175E935-D63F-488A-ACEC-6FAA64232D59}\1.0\HELPDIR]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014"

[HKCR\TUTuningIndex.TuningIndex.1\CLSID]
"(Default)" = "{42D67DD2-D956-4698-A502-9F59727E044A}"

[HKCR\TypeLib\{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}\1.0\FLAGS]
"(Default)" = "0"

[HKCR\Interface\{849B00DB-C8F7-47A7-808E-182974D311AA}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Wow6432Node\Interface\{AB057655-D248-44FD-ACD3-1E08E782697D}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}]
"(Default)" = "TUAnalyzeResult Class"

[HKCR\Wow6432Node\Interface\{2C0D27BA-0142-43F8-8BB7-1BA7DE0088D5}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{442A106D-3726-4376-913C-5DEAF6BE10E8}]
"(Default)" = "ITuningIndex"

[HKCR\Wow6432Node\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\VersionIndependentProgID]
"(Default)" = "TUTuningIndex.TuningIndex"

[HKCR\Wow6432Node\CLSID\{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}\InProcServer32]
"ThreadingModel" = "Apartment"

[HKCR\Wow6432Node\CLSID\{4838CD50-7E5D-4811-9B17-C47A85539F28}]
"(Default)" = "TuneUp Disk Space Explorer Shell Extension"

[HKCR\Interface\{89BAD2AF-D87F-426E-965E-03FAA54AF0E9}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\TypeLib\{2175E935-D63F-488A-ACEC-6FAA64232D59}\1.0\0\win32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TUAnalyzeInfo.dll"

[HKCR\Wow6432Node\Interface\{BE59ADC7-3E37-4618-BFA8-8419DF9FF7CC}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{2C0D27BA-0142-43F8-8BB7-1BA7DE0088D5}]
"(Default)" = "ITUAnalyzeResult"

[HKCR\Wow6432Node\Interface\{89BAD2AF-D87F-426E-965E-03FAA54AF0E9}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{806A02D9-D780-42D5-872F-006E8BDF6DD7}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{442A106D-3726-4376-913C-5DEAF6BE10E8}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\TypeLib\{2175E935-D63F-488A-ACEC-6FAA64232D59}\1.0\FLAGS]
"(Default)" = "0"

[HKCR\*\shellex\ContextMenuHandlers\TuneUp Shredder Shell Extension]
"(Default)" = "{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}"

[HKCR\Wow6432Node\Interface\{849B00DB-C8F7-47A7-808E-182974D311AA}\TypeLib]
"Version" = "1.0"

[HKCR\Directory\shellex\ContextMenuHandlers\TuneUp Shredder Shell Extension]
"(Default)" = "{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}"

[HKCR\Wow6432Node\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\TypeLib]
"(Default)" = "{2175E935-D63F-488A-ACEC-6FAA64232D59}"

[HKCR\Wow6432Node\Interface\{BE59ADC7-3E37-4618-BFA8-8419DF9FF7CC}]
"(Default)" = "ITuningIndexMessage"

[HKCR\Wow6432Node\Interface\{BE59ADC7-3E37-4618-BFA8-8419DF9FF7CC}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Interface\{2C0D27BA-0142-43F8-8BB7-1BA7DE0088D5}\TypeLib]
"(Default)" = "{2175E935-D63F-488A-ACEC-6FAA64232D59}"

[HKCR\TUTuningIndex.TuningIndex]
"(Default)" = "TuningIndex Class"

[HKCR\Interface\{BE59ADC7-3E37-4618-BFA8-8419DF9FF7CC}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{849B00DB-C8F7-47A7-808E-182974D311AA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Interface\{849B00DB-C8F7-47A7-808E-182974D311AA}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\CLSID\{4838CD50-7E5D-4811-9B17-C47A85539F28}\InProcServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\DseShExt-x86.dll"

[HKCR\Interface\{442A106D-3726-4376-913C-5DEAF6BE10E8}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\TUTuningIndex.TuningIndex\CLSID]
"(Default)" = "{42D67DD2-D956-4698-A502-9F59727E044A}"

[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant]
"ExecutablesToExclude" = "%Program Files% (x86)\TuneUp Utilities 2014\TUInstallHelper.exe"

[HKCR\Wow6432Node\Interface\{849B00DB-C8F7-47A7-808E-182974D311AA}]
"(Default)" = "_ITuningIndexEvents"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult\CLSID]
"(Default)" = "{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}"

[HKCR\Wow6432Node\Interface\{89BAD2AF-D87F-426E-965E-03FAA54AF0E9}]
"(Default)" = "ITuningIndexVersionInfo"

[HKCR\Interface\{442A106D-3726-4376-913C-5DEAF6BE10E8}]
"(Default)" = "ITuningIndex"

[HKCR\Wow6432Node\Interface\{806A02D9-D780-42D5-872F-006E8BDF6DD7}]
"(Default)" = "ITuningIndexMessageEnumerator"

[HKCR\Wow6432Node\Interface\{2C0D27BA-0142-43F8-8BB7-1BA7DE0088D5}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{F1F72E58-A077-4078-BEC3-12D707EC00E2}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Wow6432Node\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\InprocServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TUTuningIndex.dll"

[HKCR\Wow6432Node\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\InprocServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TUAnalyzeInfo.dll"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}" = "TuneUp Shredder Shell Extension"

[HKCR\Wow6432Node\Interface\{F1F72E58-A077-4078-BEC3-12D707EC00E2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{89BAD2AF-D87F-426E-965E-03FAA54AF0E9}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Rtng.Simple.Proto]
"SimpleBodySuffix" = "06 67 20 DA 36 EF 72 C4 AC 2D 79 D2 34 59 59 C6"

[HKCR\Interface\{BE59ADC7-3E37-4618-BFA8-8419DF9FF7CC}]
"(Default)" = "ITuningIndexMessage"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "0"

[HKCR\Wow6432Node\Interface\{89BAD2AF-D87F-426E-965E-03FAA54AF0E9}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities]
"T-E-S-T-T-U-N-E-U-P-U-T-I-L-I-T-I-E-S" = ""

[HKCR\Wow6432Node\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\ProgID]
"(Default)" = "TUAnalyzeInfo.TUAnalyzeResult.1"

[HKCR\Wow6432Node\Interface\{2C0D27BA-0142-43F8-8BB7-1BA7DE0088D5}\TypeLib]
"(Default)" = "{2175E935-D63F-488A-ACEC-6FAA64232D59}"

[HKCR\Wow6432Node\Interface\{806A02D9-D780-42D5-872F-006E8BDF6DD7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4838CD50-7E5D-4811-9B17-C47A85539F28}" = "TuneUp Disk Space Explorer Shell Extension"

[HKCR\AppID\TUAnalyzeInfo.DLL]
"AppID" = "{8C2A41FD-E2DC-40A1-BE90-0D15107E48AC}"

[HKCR\Interface\{806A02D9-D780-42D5-872F-006E8BDF6DD7}]
"(Default)" = "ITuningIndexMessageEnumerator"

[HKCR\Wow6432Node\CLSID\{7986d495-ce42-4926-8afc-26dfa299cadb}\InProcServer32]
"(Default)" = "authui.dll"

[HKCR\Wow6432Node\Interface\{2C0D27BA-0142-43F8-8BB7-1BA7DE0088D5}]
"(Default)" = "ITUAnalyzeResult"

[HKCR\Interface\{2C0D27BA-0142-43F8-8BB7-1BA7DE0088D5}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{2C0D27BA-0142-43F8-8BB7-1BA7DE0088D5}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\CLSID\{00711705-12C5-420B-A4E5-6413F2AB3C7B}\InProcServer32]
"(Default)" = "%SystemRoot%\SysWow64\authuitu.dll"

[HKCR\Interface\{AB057655-D248-44FD-ACD3-1E08E782697D}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\Interface\{806A02D9-D780-42D5-872F-006E8BDF6DD7}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

The Trojan deletes the following value(s) in system registry:

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"
"IntranetName"

[HKCR\Wow6432Node\CLSID\{7986d495-ce42-4926-8afc-26dfa299cadb}\InProcServer32]
"{00711705-12C5-420B-A4E5-6413F2AB3C7B}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4838CD50-7E5D-4811-9B17-C47A85539F28}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities]
"T-E-S-T-T-U-N-E-U-P-U-T-I-L-I-T-I-E-S"

The process ProcessManager64.exe:2980 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Wow6432Node\Interface\{D8CD5EFB-182D-4B1A-AFE9-D91EC7A9FED1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{D8CD5EFB-182D-4B1A-AFE9-D91EC7A9FED1}]
"(Default)" = "IProcessInfo64"

[HKCR\ProcessManager64.ProcessInfo64.1]
"(Default)" = "ProcessInfo64 Class"

[HKCR\AppID\ProcessManager64.EXE]
"AppID" = "{DE9B28DF-8120-46B0-93FC-4F2EBCE7A29D}"

[HKCR\Wow6432Node\Interface\{D8CD5EFB-182D-4B1A-AFE9-D91EC7A9FED1}\TypeLib]
"Version" = "1.0"

[HKCR\TypeLib\{8195A3CB-8892-4914-A680-FEBD2C1A2EC2}\1.0\HELPDIR]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014"

[HKCR\ProcessManager64.ProcessInfo64\CurVer]
"(Default)" = "ProcessManager64.ProcessInfo64.1"

[HKCR\TypeLib\{8195A3CB-8892-4914-A680-FEBD2C1A2EC2}\1.0\FLAGS]
"(Default)" = "0"

[HKCR\Interface\{D8CD5EFB-182D-4B1A-AFE9-D91EC7A9FED1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\AppID\{DE9B28DF-8120-46B0-93FC-4F2EBCE7A29D}]
"(Default)" = "ProcessManager64"

[HKCR\CLSID\{8443292F-BFCE-4C79-8192-922DBA7B2866}\TypeLib]
"(Default)" = "{8195A3CB-8892-4914-A680-FEBD2C1A2EC2}"

[HKCR\Wow6432Node\Interface\{D8CD5EFB-182D-4B1A-AFE9-D91EC7A9FED1}\TypeLib]
"(Default)" = "{8195A3CB-8892-4914-A680-FEBD2C1A2EC2}"

[HKCR\CLSID\{8443292F-BFCE-4C79-8192-922DBA7B2866}\VersionIndependentProgID]
"(Default)" = "ProcessManager64.ProcessInfo64"

[HKCR\ProcessManager64.ProcessInfo64.1\CLSID]
"(Default)" = "{8443292F-BFCE-4C79-8192-922DBA7B2866}"

[HKCR\CLSID\{8443292F-BFCE-4C79-8192-922DBA7B2866}\LocalServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\ProcessManager64.exe"

[HKCR\CLSID\{8443292F-BFCE-4C79-8192-922DBA7B2866}]
"(Default)" = "ProcessInfo64 Class"

[HKCR\Interface\{D8CD5EFB-182D-4B1A-AFE9-D91EC7A9FED1}\TypeLib]
"Version" = "1.0"

[HKCR\CLSID\{8443292F-BFCE-4C79-8192-922DBA7B2866}\ProgID]
"(Default)" = "ProcessManager64.ProcessInfo64.1"

[HKCR\Interface\{D8CD5EFB-182D-4B1A-AFE9-D91EC7A9FED1}\TypeLib]
"(Default)" = "{8195A3CB-8892-4914-A680-FEBD2C1A2EC2}"

[HKCR\ProcessManager64.ProcessInfo64]
"(Default)" = "ProcessInfo64 Class"

[HKCR\ProcessManager64.ProcessInfo64\CLSID]
"(Default)" = "{8443292F-BFCE-4C79-8192-922DBA7B2866}"

[HKCR\TypeLib\{8195A3CB-8892-4914-A680-FEBD2C1A2EC2}\1.0\0\win64]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\ProcessManager64.exe"

[HKCR\Interface\{D8CD5EFB-182D-4B1A-AFE9-D91EC7A9FED1}]
"(Default)" = "IProcessInfo64"

[HKCR\TypeLib\{8195A3CB-8892-4914-A680-FEBD2C1A2EC2}\1.0]
"(Default)" = "ProcessManager64 1.0 Type Library"

The process waol-0.4343.19.1.exe:3636 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies]
"CachePrefix" = "Cookie:"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "72 91 7F 32 0B 29 D0 01"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecision" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecision" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History]
"CachePrefix" = "Visited:"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content]
"CachePrefix" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionReason" = "1"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionReason" = "1"

[HKCU\Software\America Online\VID]
"VID" = "8498931827434496-329728342310253"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadNetworkName" = "Network 3"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl" = ""

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 4A 00 00 00 09 00 00 00 00 00 00 00"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecision" = "0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionReason" = "1"

"WpadDecisionTime" = "31 36 16 62 0B 29 D0 01"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionTime" = "31 36 16 62 0B 29 D0 01"

Proxy settings are disabled:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

The Trojan deletes the following value(s) in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDetectedUrl"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyServer"

"ProxyOverride"
"AutoDetect"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDetectedUrl"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"

The Trojan disables automatic startup of the application by deleting the following autorun value:

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"AOLRebootNeeded"

The process aol-desktop-9.7 Rev 4343.19.exe:1188 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\3921C115C15D0ECA5CCB5BC4F07D21D8050B566A]
"Blob" = "03 00 00 00 01 00 00 00 14 00 00 00 39 21 C1 15"

[HKLM\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates\A1446BCE0C874DF0F2C3F61DA5C9A2BCF9DAB204]
"Blob" = "03 00 00 00 01 00 00 00 14 00 00 00 A1 44 6B CE"

[HKLM\System\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations" = "\??\%Program Files% (x86)\Google\Update\1.3.24.15, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\python.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\, , \??\C:\Users\"%CurrentUserName%"\AppData\Roaming\rmi\aol-desktop-9.7 Rev 4343.19.exe,"

The Trojan deletes the following value(s) in system registry:

[HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates]
"3921C115C15D0ECA5CCB5BC4F07D21D8050B566A"

[HKLM\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates]
"A1446BCE0C874DF0F2C3F61DA5C9A2BCF9DAB204"

The process regsvr32.exe:208 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\CLSID\{00711705-12C5-420B-A4E5-6413F2AB3C7B}\InProcServer32]
"(Default)" = "%SystemRoot%\System32\authuitu.dll"

[HKCR\CLSID\{7986d495-ce42-4926-8afc-26dfa299cadb}\InProcServer32]
"(Default)" = "authui.dll"
"{00711705-12C5-420B-A4E5-6413F2AB3C7B}" = "authui.dll"

[HKCR\CLSID\{00711705-12C5-420B-A4E5-6413F2AB3C7B}\InProcServer32]
"ThreadingModel" = "Apartment"

[HKCR\CLSID\{00711705-12C5-420B-A4E5-6413F2AB3C7B}]
"(Default)" = "TuneUp WinLogon Extension"

The Trojan deletes the following value(s) in system registry:

[HKCR\CLSID\{7986d495-ce42-4926-8afc-26dfa299cadb}\InProcServer32]
"{00711705-12C5-420B-A4E5-6413F2AB3C7B}"

The process regsvr32.exe:1728 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\TUTuningIndex.TuningIndex\CLSID]
"(Default)" = "{42D67DD2-D956-4698-A502-9F59727E044A}"

[HKCR\AppID\TUTuningIndex.DLL]
"AppID" = "{B265684E-D47E-498F-95E0-AFA2EE3F5532}"

[HKCR\TUTuningIndex.TuningIndex\CurVer]
"(Default)" = "TUTuningIndex.TuningIndex.1"

[HKCR\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\VersionIndependentProgID]
"(Default)" = "TUTuningIndex.TuningIndex"

[HKCR\TUTuningIndex.TuningIndex.1]
"(Default)" = "TuningIndex Class"

[HKCR\TUTuningIndex.TuningIndex]
"(Default)" = "TuningIndex Class"

[HKCR\TUTuningIndex.TuningIndex.1\CLSID]
"(Default)" = "{42D67DD2-D956-4698-A502-9F59727E044A}"

[HKCR\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\TypeLib]
"(Default)" = "{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}"

[HKCR\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\InprocServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TUTuningIndex64.dll"

[HKCR\AppID\{B265684E-D47E-498F-95E0-AFA2EE3F5532}]
"(Default)" = "TUTuningIndex"

[HKCR\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\InprocServer32]
"ThreadingModel" = "Free"

[HKCR\TypeLib\{E6A1D752-AAD5-4137-AC59-9D0AACC5C4B6}\1.0\0\win64]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TUTuningIndex64.dll"

[HKCR\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}\ProgID]
"(Default)" = "TUTuningIndex.TuningIndex.1"

[HKCR\CLSID\{42D67DD2-D956-4698-A502-9F59727E044A}]
"(Default)" = "TuningIndex Class"

The process regsvr32.exe:2348 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\CLSID\{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}\InProcServer32]
"ThreadingModel" = "Apartment"

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}" = "TuneUp Shredder Shell Extension"

[HKCR\*\shellex\ContextMenuHandlers\TuneUp Shredder Shell Extension]
"(Default)" = "{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}"

[HKCR\Directory\shellex\ContextMenuHandlers\TuneUp Shredder Shell Extension]
"(Default)" = "{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}"

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer]
"GlobalAssocChangedCounter" = "53"

[HKCR\CLSID\{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}]
"(Default)" = "TuneUp Shredder Shell Extension"

[HKCR\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\ContextMenuHandlers\TuneUp Shredder Shell Extension]
"(Default)" = "{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}"

[HKCR\CLSID\{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}\InProcServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\SDShelEx-x64.dll"

The Trojan deletes the following registry key(s):

[HKCR\Directory\shellex\ContextMenuHandlers\TuneUp Shredder Shell Extension]
[HKCR\*\shellex\ContextMenuHandlers\TuneUp Shredder Shell Extension]

The Trojan deletes the following value(s) in system registry:

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}"

The process regsvr32.exe:3212 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\CLSID\{4838CD50-7E5D-4811-9B17-C47A85539F28}\InProcServer32]
"ThreadingModel" = "Apartment"

[HKCR\CLSID\{4838CD50-7E5D-4811-9B17-C47A85539F28}]
"(Default)" = "TuneUp Disk Space Explorer Shell Extension"

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer]
"GlobalAssocChangedCounter" = "55"

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4838CD50-7E5D-4811-9B17-C47A85539F28}" = "TuneUp Disk Space Explorer Shell Extension"

[HKCR\CLSID\{4838CD50-7E5D-4811-9B17-C47A85539F28}\InProcServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\DseShExt-x64.dll"

[HKCR\Directory\shellex\ContextMenuHandlers\TuneUp Disk Space Explorer Shell Extension]
"(Default)" = "{4838CD50-7E5D-4811-9B17-C47A85539F28}"

The Trojan deletes the following registry key(s):

[HKCR\Directory\shellex\ContextMenuHandlers\TuneUp Disk Space Explorer Shell Extension]

The Trojan deletes the following value(s) in system registry:

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{4838CD50-7E5D-4811-9B17-C47A85539F28}"

The process regsvr32.exe:2612 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\InprocServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TUAnalyzeInfo64.dll"

[HKCR\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\ProgID]
"(Default)" = "TUAnalyzeInfo.TUAnalyzeResult.1"

[HKCR\AppID\{8C2A41FD-E2DC-40A1-BE90-0D15107E48AC}]
"(Default)" = "TUAnalyzeInfo"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult.1]
"(Default)" = "TUAnalyzeResult Class"

[HKCR\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\TypeLib]
"(Default)" = "{2175E935-D63F-488A-ACEC-6FAA64232D59}"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult.1\CLSID]
"(Default)" = "{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}"

[HKCR\AppID\TUAnalyzeInfo.DLL]
"AppID" = "{8C2A41FD-E2DC-40A1-BE90-0D15107E48AC}"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult\CLSID]
"(Default)" = "{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult]
"(Default)" = "TUAnalyzeResult Class"

[HKCR\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}]
"(Default)" = "TUAnalyzeResult Class"

[HKCR\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\InprocServer32]
"ThreadingModel" = "Apartment"

[HKCR\TypeLib\{2175E935-D63F-488A-ACEC-6FAA64232D59}\1.0\0\win64]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TUAnalyzeInfo64.dll"

[HKCR\TUAnalyzeInfo.TUAnalyzeResult\CurVer]
"(Default)" = "TUAnalyzeInfo.TUAnalyzeResult.1"

[HKCR\CLSID\{FD8DB406-E813-4FF5-BEB0-6C6DC373B985}\VersionIndependentProgID]
"(Default)" = "TUAnalyzeInfo.TUAnalyzeResult"

The process %original file name%.exe:3852 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKLM\System\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations" = "\??\%Program Files% (x86)\Google\Update\1.3.24.15, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\python.dll, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\VMwareDnD\327c54aa\, , \??\C:\Users\"%CurrentUserName%"\AppData\Roaming\rmi\aol-desktop-9.7 Rev 4343.19.exe, , \??\C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll,"

The process TuneUpSystemStatusCheck.exe:2400 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"UILanguage" = "en-US"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\PerformanceOptimizer]
"tidx" = ""
"tidxq" = "UnusedProgramsDayLimit=0;VisualEffects=0;Internet_Profile=0;PenInput=0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Sidebar\Settings]
"AllowElevatedProcess" = "1"

The process TuneUpUtilitiesService64.exe:3612 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Interface\{76A69996-B8C1-4CE0-9114-F492D29D3470}]
"(Default)" = "ITUUtilityToolInstalledProgramsMonitor"

[HKCR\Interface\{FCD3E0E5-9B0F-484E-BC6B-DC7C04B941B0}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{9AC3B023-31F2-49B7-B43F-3E1F7A8D7D3B}]
"(Default)" = "ITUProcessIDList"

[HKCR\Wow6432Node\Interface\{5D239A6E-86DA-4463-A5D0-DFBD6CBB6C78}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{EC9A5BF8-544B-4D3A-8695-47472E15EBE0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{EC9A5BF8-544B-4D3A-8695-47472E15EBE0}]
"(Default)" = "ITUProgramEntryInfo"

[HKCR\Interface\{02CF188C-BC73-4B78-B945-E3933449A406}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\TypeLib\{F04CE194-D75F-4CDC-9816-08193D328B65}\1.0\HELPDIR]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014"

[HKCR\Wow6432Node\Interface\{FBFC1A77-B6EF-4B49-9D0D-68228A5B0FEA}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{CA6DC7B8-50AB-411D-AB3F-70323D135763}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{73328DDE-7B66-4117-A7FB-8B3A37D9C239}]
"(Default)" = "ITUUtilitiesSvcPrivate"

[HKCR\Wow6432Node\Interface\{B37CB854-05E8-4B5D-B29D-A43404CF2593}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{25AF688A-3E41-4AE9-8B6F-C8C8A2501966}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\TuneUp.UtilitiesSvcTools.1]
"(Default)" = "TuneUp Utilities Tools"

[HKCR\CLSID\{02849255-07CD-4C09-97D7-017DA2AE45AA}\VersionIndependentProgID]
"(Default)" = "TuneUp.TUUtilityTools"

[HKCR\Wow6432Node\Interface\{80776CF4-3378-4584-856B-CACC6E23D08F}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{4BC3368B-221F-4AE2-BC70-C718A104F16A}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{7D3CC621-0A71-4E03-9692-FF55946615BD}]
"(Default)" = "_ProcessesSensorEvents"

[HKCR\CLSID\{FCA02D56-BF9D-4591-AD41-E59AF763C64A}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\TypeLib\{F04CE194-D75F-4CDC-9816-08193D328B65}\1.0\0\win64]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe\4"

[HKCR\TuneUp.UtilitiesSvc]
"(Default)" = "TuneUp Utilities Service"

[HKCR\Wow6432Node\Interface\{4DBADC75-8853-440F-9787-3326342F6CEF}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{BB9F9A35-3649-4064-9101-90DA2E4285D8}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{E7411C82-3791-429B-9412-7B0DA6C61194}]
"(Default)" = "ITUUSessionApp"

[HKCR\Interface\{BC131365-5DDA-4C24-B133-A5380CC2D461}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{FCD3E0E5-9B0F-484E-BC6B-DC7C04B941B0}]
"(Default)" = "ITUUSvcReports"

[HKCR\Wow6432Node\Interface\{4BC3368B-221F-4AE2-BC70-C718A104F16A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{AC19D772-B03B-4246-A308-389836870B7C}]
"(Default)" = "ITUUSvcProcessInformation"

[HKCR\Interface\{FCD3E0E5-9B0F-484E-BC6B-DC7C04B941B0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{4DBADC75-8853-440F-9787-3326342F6CEF}]
"(Default)" = "ITUIDList"

[HKCR\Wow6432Node\Interface\{775552CA-3A70-4AD2-B5F1-4C9EC0228701}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{E7F8549F-814B-417D-ADC6-C2AFD6ADF1BB}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{7B04FEA5-A0E4-4233-A64B-9D34ACD508AC}]
"(Default)" = "ITUUSvcProcessList"

[HKCR\Interface\{EAC618D7-253E-4F7E-A17E-37D7CAC48157}]
"(Default)" = "ITUProgramEntryInfoList"

[HKCR\Wow6432Node\Interface\{EC9A5BF8-544B-4D3A-8695-47472E15EBE0}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{8DE80713-1598-41BC-AB88-9CE74C669CA0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{77D3D5A2-C96E-4C47-ACB0-DFCCF46C4987}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{B99470AB-A974-403D-BB51-73900E7D3FCD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{4DBADC75-8853-440F-9787-3326342F6CEF}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{6F40C842-72A6-48CB-8961-98F13873A60D}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{EC9A5BF8-544B-4D3A-8695-47472E15EBE0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{215E32EF-C967-470A-AC60-B34F58CB957D}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{E7E5CFE9-2992-4D97-B877-DADC873D5573}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{B99470AB-A974-403D-BB51-73900E7D3FCD}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{AC19D772-B03B-4246-A308-389836870B7C}]
"(Default)" = "ITUUSvcProcessInformation"

[HKCR\Wow6432Node\Interface\{EC9A5BF8-544B-4D3A-8695-47472E15EBE0}\TypeLib]
"Version" = "1.0"

[HKCR\TypeLib\{606F0A47-FA39-4F52-8556-5565AE7F586F}\1.0\FLAGS]
"(Default)" = "0"

[HKCR\Interface\{57D31357-1FC7-43D2-AB3C-530241E59388}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\CLSID\{2509ABBC-871E-42e5-A27B-F7DA394B1897}\LocalServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe"

[HKCR\Wow6432Node\Interface\{7D3CC621-0A71-4E03-9692-FF55946615BD}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{6F40C842-72A6-48CB-8961-98F13873A60D}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{B99470AB-A974-403D-BB51-73900E7D3FCD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{FBFC1A77-B6EF-4B49-9D0D-68228A5B0FEA}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\TypeLib\{F04CE194-D75F-4CDC-9816-08193D328B65}\1.0\FLAGS]
"(Default)" = "0"

[HKCR\Wow6432Node\Interface\{775552CA-3A70-4AD2-B5F1-4C9EC0228701}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{91E9CFE3-5ABE-4308-9C68-416F436AA3A3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{91E9CFE3-5ABE-4308-9C68-416F436AA3A3}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{96C3ACEE-B917-4C7B-9232-EA98679A7A87}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{91E9CFE3-5ABE-4308-9C68-416F436AA3A3}]
"(Default)" = "ITUUPrivateDBResultRow"

[HKCR\Interface\{25AF688A-3E41-4AE9-8B6F-C8C8A2501966}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{7D3CC621-0A71-4E03-9692-FF55946615BD}\TypeLib]
"Version" = "1.0"

[HKCR\CLSID\{5EF1CF5D-87A9-434b-8786-2A08E1C30F6C}\ProgID]
"(Default)" = "TuneUp.ProgramManager.1"

[HKCR\Interface\{76A69996-B8C1-4CE0-9114-F492D29D3470}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Interface\{E7F8549F-814B-417D-ADC6-C2AFD6ADF1BB}]
"(Default)" = "ITuneUpToolsPrefetchInfo"

[HKCR\Interface\{6AD383F4-6105-4534-9FED-97DF980CA1D7}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{BC131365-5DDA-4C24-B133-A5380CC2D461}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\AppID\TUUtilitiesService.EXE]
"AppID" = "{51F2A986-73E1-4C23-85F2-690C7828CC11}"

[HKCR\Wow6432Node\Interface\{215E32EF-C967-470A-AC60-B34F58CB957D}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\CLSID\{02849255-07CD-4C09-97D7-017DA2AE45AA}\ProgID]
"(Default)" = "TuneUp.TUUtilityTools.1"

[HKCR\Interface\{E7411C82-3791-429B-9412-7B0DA6C61194}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{FBFC1A77-B6EF-4B49-9D0D-68228A5B0FEA}]
"(Default)" = "ITUProcessIDEnumerator"

[HKCR\Wow6432Node\Interface\{02CF188C-BC73-4B78-B945-E3933449A406}]
"(Default)" = "_TurboModeEvents"

[HKCR\CLSID\{FCA02D56-BF9D-4591-AD41-E59AF763C64A}\ProgID]
"(Default)" = "TuneUp.UtilitiesSvc.1"

[HKCR\Interface\{4F93A18A-3EB4-47D2-8790-3A7292CF742C}]
"(Default)" = "ITUUtilityTools"

[HKCR\Wow6432Node\Interface\{57D31357-1FC7-43D2-AB3C-530241E59388}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{7D3CC621-0A71-4E03-9692-FF55946615BD}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Interface\{6AD383F4-6105-4534-9FED-97DF980CA1D7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{BB9F9A35-3649-4064-9101-90DA2E4285D8}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{4BC3368B-221F-4AE2-BC70-C718A104F16A}]
"(Default)" = "ITUProgramEntryInfoEnumerator"

[HKCR\TuneUp.UtilitiesSvc.1]
"(Default)" = "TuneUp Utilities Service"

[HKCR\Interface\{E7411C82-3791-429B-9412-7B0DA6C61194}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{C33B39A6-9E64-4368-94D6-2511971C959A}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{B37CB854-05E8-4B5D-B29D-A43404CF2593}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{5D239A6E-86DA-4463-A5D0-DFBD6CBB6C78}]
"(Default)" = "ITUIDEnumerator"

[HKCR\Wow6432Node\Interface\{691BA5CB-E2E7-4690-BDA1-81DEE8B1F101}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{4F93A18A-3EB4-47D2-8790-3A7292CF742C}\TypeLib]
"(Default)" = "{F04CE194-D75F-4CDC-9816-08193D328B65}"

[HKCR\Wow6432Node\Interface\{CA6DC7B8-50AB-411D-AB3F-70323D135763}]
"(Default)" = "ITUProgramManagerNotifications"

[HKCR\Wow6432Node\Interface\{691BA5CB-E2E7-4690-BDA1-81DEE8B1F101}]
"(Default)" = "_MobilePCSensorEvents"

[HKCR\Interface\{57D31357-1FC7-43D2-AB3C-530241E59388}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{C33B39A6-9E64-4368-94D6-2511971C959A}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{691BA5CB-E2E7-4690-BDA1-81DEE8B1F101}]
"(Default)" = "_MobilePCSensorEvents"

[HKCR\Interface\{ABF8E401-A11B-4BF4-8AC7-EC694B8391BF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{ABF8E401-A11B-4BF4-8AC7-EC694B8391BF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{7B04FEA5-A0E4-4233-A64B-9D34ACD508AC}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{8DE80713-1598-41BC-AB88-9CE74C669CA0}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{691BA5CB-E2E7-4690-BDA1-81DEE8B1F101}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{CA6DC7B8-50AB-411D-AB3F-70323D135763}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{BB9F9A35-3649-4064-9101-90DA2E4285D8}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{B37CB854-05E8-4B5D-B29D-A43404CF2593}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{91E9CFE3-5ABE-4308-9C68-416F436AA3A3}]
"(Default)" = "ITUUPrivateDBResultRow"

[HKCR\Interface\{57D31357-1FC7-43D2-AB3C-530241E59388}]
"(Default)" = "ITUUtilitiesTools"

[HKCR\CLSID\{5EF1CF5D-87A9-434b-8786-2A08E1C30F6C}\TypeLib]
"(Default)" = "{606F0A47-FA39-4f52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{77D3D5A2-C96E-4C47-ACB0-DFCCF46C4987}]
"(Default)" = "ITUProgramManagerModificaitonSessionList"

[HKCR\Wow6432Node\Interface\{BC131365-5DDA-4C24-B133-A5380CC2D461}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{CA6DC7B8-50AB-411D-AB3F-70323D135763}]
"(Default)" = "ITUProgramManagerNotifications"

[HKCR\Interface\{9AC3B023-31F2-49B7-B43F-3E1F7A8D7D3B}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{62FBF24E-C463-4506-A034-53747C5660C6}]
"(Default)" = "ITUProgramInfo"

[HKCR\TuneUp.ProgramManager.1]
"(Default)" = "TuneUp Program Manager"

[HKCR\CLSID\{02849255-07CD-4C09-97D7-017DA2AE45AA}\LocalServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe"

[HKCR\Wow6432Node\Interface\{EAC618D7-253E-4F7E-A17E-37D7CAC48157}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{ADB170D6-69CE-47A1-9B9E-1BDFEDC38822}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{9AC3B023-31F2-49B7-B43F-3E1F7A8D7D3B}]
"(Default)" = "ITUProcessIDList"

[HKCR\Interface\{E7E5CFE9-2992-4D97-B877-DADC873D5573}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{7D3CC621-0A71-4E03-9692-FF55946615BD}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{25AF688A-3E41-4AE9-8B6F-C8C8A2501966}]
"(Default)" = "ITUUOptimizations"

[HKCR\Wow6432Node\Interface\{4BC3368B-221F-4AE2-BC70-C718A104F16A}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\TuneUp.UtilitiesSvcTools\CurVer]
"(Default)" = "TuneUp.UtilitiesSvcTools.1"

[HKCR\Interface\{96C3ACEE-B917-4C7B-9232-EA98679A7A87}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\CLSID\{5EF1CF5D-87A9-434b-8786-2A08E1C30F6C}\VersionIndependentProgID]
"(Default)" = "TuneUp.ProgramManager"

[HKCR\Wow6432Node\Interface\{62FBF24E-C463-4506-A034-53747C5660C6}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{51D19161-73C3-4DBF-BA93-51EE68FD6704}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{ADB170D6-69CE-47A1-9B9E-1BDFEDC38822}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{5D6A6C01-DE00-4BC3-A171-E8E26DE12A3B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{76A69996-B8C1-4CE0-9114-F492D29D3470}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{4F93A18A-3EB4-47D2-8790-3A7292CF742C}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{51D19161-73C3-4DBF-BA93-51EE68FD6704}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{BC131365-5DDA-4C24-B133-A5380CC2D461}\TypeLib]
"Version" = "1.0"

[HKCR\CLSID\{5EF1CF5D-87A9-434b-8786-2A08E1C30F6C}]
"(Default)" = "TuneUp Program Manager"

[HKCR\Interface\{4BC3368B-221F-4AE2-BC70-C718A104F16A}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{96C3ACEE-B917-4C7B-9232-EA98679A7A87}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{ABF8E401-A11B-4BF4-8AC7-EC694B8391BF}\TypeLib]
"Version" = "1.0"

[HKCR\TuneUp.ProgramManager\CurVer]
"(Default)" = "TuneUp.ProgramManager.1"

[HKCR\Interface\{91E9CFE3-5ABE-4308-9C68-416F436AA3A3}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{7B04FEA5-A0E4-4233-A64B-9D34ACD508AC}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{62FBF24E-C463-4506-A034-53747C5660C6}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{77D3D5A2-C96E-4C47-ACB0-DFCCF46C4987}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{6AD383F4-6105-4534-9FED-97DF980CA1D7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{8B92EE47-6B7E-42E9-9333-4B915CF20310}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\TuneUp.UtilitiesSvc\CLSID]
"(Default)" = "{FCA02D56-BF9D-4591-AD41-E59AF763C64A}"

[HKCR\Interface\{77D3D5A2-C96E-4C47-ACB0-DFCCF46C4987}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{E7411C82-3791-429B-9412-7B0DA6C61194}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{6F40C842-72A6-48CB-8961-98F13873A60D}]
"(Default)" = "IWndMonitorCallback"

[HKCR\Wow6432Node\Interface\{775552CA-3A70-4AD2-B5F1-4C9EC0228701}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\TypeLib\{F04CE194-D75F-4CDC-9816-08193D328B65}\1.0]
"(Default)" = "TUUtilityToolsLib"

[HKCR\Wow6432Node\Interface\{5D239A6E-86DA-4463-A5D0-DFBD6CBB6C78}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{77D3D5A2-C96E-4C47-ACB0-DFCCF46C4987}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{5D239A6E-86DA-4463-A5D0-DFBD6CBB6C78}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{BC131365-5DDA-4C24-B133-A5380CC2D461}]
"(Default)" = "ITUProgramInfoEnumerator"

[HKCR\Wow6432Node\Interface\{96C3ACEE-B917-4C7B-9232-EA98679A7A87}]
"(Default)" = "ITUProgramManagerRevertControl"

[HKCR\Wow6432Node\Interface\{215E32EF-C967-470A-AC60-B34F58CB957D}]
"(Default)" = "IBkgndMaintenance"

[HKCR\Wow6432Node\Interface\{8B92EE47-6B7E-42E9-9333-4B915CF20310}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{FCD3E0E5-9B0F-484E-BC6B-DC7C04B941B0}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{02CF188C-BC73-4B78-B945-E3933449A406}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{E7E5CFE9-2992-4D97-B877-DADC873D5573}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{76A69996-B8C1-4CE0-9114-F492D29D3470}\TypeLib]
"(Default)" = "{F04CE194-D75F-4CDC-9816-08193D328B65}"

[HKCR\Wow6432Node\Interface\{51D19161-73C3-4DBF-BA93-51EE68FD6704}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{5D239A6E-86DA-4463-A5D0-DFBD6CBB6C78}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\CLSID\{2509ABBC-871E-42e5-A27B-F7DA394B1897}]
"(Default)" = "TuneUp Utilities Tools"

[HKCR\Wow6432Node\Interface\{ABF8E401-A11B-4BF4-8AC7-EC694B8391BF}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\CLSID\{2509ABBC-871E-42e5-A27B-F7DA394B1897}\ProgID]
"(Default)" = "TuneUp.UtilitiesSvcTools.1"

[HKCR\Wow6432Node\Interface\{91E9CFE3-5ABE-4308-9C68-416F436AA3A3}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{CA6DC7B8-50AB-411D-AB3F-70323D135763}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{EAC618D7-253E-4F7E-A17E-37D7CAC48157}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{AC19D772-B03B-4246-A308-389836870B7C}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{8DE80713-1598-41BC-AB88-9CE74C669CA0}]
"(Default)" = "ITUProgramManagerModificaitonSession"

[HKCR\Wow6432Node\Interface\{57D31357-1FC7-43D2-AB3C-530241E59388}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{EC9A5BF8-544B-4D3A-8695-47472E15EBE0}]
"(Default)" = "ITUProgramEntryInfo"

[HKCR\Interface\{EAC618D7-253E-4F7E-A17E-37D7CAC48157}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{73328DDE-7B66-4117-A7FB-8B3A37D9C239}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{C33B39A6-9E64-4368-94D6-2511971C959A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{AC19D772-B03B-4246-A308-389836870B7C}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\TuneUp.UtilitiesSvc\CurVer]
"(Default)" = "TuneUp.UtilitiesSvc.1"

[HKCR\Wow6432Node\Interface\{E7E5CFE9-2992-4D97-B877-DADC873D5573}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{7B04FEA5-A0E4-4233-A64B-9D34ACD508AC}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{4DBADC75-8853-440F-9787-3326342F6CEF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{77D3D5A2-C96E-4C47-ACB0-DFCCF46C4987}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{76A69996-B8C1-4CE0-9114-F492D29D3470}\TypeLib]
"(Default)" = "{F04CE194-D75F-4CDC-9816-08193D328B65}"

[HKCR\Wow6432Node\Interface\{B99470AB-A974-403D-BB51-73900E7D3FCD}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{77D3D5A2-C96E-4C47-ACB0-DFCCF46C4987}\TypeLib]
"Version" = "1.0"

[HKCR\TuneUp.TUUtilityTools\CurVer]
"(Default)" = "TuneUp.TUUtilityTools.1"

[HKCR\TuneUp.UtilitiesSvcTools\CLSID]
"(Default)" = "{2509ABBC-871E-42e5-A27B-F7DA394B1897}"

[HKCR\Interface\{FCD3E0E5-9B0F-484E-BC6B-DC7C04B941B0}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{E7411C82-3791-429B-9412-7B0DA6C61194}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{6AD383F4-6105-4534-9FED-97DF980CA1D7}]
"(Default)" = "ITUUSvcProcessInfo"

[HKCR\Interface\{25AF688A-3E41-4AE9-8B6F-C8C8A2501966}]
"(Default)" = "ITUUOptimizations"

[HKCR\TuneUp.TUUtilityTools\CLSID]
"(Default)" = "{02849255-07CD-4C09-97D7-017DA2AE45AA}"

[HKCR\Interface\{EC9A5BF8-544B-4D3A-8695-47472E15EBE0}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\TypeLib\{606F0A47-FA39-4F52-8556-5565AE7F586F}\1.0\HELPDIR]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014"

[HKCR\Wow6432Node\Interface\{8B92EE47-6B7E-42E9-9333-4B915CF20310}]
"(Default)" = "ITUProgramManagerModificaitonSessionEnumerator"

[HKCR\Interface\{ADB170D6-69CE-47A1-9B9E-1BDFEDC38822}]
"(Default)" = "ITUProgramManager"

[HKCR\TuneUp.ProgramManager.1\CLSID]
"(Default)" = "{5EF1CF5D-87A9-434b-8786-2A08E1C30F6C}"

[HKCR\Interface\{4DBADC75-8853-440F-9787-3326342F6CEF}]
"(Default)" = "ITUIDList"

[HKCR\Wow6432Node\Interface\{73328DDE-7B66-4117-A7FB-8B3A37D9C239}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{AC19D772-B03B-4246-A308-389836870B7C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{BB9F9A35-3649-4064-9101-90DA2E4285D8}]
"(Default)" = "ITUUSysTrayNotifications"

[HKCR\Wow6432Node\Interface\{9AC3B023-31F2-49B7-B43F-3E1F7A8D7D3B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{E7F8549F-814B-417D-ADC6-C2AFD6ADF1BB}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{6F40C842-72A6-48CB-8961-98F13873A60D}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{5D239A6E-86DA-4463-A5D0-DFBD6CBB6C78}]
"(Default)" = "ITUIDEnumerator"

[HKCR\CLSID\{2509ABBC-871E-42e5-A27B-F7DA394B1897}]
"AppID" = "{51F2A986-73E1-4C23-85F2-690C7828CC11}"

[HKCR\Wow6432Node\Interface\{25AF688A-3E41-4AE9-8B6F-C8C8A2501966}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{CA6DC7B8-50AB-411D-AB3F-70323D135763}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\TuneUp.ProgramManager]
"(Default)" = "TuneUp Program Manager"

[HKCR\Interface\{7B04FEA5-A0E4-4233-A64B-9D34ACD508AC}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{EAC618D7-253E-4F7E-A17E-37D7CAC48157}]
"(Default)" = "ITUProgramEntryInfoList"

[HKCR\Interface\{77D3D5A2-C96E-4C47-ACB0-DFCCF46C4987}]
"(Default)" = "ITUProgramManagerModificaitonSessionList"

[HKCR\Wow6432Node\Interface\{C33B39A6-9E64-4368-94D6-2511971C959A}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{80776CF4-3378-4584-856B-CACC6E23D08F}]
"(Default)" = "ITUUSvcSettings"

[HKCR\Wow6432Node\Interface\{BC131365-5DDA-4C24-B133-A5380CC2D461}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{5D6A6C01-DE00-4BC3-A171-E8E26DE12A3B}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{215E32EF-C967-470A-AC60-B34F58CB957D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{5D6A6C01-DE00-4BC3-A171-E8E26DE12A3B}\TypeLib]
"(Default)" = "{F04CE194-D75F-4CDC-9816-08193D328B65}"

[HKCR\Wow6432Node\Interface\{80776CF4-3378-4584-856B-CACC6E23D08F}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{775552CA-3A70-4AD2-B5F1-4C9EC0228701}]
"(Default)" = "ITUUZenReporting"

[HKCR\Wow6432Node\Interface\{EAC618D7-253E-4F7E-A17E-37D7CAC48157}\TypeLib]
"Version" = "1.0"
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\CLSID\{5EF1CF5D-87A9-434b-8786-2A08E1C30F6C}\LocalServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe"

[HKCR\Wow6432Node\Interface\{4F93A18A-3EB4-47D2-8790-3A7292CF742C}]
"(Default)" = "ITUUtilityTools"

[HKCR\Interface\{E7F8549F-814B-417D-ADC6-C2AFD6ADF1BB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{775552CA-3A70-4AD2-B5F1-4C9EC0228701}]
"(Default)" = "ITUUZenReporting"

[HKCR\Wow6432Node\Interface\{5D6A6C01-DE00-4BC3-A171-E8E26DE12A3B}\TypeLib]
"(Default)" = "{F04CE194-D75F-4CDC-9816-08193D328B65}"

[HKCR\Interface\{FBFC1A77-B6EF-4B49-9D0D-68228A5B0FEA}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{B99470AB-A974-403D-BB51-73900E7D3FCD}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{51D19161-73C3-4DBF-BA93-51EE68FD6704}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{9AC3B023-31F2-49B7-B43F-3E1F7A8D7D3B}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{51D19161-73C3-4DBF-BA93-51EE68FD6704}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{775552CA-3A70-4AD2-B5F1-4C9EC0228701}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{7B04FEA5-A0E4-4233-A64B-9D34ACD508AC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{FBFC1A77-B6EF-4B49-9D0D-68228A5B0FEA}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{51D19161-73C3-4DBF-BA93-51EE68FD6704}]
"(Default)" = "ITUUSvcProcessStatistics"

[HKLM\System\CurrentControlSet\services\eventlog\TuneUp\TuneUp.UtilitiesSvc]
"EventMessageFile" = "%Program Files% (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe"

[HKCR\Wow6432Node\Interface\{57D31357-1FC7-43D2-AB3C-530241E59388}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{51D19161-73C3-4DBF-BA93-51EE68FD6704}]
"(Default)" = "ITUUSvcProcessStatistics"

[HKCR\Wow6432Node\Interface\{ADB170D6-69CE-47A1-9B9E-1BDFEDC38822}]
"(Default)" = "ITUProgramManager"

[HKCR\Wow6432Node\Interface\{CA6DC7B8-50AB-411D-AB3F-70323D135763}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Interface\{BB9F9A35-3649-4064-9101-90DA2E4285D8}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{8DE80713-1598-41BC-AB88-9CE74C669CA0}\TypeLib]
"Version" = "1.0"

[HKCR\CLSID\{5EF1CF5D-87A9-434b-8786-2A08E1C30F6C}]
"AppID" = "{51F2A986-73E1-4C23-85F2-690C7828CC11}"

[HKCR\Interface\{4DBADC75-8853-440F-9787-3326342F6CEF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{80776CF4-3378-4584-856B-CACC6E23D08F}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{ADB170D6-69CE-47A1-9B9E-1BDFEDC38822}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{7B04FEA5-A0E4-4233-A64B-9D34ACD508AC}]
"(Default)" = "ITUUSvcProcessList"

[HKCR\Wow6432Node\Interface\{AC19D772-B03B-4246-A308-389836870B7C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{57D31357-1FC7-43D2-AB3C-530241E59388}]
"(Default)" = "ITUUtilitiesTools"

[HKCR\Wow6432Node\Interface\{4F93A18A-3EB4-47D2-8790-3A7292CF742C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{8B92EE47-6B7E-42E9-9333-4B915CF20310}]
"(Default)" = "ITUProgramManagerModificaitonSessionEnumerator"

[HKCR\Interface\{8B92EE47-6B7E-42E9-9333-4B915CF20310}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{6AD383F4-6105-4534-9FED-97DF980CA1D7}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{215E32EF-C967-470A-AC60-B34F58CB957D}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\CLSID\{FCA02D56-BF9D-4591-AD41-E59AF763C64A}]
"(Default)" = "TuneUp Utilities Service"

[HKCR\TuneUp.TUUtilityTools.1]
"(Default)" = "TuneUp Utilities Tools"

[HKCR\CLSID\{2509ABBC-871E-42e5-A27B-F7DA394B1897}\VersionIndependentProgID]
"(Default)" = "TuneUp.UtilitiesSvcTools"

[HKCR\Wow6432Node\Interface\{62FBF24E-C463-4506-A034-53747C5660C6}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{73328DDE-7B66-4117-A7FB-8B3A37D9C239}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{7D3CC621-0A71-4E03-9692-FF55946615BD}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{80776CF4-3378-4584-856B-CACC6E23D08F}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{6F40C842-72A6-48CB-8961-98F13873A60D}]
"(Default)" = "IWndMonitorCallback"

[HKCR\CLSID\{02849255-07CD-4C09-97D7-017DA2AE45AA}]
"(Default)" = "TuneUp Utilities Tools"

[HKCR\TypeLib\{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}\1.0]
"(Default)" = "TuneUp Utilities Service Type Library"

[HKCR\CLSID\{FCA02D56-BF9D-4591-AD41-E59AF763C64A}\VersionIndependentProgID]
"(Default)" = "TuneUp.UtilitiesSvc"

[HKCR\Interface\{775552CA-3A70-4AD2-B5F1-4C9EC0228701}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{ADB170D6-69CE-47A1-9B9E-1BDFEDC38822}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{EAC618D7-253E-4F7E-A17E-37D7CAC48157}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{C33B39A6-9E64-4368-94D6-2511971C959A}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{BB9F9A35-3649-4064-9101-90DA2E4285D8}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{B99470AB-A974-403D-BB51-73900E7D3FCD}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{4BC3368B-221F-4AE2-BC70-C718A104F16A}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{FBFC1A77-B6EF-4B49-9D0D-68228A5B0FEA}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{E7F8549F-814B-417D-ADC6-C2AFD6ADF1BB}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{E7E5CFE9-2992-4D97-B877-DADC873D5573}]
"(Default)" = "ITUUPrivateDB"

[HKCR\Interface\{BC131365-5DDA-4C24-B133-A5380CC2D461}]
"(Default)" = "ITUProgramInfoEnumerator"

[HKCR\Wow6432Node\Interface\{AC19D772-B03B-4246-A308-389836870B7C}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\TypeLib\{606F0A47-FA39-4F52-8556-5565AE7F586F}\1.0\0\win64]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe\2"

[HKCR\Interface\{C33B39A6-9E64-4368-94D6-2511971C959A}]
"(Default)" = "ITUProgramInfoList"

[HKCR\Wow6432Node\Interface\{FBFC1A77-B6EF-4B49-9D0D-68228A5B0FEA}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{76A69996-B8C1-4CE0-9114-F492D29D3470}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{5D6A6C01-DE00-4BC3-A171-E8E26DE12A3B}]
"(Default)" = "ITUUtilityToolsVersionInfo"

[HKCR\Wow6432Node\Interface\{6AD383F4-6105-4534-9FED-97DF980CA1D7}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{5D6A6C01-DE00-4BC3-A171-E8E26DE12A3B}]
"(Default)" = "ITUUtilityToolsVersionInfo"

[HKCR\Wow6432Node\Interface\{76A69996-B8C1-4CE0-9114-F492D29D3470}]
"(Default)" = "ITUUtilityToolInstalledProgramsMonitor"

[HKCR\Wow6432Node\Interface\{76A69996-B8C1-4CE0-9114-F492D29D3470}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Interface\{4F93A18A-3EB4-47D2-8790-3A7292CF742C}\TypeLib]
"(Default)" = "{F04CE194-D75F-4CDC-9816-08193D328B65}"

[HKCR\Wow6432Node\Interface\{ADB170D6-69CE-47A1-9B9E-1BDFEDC38822}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{E7E5CFE9-2992-4D97-B877-DADC873D5573}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{775552CA-3A70-4AD2-B5F1-4C9EC0228701}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{215E32EF-C967-470A-AC60-B34F58CB957D}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{02CF188C-BC73-4B78-B945-E3933449A406}]
"(Default)" = "_TurboModeEvents"

[HKCR\Interface\{691BA5CB-E2E7-4690-BDA1-81DEE8B1F101}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{B37CB854-05E8-4B5D-B29D-A43404CF2593}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{8DE80713-1598-41BC-AB88-9CE74C669CA0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{BC131365-5DDA-4C24-B133-A5380CC2D461}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\AppID\{51F2A986-73E1-4C23-85F2-690C7828CC11}]
"(Default)" = "TUUtilitiesService"

[HKCR\Interface\{25AF688A-3E41-4AE9-8B6F-C8C8A2501966}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{51D19161-73C3-4DBF-BA93-51EE68FD6704}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{B37CB854-05E8-4B5D-B29D-A43404CF2593}]
"(Default)" = "ITUUtilitiesSvc"

[HKCR\Interface\{B99470AB-A974-403D-BB51-73900E7D3FCD}]
"(Default)" = "ITUUPrivateDBResult"

[HKCR\Wow6432Node\Interface\{6AD383F4-6105-4534-9FED-97DF980CA1D7}]
"(Default)" = "ITUUSvcProcessInfo"

[HKCR\Wow6432Node\Interface\{8B92EE47-6B7E-42E9-9333-4B915CF20310}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{8B92EE47-6B7E-42E9-9333-4B915CF20310}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{5D239A6E-86DA-4463-A5D0-DFBD6CBB6C78}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{4F93A18A-3EB4-47D2-8790-3A7292CF742C}\TypeLib]
"Version" = "1.0"

[HKCR\TypeLib\{606F0A47-FA39-4F52-8556-5565AE7F586F}\1.0]
"(Default)" = "TuneUp Utilities Program Manager Library"

[HKCR\Wow6432Node\Interface\{5D239A6E-86DA-4463-A5D0-DFBD6CBB6C78}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{6F40C842-72A6-48CB-8961-98F13873A60D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{691BA5CB-E2E7-4690-BDA1-81DEE8B1F101}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{6F40C842-72A6-48CB-8961-98F13873A60D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{73328DDE-7B66-4117-A7FB-8B3A37D9C239}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{62FBF24E-C463-4506-A034-53747C5660C6}]
"(Default)" = "ITUProgramInfo"

[HKCR\TypeLib\{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}\1.0\0\win64]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe"

[HKCR\TypeLib\{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}\1.0\HELPDIR]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014"

[HKCR\Interface\{7D3CC621-0A71-4E03-9692-FF55946615BD}]
"(Default)" = "_ProcessesSensorEvents"

[HKCR\Wow6432Node\Interface\{02CF188C-BC73-4B78-B945-E3933449A406}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{9AC3B023-31F2-49B7-B43F-3E1F7A8D7D3B}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{4F93A18A-3EB4-47D2-8790-3A7292CF742C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{FCD3E0E5-9B0F-484E-BC6B-DC7C04B941B0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{CA6DC7B8-50AB-411D-AB3F-70323D135763}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{BB9F9A35-3649-4064-9101-90DA2E4285D8}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{96C3ACEE-B917-4C7B-9232-EA98679A7A87}]
"(Default)" = "ITUProgramManagerRevertControl"

[HKCR\Wow6432Node\Interface\{E7411C82-3791-429B-9412-7B0DA6C61194}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{FCD3E0E5-9B0F-484E-BC6B-DC7C04B941B0}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{8B92EE47-6B7E-42E9-9333-4B915CF20310}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{E7E5CFE9-2992-4D97-B877-DADC873D5573}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{FBFC1A77-B6EF-4B49-9D0D-68228A5B0FEA}]
"(Default)" = "ITUProcessIDEnumerator"

[HKCR\Interface\{ABF8E401-A11B-4BF4-8AC7-EC694B8391BF}]
"(Default)" = "ITUProgramManagerVersionInfo"

[HKCR\Wow6432Node\Interface\{8DE80713-1598-41BC-AB88-9CE74C669CA0}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\TypeLib\{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}\1.0\FLAGS]
"(Default)" = "0"

[HKCR\TuneUp.ProgramManager\CLSID]
"(Default)" = "{5EF1CF5D-87A9-434b-8786-2A08E1C30F6C}"

[HKCR\Wow6432Node\Interface\{ABF8E401-A11B-4BF4-8AC7-EC694B8391BF}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{91E9CFE3-5ABE-4308-9C68-416F436AA3A3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKLM\System\CurrentControlSet\services\eventlog\TuneUp\TuneUp.UtilitiesSvc]
"TypesSupported" = "7"

[HKCR\CLSID\{02849255-07CD-4C09-97D7-017DA2AE45AA}]
"AppID" = "{51F2A986-73E1-4C23-85F2-690C7828CC11}"

[HKCR\Wow6432Node\Interface\{02CF188C-BC73-4B78-B945-E3933449A406}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{96C3ACEE-B917-4C7B-9232-EA98679A7A87}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\TuneUp.TUUtilityTools.1\CLSID]
"(Default)" = "{02849255-07CD-4C09-97D7-017DA2AE45AA}"

[HKCR\Wow6432Node\Interface\{E7F8549F-814B-417D-ADC6-C2AFD6ADF1BB}]
"(Default)" = "ITuneUpToolsPrefetchInfo"

[HKCR\Wow6432Node\Interface\{B99470AB-A974-403D-BB51-73900E7D3FCD}]
"(Default)" = "ITUUPrivateDBResult"

[HKCR\Wow6432Node\Interface\{25AF688A-3E41-4AE9-8B6F-C8C8A2501966}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{C33B39A6-9E64-4368-94D6-2511971C959A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{ABF8E401-A11B-4BF4-8AC7-EC694B8391BF}]
"(Default)" = "ITUProgramManagerVersionInfo"

[HKCR\TuneUp.UtilitiesSvc.1\CLSID]
"(Default)" = "{FCA02D56-BF9D-4591-AD41-E59AF763C64A}"

[HKCR\Interface\{ABF8E401-A11B-4BF4-8AC7-EC694B8391BF}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{BB9F9A35-3649-4064-9101-90DA2E4285D8}]
"(Default)" = "ITUUSysTrayNotifications"

[HKCR\Wow6432Node\Interface\{6AD383F4-6105-4534-9FED-97DF980CA1D7}\TypeLib]
"Version" = "1.0"

[HKCR\TuneUp.TUUtilityTools]
"(Default)" = "TuneUp Utilities Tools"

[HKCR\Interface\{62FBF24E-C463-4506-A034-53747C5660C6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{215E32EF-C967-470A-AC60-B34F58CB957D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{4DBADC75-8853-440F-9787-3326342F6CEF}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{FCD3E0E5-9B0F-484E-BC6B-DC7C04B941B0}]
"(Default)" = "ITUUSvcReports"

[HKCR\Interface\{80776CF4-3378-4584-856B-CACC6E23D08F}]
"(Default)" = "ITUUSvcSettings"

[HKCR\Wow6432Node\Interface\{80776CF4-3378-4584-856B-CACC6E23D08F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{62FBF24E-C463-4506-A034-53747C5660C6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{215E32EF-C967-470A-AC60-B34F58CB957D}]
"(Default)" = "IBkgndMaintenance"

[HKCR\CLSID\{FCA02D56-BF9D-4591-AD41-E59AF763C64A}]
"AppID" = "{51F2A986-73E1-4C23-85F2-690C7828CC11}"

[HKCR\Interface\{96C3ACEE-B917-4C7B-9232-EA98679A7A87}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Interface\{691BA5CB-E2E7-4690-BDA1-81DEE8B1F101}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Interface\{4BC3368B-221F-4AE2-BC70-C718A104F16A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{AC19D772-B03B-4246-A308-389836870B7C}\TypeLib]
"Version" = "1.0"

[HKCR\TuneUp.UtilitiesSvcTools]
"(Default)" = "TuneUp Utilities Tools"

[HKCR\Wow6432Node\Interface\{E7F8549F-814B-417D-ADC6-C2AFD6ADF1BB}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{691BA5CB-E2E7-4690-BDA1-81DEE8B1F101}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{96C3ACEE-B917-4C7B-9232-EA98679A7A87}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{ADB170D6-69CE-47A1-9B9E-1BDFEDC38822}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{E7411C82-3791-429B-9412-7B0DA6C61194}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{62FBF24E-C463-4506-A034-53747C5660C6}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{8DE80713-1598-41BC-AB88-9CE74C669CA0}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{57D31357-1FC7-43D2-AB3C-530241E59388}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{6F40C842-72A6-48CB-8961-98F13873A60D}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{5D6A6C01-DE00-4BC3-A171-E8E26DE12A3B}\TypeLib]
"Version" = "1.0"

[HKCR\Interface\{73328DDE-7B66-4117-A7FB-8B3A37D9C239}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\AppID\{51F2A986-73E1-4C23-85F2-690C7828CC11}]
"LocalService" = "TuneUp.UtilitiesSvc"

[HKCR\Wow6432Node\Interface\{9AC3B023-31F2-49B7-B43F-3E1F7A8D7D3B}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{5D6A6C01-DE00-4BC3-A171-E8E26DE12A3B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{B37CB854-05E8-4B5D-B29D-A43404CF2593}]
"(Default)" = "ITUUtilitiesSvc"

[HKCR\Wow6432Node\Interface\{B37CB854-05E8-4B5D-B29D-A43404CF2593}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{E7F8549F-814B-417D-ADC6-C2AFD6ADF1BB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{E7E5CFE9-2992-4D97-B877-DADC873D5573}]
"(Default)" = "ITUUPrivateDB"

[HKCR\Wow6432Node\Interface\{8DE80713-1598-41BC-AB88-9CE74C669CA0}]
"(Default)" = "ITUProgramManagerModificaitonSession"

[HKCR\Wow6432Node\Interface\{4DBADC75-8853-440F-9787-3326342F6CEF}\TypeLib]
"(Default)" = "{606F0A47-FA39-4F52-8556-5565AE7F586F}"

[HKCR\Wow6432Node\Interface\{25AF688A-3E41-4AE9-8B6F-C8C8A2501966}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{80776CF4-3378-4584-856B-CACC6E23D08F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{02CF188C-BC73-4B78-B945-E3933449A406}\TypeLib]
"Version" = "1.0"

[HKCR\CLSID\{2509ABBC-871E-42e5-A27B-F7DA394B1897}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{73328DDE-7B66-4117-A7FB-8B3A37D9C239}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Wow6432Node\Interface\{C33B39A6-9E64-4368-94D6-2511971C959A}]
"(Default)" = "ITUProgramInfoList"

[HKCR\Interface\{73328DDE-7B66-4117-A7FB-8B3A37D9C239}]
"(Default)" = "ITUUtilitiesSvcPrivate"

[HKCR\Wow6432Node\Interface\{4BC3368B-221F-4AE2-BC70-C718A104F16A}]
"(Default)" = "ITUProgramEntryInfoEnumerator"

[HKCR\Interface\{91E9CFE3-5ABE-4308-9C68-416F436AA3A3}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{02CF188C-BC73-4B78-B945-E3933449A406}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\Interface\{B37CB854-05E8-4B5D-B29D-A43404CF2593}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{7D3CC621-0A71-4E03-9692-FF55946615BD}\TypeLib]
"(Default)" = "{3D61672B-0DE5-46B9-BE0D-2E03FA9AD49C}"

[HKCR\CLSID\{02849255-07CD-4C09-97D7-017DA2AE45AA}\TypeLib]
"(Default)" = "{F04CE194-D75F-4CDC-9816-08193D328B65}"

[HKCR\TuneUp.UtilitiesSvcTools.1\CLSID]
"(Default)" = "{2509ABBC-871E-42e5-A27B-F7DA394B1897}"

[HKCR\Interface\{E7411C82-3791-429B-9412-7B0DA6C61194}]
"(Default)" = "ITUUSessionApp"

[HKCR\Interface\{EC9A5BF8-544B-4D3A-8695-47472E15EBE0}\TypeLib]
"Version" = "1.0"

[HKCR\CLSID\{FCA02D56-BF9D-4591-AD41-E59AF763C64A}\LocalServer32]
"(Default)" = "%Program Files% (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe"

[HKCR\Interface\{9AC3B023-31F2-49B7-B43F-3E1F7A8D7D3B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{7B04FEA5-A0E4-4233-A64B-9D34ACD508AC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

The Trojan deletes the following value(s) in system registry:

[HKCR\AppID\{51F2A986-73E1-4C23-85F2-690C7828CC11}]
"LocalService"

The process TuneUpUtilitiesService64.exe:1828 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 04 00 00 00 09 00 00 00 00 00 00 00"

[HKU\.DEFAULT\SOFTWARE\Classes\Local Settings\MuiCache\2C\52C64B7E\@""%windir%\System32]
"ie4uinit.exe"",-738" = "Start Internet Explorer without ActiveX controls or browser extensions."

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\UtilitiesSvc]
"EcoModeOptions" = "0"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecision" = "0"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\UtilitiesSvc]
"LiveOptimization" = "1"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionReason" = "1"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached]
"{E7E4BC40-E76A-11CE-A9BB-00AA004AE837} {000214E6-0000-0000-C000-000000000046} 0xFFFF" = "01 00 00 00 00 00 00 00 34 0E 07 38 0B 29 D0 01"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "22 19 3F 39 0B 29 D0 01"

[HKU\.DEFAULT\SOFTWARE\Classes\Local Settings\MuiCache\2C\52C64B7E]
"LanguageList" = "en-US, en"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadNetworkName" = "Network 3"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\UpdateWizard]
"LastCheck" = "57 1E 90 AC 79 82 E4 40"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\ProgramDeactivator]
"ProgCountOnShutDown" = "0"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionReason" = "1"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History]
"CachePrefix" = "Visited:"

[HKU\.DEFAULT\SOFTWARE\Classes\Local Settings\MuiCache\2C\52C64B7E\@""%windir%\System32]
"ie4uinit.exe"",-732" = "Finds and displays information and Web sites on the Internet."

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionTime" = "22 19 3F 39 0B 29 D0 01"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "0"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\UtilitiesSvc]
"LastStartTime" = "2015-01-05 19:15:19"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content]
"CachePrefix" = ""

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecision" = "0"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect" = "1"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\UtilitiesSvc]
"LastSystemStatusCheck" = "2B 1A 09 B8 19 83 E4 40"

[HKU\.DEFAULT\SOFTWARE\Classes\Local Settings\MuiCache\2C\52C64B7E\@""%systemroot%\system32\windowspowershell\v1.0]
"powershell.exe"",-111" = "Performs object-based (command-line) functions"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"DefaultConnectionSettings" = "46 00 00 00 04 00 00 00 09 00 00 00 00 00 00 00"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\ProgramDeactivator]
"ServiceStartTickCount" = "766713"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\Maintenance\Profiles\Automatic]
"ScheduledTime" = "DEFINED"

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0\ProgramDeactivator]
"ServiceCloseTickCount" = "4294967295"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies]
"CachePrefix" = "Cookie:"

Proxy settings are disabled:

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

The Trojan deletes the following value(s) in system registry:

[HKLM\SOFTWARE\Wow6432Node\TuneUp\Utilities\14.0]
"RunPodRevertAll"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"
"IntranetName"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoDetect"

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"
"ProxyBypass"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"
"ProxyServer"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDetectedUrl"

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyOverride"

[HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl"

The process Skype.exe:2788 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCU\Software\Classes\Wow6432Node\Interface\{92A9EB9B-85EE-444E-A302-00C3C945BAA4}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B0C10F94-CAB6-4821-9643-D781885A46AF}]
"(Default)" = "_IVoiceMailsManagerEvents"

[HKCU\Software\Classes\Interface\{9B3A702D-5BE1-4FCE-ADB3-EBBD23E078C3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8E839AF9-9508-475A-AA47-3EE8A946B75E}]
"(Default)" = "IAudioChannel"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA7EEB7A-7DC3-4FFE-A174-23DB5A003C04}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{70DCCE38-90BF-4428-A34F-3A6082F29E50}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1FF8AA01-D8AF-4B2B-B254-BEFEFABAF2D6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4875C050-BA9C-4A05-891E-E7B0A9463664}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{62A75516-C79B-42D7-8B49-3BA492C2B385}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4290152C-75C9-47C8-AA12-814818360B3F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{E4E1D0AF-5B70-45AF-9A0E-F548D8FBD17C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D0DBB17D-565E-486C-A47B-BA32DC1FAD0A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{76428270-36FA-4236-8BDF-AADB39FD1371}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B1F5BCD8-69A6-4FC3-9EF0-9BD4AD999061}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{2209E091-5B90-4CAF-8582-CC5979883376}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1F8EBE6F-7993-42CE-980A-A2F03793BE71}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1B04D929-11E4-46C2-9162-EA4F2758C3A7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{478DDA59-64C0-4429-AC8A-F10A940B52CC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D60B1701-766D-401E-8586-83E0C9106BE0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7B39CB77-4AEB-42D7-B351-CB5472C1C6AD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{EF5C00E4-75E2-4D39-B358-0ED9CB14F3CB}]
"(Default)" = "IConversationContextCollectionEventData"

[HKCU\Software\Classes\Interface\{663C61F4-A9DA-4A6F-A606-F142F665DF61}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{FD9000B3-479F-4B16-9D63-70A49E078946}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{55A21CF3-A2B3-484E-BE2A-14280F501289}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{2EDAF003-14A6-4FAF-8A72-99526D048D63}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAA5FDE3-A81C-4F23-80B6-C47B52C649BF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{25025B1B-0084-44D1-B383-9FFC9A99ABCD}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{57C3CB4D-C794-456F-846D-0E1ECA78BD00}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{08E1E9CF-A7E4-43BE-AE8E-B223CE71E46E}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C8D7146-35EA-4133-B2F6-C1FC2401A091}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C12F0DE5-9A7D-425C-B391-8BE004EAA2F6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9AB20314-B258-48F8-B659-AD250DFA20F5}]
"(Default)" = "ILyncClientNotificationReceivedEventData"

[HKCU\Software\Classes\Interface\{C79E4169-535F-4A41-8DE2-C65A90D9503D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{4023052E-E3B7-48A3-BCB3-CA2234D9BAEE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C63F58CB-EF11-4934-AA3B-2D69244F0780}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{FD02E775-CB9D-4CE3-9243-115C81E5F11C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{953AE732-F53A-4116-AC1B-0321B3FB3DBA}]
"(Default)" = "_ILyncClientEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{E664682C-CBA5-4C7C-A65B-9CD046F24CBD}]
"(Default)" = "ISignInDelayedEventData"

[HKCU\Software\Classes\Interface\{DEDDD7BD-4763-41D2-9AAA-B2C143457CA4}]
"(Default)" = "IModalityActionAvailabilityChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{E5CFF4A5-83A8-4FD8-8DAA-77A3E2288D4A}]
"(Default)" = "IConferenceCapabilities2"

[HKCU\Software\Classes\Wow6432Node\Interface\{18A9A79A-CBC7-4F8B-8B2B-9B40CA75EC3C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C4D95336-5949-4D13-AAC8-82039E5CBCFC}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{011B320C-9AC1-4DDE-B595-3D0014472E2F}]
"(Default)" = "_IRecentContactsEvents"

[HKCU\Software\Classes\Interface\{AA41EE75-F9C5-42F7-8D17-1D92D6BA4D92}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E82737B9-B2BE-4AFD-B649-C9F665627F20}]
"(Default)" = "IDeviceCollectionEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{4DA899D3-FAC7-4F43-8E4A-1987988FBC9B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4875C050-BA9C-4A05-891E-E7B0A9463664}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{A58F54D2-9786-4309-964D-96549AEC7611}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F644C610-A146-4A56-8338-A69C45C71CEF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{AA186C92-181E-417F-B150-FCA0F367E0FC}]
"(Default)" = "_IFrequentContactsEvents"

[HKCU\Software\Classes\Interface\{7CFE77CD-731D-48B2-82B1-ECA3414D62E3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{12480BD4-072F-4763-B9FB-41B2CA54F9CD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{E0E8B413-BB57-4B58-B1FB-288F3A269E35}]
"(Default)" = "IConferenceCapabilities"

[HKCU\Software\Classes\Interface\{18A9A79A-CBC7-4F8B-8B2B-9B40CA75EC3C}]
"(Default)" = "IFrequentContacts"

[HKCU\Software\Classes\Interface\{87084018-7E74-4F92-AB39-1CF03188580E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DC63D621-11C8-4490-B017-B8C57EE1BE25}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{0C81EC90-9469-4ED4-ACAD-ADB86E11039C}]
"(Default)" = "IGroupCollection"

[HKCU\Software\Classes\Interface\{DC63D621-11C8-4490-B017-B8C57EE1BE25}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{A766520D-F700-4BF5-8428-56BD914C1C40}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7BF20B14-58D1-494B-B301-9B16BACC9610}]
"(Default)" = "IRoomPropertyDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA62E6F3-3E6D-451B-AEAA-6A1B7AACF8D4}]
"(Default)" = "IConversationWindowNeedsSizeChangeEventData"

[HKCU\Software\Classes\Interface\{628D7BDD-45AB-404D-8505-B3ADC15F454D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8057F99D-292C-4371-926B-5312E61A3A40}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B8FD4A53-E7E6-4995-A5B5-1306C7584964}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4290152C-75C9-47C8-AA12-814818360B3F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{85109845-6AE2-4B6B-9524-65BA203E5B7D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7BF20B14-58D1-494B-B301-9B16BACC9610}]
"(Default)" = "IRoomPropertyDictionary"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecision" = "0"

[HKCU\Software\Classes\Wow6432Node\Interface\{A4E1D1E4-7839-473B-95FA-5D33DDC0D2DD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{00E22CBB-3170-453A-AE62-EAFBC75A9F8D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3417D640-3976-4CB6-BC82-54E5E2E10784}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AAFE380B-B079-4B55-B81B-A9401D77B776}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C6605772-3D9D-44A7-B43A-4590E6B43EE3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D0984CEF-E323-4574-B07B-5C970C9CAEE0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{86225E5C-7595-4D1C-985D-8A0458D714C0}]
"(Default)" = "IClient2"

[HKCU\Software\Classes\Wow6432Node\Interface\{F7EE956B-A713-48D3-AFEF-0A28F37740B3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3959E5C6-75CC-448E-9A18-9F163FF47646}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{E664682C-CBA5-4C7C-A65B-9CD046F24CBD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{8AFFB8CE-5404-4280-BCA3-E2E4388E6D73}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{232F1CAB-5351-4E48-8A87-2185445F712D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{3690D374-3779-4EFC-B8E8-20642C01529A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{5418E2AB-EB9A-4659-B4DC-28DE633B2B8F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3DEBDC7E-811F-4304-BDD7-7D98C732026C}]
"(Default)" = "IHistoryInfo"

[HKCU\Software\Classes\Interface\{62A75516-C79B-42D7-8B49-3BA492C2B385}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{2F8C3E58-436B-42DB-8924-6C394B37DCA2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{219DC126-9A48-483F-80C2-3F22B3B47829}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{A4E1D1E4-7839-473B-95FA-5D33DDC0D2DD}]
"(Default)" = "IConversationCollection"

[HKCU\Software\Classes\Interface\{2A9385AA-CF61-4E47-B64C-214DE4A4AD11}]
"(Default)" = "IConversationStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{DEDDD7BD-4763-41D2-9AAA-B2C143457CA4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{AAFE380B-B079-4B55-B81B-A9401D77B776}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DC63D621-11C8-4490-B017-B8C57EE1BE25}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{26F15083-86DB-4663-89ED-A0ABC896B9A1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{109D32CE-E09F-46F5-9ECB-01E1D273B7DA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{56F7DEC0-59CA-47C6-9F35-D5066A702B39}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{995F992C-9DEF-47B9-BF11-81813C0C0E28}]
"(Default)" = "ISearchProviderStateChangedEventData"

[HKCU\Software\Classes\Interface\{17635563-2FA5-46AD-8F47-3F0FF958ECE2}]
"(Default)" = "IContentCollectionChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{1FF8AA01-D8AF-4B2B-B254-BEFEFABAF2D6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{38E5EC21-81A1-45A7-94D6-B812976231A4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3DEBDC7E-811F-4304-BDD7-7D98C732026C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9397FF55-EE06-4F02-8F2A-BE3AE249D4BB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BE6086A1-D436-4834-89EE-3CA4F8596A58}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C4D95336-5949-4D13-AAC8-82039E5CBCFC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{55A21CF3-A2B3-484E-BE2A-14280F501289}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{209DA899-15F1-499A-B8B5-A847EAA899AE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{1A8A9402-E89F-40AE-88A8-B328391684B6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D9D04B55-D820-4D5B-A690-658A49368478}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4BACB4B8-1236-42B8-BDA1-D1533148780D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{378CD767-1B64-4A0E-A941-8F52869FC9DF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D0984CEF-E323-4574-B07B-5C970C9CAEE0}]
"(Default)" = "ICustomAvailabilityState"

[HKCU\Software\Classes\Interface\{88C688B0-3908-4C56-A2E8-F90AB705C536}]
"(Default)" = "IConversationActionAvailabilityEventData"

[HKCU\Software\Classes\Interface\{EBD19735-0CB5-4AF3-8E05-B0140CF9D545}]
"(Default)" = "IPreviousConversationBatchEventData"

[HKCU\Software\Classes\Interface\{082EE280-726E-417F-99CB-81A0CCBFF883}]
"(Default)" = "_IDistributionGroupEvents"

[HKCU\Software\Classes\Interface\{8A88C016-AA5D-4EAE-9C79-7AA5C360ED76}]
"(Default)" = "IConversationContextCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{1FF0E6F1-2FE4-4E29-A123-557AF0DB6927}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{FA7971EF-1E41-429F-8C79-DAC5F88D444B}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AC10D6E9-4A8C-4484-B8F4-CA1E36347AAE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7356D7BB-FD71-4554-84A1-3BBE28726551}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F0CE810F-E36F-4CD8-A836-515B9A6E09FC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{85109845-6AE2-4B6B-9524-65BA203E5B7D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{209DA899-15F1-499A-B8B5-A847EAA899AE}]
"(Default)" = "IRepresentationInfo"

[HKCU\Software\Classes\Interface\{6A222195-F65E-467F-8F77-EB180BD85288}]
"(Default)" = "IUCOfficeIntegration"

[HKCU\Software\Classes\Wow6432Node\Interface\{E0E8B413-BB57-4B58-B1FB-288F3A269E35}]
"(Default)" = "IConferenceCapabilities"

[HKCU\Software\Classes\Wow6432Node\Interface\{082EE280-726E-417F-99CB-81A0CCBFF883}]
"(Default)" = "_IDistributionGroupEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{21C41EDE-7ED8-4D97-9B0D-DD785781AF9B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{AB2D1A67-2B3D-4E25-B21C-03F4BFC4C2BE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{86225E5C-7595-4D1C-985D-8A0458D714C0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{2495B94C-38AF-439B-BBA0-0AD38D959CE4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B335AE5E-E4EA-49D3-B03B-646A96FE66D3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{FA7971EF-1E41-429F-8C79-DAC5F88D444B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{995F992C-9DEF-47B9-BF11-81813C0C0E28}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{6A986B5D-E5EC-4395-AD2D-0E62B72DA776}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{533891F1-A460-43E6-8BDA-6D0D2C13ADDE}]
"(Default)" = "IConversation"

[HKCU\Software\Classes\Wow6432Node\Interface\{EFEC2816-F16D-48D8-9306-26C810F0EA55}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{A9AAB6A0-54B9-4419-AAAF-6B26DFAC1585}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C4D95336-5949-4D13-AAC8-82039E5CBCFC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{26F15083-86DB-4663-89ED-A0ABC896B9A1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1F8EBE6F-7993-42CE-980A-A2F03793BE71}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{6B551C9E-DE81-41DF-A0AE-39F0AF11D508}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{AB2D1A67-2B3D-4E25-B21C-03F4BFC4C2BE}]
"(Default)" = "IConversationManagerEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{8FE9A23D-72BC-4EA3-A5AF-E37F75EAD8A2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{E4E1D0AF-5B70-45AF-9A0E-F548D8FBD17C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{311DDE48-ED7D-46FA-9E0A-2E314B7FEF7C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{56F7DEC0-59CA-47C6-9F35-D5066A702B39}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D0DBB17D-565E-486C-A47B-BA32DC1FAD0A}]
"(Default)" = "ISharerChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{B22EDBEA-9E61-4703-82BE-01C05619B6D6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{1F8EBE6F-7993-42CE-980A-A2F03793BE71}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{85109845-6AE2-4B6B-9524-65BA203E5B7D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{87084018-7E74-4F92-AB39-1CF03188580E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DF414A68-5051-4465-AAE2-4F301315734E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4875C050-BA9C-4A05-891E-E7B0A9463664}]
"(Default)" = "IParticipant"

[HKCU\Software\Classes\Wow6432Node\Interface\{4290152C-75C9-47C8-AA12-814818360B3F}]
"(Default)" = "IModalityPropertyChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{8684D3AD-7061-4056-A894-EBF1270ADB9B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AE3A7C39-9C30-4E0F-BAE4-D8344EF377EA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{478DDA59-64C0-4429-AC8A-F10A940B52CC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{57CC2235-96C5-49FA-B92B-350486C6CF52}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F644C610-A146-4A56-8338-A69C45C71CEF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{086F0E9D-A416-40F9-877C-F1C82DC1A6AD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{2A9385AA-CF61-4E47-B64C-214DE4A4AD11}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9D4D3D10-DEBC-40C6-ACF9-527986CB42BC}]
"(Default)" = "IChannelActionAvailabilityEventData"

[HKCU\Software\Classes\Interface\{3F60CFF7-BE3F-4404-8395-C02D0CDD318E}]
"(Default)" = "_IModalityCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{E6B3F5FA-4208-4C37-AE07-F6435B68D693}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{50D86EE2-288F-44F5-8144-69F6E3B24B90}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{92A9EB9B-85EE-444E-A302-00C3C945BAA4}]
"(Default)" = "_IDelegatorClientEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{EBD19735-0CB5-4AF3-8E05-B0140CF9D545}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4290152C-75C9-47C8-AA12-814818360B3F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{533891F1-A460-43E6-8BDA-6D0D2C13ADDE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{AE3A7C39-9C30-4E0F-BAE4-D8344EF377EA}]
"(Default)" = "_IContentSharingModalityEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{EE9F3E74-AC61-469E-80D6-E22BF4EEFF5C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{EC9773AD-7D22-4B03-B949-5E9055AF0F19}]
"(Default)" = "IGroupCollectionChangedEventData"

[HKCU\Software\Classes\Interface\{4DA899D3-FAC7-4F43-8E4A-1987988FBC9B}]
"(Default)" = "ISelf"

[HKCU\Software\Classes\Interface\{4B3A2412-C149-4E52-A713-6CEBCF47503E}]
"(Default)" = "IGroupMemberChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{2F8C3E58-436B-42DB-8924-6C394B37DCA2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{ABF012A2-2068-4B4D-80D7-6D386BA7C8A2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4023052E-E3B7-48A3-BCB3-CA2234D9BAEE}]
"(Default)" = "IShareableContentActionAvailabilityChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{62074904-8D06-43FE-A531-E63DF7FDC2E7}]
"(Default)" = "IModalityPropertyDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{64B7E9AD-D920-4EAA-95C7-9D95DE9ACE24}]
"(Default)" = "IConferenceApplicationProperties"

[HKCU\Software\Classes\Interface\{086F0E9D-A416-40F9-877C-F1C82DC1A6AD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{855AD949-E2EB-473D-AAF2-9800008EA303}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{953AE732-F53A-4116-AC1B-0321B3FB3DBA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{330639F2-E399-48CB-863F-56A50A27A138}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{56A868B4-0AD4-11CE-B03A-0020AF0BA770}]
"(Default)" = "IVideoWindow"

[HKCU\Software\Classes\Wow6432Node\Interface\{AE3A7C39-9C30-4E0F-BAE4-D8344EF377EA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4E8DC7E0-04B8-470B-BDFA-F520099B975F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D60B1701-766D-401E-8586-83E0C9106BE0}]
"(Default)" = "IParticipant2"

[HKCU\Software\Classes\Wow6432Node\Interface\{55A21CF3-A2B3-484E-BE2A-14280F501289}]
"(Default)" = "IVideoView"

[HKCU\Software\Classes\Wow6432Node\Interface\{62A75516-C79B-42D7-8B49-3BA492C2B385}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{1A8A9402-E89F-40AE-88A8-B328391684B6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{50D86EE2-288F-44F5-8144-69F6E3B24B90}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{A0C3E9BA-C622-45A2-9FED-2C662F3F489A}]
"(Default)" = "IRoomMessage"

[HKCU\Software\Classes\Interface\{D4B240B9-059B-4D13-8997-31B282B3BD43}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{1B04D929-11E4-46C2-9162-EA4F2758C3A7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A4E1D1E4-7839-473B-95FA-5D33DDC0D2DD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B03614AE-8D68-4386-9E1C-939CABCF1232}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{9918673D-4D74-41CF-8840-D4996395A34C}]
"(Default)" = "_IGroupEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{70DCCE38-90BF-4428-A34F-3A6082F29E50}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{48B3099D-841D-4CAA-9202-5787596E2BD2}]
"(Default)" = "IActivePresenterChangedEventData"

[HKCU\Software\Classes\Interface\{76DE1CD8-F278-48A1-A391-E5BEB8F428E6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B00F2520-029C-47D0-B4E8-8FBEF47CAA7E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{BE026CD2-7E82-4F7C-8762-F6B02F496174}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{08DDF5C4-FA12-4978-B26E-C6D23C453413}]
"(Default)" = "_IDeviceManagerCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{90B49A60-72AF-4360-9F9B-916DB7504A3C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{12480BD4-072F-4763-B9FB-41B2CA54F9CD}]
"(Default)" = "IContactSettingChangedEventData"

[HKCU\Software\Classes\Interface\{88C688B0-3908-4C56-A2E8-F90AB705C536}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{2A9385AA-CF61-4E47-B64C-214DE4A4AD11}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7452BD0F-65CB-4A5E-AC37-E2BEA1F43DD9}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{330639F2-E399-48CB-863F-56A50A27A138}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{855AD949-E2EB-473D-AAF2-9800008EA303}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{533891F1-A460-43E6-8BDA-6D0D2C13ADDE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{17635563-2FA5-46AD-8F47-3F0FF958ECE2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CD92461-CA4F-4BEB-A636-8BBCC192E60F}]
"(Default)" = "ISearchResults2"

[HKCU\Software\Classes\Wow6432Node\Interface\{C4D95336-5949-4D13-AAC8-82039E5CBCFC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{32430741-330B-48DF-96F6-0CFE00484D40}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7356D7BB-FD71-4554-84A1-3BBE28726551}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{A4E1D1E4-7839-473B-95FA-5D33DDC0D2DD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{ABF012A2-2068-4B4D-80D7-6D386BA7C8A2}]
"(Default)" = "_IContactsAndGroupsCallback"

[HKCU\Software\Classes\Interface\{C31FB52D-9E9E-45AD-A102-5218E1685B78}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{EF5C00E4-75E2-4D39-B358-0ED9CB14F3CB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F5996C71-77AB-4020-9776-C2C270FEF2AE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecision" = "0"

[HKCU\Software\Classes\Wow6432Node\Interface\{378CD767-1B64-4A0E-A941-8F52869FC9DF}]
"(Default)" = "ISearchResult"

[HKCU\Software\Classes\Wow6432Node\Interface\{D5C1C8FB-DC8A-45A3-AAA3-53B89D43CDE4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3CD1DB65-D85B-4912-8536-6BD8E19F1738}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C7ACB102-B692-49CC-92DA-5824822C7B96}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{0BDB9057-28AE-4BF0-AFF0-12A148E51637}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{64B7E9AD-D920-4EAA-95C7-9D95DE9ACE24}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{61C747F6-157C-4CAE-A37C-EC4352175860}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{464D5228-9F68-4B1F-B430-156A104E2B85}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{F7EE956B-A713-48D3-AFEF-0A28F37740B3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7693221D-7E9F-47D3-8782-6437CF3D4C0C}]
"(Default)" = "IPhone"

[HKCU\Software\Classes\Wow6432Node\Interface\{C31FB52D-9E9E-45AD-A102-5218E1685B78}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{53D014C1-54DB-42B3-9DFD-8E231EF2C356}]
"(Default)" = "IWorkingHours"

[HKCU\Software\Classes\Wow6432Node\Interface\{E4E1D0AF-5B70-45AF-9A0E-F548D8FBD17C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{F0B791FA-434B-49F2-B84E-05619EBE6BEB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F0CE810F-E36F-4CD8-A836-515B9A6E09FC}]
"(Default)" = "IContactInformationDictionary"

[HKCU\Software\Classes\Interface\{4FE44049-4E44-4109-B234-4E4EFC135A86}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{00E22CBB-3170-453A-AE62-EAFBC75A9F8D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2C59A886-ACD3-46BB-8BAC-7C1C59FB2E0D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C63F58CB-EF11-4934-AA3B-2D69244F0780}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{21629AB6-9557-4985-9237-49177F618692}]
"(Default)" = "IContextEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{FB67275C-4D9E-4C32-9793-A96749884FC1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{64B7E9AD-D920-4EAA-95C7-9D95DE9ACE24}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{92D7E7A8-48D8-4166-8911-630AE02B2B93}]
"(Default)" = "IInitialContextEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{70DCCE38-90BF-4428-A34F-3A6082F29E50}]
"(Default)" = "IParticipantPropertyChangedEventData"

[HKCU\Software\Classes\Interface\{2D3D62CA-E9F6-4F94-8EBD-5FABAB29E6A5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{92A9EB9B-85EE-444E-A302-00C3C945BAA4}]
"(Default)" = "_IDelegatorClientEvents"

[HKCU\Software\Classes\Interface\{32430741-330B-48DF-96F6-0CFE00484D40}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{995F992C-9DEF-47B9-BF11-81813C0C0E28}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{66D1FFC0-C234-4F3D-ABAA-98222A69E525}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{53D014C1-54DB-42B3-9DFD-8E231EF2C356}]
"(Default)" = "IWorkingHours"

[HKCU\Software\Classes\Interface\{65B71572-5338-43C8-9E4C-F1DFC6711AD1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{8E73E7E1-90CE-4D3B-B5B7-71E87B2E8BA5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D2BFC7D7-A64F-48EF-BF90-C3C7E684D89C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionTime" = "09 60 00 23 0B 29 D0 01"

[HKCU\Software\Classes\Interface\{4BACB4B8-1236-42B8-BDA1-D1533148780D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B0C10F94-CAB6-4821-9643-D781885A46AF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{232F1CAB-5351-4E48-8A87-2185445F712D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7CFE77CD-731D-48B2-82B1-ECA3414D62E3}]
"(Default)" = "IConversationPropertyChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{86225E5C-7595-4D1C-985D-8A0458D714C0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{1FF8AA01-D8AF-4B2B-B254-BEFEFABAF2D6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4875C050-BA9C-4A05-891E-E7B0A9463664}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{8C9B6953-33CC-4A04-9DA4-F71AE79DA0C0}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{62B932E9-7847-4D78-BEEE-5D58BF815B03}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{2495B94C-38AF-439B-BBA0-0AD38D959CE4}]
"(Default)" = "IChannelStateChangedEventData"

[HKCU\Software\Classes\Interface\{806D3227-4CB8-47C4-9864-7D4DF4F44069}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{109D32CE-E09F-46F5-9ECB-01E1D273B7DA}]
"(Default)" = "IConversationWindowInformationDictionary"

[HKCU\Software\Classes\Interface\{0FDB5B86-DD44-41BF-A443-317FD19BBF3D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{B335AE5E-E4EA-49D3-B03B-646A96FE66D3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{FF037274-455A-4E34-B5D1-D42DB866F9B7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7CD92461-CA4F-4BEB-A636-8BBCC192E60F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{ED5040FA-8F8F-4876-BF6D-9C62F5EFFD5B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D992371E-5161-453B-97E6-6E7C67BC075E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{FD02E775-CB9D-4CE3-9243-115C81E5F11C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{0C81EC90-9469-4ED4-ACAD-ADB86E11039C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E2C6D6E0-52EF-47A2-BDA9-9D6A7A29A391}]
"(Default)" = "_IRoomManagerEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{21629AB6-9557-4985-9237-49177F618692}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D804BA85-DB0F-49EE-B723-DCDF0425BD9F}]
"(Default)" = "ICustomGroup"

[HKCU\Software\Classes\Wow6432Node\Interface\{08E1E9CF-A7E4-43BE-AE8E-B223CE71E46E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{2F8C3E58-436B-42DB-8924-6C394B37DCA2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F97973D7-9436-4A3E-A802-F6EA172A0425}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7B39CB77-4AEB-42D7-B351-CB5472C1C6AD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AAFE380B-B079-4B55-B81B-A9401D77B776}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{87084018-7E74-4F92-AB39-1CF03188580E}]
"(Default)" = "IUtilities"

[HKCU\Software\Classes\Interface\{8A88C016-AA5D-4EAE-9C79-7AA5C360ED76}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\IM Providers]
"DefaultIMApp" = "Skype"

[HKCU\Software\Classes\Wow6432Node\Interface\{26C8D96D-7D22-4E9E-948A-EDCCB4CA9C64}]
"(Default)" = "_IParticipantCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{806D3227-4CB8-47C4-9864-7D4DF4F44069}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CFE77CD-731D-48B2-82B1-ECA3414D62E3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A7FF112-42CE-4D03-8922-D02AC6C5759F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B8FD4A53-E7E6-4995-A5B5-1306C7584964}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D2BFC7D7-A64F-48EF-BF90-C3C7E684D89C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{2F8C3E58-436B-42DB-8924-6C394B37DCA2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{4BACB4B8-1236-42B8-BDA1-D1533148780D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{011B320C-9AC1-4DDE-B595-3D0014472E2F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{BE6086A1-D436-4834-89EE-3CA4F8596A58}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BE026CD2-7E82-4F7C-8762-F6B02F496174}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9918673D-4D74-41CF-8840-D4996395A34C}]
"(Default)" = "_IGroupEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{36CDC166-4F21-46AD-A60E-8551F26C1D41}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{32430741-330B-48DF-96F6-0CFE00484D40}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{CE16D540-B9E8-4742-8659-9A7A318AFB92}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2D3D62CA-E9F6-4F94-8EBD-5FABAB29E6A5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3690D374-3779-4EFC-B8E8-20642C01529A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{0C81EC90-9469-4ED4-ACAD-ADB86E11039C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C8210C8-8578-47C6-87A9-FA1AD2BA9873}]
"(Default)" = "IShareableContentPropertyChangedEventData"

[HKCU\Software\Classes\Interface\{B1C6ECC3-1EA7-495D-9337-02FE4FB723F0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9AB20314-B258-48F8-B659-AD250DFA20F5}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{EE9F3E74-AC61-469E-80D6-E22BF4EEFF5C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E66CA1CC-9DB0-467E-9C60-6A832ACD6780}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DC4BC923-6A52-4F02-9F8A-547B606955E7}]
"(Default)" = "_IAccessPermissionEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{905B727D-FD8F-46EC-8006-CE245F6835EE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CFE77CD-731D-48B2-82B1-ECA3414D62E3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{FD02E775-CB9D-4CE3-9243-115C81E5F11C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B335AE5E-E4EA-49D3-B03B-646A96FE66D3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{330639F2-E399-48CB-863F-56A50A27A138}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7818A3F7-674B-477E-99E8-54774579A8E7}]
"(Default)" = "IExchangeECPUrlChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{F7EE956B-A713-48D3-AFEF-0A28F37740B3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3417D640-3976-4CB6-BC82-54E5E2E10784}]
"(Default)" = "_IUtilities2Events"

[HKCU\Software\Classes\Wow6432Node\Interface\{57CC2235-96C5-49FA-B92B-350486C6CF52}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{9E0F8FCA-D9C9-47CD-87F4-5554217DFFCC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9E0F8FCA-D9C9-47CD-87F4-5554217DFFCC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1566FA3C-FD24-41DB-A2B8-6232F89783DE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{EFEC2816-F16D-48D8-9306-26C810F0EA55}]
"(Default)" = "IContactInformationChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{7693221D-7E9F-47D3-8782-6437CF3D4C0C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B03614AE-8D68-4386-9E1C-939CABCF1232}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{855AD949-E2EB-473D-AAF2-9800008EA303}]
"(Default)" = "IConversationContextList"

[HKCU\Software\Classes\Interface\{E66CA1CC-9DB0-467E-9C60-6A832ACD6780}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{DC4BC923-6A52-4F02-9F8A-547B606955E7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{569E04F2-D286-4903-9642-44D850310956}]
"(Default)" = "_IClientSettingsEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CC306E9-2546-4101-82AB-29613AD6F7A7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{478DDA59-64C0-4429-AC8A-F10A940B52CC}]
"(Default)" = "IModalityStateChangedEventData"

[HKCU\Software\Classes\Interface\{9E0F8FCA-D9C9-47CD-87F4-5554217DFFCC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{48B3099D-841D-4CAA-9202-5787596E2BD2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7693221D-7E9F-47D3-8782-6437CF3D4C0C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{330639F2-E399-48CB-863F-56A50A27A138}]
"(Default)" = "IWebAppExtension"

[HKCU\Software\Classes\Wow6432Node\Interface\{F719ED75-B7BD-45D3-9097-254509226F20}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{80EDBF3A-812E-42B5-A67F-6CC6D9A19A6C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{311DDE48-ED7D-46FA-9E0A-2E314B7FEF7C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{FD02E775-CB9D-4CE3-9243-115C81E5F11C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{89C7EB8E-42BC-4C9F-BB34-88CDE83CCB37}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F87AFD9A-9BF8-4AC4-953E-33C4D2035D33}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{10FDD9BA-0CBA-4958-B6C8-D0912BF2703F}]
"(Default)" = "IContact2"

[HKCU\Software\Skype\Phone\UI]
"StatsSentVersion" = "7.0.0.102"

[HKCU\Software\Classes\Interface\{62B932E9-7847-4D78-BEEE-5D58BF815B03}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{26C8D96D-7D22-4E9E-948A-EDCCB4CA9C64}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{94093301-8854-408E-8138-C7C3D2DACA1F}]
"(Default)" = "IShareableContentStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{A766520D-F700-4BF5-8428-56BD914C1C40}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{8E73E7E1-90CE-4D3B-B5B7-71E87B2E8BA5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{68B1FC26-B48F-4D5F-B041-8E246676D836}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3F60CFF7-BE3F-4404-8395-C02D0CDD318E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C0034194-F7B6-43EB-B0E0-7852FC8E7BFA}]
"(Default)" = "IPhonesChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{E0E8B413-BB57-4B58-B1FB-288F3A269E35}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{26C8D96D-7D22-4E9E-948A-EDCCB4CA9C64}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{62B932E9-7847-4D78-BEEE-5D58BF815B03}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DC4BC923-6A52-4F02-9F8A-547B606955E7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{311DDE48-ED7D-46FA-9E0A-2E314B7FEF7C}]
"(Default)" = "_IContactCallback"

[HKCU\Software\Classes\Interface\{18A9A79A-CBC7-4F8B-8B2B-9B40CA75EC3C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{339D28C6-3D1A-45D4-BA14-A56742749A43}]
"(Default)" = "IWorkingPeriod"

[HKCU\Software\Classes\Interface\{25D64AEA-0E65-49CB-8D6D-65DB0AC1AF65}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{86225E5C-7595-4D1C-985D-8A0458D714C0}]
"(Default)" = "IClient2"

[HKCU\Software\Classes\Interface\{E6B3F5FA-4208-4C37-AE07-F6435B68D693}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DD31376E-E529-43F2-B3B4-E379EBD28E2A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D804BA85-DB0F-49EE-B723-DCDF0425BD9F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CC306E9-2546-4101-82AB-29613AD6F7A7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{1A8A9402-E89F-40AE-88A8-B328391684B6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{E6B3F5FA-4208-4C37-AE07-F6435B68D693}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{064E6072-5592-4D13-AFDB-55F5A494E137}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{3F60CFF7-BE3F-4404-8395-C02D0CDD318E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C6605772-3D9D-44A7-B43A-4590E6B43EE3}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DC4BC923-6A52-4F02-9F8A-547B606955E7}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{D4B240B9-059B-4D13-8997-31B282B3BD43}]
"(Default)" = "IModality"

[HKCU\Software\Classes\Interface\{8F04E92D-EE26-4B64-B9C1-56DD90816810}]
"(Default)" = "IFollowedRoomsChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{0FDB5B86-DD44-41BF-A443-317FD19BBF3D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C6605772-3D9D-44A7-B43A-4590E6B43EE3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{2209E091-5B90-4CAF-8582-CC5979883376}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{BE6086A1-D436-4834-89EE-3CA4F8596A58}]
"(Default)" = "IConferenceApplicationData"

[HKCU\Software\Classes\Interface\{9274DBDC-43CE-45AA-A817-414A4494AD28}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{57C3CB4D-C794-456F-846D-0E1ECA78BD00}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{21629AB6-9557-4985-9237-49177F618692}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F8DF0B4B-A4CE-476B-81D3-9FBA98461B62}]
"(Default)" = "ISignInConfiguration"

[HKCU\Software\Classes\Wow6432Node\Interface\{4AA93AA8-898C-45EE-8E5C-1A86739B3F96}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B00F2520-029C-47D0-B4E8-8FBEF47CAA7E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{DAB42E13-500A-409A-AC34-C1BF4719EE2E}]
"(Default)" = "_IFavoriteContactsEvents"

[HKCU\Software\Classes\Interface\{011B320C-9AC1-4DDE-B595-3D0014472E2F}]
"(Default)" = "_IRecentContactsEvents"

[HKCU\Software\Classes\Interface\{E4E1D0AF-5B70-45AF-9A0E-F548D8FBD17C}]
"(Default)" = "IAVModality"

[HKCU\Software\Classes\Wow6432Node\Interface\{80EDBF3A-812E-42B5-A67F-6CC6D9A19A6C}]
"(Default)" = "IDelegatorClient"

[HKCU\Software\Classes\Wow6432Node\Interface\{FB67275C-4D9E-4C32-9793-A96749884FC1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{311DDE48-ED7D-46FA-9E0A-2E314B7FEF7C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{92D7E7A8-48D8-4166-8911-630AE02B2B93}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{02DD541F-C863-4295-92AB-A4CF29F5D841}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B8FD4A53-E7E6-4995-A5B5-1306C7584964}]
"(Default)" = "IUnreadMessageCountChangedEventData"

[HKCU\Software\Classes\Interface\{283C2089-B760-4D65-9199-716627174F7A}]
"(Default)" = "IGroupNameChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAB42E13-500A-409A-AC34-C1BF4719EE2E}]
"(Default)" = "_IFavoriteContactsEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{1B04D929-11E4-46C2-9162-EA4F2758C3A7}]
"(Default)" = "IClientSettings"

[HKCU\Software\Classes\Interface\{C7ACB102-B692-49CC-92DA-5824822C7B96}]
"(Default)" = "IConferenceScheduler"

[HKCU\Software\Classes\Interface\{81C9D13F-A4F9-4E13-92D3-BB271E8DF3D2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C79E4169-535F-4A41-8DE2-C65A90D9503D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{905B727D-FD8F-46EC-8006-CE245F6835EE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A222195-F65E-467F-8F77-EB180BD85288}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{A0984F01-5D2C-4302-87A0-69BE7B015143}]
"(Default)" = "IConferenceRegionalAccessInformationCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{64B7E9AD-D920-4EAA-95C7-9D95DE9ACE24}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2C59A886-ACD3-46BB-8BAC-7C1C59FB2E0D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B0B0E8F8-32DA-4CB0-A124-D1E35891D53A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{2EDAF003-14A6-4FAF-8A72-99526D048D63}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{36CDC166-4F21-46AD-A60E-8551F26C1D41}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{C4D95336-5949-4D13-AAC8-82039E5CBCFC}]
"(Default)" = "_IUtilitiesCallback"

[HKCU\Software\Classes\Interface\{BC9F5F40-D315-40C1-B1C6-CEA0646E18E2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{21C41EDE-7ED8-4D97-9B0D-DD785781AF9B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DBA05C15-1C07-4A76-8248-08D8416A24E3}]
"(Default)" = "IIsTypingChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{0CA9BAE8-DD28-4929-A821-4D00F11203CC}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{CA7EEB7A-7DC3-4FFE-A174-23DB5A003C04}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4E8DC7E0-04B8-470B-BDFA-F520099B975F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{62B932E9-7847-4D78-BEEE-5D58BF815B03}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C79E4169-535F-4A41-8DE2-C65A90D9503D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{0C81EC90-9469-4ED4-ACAD-ADB86E11039C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{10D66B39-5E4B-4C98-AAC6-D0458FEB1BDB}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{806D3227-4CB8-47C4-9864-7D4DF4F44069}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{66D1FFC0-C234-4F3D-ABAA-98222A69E525}]
"(Default)" = "IConferenceTelephoneAccessInformation"

[HKCU\Software\Classes\Interface\{3C8D7146-35EA-4133-B2F6-C1FC2401A091}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{7818A3F7-674B-477E-99E8-54774579A8E7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{219DC126-9A48-483F-80C2-3F22B3B47829}]
"(Default)" = "_IScheduledConferenceManagerCallback"

[HKCU\Software\Classes\Interface\{26F15083-86DB-4663-89ED-A0ABC896B9A1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{04378C72-E58F-47C0-8621-901B85CA2ED4}]
"(Default)" = "IConversationContext"

[HKCU\Software\Classes\Interface\{3C8D7146-35EA-4133-B2F6-C1FC2401A091}]
"(Default)" = "ISelf2"

[HKCU\Software\Classes\Interface\{70DCCE38-90BF-4428-A34F-3A6082F29E50}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C7ACB102-B692-49CC-92DA-5824822C7B96}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{A0C3E9BA-C622-45A2-9FED-2C662F3F489A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{38E5EC21-81A1-45A7-94D6-B812976231A4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{339D28C6-3D1A-45D4-BA14-A56742749A43}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{744BAB86-B15F-4BD5-B7DD-476B0CE0162A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{BE6086A1-D436-4834-89EE-3CA4F8596A58}]
"(Default)" = "IConferenceApplicationData"

[HKCU\Software\Classes\Interface\{7CFE77CD-731D-48B2-82B1-ECA3414D62E3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{26C8D96D-7D22-4E9E-948A-EDCCB4CA9C64}]
"(Default)" = "_IParticipantCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{02DD541F-C863-4295-92AB-A4CF29F5D841}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{9397FF55-EE06-4F02-8F2A-BE3AE249D4BB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C31FB52D-9E9E-45AD-A102-5218E1685B78}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D992371E-5161-453B-97E6-6E7C67BC075E}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9244D573-914F-4C1F-93F6-31609A95CBED}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DEDDD7BD-4763-41D2-9AAA-B2C143457CA4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{628D7BDD-45AB-404D-8505-B3ADC15F454D}]
"(Default)" = "_IRoomCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{57C3CB4D-C794-456F-846D-0E1ECA78BD00}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{08E1E9CF-A7E4-43BE-AE8E-B223CE71E46E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4BACB4B8-1236-42B8-BDA1-D1533148780D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{12480BD4-072F-4763-B9FB-41B2CA54F9CD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{05789509-AFA1-4E90-B4FA-1A7820DB9796}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8E73E7E1-90CE-4D3B-B5B7-71E87B2E8BA5}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{D992371E-5161-453B-97E6-6E7C67BC075E}]
"(Default)" = "_IPreviousConversationsManagerEvents"

[HKCU\Software\Classes\Interface\{DAB42E13-500A-409A-AC34-C1BF4719EE2E}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C12F0DE5-9A7D-425C-B391-8BE004EAA2F6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{6B551C9E-DE81-41DF-A0AE-39F0AF11D508}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{68DA8699-6C6E-4390-BD82-709FF1DC1702}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F97BED54-E434-4020-A197-F15AEA9D9C95}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{2A9385AA-CF61-4E47-B64C-214DE4A4AD11}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{74B6CAF0-755E-454D-A819-D0E439EF5296}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{70986DCE-4AA8-4DFB-9A45-4BFCF7A206F5}]
"(Default)" = "_IChannel2Callback"

[HKCU\Software\Classes\Wow6432Node\Interface\{A58F54D2-9786-4309-964D-96549AEC7611}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{88C688B0-3908-4C56-A2E8-F90AB705C536}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2A9385AA-CF61-4E47-B64C-214DE4A4AD11}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F0B791FA-434B-49F2-B84E-05619EBE6BEB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{744BAB86-B15F-4BD5-B7DD-476B0CE0162A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4B3A2412-C149-4E52-A713-6CEBCF47503E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{37C7F935-E215-46D2-82A3-A451840EC733}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3CD1DB65-D85B-4912-8536-6BD8E19F1738}]
"(Default)" = "IVideoChannelCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{18BA13C7-A64E-4301-BA51-D1BFB3C1C9D5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4023052E-E3B7-48A3-BCB3-CA2234D9BAEE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{EC9773AD-7D22-4B03-B949-5E9055AF0F19}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{56F7DEC0-59CA-47C6-9F35-D5066A702B39}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{420A24E2-5C31-4262-9BD5-058682300ED6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F423726D-0E9B-4B55-9569-E79865210F69}]
"(Default)" = "IScheduledConferenceCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{DC4BC923-6A52-4F02-9F8A-547B606955E7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DA7CF784-67DF-429C-82FB-9AFD99F6CCCB}]
"(Default)" = "IVideoDevice"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C43A2BE-BA4A-41E8-8F93-A9DC5F091892}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A986B5D-E5EC-4395-AD2D-0E62B72DA776}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7BF20B14-58D1-494B-B301-9B16BACC9610}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{905B727D-FD8F-46EC-8006-CE245F6835EE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{56F7DEC0-59CA-47C6-9F35-D5066A702B39}]
"(Default)" = "IConversationStateChangePropertyDictionary"

[HKCU\Software\Classes\Interface\{F87AFD9A-9BF8-4AC4-953E-33C4D2035D33}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3690D374-3779-4EFC-B8E8-20642C01529A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{9E0F8FCA-D9C9-47CD-87F4-5554217DFFCC}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9B3A702D-5BE1-4FCE-ADB3-EBBD23E078C3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{FA7971EF-1E41-429F-8C79-DAC5F88D444B}]
"(Default)" = "_IConversationHistoryEvents"

[HKCU\Software\Classes\Interface\{5418E2AB-EB9A-4659-B4DC-28DE633B2B8F}]
"(Default)" = "IMutedChangedEventData"

[HKCU\Software\IM Providers\Skype]
"UpAndRunning" = "1"

[HKCU\Software\Classes\Wow6432Node\Interface\{AE3A7C39-9C30-4E0F-BAE4-D8344EF377EA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{ACABFA1C-0738-4C4D-AF7E-326873CF4ACE}]
"(Default)" = "IPreviousConversationsManager"

[HKCU\Software\Classes\Wow6432Node\Interface\{48B3099D-841D-4CAA-9202-5787596E2BD2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{378CD767-1B64-4A0E-A941-8F52869FC9DF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{65B71572-5338-43C8-9E4C-F1DFC6711AD1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{420A24E2-5C31-4262-9BD5-058682300ED6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E664682C-CBA5-4C7C-A65B-9CD046F24CBD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{17635563-2FA5-46AD-8F47-3F0FF958ECE2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{EE9F3E74-AC61-469E-80D6-E22BF4EEFF5C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1A8A9402-E89F-40AE-88A8-B328391684B6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{71A054B3-4D4B-4643-B14F-4572494B19E7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{B28F2007-3926-49CF-9101-4CCB9574049B}]
"(Default)" = "IPreferredCapabilitiesChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{B1F5BCD8-69A6-4FC3-9EF0-9BD4AD999061}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2EDAF003-14A6-4FAF-8A72-99526D048D63}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{BE026CD2-7E82-4F7C-8762-F6B02F496174}]
"(Default)" = "_IApplicationSharingModalityEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA478B44-4FCE-4082-8700-8CEC69FB50E1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A7FF112-42CE-4D03-8922-D02AC6C5759F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4B3A2412-C149-4E52-A713-6CEBCF47503E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{62074904-8D06-43FE-A531-E63DF7FDC2E7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B1C6ECC3-1EA7-495D-9337-02FE4FB723F0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DA7CF784-67DF-429C-82FB-9AFD99F6CCCB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{330639F2-E399-48CB-863F-56A50A27A138}]
"(Default)" = "IWebAppExtension"

[HKCU\Software\Classes\Interface\{62B932E9-7847-4D78-BEEE-5D58BF815B03}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{02DD541F-C863-4295-92AB-A4CF29F5D841}]
"(Default)" = "IConversationWindow2"

[HKCU\Software\Classes\Interface\{04378C72-E58F-47C0-8621-901B85CA2ED4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{37C7F935-E215-46D2-82A3-A451840EC733}]
"(Default)" = "IConversation2"

[HKCU\Software\Classes\Wow6432Node\Interface\{B0C10F94-CAB6-4821-9643-D781885A46AF}]
"(Default)" = "_IVoiceMailsManagerEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{E24C2484-C70D-44AB-8A4E-F1585A17A3E1}]
"(Default)" = "IVoiceMailsManager"

[HKCU\Software\Classes\Wow6432Node\Interface\{08DDF5C4-FA12-4978-B26E-C6D23C453413}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{84340964-7820-4EBC-BCD3-702926DE23E8}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BD891697-C93E-4A0B-9B6C-004BD81B6EE8}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{64561371-77A2-4BD4-A909-E6DEB1B5C6CF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{6B551C9E-DE81-41DF-A0AE-39F0AF11D508}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{CA478B44-4FCE-4082-8700-8CEC69FB50E1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B26F6403-761E-48D4-84E2-619C17EAEB13}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{081793DA-7221-45C3-8AFA-3A2E6E464670}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{2495B94C-38AF-439B-BBA0-0AD38D959CE4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D0984CEF-E323-4574-B07B-5C970C9CAEE0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{3DEBDC7E-811F-4304-BDD7-7D98C732026C}]
"(Default)" = "IHistoryInfo"

[HKCU\Software\Classes\Wow6432Node\Interface\{744BAB86-B15F-4BD5-B7DD-476B0CE0162A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{F719ED75-B7BD-45D3-9097-254509226F20}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{CA7EEB7A-7DC3-4FFE-A174-23DB5A003C04}]
"(Default)" = "IStreamStateChangedEventData"

[HKCU\Software\Classes\Interface\{2EDAF003-14A6-4FAF-8A72-99526D048D63}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{64561371-77A2-4BD4-A909-E6DEB1B5C6CF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{3C43A2BE-BA4A-41E8-8F93-A9DC5F091892}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{806D3227-4CB8-47C4-9864-7D4DF4F44069}]
"(Default)" = "_IAutomationCallback"

[HKCU\Software\Classes\Interface\{87084018-7E74-4F92-AB39-1CF03188580E}]
"(Default)" = "IUtilities"

[HKCU\Software\Classes\Interface\{BD891697-C93E-4A0B-9B6C-004BD81B6EE8}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4CB70415-BA71-491E-B12D-155D85CBDFF1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{064E6072-5592-4D13-AFDB-55F5A494E137}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{76428270-36FA-4236-8BDF-AADB39FD1371}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{35CE3A44-C636-4D31-BC95-B9370C2251B9}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{109D32CE-E09F-46F5-9ECB-01E1D273B7DA}]
"(Default)" = "IConversationWindowInformationDictionary"

[HKCU\Software\Classes\Interface\{464D5228-9F68-4B1F-B430-156A104E2B85}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{21C41EDE-7ED8-4D97-9B0D-DD785781AF9B}]
"(Default)" = "IRoomMessageCollection"

[HKCU\Software\Classes\Interface\{BD891697-C93E-4A0B-9B6C-004BD81B6EE8}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{A766520D-F700-4BF5-8428-56BD914C1C40}]
"(Default)" = "IRoom"

[HKCU\Software\Classes\Interface\{8AFFB8CE-5404-4280-BCA3-E2E4388E6D73}]
"(Default)" = "IDescriptionChangedEventData"

[HKCU\Software\Classes\Interface\{7452BD0F-65CB-4A5E-AC37-E2BEA1F43DD9}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{5418E2AB-EB9A-4659-B4DC-28DE633B2B8F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{32430741-330B-48DF-96F6-0CFE00484D40}]
"(Default)" = "IControlRequestReceivedEventData"

[HKCU\Software\Classes\Interface\{3CD1DB65-D85B-4912-8536-6BD8E19F1738}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{26C8D96D-7D22-4E9E-948A-EDCCB4CA9C64}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C0034194-F7B6-43EB-B0E0-7852FC8E7BFA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CD92461-CA4F-4BEB-A636-8BBCC192E60F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7693221D-7E9F-47D3-8782-6437CF3D4C0C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{AB2D1A67-2B3D-4E25-B21C-03F4BFC4C2BE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A222195-F65E-467F-8F77-EB180BD85288}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7CC306E9-2546-4101-82AB-29613AD6F7A7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{92A9EB9B-85EE-444E-A302-00C3C945BAA4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{EC9773AD-7D22-4B03-B949-5E9055AF0F19}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C31FB52D-9E9E-45AD-A102-5218E1685B78}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1FF8AA01-D8AF-4B2B-B254-BEFEFABAF2D6}]
"(Default)" = "IConferenceInfoCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{90B49A60-72AF-4360-9F9B-916DB7504A3C}]
"(Default)" = "IAlertLevelChangedEventData"

[HKCU\Software\Classes\Interface\{08DDF5C4-FA12-4978-B26E-C6D23C453413}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7356D7BB-FD71-4554-84A1-3BBE28726551}]
"(Default)" = "ISearchResults"

[HKCU\Software\Classes\Wow6432Node\Interface\{3417D640-3976-4CB6-BC82-54E5E2E10784}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{378CD767-1B64-4A0E-A941-8F52869FC9DF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{283C2089-B760-4D65-9199-716627174F7A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E5CFF4A5-83A8-4FD8-8DAA-77A3E2288D4A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{10D66B39-5E4B-4C98-AAC6-D0458FEB1BDB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{62A75516-C79B-42D7-8B49-3BA492C2B385}]
"(Default)" = "IInstantMessageModality"

[HKCU\Software\Classes\Interface\{3C8D7146-35EA-4133-B2F6-C1FC2401A091}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{92D7E7A8-48D8-4166-8911-630AE02B2B93}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B0C10F94-CAB6-4821-9643-D781885A46AF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E0E8B413-BB57-4B58-B1FB-288F3A269E35}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{37C7F935-E215-46D2-82A3-A451840EC733}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{74B6CAF0-755E-454D-A819-D0E439EF5296}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D60B1701-766D-401E-8586-83E0C9106BE0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B26F6403-761E-48D4-84E2-619C17EAEB13}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{12480BD4-072F-4763-B9FB-41B2CA54F9CD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C413A27F-601E-4261-B9E3-0EB966F4E7D1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{6B551C9E-DE81-41DF-A0AE-39F0AF11D508}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{62A75516-C79B-42D7-8B49-3BA492C2B385}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7452BD0F-65CB-4A5E-AC37-E2BEA1F43DD9}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{219DC126-9A48-483F-80C2-3F22B3B47829}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{A0984F01-5D2C-4302-87A0-69BE7B015143}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{B3FF95BD-B743-498C-9973-7F8A2A78576A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{EE9F3E74-AC61-469E-80D6-E22BF4EEFF5C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{BD891697-C93E-4A0B-9B6C-004BD81B6EE8}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{06437ABB-C419-4B11-A474-1A2B02FBD646}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{1FF0E6F1-2FE4-4E29-A123-557AF0DB6927}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{70DCCE38-90BF-4428-A34F-3A6082F29E50}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{EE9F3E74-AC61-469E-80D6-E22BF4EEFF5C}]
"(Default)" = "IClient"

[HKCU\Software\Classes\Wow6432Node\Interface\{1124AA59-B6F3-4EB1-B79A-E7F53B388B8D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{0FDB5B86-DD44-41BF-A443-317FD19BBF3D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CD92461-CA4F-4BEB-A636-8BBCC192E60F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{340C54A6-35CF-4971-B540-72D7F040AC24}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B0B0E8F8-32DA-4CB0-A124-D1E35891D53A}]
"(Default)" = "IAudioDevice"

[HKCU\Software\Classes\Wow6432Node\Interface\{086F0E9D-A416-40F9-877C-F1C82DC1A6AD}]
"(Default)" = "IVideoViewInformationChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{57CC2235-96C5-49FA-B92B-350486C6CF52}]
"(Default)" = "_IConversationCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{9B3A702D-5BE1-4FCE-ADB3-EBBD23E078C3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{50D86EE2-288F-44F5-8144-69F6E3B24B90}]
"(Default)" = "_IContactManagerEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{DD31376E-E529-43F2-B3B4-E379EBD28E2A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E5CFF4A5-83A8-4FD8-8DAA-77A3E2288D4A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D0984CEF-E323-4574-B07B-5C970C9CAEE0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{E66CA1CC-9DB0-467E-9C60-6A832ACD6780}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{70DCCE38-90BF-4428-A34F-3A6082F29E50}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{4FE44049-4E44-4109-B234-4E4EFC135A86}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{533891F1-A460-43E6-8BDA-6D0D2C13ADDE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9D4D3D10-DEBC-40C6-ACF9-527986CB42BC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{B335AE5E-E4EA-49D3-B03B-646A96FE66D3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{57C3CB4D-C794-456F-846D-0E1ECA78BD00}]
"(Default)" = "IContactCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C8D7146-35EA-4133-B2F6-C1FC2401A091}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D9D04B55-D820-4D5B-A690-658A49368478}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8F04E92D-EE26-4B64-B9C1-56DD90816810}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{35CE3A44-C636-4D31-BC95-B9370C2251B9}]
"(Default)" = "IFavoriteContacts"

[HKCU\Software\Classes\Wow6432Node\Interface\{995F992C-9DEF-47B9-BF11-81813C0C0E28}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{569E04F2-D286-4903-9642-44D850310956}]
"(Default)" = "_IClientSettingsEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C43A2BE-BA4A-41E8-8F93-A9DC5F091892}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{ACABFA1C-0738-4C4D-AF7E-326873CF4ACE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{15D4461D-C7EB-45CB-B214-F1C45FED1DB2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4290152C-75C9-47C8-AA12-814818360B3F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{AF2ABA54-F591-42BA-8004-20944C9FB4D7}]
"(Default)" = "_IConversationWindow2Events"

[HKCU\Software\Microsoft\Direct3D\MostRecentApplication]
"Name" = "Skype.exe"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A222195-F65E-467F-8F77-EB180BD85288}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{95B8D3E8-F3D5-4DC0-BCFE-AB80C835DEA0}]
"(Default)" = "IContactSubscription"

[HKCU\Software\Classes\Wow6432Node\Interface\{9244D573-914F-4C1F-93F6-31609A95CBED}]
"(Default)" = "IConferenceRegionalAccessNumber"

[HKCU\Software\Classes\Interface\{DAC6D77B-12F7-405C-BB33-002D6D4007F3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies]
"CachePrefix" = "Cookie:"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAC6D77B-12F7-405C-BB33-002D6D4007F3}]
"(Default)" = "IResiliencyModeChangedEventData"

[HKCU\Software\Classes\Interface\{15D4461D-C7EB-45CB-B214-F1C45FED1DB2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9E0F8FCA-D9C9-47CD-87F4-5554217DFFCC}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{9918673D-4D74-41CF-8840-D4996395A34C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{4FE44049-4E44-4109-B234-4E4EFC135A86}]
"(Default)" = "_IInstantMessageModalityEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{8E73E7E1-90CE-4D3B-B5B7-71E87B2E8BA5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{5FA92EA7-6E6E-4A82-8F0D-107FEAF5A75D}]
"(Default)" = "_IConversationHistoryCallback"

[HKCU\Software\Classes\Interface\{3959E5C6-75CC-448E-9A18-9F163FF47646}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{6B551C9E-DE81-41DF-A0AE-39F0AF11D508}]
"(Default)" = "_IShareableContentEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA62E6F3-3E6D-451B-AEAA-6A1B7AACF8D4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{18A9A79A-CBC7-4F8B-8B2B-9B40CA75EC3C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{663C61F4-A9DA-4A6F-A606-F142F665DF61}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AC10D6E9-4A8C-4484-B8F4-CA1E36347AAE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AA41EE75-F9C5-42F7-8D17-1D92D6BA4D92}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{569E04F2-D286-4903-9642-44D850310956}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1F8EBE6F-7993-42CE-980A-A2F03793BE71}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{899B846A-8887-45D6-B8F5-8AAA0BFDF722}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{E4E1D0AF-5B70-45AF-9A0E-F548D8FBD17C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{0CA9BAE8-DD28-4929-A821-4D00F11203CC}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{420A24E2-5C31-4262-9BD5-058682300ED6}]
"(Default)" = "IConferenceRegionalAccessInformation"

[HKCU\Software\Classes\Interface\{56A868B4-0AD4-11CE-B03A-0020AF0BA770}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3690D374-3779-4EFC-B8E8-20642C01529A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C43A2BE-BA4A-41E8-8F93-A9DC5F091892}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{3690D374-3779-4EFC-B8E8-20642C01529A}]
"(Default)" = "ISharingResource"

[HKCU\Software\Classes\Interface\{76428270-36FA-4236-8BDF-AADB39FD1371}]
"(Default)" = "_IConversationWindowCallback"

[HKCU\Software\Classes\Interface\{F423726D-0E9B-4B55-9569-E79865210F69}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{953AE732-F53A-4116-AC1B-0321B3FB3DBA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{17635563-2FA5-46AD-8F47-3F0FF958ECE2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{AC10D6E9-4A8C-4484-B8F4-CA1E36347AAE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BE026CD2-7E82-4F7C-8762-F6B02F496174}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{56A868B4-0AD4-11CE-B03A-0020AF0BA770}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4CB70415-BA71-491E-B12D-155D85CBDFF1}]
"(Default)" = "IConferenceRegionalAccessNumberCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{340C54A6-35CF-4971-B540-72D7F040AC24}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{15D4461D-C7EB-45CB-B214-F1C45FED1DB2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DA7CF784-67DF-429C-82FB-9AFD99F6CCCB}]
"(Default)" = "IVideoDevice"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A7FF112-42CE-4D03-8922-D02AC6C5759F}]
"(Default)" = "ISharingResourceList"

[HKCU\Software\Classes\Interface\{DD181E97-EEE0-4D65-BAD1-16866D0C7953}]
"(Default)" = "IAccessPermission"

[HKCU\Software\Classes\Interface\{10D66B39-5E4B-4C98-AAC6-D0458FEB1BDB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BD891697-C93E-4A0B-9B6C-004BD81B6EE8}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{84340964-7820-4EBC-BCD3-702926DE23E8}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA62E6F3-3E6D-451B-AEAA-6A1B7AACF8D4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{628D7BDD-45AB-404D-8505-B3ADC15F454D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAA5FDE3-A81C-4F23-80B6-C47B52C649BF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F97973D7-9436-4A3E-A802-F6EA172A0425}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{2209E091-5B90-4CAF-8582-CC5979883376}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4FE44049-4E44-4109-B234-4E4EFC135A86}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{478DDA59-64C0-4429-AC8A-F10A940B52CC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{36CDC166-4F21-46AD-A60E-8551F26C1D41}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Local Settings\MuiCache\2A\52C64B7E\@%SystemRoot%\system32]
"p2pcollab.dll,-8042" = "Peer to Peer Trust"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C43A2BE-BA4A-41E8-8F93-A9DC5F091892}]
"(Default)" = "_ISelf2Events"

[HKCU\Software\Classes\Interface\{B1F5BCD8-69A6-4FC3-9EF0-9BD4AD999061}]
"(Default)" = "IConversationWindow"

[HKCU\Software\Classes\Interface\{232F1CAB-5351-4E48-8A87-2185445F712D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{68B1FC26-B48F-4D5F-B041-8E246676D836}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B22EDBEA-9E61-4703-82BE-01C05619B6D6}]
"(Default)" = "ILocalSharedResourcesChangedEventData"

[HKCU\Software\Classes\Interface\{7452BD0F-65CB-4A5E-AC37-E2BEA1F43DD9}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3187885C-A8AF-4D4B-8E80-F4B9D447A7B2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{32430741-330B-48DF-96F6-0CFE00484D40}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{15D4461D-C7EB-45CB-B214-F1C45FED1DB2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4CB70415-BA71-491E-B12D-155D85CBDFF1}]
"(Default)" = "IConferenceRegionalAccessNumberCollection"

[HKCU\Software\Classes\Interface\{21C41EDE-7ED8-4D97-9B0D-DD785781AF9B}]
"(Default)" = "IRoomMessageCollection"

[HKCU\Software\Classes\Interface\{1124AA59-B6F3-4EB1-B79A-E7F53B388B8D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{92A9EB9B-85EE-444E-A302-00C3C945BAA4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{38E5EC21-81A1-45A7-94D6-B812976231A4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3DEBDC7E-811F-4304-BDD7-7D98C732026C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{5E7AB04C-E4B8-49FB-85FF-9E2BCA2899D3}]
"(Default)" = "IConferenceAccessInformation2"

[HKCU\Software\Classes\Interface\{76DE1CD8-F278-48A1-A391-E5BEB8F428E6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{92D7E7A8-48D8-4166-8911-630AE02B2B93}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{08E1E9CF-A7E4-43BE-AE8E-B223CE71E46E}]
"(Default)" = "_IChannelCallback"

[HKCU\Software\Classes\Interface\{F423726D-0E9B-4B55-9569-E79865210F69}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{62B932E9-7847-4D78-BEEE-5D58BF815B03}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{5E7AB04C-E4B8-49FB-85FF-9E2BCA2899D3}]
"(Default)" = "IConferenceAccessInformation2"

[HKCU\Software\Classes\Interface\{9112CE9B-3704-48C0-86DC-7A7B0F34D7A3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{10C3ACC7-6C0C-4F35-ADFB-AE0F200A8583}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DA7CF784-67DF-429C-82FB-9AFD99F6CCCB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{AA186C92-181E-417F-B150-FCA0F367E0FC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D804BA85-DB0F-49EE-B723-DCDF0425BD9F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8A88C016-AA5D-4EAE-9C79-7AA5C360ED76}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F423726D-0E9B-4B55-9569-E79865210F69}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1FF0E6F1-2FE4-4E29-A123-557AF0DB6927}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA7EEB7A-7DC3-4FFE-A174-23DB5A003C04}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{25025B1B-0084-44D1-B383-9FFC9A99ABCD}]
"(Default)" = "_IConversationManagerEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{3417D640-3976-4CB6-BC82-54E5E2E10784}]
"(Default)" = "_IUtilities2Events"

[HKCU\Software\Classes\Wow6432Node\Interface\{F423726D-0E9B-4B55-9569-E79865210F69}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7B39CB77-4AEB-42D7-B351-CB5472C1C6AD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4FE44049-4E44-4109-B234-4E4EFC135A86}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{9112CE9B-3704-48C0-86DC-7A7B0F34D7A3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionReason" = "1"

[HKCU\Software\Classes\Wow6432Node\Interface\{5418E2AB-EB9A-4659-B4DC-28DE633B2B8F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{95B9A382-EA50-45E4-965E-BA61E7213DBA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{4B3A2412-C149-4E52-A713-6CEBCF47503E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{603E2454-725A-4679-A6A8-363B21633CB2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{E4E1D0AF-5B70-45AF-9A0E-F548D8FBD17C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C413A27F-601E-4261-B9E3-0EB966F4E7D1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{D0DBB17D-565E-486C-A47B-BA32DC1FAD0A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DCDEA425-B5F2-4719-A3B4-69FFB9770BE6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{082EE280-726E-417F-99CB-81A0CCBFF883}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CC306E9-2546-4101-82AB-29613AD6F7A7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{905B727D-FD8F-46EC-8006-CE245F6835EE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{21C41EDE-7ED8-4D97-9B0D-DD785781AF9B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{10C3ACC7-6C0C-4F35-ADFB-AE0F200A8583}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4E8DC7E0-04B8-470B-BDFA-F520099B975F}]
"(Default)" = "IControllerChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{F0CE810F-E36F-4CD8-A836-515B9A6E09FC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{AC10D6E9-4A8C-4484-B8F4-CA1E36347AAE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{1124AA59-B6F3-4EB1-B79A-E7F53B388B8D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{64B7E9AD-D920-4EAA-95C7-9D95DE9ACE24}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAA5FDE3-A81C-4F23-80B6-C47B52C649BF}]
"(Default)" = "IContactEndpointCollection"

[HKCU\Software\Classes\Interface\{09028936-CD20-43EF-98CF-56726ADDBA34}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{8A88C016-AA5D-4EAE-9C79-7AA5C360ED76}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9274DBDC-43CE-45AA-A817-414A4494AD28}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{ACD2FDB9-98ED-4283-AAE8-3CD989EBD9AE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{CE16D540-B9E8-4742-8659-9A7A318AFB92}]
"(Default)" = "IDevice"

[HKCU\Software\Classes\Interface\{E6B3F5FA-4208-4C37-AE07-F6435B68D693}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{2EDAF003-14A6-4FAF-8A72-99526D048D63}]
"(Default)" = "IAutomation"

[HKCU\Software\Classes\Wow6432Node\Interface\{8AFFB8CE-5404-4280-BCA3-E2E4388E6D73}]
"(Default)" = "IDescriptionChangedEventData"

[HKCU\Software\Classes\Interface\{F8DF0B4B-A4CE-476B-81D3-9FBA98461B62}]
"(Default)" = "ISignInConfiguration"

[HKCU\Software\Classes\Wow6432Node\Interface\{F5996C71-77AB-4020-9776-C2C270FEF2AE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{86225E5C-7595-4D1C-985D-8A0458D714C0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B335AE5E-E4EA-49D3-B03B-646A96FE66D3}]
"(Default)" = "IShareableContent"

[HKCU\Software\Classes\Interface\{3959E5C6-75CC-448E-9A18-9F163FF47646}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{5418E2AB-EB9A-4659-B4DC-28DE633B2B8F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DCDEA425-B5F2-4719-A3B4-69FFB9770BE6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{55A21CF3-A2B3-484E-BE2A-14280F501289}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2D3D62CA-E9F6-4F94-8EBD-5FABAB29E6A5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{74B6CAF0-755E-454D-A819-D0E439EF5296}]
"(Default)" = "IPublicCloudProviderInfo"

[HKCU\Software\Classes\Interface\{57CC2235-96C5-49FA-B92B-350486C6CF52}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{CA62E6F3-3E6D-451B-AEAA-6A1B7AACF8D4}]
"(Default)" = "IConversationWindowNeedsSizeChangeEventData"

[HKCU\Software\Classes\Interface\{8665FD95-7720-4F9E-B605-6ABCBD7EDFF4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{DD31376E-E529-43F2-B3B4-E379EBD28E2A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{AA41EE75-F9C5-42F7-8D17-1D92D6BA4D92}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{62074904-8D06-43FE-A531-E63DF7FDC2E7}]
"(Default)" = "IModalityPropertyDictionary"

[HKCU\Software\Classes\Interface\{209DA899-15F1-499A-B8B5-A847EAA899AE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionTime" = "09 60 00 23 0B 29 D0 01"

[HKCU\Software\Classes\Wow6432Node\Interface\{F0CE810F-E36F-4CD8-A836-515B9A6E09FC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{25A47938-5C31-4F43-9108-DA01EE5869C0}]
"(Default)" = "IVoiceMail"

[HKCU\Software\Classes\Interface\{25025B1B-0084-44D1-B383-9FFC9A99ABCD}]
"(Default)" = "_IConversationManagerEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A7FF112-42CE-4D03-8922-D02AC6C5759F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C79E4169-535F-4A41-8DE2-C65A90D9503D}]
"(Default)" = "IModalityStateChangePropertyDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{C413A27F-601E-4261-B9E3-0EB966F4E7D1}]
"(Default)" = "ILyncClient"

[HKCU\Software\Classes\Wow6432Node\Interface\{F87AFD9A-9BF8-4AC4-953E-33C4D2035D33}]
"(Default)" = "IPreviousConversationsManagerConnectionStateChangedEventData"

[HKCU\Software\Classes\Interface\{C79E4169-535F-4A41-8DE2-C65A90D9503D}]
"(Default)" = "IModalityStateChangePropertyDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{C0034194-F7B6-43EB-B0E0-7852FC8E7BFA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AA186C92-181E-417F-B150-FCA0F367E0FC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3DEBDC7E-811F-4304-BDD7-7D98C732026C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CFE77CD-731D-48B2-82B1-ECA3414D62E3}]
"(Default)" = "IConversationPropertyChangedEventData"

[HKCU\Software\Classes\Interface\{9244D573-914F-4C1F-93F6-31609A95CBED}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{57CC2235-96C5-49FA-B92B-350486C6CF52}]
"(Default)" = "_IConversationCallback"

[HKCU\Software\Classes\Interface\{4C675532-6D55-49DD-8C8E-3C1CC5624CF2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4B3A2412-C149-4E52-A713-6CEBCF47503E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{2F8C3E58-436B-42DB-8924-6C394B37DCA2}]
"(Default)" = "IConferenceAccessInformation"

[HKCU\Software\Classes\Wow6432Node\Interface\{53D014C1-54DB-42B3-9DFD-8E231EF2C356}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F97BED54-E434-4020-A197-F15AEA9D9C95}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDecisionTime" = "10 CD EF 1E 0B 29 D0 01"

[HKCU\Software\Classes\Wow6432Node\Interface\{25D64AEA-0E65-49CB-8D6D-65DB0AC1AF65}]
"(Default)" = "IClientSettingsChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{5418E2AB-EB9A-4659-B4DC-28DE633B2B8F}]
"(Default)" = "IMutedChangedEventData"

[HKCU\Software\Classes\Interface\{62074904-8D06-43FE-A531-E63DF7FDC2E7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9244D573-914F-4C1F-93F6-31609A95CBED}]
"(Default)" = "IConferenceRegionalAccessNumber"

[HKCU\Software\Classes\Wow6432Node\Interface\{7BF20B14-58D1-494B-B301-9B16BACC9610}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C7ACB102-B692-49CC-92DA-5824822C7B96}]
"(Default)" = "IConferenceScheduler"

[HKCU\Software\Classes\Interface\{AB2D1A67-2B3D-4E25-B21C-03F4BFC4C2BE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{0BDB9057-28AE-4BF0-AFF0-12A148E51637}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2D3D62CA-E9F6-4F94-8EBD-5FABAB29E6A5}]
"(Default)" = "IConferenceInfoPropertyDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{AA41EE75-F9C5-42F7-8D17-1D92D6BA4D92}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{84340964-7820-4EBC-BCD3-702926DE23E8}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{628D7BDD-45AB-404D-8505-B3ADC15F454D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D9D04B55-D820-4D5B-A690-658A49368478}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{25A47938-5C31-4F43-9108-DA01EE5869C0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F7EE956B-A713-48D3-AFEF-0A28F37740B3}]
"(Default)" = "IAsynchronousOperation"

[HKCU\Software\Classes\Interface\{EC9773AD-7D22-4B03-B949-5E9055AF0F19}]
"(Default)" = "IGroupCollectionChangedEventData"

[HKCU\Software\Classes\Interface\{04378C72-E58F-47C0-8621-901B85CA2ED4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{232F1CAB-5351-4E48-8A87-2185445F712D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1566FA3C-FD24-41DB-A2B8-6232F89783DE}]
"(Default)" = "IRoomMessageEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{E82737B9-B2BE-4AFD-B649-C9F665627F20}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D0DBB17D-565E-486C-A47B-BA32DC1FAD0A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{ED5040FA-8F8F-4876-BF6D-9C62F5EFFD5B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{CA62E6F3-3E6D-451B-AEAA-6A1B7AACF8D4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{340C54A6-35CF-4971-B540-72D7F040AC24}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{48B3099D-841D-4CAA-9202-5787596E2BD2}]
"(Default)" = "IActivePresenterChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{90B49A60-72AF-4360-9F9B-916DB7504A3C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{6A7FF112-42CE-4D03-8922-D02AC6C5759F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B3C5872E-591C-4A74-9F84-B00EF970A838}]
"(Default)" = "IConferenceInfo"

[HKCU\Software\Classes\Wow6432Node\Interface\{A0984F01-5D2C-4302-87A0-69BE7B015143}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{0C81EC90-9469-4ED4-ACAD-ADB86E11039C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2EDAF003-14A6-4FAF-8A72-99526D048D63}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{378CD767-1B64-4A0E-A941-8F52869FC9DF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{2495B94C-38AF-439B-BBA0-0AD38D959CE4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{2A9385AA-CF61-4E47-B64C-214DE4A4AD11}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{EC9773AD-7D22-4B03-B949-5E9055AF0F19}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1A8A9402-E89F-40AE-88A8-B328391684B6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F423726D-0E9B-4B55-9569-E79865210F69}]
"(Default)" = "IScheduledConferenceCollection"

[HKCU\Software\Classes\Interface\{899B846A-8887-45D6-B8F5-8AAA0BFDF722}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{92A9EB9B-85EE-444E-A302-00C3C945BAA4}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{ACABFA1C-0738-4C4D-AF7E-326873CF4ACE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{011B320C-9AC1-4DDE-B595-3D0014472E2F}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B1C6ECC3-1EA7-495D-9337-02FE4FB723F0}]
"(Default)" = "_IContactEvents"

[HKCU\Software\Classes\Interface\{8684D3AD-7061-4056-A894-EBF1270ADB9B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{953AE732-F53A-4116-AC1B-0321B3FB3DBA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{533891F1-A460-43E6-8BDA-6D0D2C13ADDE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{56F7DEC0-59CA-47C6-9F35-D5066A702B39}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{48B3099D-841D-4CAA-9202-5787596E2BD2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4B3A2412-C149-4E52-A713-6CEBCF47503E}]
"(Default)" = "IGroupMemberChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{F5996C71-77AB-4020-9776-C2C270FEF2AE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C63F58CB-EF11-4934-AA3B-2D69244F0780}]
"(Default)" = "_IConversationEvents"

[HKCU\Software\Classes\Interface\{7356D7BB-FD71-4554-84A1-3BBE28726551}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E82737B9-B2BE-4AFD-B649-C9F665627F20}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8FE9A23D-72BC-4EA3-A5AF-E37F75EAD8A2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{10D66B39-5E4B-4C98-AAC6-D0458FEB1BDB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D4B240B9-059B-4D13-8997-31B282B3BD43}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{5FA92EA7-6E6E-4A82-8F0D-107FEAF5A75D}]
"(Default)" = "_IConversationHistoryCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{80EDBF3A-812E-42B5-A67F-6CC6D9A19A6C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{E2C6D6E0-52EF-47A2-BDA9-9D6A7A29A391}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{283C2089-B760-4D65-9199-716627174F7A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3DEBDC7E-811F-4304-BDD7-7D98C732026C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8C9B6953-33CC-4A04-9DA4-F71AE79DA0C0}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DC63D621-11C8-4490-B017-B8C57EE1BE25}]
"(Default)" = "IAddress"

[HKCU\Software\Classes\Wow6432Node\Interface\{AA186C92-181E-417F-B150-FCA0F367E0FC}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{C22CE6BF-3A47-46B7-8544-44305BADFEF9}]
"(Default)" = "_IConferenceSchedulerCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{95B9A382-EA50-45E4-965E-BA61E7213DBA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{18BA13C7-A64E-4301-BA51-D1BFB3C1C9D5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F719ED75-B7BD-45D3-9097-254509226F20}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F719ED75-B7BD-45D3-9097-254509226F20}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{57CC2235-96C5-49FA-B92B-350486C6CF52}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{66D1FFC0-C234-4F3D-ABAA-98222A69E525}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8E839AF9-9508-475A-AA47-3EE8A946B75E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D0984CEF-E323-4574-B07B-5C970C9CAEE0}]
"(Default)" = "ICustomAvailabilityState"

[HKCU\Software\Classes\Wow6432Node\Interface\{9AB20314-B258-48F8-B659-AD250DFA20F5}]
"(Default)" = "ILyncClientNotificationReceivedEventData"

[HKCU\Software\Classes\Interface\{B28F2007-3926-49CF-9101-4CCB9574049B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{533891F1-A460-43E6-8BDA-6D0D2C13ADDE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3C8D7146-35EA-4133-B2F6-C1FC2401A091}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History]
"CachePrefix" = "Visited:"

[HKCU\Software\Classes\Interface\{10C3ACC7-6C0C-4F35-ADFB-AE0F200A8583}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{18A9A79A-CBC7-4F8B-8B2B-9B40CA75EC3C}]
"(Default)" = "IFrequentContacts"

[HKCU\Software\Classes\Wow6432Node\Interface\{F97973D7-9436-4A3E-A802-F6EA172A0425}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B26F6403-761E-48D4-84E2-619C17EAEB13}]
"(Default)" = "_ILyncClientCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{DD181E97-EEE0-4D65-BAD1-16866D0C7953}]
"(Default)" = "IAccessPermission"

[HKCU\Software\Classes\Interface\{68B1FC26-B48F-4D5F-B041-8E246676D836}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{76DE1CD8-F278-48A1-A391-E5BEB8F428E6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9112CE9B-3704-48C0-86DC-7A7B0F34D7A3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{905B727D-FD8F-46EC-8006-CE245F6835EE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F97973D7-9436-4A3E-A802-F6EA172A0425}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B0B0E8F8-32DA-4CB0-A124-D1E35891D53A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DEDDD7BD-4763-41D2-9AAA-B2C143457CA4}]
"(Default)" = "IModalityActionAvailabilityChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{F97BED54-E434-4020-A197-F15AEA9D9C95}]
"(Default)" = "IConversationWindowNeedsAttentionEventData"

[HKCU\Software\Classes\Interface\{4CB70415-BA71-491E-B12D-155D85CBDFF1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2A9385AA-CF61-4E47-B64C-214DE4A4AD11}]
"(Default)" = "IConversationStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{3CD1DB65-D85B-4912-8536-6BD8E19F1738}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{ED5040FA-8F8F-4876-BF6D-9C62F5EFFD5B}]
"(Default)" = "IModalityDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{A4E1D1E4-7839-473B-95FA-5D33DDC0D2DD}]
"(Default)" = "IConversationCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{95B8D3E8-F3D5-4DC0-BCFE-AB80C835DEA0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{09028936-CD20-43EF-98CF-56726ADDBA34}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{CA478B44-4FCE-4082-8700-8CEC69FB50E1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8E839AF9-9508-475A-AA47-3EE8A946B75E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{0CA9BAE8-DD28-4929-A821-4D00F11203CC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C63F58CB-EF11-4934-AA3B-2D69244F0780}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{478DDA59-64C0-4429-AC8A-F10A940B52CC}]
"(Default)" = "IModalityStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{32430741-330B-48DF-96F6-0CFE00484D40}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{05789509-AFA1-4E90-B4FA-1A7820DB9796}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4023052E-E3B7-48A3-BCB3-CA2234D9BAEE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C413A27F-601E-4261-B9E3-0EB966F4E7D1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D9D04B55-D820-4D5B-A690-658A49368478}]
"(Default)" = "_IVoiceMailsManagerCallback"

[HKCU\Software\Classes\Interface\{64561371-77A2-4BD4-A909-E6DEB1B5C6CF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9244D573-914F-4C1F-93F6-31609A95CBED}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D9D04B55-D820-4D5B-A690-658A49368478}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{5FA92EA7-6E6E-4A82-8F0D-107FEAF5A75D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{89C7EB8E-42BC-4C9F-BB34-88CDE83CCB37}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{9244D573-914F-4C1F-93F6-31609A95CBED}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4AA93AA8-898C-45EE-8E5C-1A86739B3F96}]
"(Default)" = "_IDeviceManagerEvents"

[HKCU\Software\Classes\Interface\{ED5040FA-8F8F-4876-BF6D-9C62F5EFFD5B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B1C6ECC3-1EA7-495D-9337-02FE4FB723F0}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{086F0E9D-A416-40F9-877C-F1C82DC1A6AD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8057F99D-292C-4371-926B-5312E61A3A40}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8057F99D-292C-4371-926B-5312E61A3A40}]
"(Default)" = "ISummarizerStatesChangedEventData"

[HKCU\Software\Classes\Interface\{995F992C-9DEF-47B9-BF11-81813C0C0E28}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A766520D-F700-4BF5-8428-56BD914C1C40}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B28F2007-3926-49CF-9101-4CCB9574049B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{BE026CD2-7E82-4F7C-8762-F6B02F496174}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B28F2007-3926-49CF-9101-4CCB9574049B}]
"(Default)" = "IPreferredCapabilitiesChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{25025B1B-0084-44D1-B383-9FFC9A99ABCD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{0BDB9057-28AE-4BF0-AFF0-12A148E51637}]
"(Default)" = "IUriChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{2C59A886-ACD3-46BB-8BAC-7C1C59FB2E0D}]
"(Default)" = "IPreviousConversationsManagerNewItemCountChangedEventData"

[HKCU\Software\Classes\Interface\{95B8D3E8-F3D5-4DC0-BCFE-AB80C835DEA0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{569E04F2-D286-4903-9642-44D850310956}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{62A75516-C79B-42D7-8B49-3BA492C2B385}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4BACB4B8-1236-42B8-BDA1-D1533148780D}]
"(Default)" = "_IPreviousConversationsManagerCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{8665FD95-7720-4F9E-B605-6ABCBD7EDFF4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DC63D621-11C8-4490-B017-B8C57EE1BE25}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Local Settings\MuiCache\2A\52C64B7E\@%SystemRoot%\system32]
"dnsapi.dll,-103" = "Domain Name System (DNS) Server Trust"

[HKCU\Software\Classes\Interface\{0C81EC90-9469-4ED4-ACAD-ADB86E11039C}]
"(Default)" = "IGroupCollection"

[HKCU\Software\Classes\Interface\{C7ACB102-B692-49CC-92DA-5824822C7B96}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4DA899D3-FAC7-4F43-8E4A-1987988FBC9B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{A9AAB6A0-54B9-4419-AAAF-6B26DFAC1585}]
"(Default)" = "_ISelfCallback"

[HKCU\Software\Classes\Interface\{3187885C-A8AF-4D4B-8E80-F4B9D447A7B2}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{209DA899-15F1-499A-B8B5-A847EAA899AE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8684D3AD-7061-4056-A894-EBF1270ADB9B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{DAC6D77B-12F7-405C-BB33-002D6D4007F3}]
"(Default)" = "IResiliencyModeChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{FD9000B3-479F-4B16-9D63-70A49E078946}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{88C688B0-3908-4C56-A2E8-F90AB705C536}]
"(Default)" = "IConversationActionAvailabilityEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{85109845-6AE2-4B6B-9524-65BA203E5B7D}]
"(Default)" = "IContact"

[HKCU\Software\Classes\Interface\{FB67275C-4D9E-4C32-9793-A96749884FC1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C6605772-3D9D-44A7-B43A-4590E6B43EE3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{AAFE380B-B079-4B55-B81B-A9401D77B776}]
"(Default)" = "IPowerPointContent"

[HKCU\Software\Classes\Wow6432Node\Interface\{339D28C6-3D1A-45D4-BA14-A56742749A43}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{32430741-330B-48DF-96F6-0CFE00484D40}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4D120020-CE64-43C5-9F84-7A7B2360388F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{85109845-6AE2-4B6B-9524-65BA203E5B7D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{68DA8699-6C6E-4390-BD82-709FF1DC1702}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B1F5BCD8-69A6-4FC3-9EF0-9BD4AD999061}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{A0984F01-5D2C-4302-87A0-69BE7B015143}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E82737B9-B2BE-4AFD-B649-C9F665627F20}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{569E04F2-D286-4903-9642-44D850310956}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3F60CFF7-BE3F-4404-8395-C02D0CDD318E}]
"(Default)" = "_IModalityCallback"

[HKCU\Software\Classes\Interface\{E5CFF4A5-83A8-4FD8-8DAA-77A3E2288D4A}]
"(Default)" = "IConferenceCapabilities2"

[HKCU\Software\Classes\Interface\{4D120020-CE64-43C5-9F84-7A7B2360388F}]
"(Default)" = "IRoomJoinStateChangedEventData"

[HKCU\Software\Classes\Interface\{AF2ABA54-F591-42BA-8004-20944C9FB4D7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{80EDBF3A-812E-42B5-A67F-6CC6D9A19A6C}]
"(Default)" = "IDelegatorClient"

[HKCU\Software\Classes\Wow6432Node\Interface\{86225E5C-7595-4D1C-985D-8A0458D714C0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{80EDBF3A-812E-42B5-A67F-6CC6D9A19A6C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B3FF95BD-B743-498C-9973-7F8A2A78576A}]
"(Default)" = "IParticipantInfo"

[HKCU\Software\Classes\Interface\{AA41EE75-F9C5-42F7-8D17-1D92D6BA4D92}]
"(Default)" = "IApplicationRegistration"

[HKCU\Software\Classes\Interface\{AB2D1A67-2B3D-4E25-B21C-03F4BFC4C2BE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8FE9A23D-72BC-4EA3-A5AF-E37F75EAD8A2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{953AE732-F53A-4116-AC1B-0321B3FB3DBA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{50D86EE2-288F-44F5-8144-69F6E3B24B90}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{38E5EC21-81A1-45A7-94D6-B812976231A4}]
"(Default)" = "IContentSharingModality"

[HKCU\Software\Classes\Interface\{2209E091-5B90-4CAF-8582-CC5979883376}]
"(Default)" = "IConversationWindowStateChangedEventData"

[HKCU\Software\Classes\Interface\{05789509-AFA1-4E90-B4FA-1A7820DB9796}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C12F0DE5-9A7D-425C-B391-8BE004EAA2F6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8057F99D-292C-4371-926B-5312E61A3A40}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3417D640-3976-4CB6-BC82-54E5E2E10784}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{EF5C00E4-75E2-4D39-B358-0ED9CB14F3CB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{081793DA-7221-45C3-8AFA-3A2E6E464670}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B1F5BCD8-69A6-4FC3-9EF0-9BD4AD999061}]
"(Default)" = "IConversationWindow"

[HKCU\Software\Classes\Wow6432Node\Interface\{08E1E9CF-A7E4-43BE-AE8E-B223CE71E46E}]
"(Default)" = "_IChannelCallback"

[HKCU\Software\Classes\Interface\{B03614AE-8D68-4386-9E1C-939CABCF1232}]
"(Default)" = "IRoomPropertyChangedEventData"

[HKCU\Software\Classes\Interface\{7356D7BB-FD71-4554-84A1-3BBE28726551}]
"(Default)" = "ISearchResults"

[HKCU\Software\Classes\Wow6432Node\Interface\{209DA899-15F1-499A-B8B5-A847EAA899AE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{61C747F6-157C-4CAE-A37C-EC4352175860}]
"(Default)" = "IChannel"

[HKCU\Software\Classes\Wow6432Node\Interface\{339D28C6-3D1A-45D4-BA14-A56742749A43}]
"(Default)" = "IWorkingPeriod"

[HKCU\Software\Classes\Wow6432Node\Interface\{3187885C-A8AF-4D4B-8E80-F4B9D447A7B2}]
"(Default)" = "_IShareableContentCallback"

[HKCU\Software\Classes\Interface\{9397FF55-EE06-4F02-8F2A-BE3AE249D4BB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{5FA92EA7-6E6E-4A82-8F0D-107FEAF5A75D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D804BA85-DB0F-49EE-B723-DCDF0425BD9F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{5E7AB04C-E4B8-49FB-85FF-9E2BCA2899D3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{7452BD0F-65CB-4A5E-AC37-E2BEA1F43DD9}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{011B320C-9AC1-4DDE-B595-3D0014472E2F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C6605772-3D9D-44A7-B43A-4590E6B43EE3}]
"(Default)" = "_IGroupCallback"

[HKCU\Software\Classes\Interface\{603E2454-725A-4679-A6A8-363B21633CB2}]
"(Default)" = "IRoomMessageDictionary"

[HKCU\Software\Classes\Interface\{D5C1C8FB-DC8A-45A3-AAA3-53B89D43CDE4}]
"(Default)" = "IIsContributingChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{F0B791FA-434B-49F2-B84E-05619EBE6BEB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CC306E9-2546-4101-82AB-29613AD6F7A7}]
"(Default)" = "ICallParkOrbit"

[HKCU\Software\Classes\Wow6432Node\Interface\{71A054B3-4D4B-4643-B14F-4572494B19E7}]
"(Default)" = "IScheduledConference"

[HKCU\Software\Classes\Wow6432Node\Interface\{9918673D-4D74-41CF-8840-D4996395A34C}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{081793DA-7221-45C3-8AFA-3A2E6E464670}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{32430741-330B-48DF-96F6-0CFE00484D40}]
"(Default)" = "IControlRequestReceivedEventData"

[HKCU\Software\Classes\Interface\{109D32CE-E09F-46F5-9ECB-01E1D273B7DA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B3C5872E-591C-4A74-9F84-B00EF970A838}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{64561371-77A2-4BD4-A909-E6DEB1B5C6CF}]
"(Default)" = "_IClientEvents"

[HKCU\Software\Classes\Interface\{10D66B39-5E4B-4C98-AAC6-D0458FEB1BDB}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C63F58CB-EF11-4934-AA3B-2D69244F0780}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{FD9000B3-479F-4B16-9D63-70A49E078946}]
"(Default)" = "IContactSettingDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{C22CE6BF-3A47-46B7-8544-44305BADFEF9}]
"(Default)" = "_IConferenceSchedulerCallback"

[HKCU\Software\Classes\Interface\{B26F6403-761E-48D4-84E2-619C17EAEB13}]
"(Default)" = "_ILyncClientCallback"

[HKCU\Software\Classes\Interface\{09028936-CD20-43EF-98CF-56726ADDBA34}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{CE16D540-B9E8-4742-8659-9A7A318AFB92}]
"(Default)" = "IDevice"

[HKCU\Software\Classes\Interface\{8E73E7E1-90CE-4D3B-B5B7-71E87B2E8BA5}]
"(Default)" = "_IRoomUserEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{AF2ABA54-F591-42BA-8004-20944C9FB4D7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{62A75516-C79B-42D7-8B49-3BA492C2B385}]
"(Default)" = "IInstantMessageModality"

[HKCU\Software\Classes\Interface\{E66CA1CC-9DB0-467E-9C60-6A832ACD6780}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{55A21CF3-A2B3-484E-BE2A-14280F501289}]
"(Default)" = "IVideoView"

[HKCU\Software\Classes\Wow6432Node\Interface\{2A9385AA-CF61-4E47-B64C-214DE4A4AD11}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{FF037274-455A-4E34-B5D1-D42DB866F9B7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A9AAB6A0-54B9-4419-AAAF-6B26DFAC1585}]
"(Default)" = "_ISelfCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{7356D7BB-FD71-4554-84A1-3BBE28726551}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1FF0E6F1-2FE4-4E29-A123-557AF0DB6927}]
"(Default)" = "IContactEndpoint"

[HKCU\Software\Classes\Wow6432Node\Interface\{4E8DC7E0-04B8-470B-BDFA-F520099B975F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{61C747F6-157C-4CAE-A37C-EC4352175860}]
"(Default)" = "IChannel"

[HKCU\Software\Classes\Interface\{283C2089-B760-4D65-9199-716627174F7A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DAB42E13-500A-409A-AC34-C1BF4719EE2E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7BF20B14-58D1-494B-B301-9B16BACC9610}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F7EE956B-A713-48D3-AFEF-0A28F37740B3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7452BD0F-65CB-4A5E-AC37-E2BEA1F43DD9}]
"(Default)" = "IRoomParticipantsEventData"

[HKCU\Software\Classes\Interface\{219DC126-9A48-483F-80C2-3F22B3B47829}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A222195-F65E-467F-8F77-EB180BD85288}]
"(Default)" = "IUCOfficeIntegration"

[HKCU\Software\Classes\Interface\{8684D3AD-7061-4056-A894-EBF1270ADB9B}]
"(Default)" = "_IApplicationSharingModalityCallback"

[HKCU\Software\Classes\Interface\{D0DBB17D-565E-486C-A47B-BA32DC1FAD0A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{A0C3E9BA-C622-45A2-9FED-2C662F3F489A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{06437ABB-C419-4B11-A474-1A2B02FBD646}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E24C2484-C70D-44AB-8A4E-F1585A17A3E1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8E839AF9-9508-475A-AA47-3EE8A946B75E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B3FF95BD-B743-498C-9973-7F8A2A78576A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{80EDBF3A-812E-42B5-A67F-6CC6D9A19A6C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7693221D-7E9F-47D3-8782-6437CF3D4C0C}]
"(Default)" = "IPhone"

[HKCU\Software\Classes\Interface\{086F0E9D-A416-40F9-877C-F1C82DC1A6AD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8AFFB8CE-5404-4280-BCA3-E2E4388E6D73}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{464D5228-9F68-4B1F-B430-156A104E2B85}]
"(Default)" = "IPreviousHistoryRetrievalStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C8D7146-35EA-4133-B2F6-C1FC2401A091}]
"(Default)" = "ISelf2"

[HKCU\Software\Classes\Wow6432Node\Interface\{30F974FB-1F7B-49D3-8DA4-01694BA474D2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{84340964-7820-4EBC-BCD3-702926DE23E8}]
"(Default)" = "_IContentSharingModalityCallback"

[HKCU\Software\Classes\Interface\{9D4D3D10-DEBC-40C6-ACF9-527986CB42BC}]
"(Default)" = "IChannelActionAvailabilityEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{3959E5C6-75CC-448E-9A18-9F163FF47646}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D5C1C8FB-DC8A-45A3-AAA3-53B89D43CDE4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{3C43A2BE-BA4A-41E8-8F93-A9DC5F091892}]
"(Default)" = "_ISelf2Events"

[HKCU\Software\Classes\Wow6432Node\Interface\{30F974FB-1F7B-49D3-8DA4-01694BA474D2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{64B7E9AD-D920-4EAA-95C7-9D95DE9ACE24}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAC6D77B-12F7-405C-BB33-002D6D4007F3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DF414A68-5051-4465-AAE2-4F301315734E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4290152C-75C9-47C8-AA12-814818360B3F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{66D1FFC0-C234-4F3D-ABAA-98222A69E525}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{0678C83E-F580-4D99-902F-930699B28BE8}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{55A21CF3-A2B3-484E-BE2A-14280F501289}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{56A868B4-0AD4-11CE-B03A-0020AF0BA770}]
"(Default)" = "IVideoWindow"

[HKCU\Software\Classes\Interface\{89C7EB8E-42BC-4C9F-BB34-88CDE83CCB37}]
"(Default)" = "IRoomManagerStateChangedEventData"

[HKCU\Software\Classes\Interface\{5FA92EA7-6E6E-4A82-8F0D-107FEAF5A75D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{9918673D-4D74-41CF-8840-D4996395A34C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{F423726D-0E9B-4B55-9569-E79865210F69}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{2C59A886-ACD3-46BB-8BAC-7C1C59FB2E0D}]
"(Default)" = "IPreviousConversationsManagerNewItemCountChangedEventData"

[HKCU\Software\Classes\Interface\{9B3A702D-5BE1-4FCE-ADB3-EBBD23E078C3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B26F6403-761E-48D4-84E2-619C17EAEB13}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9AB20314-B258-48F8-B659-AD250DFA20F5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{17635563-2FA5-46AD-8F47-3F0FF958ECE2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{D992371E-5161-453B-97E6-6E7C67BC075E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B3FF95BD-B743-498C-9973-7F8A2A78576A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{30F974FB-1F7B-49D3-8DA4-01694BA474D2}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9274DBDC-43CE-45AA-A817-414A4494AD28}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{25D64AEA-0E65-49CB-8D6D-65DB0AC1AF65}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{6964B116-8FE6-4C19-9052-0EAA74460A58}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{04378C72-E58F-47C0-8621-901B85CA2ED4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{18BA13C7-A64E-4301-BA51-D1BFB3C1C9D5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B3C5872E-591C-4A74-9F84-B00EF970A838}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8FE9A23D-72BC-4EA3-A5AF-E37F75EAD8A2}]
"(Default)" = "IParticipationStateChangedEventData"

[HKCU\Software\Classes\Interface\{B3C5872E-591C-4A74-9F84-B00EF970A838}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{A9AAB6A0-54B9-4419-AAAF-6B26DFAC1585}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{88C688B0-3908-4C56-A2E8-F90AB705C536}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{12480BD4-072F-4763-B9FB-41B2CA54F9CD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{84340964-7820-4EBC-BCD3-702926DE23E8}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7818A3F7-674B-477E-99E8-54774579A8E7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{EC9773AD-7D22-4B03-B949-5E9055AF0F19}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{62074904-8D06-43FE-A531-E63DF7FDC2E7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4E8DC7E0-04B8-470B-BDFA-F520099B975F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{5E7AB04C-E4B8-49FB-85FF-9E2BCA2899D3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{CE16D540-B9E8-4742-8659-9A7A318AFB92}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{603E2454-725A-4679-A6A8-363B21633CB2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{2D3D62CA-E9F6-4F94-8EBD-5FABAB29E6A5}]
"(Default)" = "IConferenceInfoPropertyDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{4B3A2412-C149-4E52-A713-6CEBCF47503E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9D4D3D10-DEBC-40C6-ACF9-527986CB42BC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{ABF012A2-2068-4B4D-80D7-6D386BA7C8A2}]
"(Default)" = "_IContactsAndGroupsCallback"

[HKCU\Software\Classes\Interface\{DF414A68-5051-4465-AAE2-4F301315734E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{311DDE48-ED7D-46FA-9E0A-2E314B7FEF7C}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{92A9EB9B-85EE-444E-A302-00C3C945BAA4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{905B727D-FD8F-46EC-8006-CE245F6835EE}]
"(Default)" = "IMessageSentEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{6964B116-8FE6-4C19-9052-0EAA74460A58}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AA186C92-181E-417F-B150-FCA0F367E0FC}]
"(Default)" = "_IFrequentContactsEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{70986DCE-4AA8-4DFB-9A45-4BFCF7A206F5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B00F2520-029C-47D0-B4E8-8FBEF47CAA7E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F5996C71-77AB-4020-9776-C2C270FEF2AE}]
"(Default)" = "IConversationHistory"

[HKCU\Software\Classes\Interface\{806D3227-4CB8-47C4-9864-7D4DF4F44069}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{FD9000B3-479F-4B16-9D63-70A49E078946}]
"(Default)" = "IContactSettingDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{68B1FC26-B48F-4D5F-B041-8E246676D836}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{53D014C1-54DB-42B3-9DFD-8E231EF2C356}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7356D7BB-FD71-4554-84A1-3BBE28726551}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{603E2454-725A-4679-A6A8-363B21633CB2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B0B0E8F8-32DA-4CB0-A124-D1E35891D53A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D0DBB17D-565E-486C-A47B-BA32DC1FAD0A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8E839AF9-9508-475A-AA47-3EE8A946B75E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F644C610-A146-4A56-8338-A69C45C71CEF}]
"(Default)" = "IVoiceMailCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{7818A3F7-674B-477E-99E8-54774579A8E7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{300E56A3-CE08-4EB3-9F48-505AA162C9DA}]
"(Default)" = "_IRoomEvents"

[HKCU\Software\Classes\Interface\{B8FD4A53-E7E6-4995-A5B5-1306C7584964}]
"(Default)" = "IUnreadMessageCountChangedEventData"

[HKCU\Software\Classes\Interface\{8057F99D-292C-4371-926B-5312E61A3A40}]
"(Default)" = "ISummarizerStatesChangedEventData"

[HKCU\Software\Classes\Interface\{4AA93AA8-898C-45EE-8E5C-1A86739B3F96}]
"(Default)" = "_IDeviceManagerEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{F644C610-A146-4A56-8338-A69C45C71CEF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{57CC2235-96C5-49FA-B92B-350486C6CF52}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Local Settings\MuiCache\2A\52C64B7E]
"LanguageList" = "en-US, en"

[HKCU\Software\Classes\Wow6432Node\Interface\{BE6086A1-D436-4834-89EE-3CA4F8596A58}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D804BA85-DB0F-49EE-B723-DCDF0425BD9F}]
"(Default)" = "ICustomGroup"

[HKCU\Software\Classes\Interface\{4C675532-6D55-49DD-8C8E-3C1CC5624CF2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{283C2089-B760-4D65-9199-716627174F7A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3417D640-3976-4CB6-BC82-54E5E2E10784}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{8C9B6953-33CC-4A04-9DA4-F71AE79DA0C0}]
"(Default)" = "_IUCOfficeIntegrationEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{CE16D540-B9E8-4742-8659-9A7A318AFB92}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{FF037274-455A-4E34-B5D1-D42DB866F9B7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{420A24E2-5C31-4262-9BD5-058682300ED6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4D120020-CE64-43C5-9F84-7A7B2360388F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{12480BD4-072F-4763-B9FB-41B2CA54F9CD}]
"(Default)" = "IContactSettingChangedEventData"

[HKCU\Software\Classes\Interface\{62A75516-C79B-42D7-8B49-3BA492C2B385}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{E664682C-CBA5-4C7C-A65B-9CD046F24CBD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{420A24E2-5C31-4262-9BD5-058682300ED6}]
"(Default)" = "IConferenceRegionalAccessInformation"

[HKCU\Software\Classes\Interface\{B335AE5E-E4EA-49D3-B03B-646A96FE66D3}]
"(Default)" = "IShareableContent"

[HKCU\Software\Classes\Interface\{10C3ACC7-6C0C-4F35-ADFB-AE0F200A8583}]
"(Default)" = "IPresenceCapability"

[HKCU\Software\Classes\Wow6432Node\Interface\{87084018-7E74-4F92-AB39-1CF03188580E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\TypeLib\{B9AA1F11-F480-4054-A84E-B5D9277E40A8}\1.0\0\win32]
"(Default)" = "%Program Files% (x86)\Skype\Phone\Skype.exe\3"

[HKCU\Software\Classes\Wow6432Node\Interface\{05789509-AFA1-4E90-B4FA-1A7820DB9796}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BD891697-C93E-4A0B-9B6C-004BD81B6EE8}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7CFE77CD-731D-48B2-82B1-ECA3414D62E3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{95B9A382-EA50-45E4-965E-BA61E7213DBA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{57C3CB4D-C794-456F-846D-0E1ECA78BD00}]
"(Default)" = "IContactCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{300E56A3-CE08-4EB3-9F48-505AA162C9DA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{5FA92EA7-6E6E-4A82-8F0D-107FEAF5A75D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{283C2089-B760-4D65-9199-716627174F7A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{905B727D-FD8F-46EC-8006-CE245F6835EE}]
"(Default)" = "IMessageSentEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{2C59A886-ACD3-46BB-8BAC-7C1C59FB2E0D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B03614AE-8D68-4386-9E1C-939CABCF1232}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{F8DF0B4B-A4CE-476B-81D3-9FBA98461B62}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BE6086A1-D436-4834-89EE-3CA4F8596A58}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{71A054B3-4D4B-4643-B14F-4572494B19E7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{35CE3A44-C636-4D31-BC95-B9370C2251B9}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{81C9D13F-A4F9-4E13-92D3-BB271E8DF3D2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8A88C016-AA5D-4EAE-9C79-7AA5C360ED76}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{E6B3F5FA-4208-4C37-AE07-F6435B68D693}]
"(Default)" = "IContactManager"

[HKCU\Software\Classes\Wow6432Node\Interface\{0C81EC90-9469-4ED4-ACAD-ADB86E11039C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{68B1FC26-B48F-4D5F-B041-8E246676D836}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B8FD4A53-E7E6-4995-A5B5-1306C7584964}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{BE6086A1-D436-4834-89EE-3CA4F8596A58}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{C12F0DE5-9A7D-425C-B391-8BE004EAA2F6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8665FD95-7720-4F9E-B605-6ABCBD7EDFF4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E66CA1CC-9DB0-467E-9C60-6A832ACD6780}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{339D28C6-3D1A-45D4-BA14-A56742749A43}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{EE9F3E74-AC61-469E-80D6-E22BF4EEFF5C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{3959E5C6-75CC-448E-9A18-9F163FF47646}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C413A27F-601E-4261-B9E3-0EB966F4E7D1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D2BFC7D7-A64F-48EF-BF90-C3C7E684D89C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C4D95336-5949-4D13-AAC8-82039E5CBCFC}]
"(Default)" = "_IUtilitiesCallback"

[HKCU\Software\Classes\Interface\{081793DA-7221-45C3-8AFA-3A2E6E464670}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA7EEB7A-7DC3-4FFE-A174-23DB5A003C04}]
"(Default)" = "IStreamStateChangedEventData"

[HKCU\Software\Classes\Interface\{EBD19735-0CB5-4AF3-8E05-B0140CF9D545}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{86225E5C-7595-4D1C-985D-8A0458D714C0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{953AE732-F53A-4116-AC1B-0321B3FB3DBA}]
"(Default)" = "_ILyncClientEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{37C7F935-E215-46D2-82A3-A451840EC733}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DD181E97-EEE0-4D65-BAD1-16866D0C7953}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{EBD19735-0CB5-4AF3-8E05-B0140CF9D545}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{569E04F2-D286-4903-9642-44D850310956}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C12F0DE5-9A7D-425C-B391-8BE004EAA2F6}]
"(Default)" = "ILocaleString"

[HKCU\Software\Classes\Wow6432Node\Interface\{F87AFD9A-9BF8-4AC4-953E-33C4D2035D33}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{55A21CF3-A2B3-484E-BE2A-14280F501289}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{209DA899-15F1-499A-B8B5-A847EAA899AE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{0CA9BAE8-DD28-4929-A821-4D00F11203CC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{3417D640-3976-4CB6-BC82-54E5E2E10784}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4C675532-6D55-49DD-8C8E-3C1CC5624CF2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{36CDC166-4F21-46AD-A60E-8551F26C1D41}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{6A222195-F65E-467F-8F77-EB180BD85288}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{64561371-77A2-4BD4-A909-E6DEB1B5C6CF}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4290152C-75C9-47C8-AA12-814818360B3F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D4B240B9-059B-4D13-8997-31B282B3BD43}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{EFEC2816-F16D-48D8-9306-26C810F0EA55}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4B3A2412-C149-4E52-A713-6CEBCF47503E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C6605772-3D9D-44A7-B43A-4590E6B43EE3}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{FB67275C-4D9E-4C32-9793-A96749884FC1}]
"(Default)" = "IAlertLevel"

[HKCU\Software\Classes\Interface\{EE9F3E74-AC61-469E-80D6-E22BF4EEFF5C}]
"(Default)" = "IClient"

[HKCU\Software\Classes\Interface\{082EE280-726E-417F-99CB-81A0CCBFF883}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B03614AE-8D68-4386-9E1C-939CABCF1232}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C22CE6BF-3A47-46B7-8544-44305BADFEF9}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{0678C83E-F580-4D99-902F-930699B28BE8}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8E73E7E1-90CE-4D3B-B5B7-71E87B2E8BA5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7BF20B14-58D1-494B-B301-9B16BACC9610}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DBA05C15-1C07-4A76-8248-08D8416A24E3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecision" = "0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D5C1C8FB-DC8A-45A3-AAA3-53B89D43CDE4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{68DA8699-6C6E-4390-BD82-709FF1DC1702}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{AC10D6E9-4A8C-4484-B8F4-CA1E36347AAE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B3FF95BD-B743-498C-9973-7F8A2A78576A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D4B240B9-059B-4D13-8997-31B282B3BD43}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B0B0E8F8-32DA-4CB0-A124-D1E35891D53A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{FD02E775-CB9D-4CE3-9243-115C81E5F11C}]
"(Default)" = "IParticipantCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{300E56A3-CE08-4EB3-9F48-505AA162C9DA}]
"(Default)" = "_IRoomEvents"

[HKCU\Software\Classes\Interface\{BD891697-C93E-4A0B-9B6C-004BD81B6EE8}]
"(Default)" = "IConferenceSettingDictionary"

[HKCU\Software\Classes\Interface\{BC9F5F40-D315-40C1-B1C6-CEA0646E18E2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{0BDB9057-28AE-4BF0-AFF0-12A148E51637}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{25A47938-5C31-4F43-9108-DA01EE5869C0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C31FB52D-9E9E-45AD-A102-5218E1685B78}]
"(Default)" = "IConversationManager"

[HKCU\Software\Classes\Wow6432Node\Interface\{232F1CAB-5351-4E48-8A87-2185445F712D}]
"(Default)" = "IActiveVideoDeviceChangedEventData"

[HKCU\Software\Classes\Interface\{38E5EC21-81A1-45A7-94D6-B812976231A4}]
"(Default)" = "IContentSharingModality"

[HKCU\Software\Classes\Interface\{628D7BDD-45AB-404D-8505-B3ADC15F454D}]
"(Default)" = "_IRoomCallback"

[HKCU\Software\Classes\Interface\{94093301-8854-408E-8138-C7C3D2DACA1F}]
"(Default)" = "IShareableContentStateChangedEventData"

[HKCU\Software\Classes\Interface\{C79E4169-535F-4A41-8DE2-C65A90D9503D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{92D7E7A8-48D8-4166-8911-630AE02B2B93}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{9274DBDC-43CE-45AA-A817-414A4494AD28}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{36CDC166-4F21-46AD-A60E-8551F26C1D41}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9918673D-4D74-41CF-8840-D4996395A34C}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B03614AE-8D68-4386-9E1C-939CABCF1232}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{15D4461D-C7EB-45CB-B214-F1C45FED1DB2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{92D7E7A8-48D8-4166-8911-630AE02B2B93}]
"(Default)" = "IInitialContextEventData"

[HKCU\Software\Classes\Interface\{25025B1B-0084-44D1-B383-9FFC9A99ABCD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{3F60CFF7-BE3F-4404-8395-C02D0CDD318E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8C9B6953-33CC-4A04-9DA4-F71AE79DA0C0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4E8DC7E0-04B8-470B-BDFA-F520099B975F}]
"(Default)" = "IControllerChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{0BDB9057-28AE-4BF0-AFF0-12A148E51637}]
"(Default)" = "IUriChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{57C3CB4D-C794-456F-846D-0E1ECA78BD00}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{8057F99D-292C-4371-926B-5312E61A3A40}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{E24C2484-C70D-44AB-8A4E-F1585A17A3E1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{70986DCE-4AA8-4DFB-9A45-4BFCF7A206F5}]
"(Default)" = "_IChannel2Callback"

[HKCU\Software\Classes\Interface\{76DE1CD8-F278-48A1-A391-E5BEB8F428E6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA478B44-4FCE-4082-8700-8CEC69FB50E1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{378CD767-1B64-4A0E-A941-8F52869FC9DF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{90B49A60-72AF-4360-9F9B-916DB7504A3C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{08E1E9CF-A7E4-43BE-AE8E-B223CE71E46E}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4FE44049-4E44-4109-B234-4E4EFC135A86}]
"(Default)" = "_IInstantMessageModalityEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{EF5C00E4-75E2-4D39-B358-0ED9CB14F3CB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{25025B1B-0084-44D1-B383-9FFC9A99ABCD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B3FF95BD-B743-498C-9973-7F8A2A78576A}]
"(Default)" = "IParticipantInfo"

[HKCU\Software\Classes\Wow6432Node\Interface\{18BA13C7-A64E-4301-BA51-D1BFB3C1C9D5}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4875C050-BA9C-4A05-891E-E7B0A9463664}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{855AD949-E2EB-473D-AAF2-9800008EA303}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{4BACB4B8-1236-42B8-BDA1-D1533148780D}]
"(Default)" = "_IPreviousConversationsManagerCallback"

[HKCU\Software\Classes\Interface\{330639F2-E399-48CB-863F-56A50A27A138}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4023052E-E3B7-48A3-BCB3-CA2234D9BAEE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{08E1E9CF-A7E4-43BE-AE8E-B223CE71E46E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content]
"CachePrefix" = ""

[HKCU\Software\Classes\Wow6432Node\Interface\{76428270-36FA-4236-8BDF-AADB39FD1371}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F8DF0B4B-A4CE-476B-81D3-9FBA98461B62}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9397FF55-EE06-4F02-8F2A-BE3AE249D4BB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D2BFC7D7-A64F-48EF-BF90-C3C7E684D89C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{6A222195-F65E-467F-8F77-EB180BD85288}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DBA05C15-1C07-4A76-8248-08D8416A24E3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2495B94C-38AF-439B-BBA0-0AD38D959CE4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{66D1FFC0-C234-4F3D-ABAA-98222A69E525}]
"(Default)" = "IConferenceTelephoneAccessInformation"

[HKCU\Software\Classes\Interface\{9D4D3D10-DEBC-40C6-ACF9-527986CB42BC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A4E1D1E4-7839-473B-95FA-5D33DDC0D2DD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{2495B94C-38AF-439B-BBA0-0AD38D959CE4}]
"(Default)" = "IChannelStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{B8FD4A53-E7E6-4995-A5B5-1306C7584964}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{AE3A7C39-9C30-4E0F-BAE4-D8344EF377EA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{533891F1-A460-43E6-8BDA-6D0D2C13ADDE}]
"(Default)" = "IConversation"

[HKCU\Software\Classes\Interface\{DC63D621-11C8-4490-B017-B8C57EE1BE25}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C8210C8-8578-47C6-87A9-FA1AD2BA9873}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{BE026CD2-7E82-4F7C-8762-F6B02F496174}]
"(Default)" = "_IApplicationSharingModalityEvents"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDecisionReason" = "1"

[HKCU\Software\Classes\Interface\{F0CE810F-E36F-4CD8-A836-515B9A6E09FC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{6964B116-8FE6-4C19-9052-0EAA74460A58}]
"(Default)" = "_IConversation2Callback"

[HKCU\Software\Classes\Interface\{EFEC2816-F16D-48D8-9306-26C810F0EA55}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D992371E-5161-453B-97E6-6E7C67BC075E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{09028936-CD20-43EF-98CF-56726ADDBA34}]
"(Default)" = "IUCOfficeIntegrationHelper"

[HKCU\Software\Classes\Interface\{C12F0DE5-9A7D-425C-B391-8BE004EAA2F6}]
"(Default)" = "ILocaleString"

[HKCU\Software\Classes\Interface\{3C43A2BE-BA4A-41E8-8F93-A9DC5F091892}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{ABF012A2-2068-4B4D-80D7-6D386BA7C8A2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D2BFC7D7-A64F-48EF-BF90-C3C7E684D89C}]
"(Default)" = "IDistributionGroupExpansionStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{56A868B4-0AD4-11CE-B03A-0020AF0BA770}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F0CE810F-E36F-4CD8-A836-515B9A6E09FC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BC9F5F40-D315-40C1-B1C6-CEA0646E18E2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{1A8A9402-E89F-40AE-88A8-B328391684B6}]
"(Default)" = "INamedPropertyList"

[HKCU\Software\Classes\Interface\{300E56A3-CE08-4EB3-9F48-505AA162C9DA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{EBD19735-0CB5-4AF3-8E05-B0140CF9D545}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{2C59A886-ACD3-46BB-8BAC-7C1C59FB2E0D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{663C61F4-A9DA-4A6F-A606-F142F665DF61}]
"(Default)" = "IConversationWindowActions"

[HKCU\Software\Classes\Wow6432Node\Interface\{5E7AB04C-E4B8-49FB-85FF-9E2BCA2899D3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E82737B9-B2BE-4AFD-B649-C9F665627F20}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{2495B94C-38AF-439B-BBA0-0AD38D959CE4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1FF0E6F1-2FE4-4E29-A123-557AF0DB6927}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{744BAB86-B15F-4BD5-B7DD-476B0CE0162A}]
"(Default)" = "IDelegatorClientCollectionEventData"

[HKCU\Software\Classes\Interface\{30F974FB-1F7B-49D3-8DA4-01694BA474D2}]
"(Default)" = "_IVideoViewEvents"

[HKCU\Software\Classes\Interface\{21629AB6-9557-4985-9237-49177F618692}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{15D4461D-C7EB-45CB-B214-F1C45FED1DB2}]
"(Default)" = "IPreviousConversationsManagerDictionary"

[HKCU\Software\Classes\Interface\{F97973D7-9436-4A3E-A802-F6EA172A0425}]
"(Default)" = "IGroup"

[HKCU\Software\Classes\Interface\{1124AA59-B6F3-4EB1-B79A-E7F53B388B8D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{064E6072-5592-4D13-AFDB-55F5A494E137}]
"(Default)" = "IParticipantCollectionChangedEventData"

[HKCU\Software\Classes\Interface\{905B727D-FD8F-46EC-8006-CE245F6835EE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{53D014C1-54DB-42B3-9DFD-8E231EF2C356}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9D4D3D10-DEBC-40C6-ACF9-527986CB42BC}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{011B320C-9AC1-4DDE-B595-3D0014472E2F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{EF5C00E4-75E2-4D39-B358-0ED9CB14F3CB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{378CD767-1B64-4A0E-A941-8F52869FC9DF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D5C1C8FB-DC8A-45A3-AAA3-53B89D43CDE4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{3187885C-A8AF-4D4B-8E80-F4B9D447A7B2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{ACABFA1C-0738-4C4D-AF7E-326873CF4ACE}]
"(Default)" = "IPreviousConversationsManager"

[HKCU\Software\Classes\Interface\{30F974FB-1F7B-49D3-8DA4-01694BA474D2}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{340C54A6-35CF-4971-B540-72D7F040AC24}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{6A986B5D-E5EC-4395-AD2D-0E62B72DA776}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{8684D3AD-7061-4056-A894-EBF1270ADB9B}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{30F974FB-1F7B-49D3-8DA4-01694BA474D2}]
"(Default)" = "_IVideoViewEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{F97BED54-E434-4020-A197-F15AEA9D9C95}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\TypeLib\{B9AA1F11-F480-4054-A84E-B5D9277E40A8}\1.0\FLAGS]
"(Default)" = "0"

[HKCU\Software\Classes\Wow6432Node\Interface\{6964B116-8FE6-4C19-9052-0EAA74460A58}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{7693221D-7E9F-47D3-8782-6437CF3D4C0C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{1F8EBE6F-7993-42CE-980A-A2F03793BE71}]
"(Default)" = "IDeviceCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{DBA05C15-1C07-4A76-8248-08D8416A24E3}]
"(Default)" = "IIsTypingChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{4AA93AA8-898C-45EE-8E5C-1A86739B3F96}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9112CE9B-3704-48C0-86DC-7A7B0F34D7A3}]
"(Default)" = "IUtilities2"

[HKCU\Software\Classes\Interface\{A0C3E9BA-C622-45A2-9FED-2C662F3F489A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{DAB42E13-500A-409A-AC34-C1BF4719EE2E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7BF20B14-58D1-494B-B301-9B16BACC9610}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{ED5040FA-8F8F-4876-BF6D-9C62F5EFFD5B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3187885C-A8AF-4D4B-8E80-F4B9D447A7B2}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA478B44-4FCE-4082-8700-8CEC69FB50E1}]
"(Default)" = "IShareableContentPropertyDictionary"

[HKCU\Software\Classes\Interface\{AF2ABA54-F591-42BA-8004-20944C9FB4D7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D60B1701-766D-401E-8586-83E0C9106BE0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{300E56A3-CE08-4EB3-9F48-505AA162C9DA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{232F1CAB-5351-4E48-8A87-2185445F712D}]
"(Default)" = "IActiveVideoDeviceChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{232F1CAB-5351-4E48-8A87-2185445F712D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4C675532-6D55-49DD-8C8E-3C1CC5624CF2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\TypeLib\{B9AA1F11-F480-4054-A84E-B5D9277E40A8}\1.0]
"(Default)" = "Unified Collaboration API 1.0 Type Library"

[HKCU\Software\Classes\Interface\{603E2454-725A-4679-A6A8-363B21633CB2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1FF0E6F1-2FE4-4E29-A123-557AF0DB6927}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{25D64AEA-0E65-49CB-8D6D-65DB0AC1AF65}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8AFFB8CE-5404-4280-BCA3-E2E4388E6D73}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{FB67275C-4D9E-4C32-9793-A96749884FC1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{26C8D96D-7D22-4E9E-948A-EDCCB4CA9C64}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{283C2089-B760-4D65-9199-716627174F7A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7CC306E9-2546-4101-82AB-29613AD6F7A7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E82737B9-B2BE-4AFD-B649-C9F665627F20}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{AC10D6E9-4A8C-4484-B8F4-CA1E36347AAE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AAFE380B-B079-4B55-B81B-A9401D77B776}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{53D014C1-54DB-42B3-9DFD-8E231EF2C356}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{0BDB9057-28AE-4BF0-AFF0-12A148E51637}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{ACABFA1C-0738-4C4D-AF7E-326873CF4ACE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{1FF8AA01-D8AF-4B2B-B254-BEFEFABAF2D6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4C675532-6D55-49DD-8C8E-3C1CC5624CF2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{10C3ACC7-6C0C-4F35-ADFB-AE0F200A8583}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F644C610-A146-4A56-8338-A69C45C71CEF}]
"(Default)" = "IVoiceMailCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{1F8EBE6F-7993-42CE-980A-A2F03793BE71}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8FE9A23D-72BC-4EA3-A5AF-E37F75EAD8A2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{5418E2AB-EB9A-4659-B4DC-28DE633B2B8F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E24C2484-C70D-44AB-8A4E-F1585A17A3E1}]
"(Default)" = "IVoiceMailsManager"

[HKCU\Software\Classes\Wow6432Node\Interface\{D992371E-5161-453B-97E6-6E7C67BC075E}]
"(Default)" = "_IPreviousConversationsManagerEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{CE16D540-B9E8-4742-8659-9A7A318AFB92}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{17635563-2FA5-46AD-8F47-3F0FF958ECE2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{70986DCE-4AA8-4DFB-9A45-4BFCF7A206F5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{086F0E9D-A416-40F9-877C-F1C82DC1A6AD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DCDEA425-B5F2-4719-A3B4-69FFB9770BE6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{283C2089-B760-4D65-9199-716627174F7A}]
"(Default)" = "IGroupNameChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{0678C83E-F580-4D99-902F-930699B28BE8}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8F04E92D-EE26-4B64-B9C1-56DD90816810}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAC6D77B-12F7-405C-BB33-002D6D4007F3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1566FA3C-FD24-41DB-A2B8-6232F89783DE}]
"(Default)" = "IRoomMessageEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{95B9A382-EA50-45E4-965E-BA61E7213DBA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{A0C3E9BA-C622-45A2-9FED-2C662F3F489A}]
"(Default)" = "IRoomMessage"

[HKCU\Software\Classes\Interface\{6964B116-8FE6-4C19-9052-0EAA74460A58}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{74B6CAF0-755E-454D-A819-D0E439EF5296}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{300E56A3-CE08-4EB3-9F48-505AA162C9DA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{6B551C9E-DE81-41DF-A0AE-39F0AF11D508}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{94093301-8854-408E-8138-C7C3D2DACA1F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{AA186C92-181E-417F-B150-FCA0F367E0FC}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{A9AAB6A0-54B9-4419-AAAF-6B26DFAC1585}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9918673D-4D74-41CF-8840-D4996395A34C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{64561371-77A2-4BD4-A909-E6DEB1B5C6CF}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B22EDBEA-9E61-4703-82BE-01C05619B6D6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{37C7F935-E215-46D2-82A3-A451840EC733}]
"(Default)" = "IConversation2"

[HKCU\Software\Classes\Wow6432Node\Interface\{FB67275C-4D9E-4C32-9793-A96749884FC1}]
"(Default)" = "IAlertLevel"

[HKCU\Software\Classes\Interface\{A0C3E9BA-C622-45A2-9FED-2C662F3F489A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A986B5D-E5EC-4395-AD2D-0E62B72DA776}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F0B791FA-434B-49F2-B84E-05619EBE6BEB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D804BA85-DB0F-49EE-B723-DCDF0425BD9F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{56F7DEC0-59CA-47C6-9F35-D5066A702B39}]
"(Default)" = "IConversationStateChangePropertyDictionary"

[HKCU\Software\Classes\Interface\{35CE3A44-C636-4D31-BC95-B9370C2251B9}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{26C8D96D-7D22-4E9E-948A-EDCCB4CA9C64}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DCDEA425-B5F2-4719-A3B4-69FFB9770BE6}]
"(Default)" = "IRecentContacts"

[HKCU\Software\Classes\Wow6432Node\Interface\{00E22CBB-3170-453A-AE62-EAFBC75A9F8D}]
"(Default)" = "IConversationPropertyDictionary"

[HKCU\Software\Classes\Interface\{ABF012A2-2068-4B4D-80D7-6D386BA7C8A2}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{D60B1701-766D-401E-8586-83E0C9106BE0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{05789509-AFA1-4E90-B4FA-1A7820DB9796}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{899B846A-8887-45D6-B8F5-8AAA0BFDF722}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{02DD541F-C863-4295-92AB-A4CF29F5D841}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{18BA13C7-A64E-4301-BA51-D1BFB3C1C9D5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{95B8D3E8-F3D5-4DC0-BCFE-AB80C835DEA0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2F8C3E58-436B-42DB-8924-6C394B37DCA2}]
"(Default)" = "IConferenceAccessInformation"

[HKCU\Software\Classes\Wow6432Node\Interface\{1F8EBE6F-7993-42CE-980A-A2F03793BE71}]
"(Default)" = "IDeviceCollection"

[HKCU\Software\Classes\Interface\{0678C83E-F580-4D99-902F-930699B28BE8}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{8057F99D-292C-4371-926B-5312E61A3A40}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B03614AE-8D68-4386-9E1C-939CABCF1232}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B3FF95BD-B743-498C-9973-7F8A2A78576A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{92D7E7A8-48D8-4166-8911-630AE02B2B93}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{09028936-CD20-43EF-98CF-56726ADDBA34}]
"(Default)" = "IUCOfficeIntegrationHelper"

[HKCU\Software\Classes\Interface\{DCDEA425-B5F2-4719-A3B4-69FFB9770BE6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C0034194-F7B6-43EB-B0E0-7852FC8E7BFA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{219DC126-9A48-483F-80C2-3F22B3B47829}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9B3A702D-5BE1-4FCE-ADB3-EBBD23E078C3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{AE3A7C39-9C30-4E0F-BAE4-D8344EF377EA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{76428270-36FA-4236-8BDF-AADB39FD1371}]
"(Default)" = "_IConversationWindowCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{9244D573-914F-4C1F-93F6-31609A95CBED}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8E839AF9-9508-475A-AA47-3EE8A946B75E}]
"(Default)" = "IAudioChannel"

[HKCU\Software\Classes\Wow6432Node\Interface\{D5C1C8FB-DC8A-45A3-AAA3-53B89D43CDE4}]
"(Default)" = "IIsContributingChangedEventData"

[HKCU\Software\Classes\Interface\{F97973D7-9436-4A3E-A802-F6EA172A0425}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{995F992C-9DEF-47B9-BF11-81813C0C0E28}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C413A27F-601E-4261-B9E3-0EB966F4E7D1}]
"(Default)" = "ILyncClient"

[HKCU\Software\Classes\Interface\{ACD2FDB9-98ED-4283-AAE8-3CD989EBD9AE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{10FDD9BA-0CBA-4958-B6C8-D0912BF2703F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{4023052E-E3B7-48A3-BCB3-CA2234D9BAEE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{AF2ABA54-F591-42BA-8004-20944C9FB4D7}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{AC10D6E9-4A8C-4484-B8F4-CA1E36347AAE}]
"(Default)" = "IApplicationSharingModality"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CFE77CD-731D-48B2-82B1-ECA3414D62E3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8684D3AD-7061-4056-A894-EBF1270ADB9B}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E5CFF4A5-83A8-4FD8-8DAA-77A3E2288D4A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DA7CF784-67DF-429C-82FB-9AFD99F6CCCB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{1124AA59-B6F3-4EB1-B79A-E7F53B388B8D}]
"(Default)" = "IParticipantActionAvailabilityChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{B03614AE-8D68-4386-9E1C-939CABCF1232}]
"(Default)" = "IRoomPropertyChangedEventData"

[HKCU\Software\Classes\Interface\{4C675532-6D55-49DD-8C8E-3C1CC5624CF2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8F04E92D-EE26-4B64-B9C1-56DD90816810}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F644C610-A146-4A56-8338-A69C45C71CEF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D0DBB17D-565E-486C-A47B-BA32DC1FAD0A}]
"(Default)" = "ISharerChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{68DA8699-6C6E-4390-BD82-709FF1DC1702}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8C9B6953-33CC-4A04-9DA4-F71AE79DA0C0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{95B8D3E8-F3D5-4DC0-BCFE-AB80C835DEA0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{E2C6D6E0-52EF-47A2-BDA9-9D6A7A29A391}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F5996C71-77AB-4020-9776-C2C270FEF2AE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{10C3ACC7-6C0C-4F35-ADFB-AE0F200A8583}]
"(Default)" = "IPresenceCapability"

[HKCU\Software\Classes\Wow6432Node\Interface\{DA7CF784-67DF-429C-82FB-9AFD99F6CCCB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{E6B3F5FA-4208-4C37-AE07-F6435B68D693}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{81C9D13F-A4F9-4E13-92D3-BB271E8DF3D2}]
"(Default)" = "IPreviousConversationCollection"

[HKCU\Software\Classes\Interface\{64B7E9AD-D920-4EAA-95C7-9D95DE9ACE24}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{21629AB6-9557-4985-9237-49177F618692}]
"(Default)" = "IContextEventData"

[HKCU\Software\Classes\Interface\{21629AB6-9557-4985-9237-49177F618692}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4875C050-BA9C-4A05-891E-E7B0A9463664}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{EF5C00E4-75E2-4D39-B358-0ED9CB14F3CB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{ED5040FA-8F8F-4876-BF6D-9C62F5EFFD5B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{3417D640-3976-4CB6-BC82-54E5E2E10784}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{6A7FF112-42CE-4D03-8922-D02AC6C5759F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DBA05C15-1C07-4A76-8248-08D8416A24E3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{339D28C6-3D1A-45D4-BA14-A56742749A43}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{00E22CBB-3170-453A-AE62-EAFBC75A9F8D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{36CDC166-4F21-46AD-A60E-8551F26C1D41}]
"(Default)" = "_IParticipant2Callback"

[HKCU\Software\Classes\Interface\{95B9A382-EA50-45E4-965E-BA61E7213DBA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{FF037274-455A-4E34-B5D1-D42DB866F9B7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{8665FD95-7720-4F9E-B605-6ABCBD7EDFF4}]
"(Default)" = "IParticipantPropertyDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{3690D374-3779-4EFC-B8E8-20642C01529A}]
"(Default)" = "ISharingResource"

[HKCU\Software\Classes\Interface\{F97BED54-E434-4020-A197-F15AEA9D9C95}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A58F54D2-9786-4309-964D-96549AEC7611}]
"(Default)" = "IShareableContentCollection"

[HKCU\Software\Classes\Interface\{1B04D929-11E4-46C2-9162-EA4F2758C3A7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C31FB52D-9E9E-45AD-A102-5218E1685B78}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3DEBDC7E-811F-4304-BDD7-7D98C732026C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C22CE6BF-3A47-46B7-8544-44305BADFEF9}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{08DDF5C4-FA12-4978-B26E-C6D23C453413}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B28F2007-3926-49CF-9101-4CCB9574049B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{628D7BDD-45AB-404D-8505-B3ADC15F454D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4AA93AA8-898C-45EE-8E5C-1A86739B3F96}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{62B932E9-7847-4D78-BEEE-5D58BF815B03}]
"(Default)" = "IContactPositionChangedEventData"

[HKCU\Software\Classes\Interface\{DD181E97-EEE0-4D65-BAD1-16866D0C7953}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{62074904-8D06-43FE-A531-E63DF7FDC2E7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D992371E-5161-453B-97E6-6E7C67BC075E}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{EF5C00E4-75E2-4D39-B358-0ED9CB14F3CB}]
"(Default)" = "IConversationContextCollectionEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{663C61F4-A9DA-4A6F-A606-F142F665DF61}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DD31376E-E529-43F2-B3B4-E379EBD28E2A}]
"(Default)" = "IAccessEntryCollectionChangedEventData"

[HKCU\Software\Classes\Interface\{50D86EE2-288F-44F5-8144-69F6E3B24B90}]
"(Default)" = "_IContactManagerEvents"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl" = ""

[HKCU\Software\Classes\Wow6432Node\Interface\{88C688B0-3908-4C56-A2E8-F90AB705C536}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{8FE9A23D-72BC-4EA3-A5AF-E37F75EAD8A2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D4B240B9-059B-4D13-8997-31B282B3BD43}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8C9B6953-33CC-4A04-9DA4-F71AE79DA0C0}]
"(Default)" = "_IUCOfficeIntegrationEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{4D120020-CE64-43C5-9F84-7A7B2360388F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F644C610-A146-4A56-8338-A69C45C71CEF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{21C41EDE-7ED8-4D97-9B0D-DD785781AF9B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4875C050-BA9C-4A05-891E-E7B0A9463664}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DC4BC923-6A52-4F02-9F8A-547B606955E7}]
"(Default)" = "_IAccessPermissionEvents"

[HKCU\Software\Classes\Interface\{EBD19735-0CB5-4AF3-8E05-B0140CF9D545}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{064E6072-5592-4D13-AFDB-55F5A494E137}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{8E73E7E1-90CE-4D3B-B5B7-71E87B2E8BA5}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4D120020-CE64-43C5-9F84-7A7B2360388F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3959E5C6-75CC-448E-9A18-9F163FF47646}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{90B49A60-72AF-4360-9F9B-916DB7504A3C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{4DA899D3-FAC7-4F43-8E4A-1987988FBC9B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{0FDB5B86-DD44-41BF-A443-317FD19BBF3D}]
"(Default)" = "_IRoomManagerCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{8684D3AD-7061-4056-A894-EBF1270ADB9B}]
"(Default)" = "_IApplicationSharingModalityCallback"

[HKCU\Software\Classes\Interface\{CA62E6F3-3E6D-451B-AEAA-6A1B7AACF8D4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7CC306E9-2546-4101-82AB-29613AD6F7A7}]
"(Default)" = "ICallParkOrbit"

[HKCU\Software\Classes\Wow6432Node\Interface\{7BF20B14-58D1-494B-B301-9B16BACC9610}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4290152C-75C9-47C8-AA12-814818360B3F}]
"(Default)" = "IModalityPropertyChangedEventData"

[HKCU\Software\Classes\Interface\{F7EE956B-A713-48D3-AFEF-0A28F37740B3}]
"(Default)" = "IAsynchronousOperation"

[HKCU\Software\Classes\Wow6432Node\Interface\{ACD2FDB9-98ED-4283-AAE8-3CD989EBD9AE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DEDDD7BD-4763-41D2-9AAA-B2C143457CA4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{89C7EB8E-42BC-4C9F-BB34-88CDE83CCB37}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{71A054B3-4D4B-4643-B14F-4572494B19E7}]
"(Default)" = "IScheduledConference"

[HKCU\Software\Classes\Interface\{7693221D-7E9F-47D3-8782-6437CF3D4C0C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{B0B0E8F8-32DA-4CB0-A124-D1E35891D53A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4BACB4B8-1236-42B8-BDA1-D1533148780D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{70DCCE38-90BF-4428-A34F-3A6082F29E50}]
"(Default)" = "IParticipantPropertyChangedEventData"

[HKCU\Software\Classes\Interface\{02DD541F-C863-4295-92AB-A4CF29F5D841}]
"(Default)" = "IConversationWindow2"

[HKCU\Software\Classes\Wow6432Node\Interface\{CE16D540-B9E8-4742-8659-9A7A318AFB92}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{E82737B9-B2BE-4AFD-B649-C9F665627F20}]
"(Default)" = "IDeviceCollectionEventData"

[HKCU\Software\Classes\Interface\{EE9F3E74-AC61-469E-80D6-E22BF4EEFF5C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect" = "1"

[HKCU\Software\Classes\Wow6432Node\Interface\{4BACB4B8-1236-42B8-BDA1-D1533148780D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{109D32CE-E09F-46F5-9ECB-01E1D273B7DA}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9B3A702D-5BE1-4FCE-ADB3-EBBD23E078C3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{F87AFD9A-9BF8-4AC4-953E-33C4D2035D33}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{FA7971EF-1E41-429F-8C79-DAC5F88D444B}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "0"

[HKCU\Software\Classes\Wow6432Node\Interface\{2495B94C-38AF-439B-BBA0-0AD38D959CE4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8E839AF9-9508-475A-AA47-3EE8A946B75E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7356D7BB-FD71-4554-84A1-3BBE28726551}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B22EDBEA-9E61-4703-82BE-01C05619B6D6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4FE44049-4E44-4109-B234-4E4EFC135A86}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C0034194-F7B6-43EB-B0E0-7852FC8E7BFA}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4AA93AA8-898C-45EE-8E5C-1A86739B3F96}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{76428270-36FA-4236-8BDF-AADB39FD1371}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{88C688B0-3908-4C56-A2E8-F90AB705C536}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{04378C72-E58F-47C0-8621-901B85CA2ED4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{E664682C-CBA5-4C7C-A65B-9CD046F24CBD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{A0C3E9BA-C622-45A2-9FED-2C662F3F489A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{ABF012A2-2068-4B4D-80D7-6D386BA7C8A2}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{011B320C-9AC1-4DDE-B595-3D0014472E2F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{EFEC2816-F16D-48D8-9306-26C810F0EA55}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{FD02E775-CB9D-4CE3-9243-115C81E5F11C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D804BA85-DB0F-49EE-B723-DCDF0425BD9F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{311DDE48-ED7D-46FA-9E0A-2E314B7FEF7C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{0FDB5B86-DD44-41BF-A443-317FD19BBF3D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E66CA1CC-9DB0-467E-9C60-6A832ACD6780}]
"(Default)" = "IVideoChannel"

[HKCU\Software\Classes\Wow6432Node\Interface\{62074904-8D06-43FE-A531-E63DF7FDC2E7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F8DF0B4B-A4CE-476B-81D3-9FBA98461B62}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{AAFE380B-B079-4B55-B81B-A9401D77B776}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1566FA3C-FD24-41DB-A2B8-6232F89783DE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{74B6CAF0-755E-454D-A819-D0E439EF5296}]
"(Default)" = "IPublicCloudProviderInfo"

[HKCU\Software\Classes\Interface\{300E56A3-CE08-4EB3-9F48-505AA162C9DA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{3C8210C8-8578-47C6-87A9-FA1AD2BA9873}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9AB20314-B258-48F8-B659-AD250DFA20F5}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DF414A68-5051-4465-AAE2-4F301315734E}]
"(Default)" = "IPreviousConversation"

[HKCU\Software\Classes\Wow6432Node\Interface\{B0C10F94-CAB6-4821-9643-D781885A46AF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2F8C3E58-436B-42DB-8924-6C394B37DCA2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{FD9000B3-479F-4B16-9D63-70A49E078946}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{340C54A6-35CF-4971-B540-72D7F040AC24}]
"(Default)" = "IDistributionGroup"

[HKCU\Software\Classes\Interface\{EFEC2816-F16D-48D8-9306-26C810F0EA55}]
"(Default)" = "IContactInformationChangedEventData"

[HKCU\Software\Classes\Interface\{30F974FB-1F7B-49D3-8DA4-01694BA474D2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{02DD541F-C863-4295-92AB-A4CF29F5D841}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D60B1701-766D-401E-8586-83E0C9106BE0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7452BD0F-65CB-4A5E-AC37-E2BEA1F43DD9}]
"(Default)" = "IRoomParticipantsEventData"

[HKCU\Software\Classes\Interface\{4CB70415-BA71-491E-B12D-155D85CBDFF1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{B3FF95BD-B743-498C-9973-7F8A2A78576A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{CA478B44-4FCE-4082-8700-8CEC69FB50E1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4CB70415-BA71-491E-B12D-155D85CBDFF1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7B39CB77-4AEB-42D7-B351-CB5472C1C6AD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{339D28C6-3D1A-45D4-BA14-A56742749A43}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{17635563-2FA5-46AD-8F47-3F0FF958ECE2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F423726D-0E9B-4B55-9569-E79865210F69}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B00F2520-029C-47D0-B4E8-8FBEF47CAA7E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F97973D7-9436-4A3E-A802-F6EA172A0425}]
"(Default)" = "IGroup"

[HKCU\Software\Classes\Wow6432Node\Interface\{70DCCE38-90BF-4428-A34F-3A6082F29E50}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4C675532-6D55-49DD-8C8E-3C1CC5624CF2}]
"(Default)" = "IConversationHistoryItemAddedEventData"

[HKCU\Software\Classes\Interface\{219DC126-9A48-483F-80C2-3F22B3B47829}]
"(Default)" = "_IScheduledConferenceManagerCallback"

[HKCU\Software\Classes\Interface\{2209E091-5B90-4CAF-8582-CC5979883376}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1FF8AA01-D8AF-4B2B-B254-BEFEFABAF2D6}]
"(Default)" = "IConferenceInfoCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{9274DBDC-43CE-45AA-A817-414A4494AD28}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D0DBB17D-565E-486C-A47B-BA32DC1FAD0A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{603E2454-725A-4679-A6A8-363B21633CB2}]
"(Default)" = "IRoomMessageDictionary"

[HKCU\Software\Classes\Interface\{10FDD9BA-0CBA-4958-B6C8-D0912BF2703F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4023052E-E3B7-48A3-BCB3-CA2234D9BAEE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{E4E1D0AF-5B70-45AF-9A0E-F548D8FBD17C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{6964B116-8FE6-4C19-9052-0EAA74460A58}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{26F15083-86DB-4663-89ED-A0ABC896B9A1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{0CA9BAE8-DD28-4929-A821-4D00F11203CC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F7EE956B-A713-48D3-AFEF-0A28F37740B3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{50D86EE2-288F-44F5-8144-69F6E3B24B90}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{AC10D6E9-4A8C-4484-B8F4-CA1E36347AAE}]
"(Default)" = "IApplicationSharingModality"

[HKCU\Software\Classes\Wow6432Node\Interface\{DD181E97-EEE0-4D65-BAD1-16866D0C7953}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{2D3D62CA-E9F6-4F94-8EBD-5FABAB29E6A5}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Skype\Phone]
"SkypePath" = "%Program Files% (x86)\Skype\Phone\Skype.exe"

[HKCU\Software\Classes\Interface\{AAFE380B-B079-4B55-B81B-A9401D77B776}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{68B1FC26-B48F-4D5F-B041-8E246676D836}]
"(Default)" = "_IVoiceMailCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{76DE1CD8-F278-48A1-A391-E5BEB8F428E6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{8AFFB8CE-5404-4280-BCA3-E2E4388E6D73}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{6A222195-F65E-467F-8F77-EB180BD85288}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{5E7AB04C-E4B8-49FB-85FF-9E2BCA2899D3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{6964B116-8FE6-4C19-9052-0EAA74460A58}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{BE026CD2-7E82-4F7C-8762-F6B02F496174}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{89C7EB8E-42BC-4C9F-BB34-88CDE83CCB37}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{ACD2FDB9-98ED-4283-AAE8-3CD989EBD9AE}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2209E091-5B90-4CAF-8582-CC5979883376}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{36CDC166-4F21-46AD-A60E-8551F26C1D41}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{420A24E2-5C31-4262-9BD5-058682300ED6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{533891F1-A460-43E6-8BDA-6D0D2C13ADDE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{0678C83E-F580-4D99-902F-930699B28BE8}]
"(Default)" = "IConversationWindowActionAvailabilityChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{420A24E2-5C31-4262-9BD5-058682300ED6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{ACABFA1C-0738-4C4D-AF7E-326873CF4ACE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4AA93AA8-898C-45EE-8E5C-1A86739B3F96}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{DEDDD7BD-4763-41D2-9AAA-B2C143457CA4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4E8DC7E0-04B8-470B-BDFA-F520099B975F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9E0F8FCA-D9C9-47CD-87F4-5554217DFFCC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9397FF55-EE06-4F02-8F2A-BE3AE249D4BB}]
"(Default)" = "IConversationHistoryActionAvailabilityEventData"

[HKCU\Software\Classes\Interface\{1566FA3C-FD24-41DB-A2B8-6232F89783DE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9B3A702D-5BE1-4FCE-ADB3-EBBD23E078C3}]
"(Default)" = "IClientStateChangedEventData"

[HKCU\Software\Classes\Interface\{B26F6403-761E-48D4-84E2-619C17EAEB13}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{3CD1DB65-D85B-4912-8536-6BD8E19F1738}]
"(Default)" = "IVideoChannelCollection"

[HKCU\Software\Classes\Interface\{E0E8B413-BB57-4B58-B1FB-288F3A269E35}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{06437ABB-C419-4B11-A474-1A2B02FBD646}]
"(Default)" = "_ISelfEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{A0984F01-5D2C-4302-87A0-69BE7B015143}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{1124AA59-B6F3-4EB1-B79A-E7F53B388B8D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\IM Providers\Skype]
"ProcessId" = "2788"

[HKCU\Software\Classes\Interface\{E664682C-CBA5-4C7C-A65B-9CD046F24CBD}]
"(Default)" = "ISignInDelayedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{74B6CAF0-755E-454D-A819-D0E439EF5296}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F8DF0B4B-A4CE-476B-81D3-9FBA98461B62}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{64561371-77A2-4BD4-A909-E6DEB1B5C6CF}]
"(Default)" = "_IClientEvents"

[HKCU\Software\Classes\Interface\{7CC306E9-2546-4101-82AB-29613AD6F7A7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DAA5FDE3-A81C-4F23-80B6-C47B52C649BF}]
"(Default)" = "IContactEndpointCollection"

[HKCU\Software\Classes\Interface\{A766520D-F700-4BF5-8428-56BD914C1C40}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AF2ABA54-F591-42BA-8004-20944C9FB4D7}]
"(Default)" = "_IConversationWindow2Events"

[HKCU\Software\Classes\Wow6432Node\Interface\{E66CA1CC-9DB0-467E-9C60-6A832ACD6780}]
"(Default)" = "IVideoChannel"

[HKCU\Software\Classes\Wow6432Node\Interface\{95B8D3E8-F3D5-4DC0-BCFE-AB80C835DEA0}]
"(Default)" = "IContactSubscription"

[HKCU\Software\Classes\Wow6432Node\Interface\{3690D374-3779-4EFC-B8E8-20642C01529A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{9112CE9B-3704-48C0-86DC-7A7B0F34D7A3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{A0C3E9BA-C622-45A2-9FED-2C662F3F489A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{38E5EC21-81A1-45A7-94D6-B812976231A4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3F60CFF7-BE3F-4404-8395-C02D0CDD318E}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D9D04B55-D820-4D5B-A690-658A49368478}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{17635563-2FA5-46AD-8F47-3F0FF958ECE2}]
"(Default)" = "IContentCollectionChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{DF414A68-5051-4465-AAE2-4F301315734E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{FA7971EF-1E41-429F-8C79-DAC5F88D444B}]
"(Default)" = "_IConversationHistoryEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{4875C050-BA9C-4A05-891E-E7B0A9463664}]
"(Default)" = "IParticipant"

[HKCU\Software\Classes\Wow6432Node\Interface\{B1C6ECC3-1EA7-495D-9337-02FE4FB723F0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{25025B1B-0084-44D1-B383-9FFC9A99ABCD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DA7CF784-67DF-429C-82FB-9AFD99F6CCCB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F87AFD9A-9BF8-4AC4-953E-33C4D2035D33}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{806D3227-4CB8-47C4-9864-7D4DF4F44069}]
"(Default)" = "_IAutomationCallback"

[HKCU\Software\Classes\Interface\{8F04E92D-EE26-4B64-B9C1-56DD90816810}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{3CD1DB65-D85B-4912-8536-6BD8E19F1738}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9244D573-914F-4C1F-93F6-31609A95CBED}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{5FA92EA7-6E6E-4A82-8F0D-107FEAF5A75D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{30F974FB-1F7B-49D3-8DA4-01694BA474D2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{21C41EDE-7ED8-4D97-9B0D-DD785781AF9B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C7ACB102-B692-49CC-92DA-5824822C7B96}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{4DA899D3-FAC7-4F43-8E4A-1987988FBC9B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A9AAB6A0-54B9-4419-AAAF-6B26DFAC1585}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{86225E5C-7595-4D1C-985D-8A0458D714C0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{0CA9BAE8-DD28-4929-A821-4D00F11203CC}]
"(Default)" = "_IChannelEvents"

[HKCU\Software\Classes\Interface\{B1C6ECC3-1EA7-495D-9337-02FE4FB723F0}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4DA899D3-FAC7-4F43-8E4A-1987988FBC9B}]
"(Default)" = "ISelf"

[HKCU\Software\Classes\Interface\{CE16D540-B9E8-4742-8659-9A7A318AFB92}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AE3A7C39-9C30-4E0F-BAE4-D8344EF377EA}]
"(Default)" = "_IContentSharingModalityEvents"

[HKCU\Software\Classes\Interface\{232F1CAB-5351-4E48-8A87-2185445F712D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DF414A68-5051-4465-AAE2-4F301315734E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{AA186C92-181E-417F-B150-FCA0F367E0FC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{BE6086A1-D436-4834-89EE-3CA4F8596A58}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D60B1701-766D-401E-8586-83E0C9106BE0}]
"(Default)" = "IParticipant2"

[HKCU\Software\Classes\Wow6432Node\Interface\{663C61F4-A9DA-4A6F-A606-F142F665DF61}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{FD02E775-CB9D-4CE3-9243-115C81E5F11C}]
"(Default)" = "IParticipantCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{00E22CBB-3170-453A-AE62-EAFBC75A9F8D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{209DA899-15F1-499A-B8B5-A847EAA899AE}]
"(Default)" = "IRepresentationInfo"

[HKCU\Software\Classes\Interface\{FD9000B3-479F-4B16-9D63-70A49E078946}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1B04D929-11E4-46C2-9162-EA4F2758C3A7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{65B71572-5338-43C8-9E4C-F1DFC6711AD1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4CB70415-BA71-491E-B12D-155D85CBDFF1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{330639F2-E399-48CB-863F-56A50A27A138}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDecisionReason" = "1"

[HKCU\Software\Classes\Interface\{339D28C6-3D1A-45D4-BA14-A56742749A43}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{10FDD9BA-0CBA-4958-B6C8-D0912BF2703F}]
"(Default)" = "IContact2"

[HKCU\Software\Classes\Interface\{87084018-7E74-4F92-AB39-1CF03188580E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F5996C71-77AB-4020-9776-C2C270FEF2AE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4C675532-6D55-49DD-8C8E-3C1CC5624CF2}]
"(Default)" = "IConversationHistoryItemAddedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{8E73E7E1-90CE-4D3B-B5B7-71E87B2E8BA5}]
"(Default)" = "_IRoomUserEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{50D86EE2-288F-44F5-8144-69F6E3B24B90}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{87084018-7E74-4F92-AB39-1CF03188580E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{26F15083-86DB-4663-89ED-A0ABC896B9A1}]
"(Default)" = "IScheduledConferenceManager"

[HKCU\Software\Classes\Interface\{06437ABB-C419-4B11-A474-1A2B02FBD646}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B26F6403-761E-48D4-84E2-619C17EAEB13}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B3C5872E-591C-4A74-9F84-B00EF970A838}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{3959E5C6-75CC-448E-9A18-9F163FF47646}]
"(Default)" = "IActiveAudioDeviceChangedEventData"

[HKCU\Software\Classes\Interface\{A0984F01-5D2C-4302-87A0-69BE7B015143}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{66D1FFC0-C234-4F3D-ABAA-98222A69E525}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{3F60CFF7-BE3F-4404-8395-C02D0CDD318E}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{3C8210C8-8578-47C6-87A9-FA1AD2BA9873}]
"(Default)" = "IShareableContentPropertyChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C8210C8-8578-47C6-87A9-FA1AD2BA9873}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{1F8EBE6F-7993-42CE-980A-A2F03793BE71}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1566FA3C-FD24-41DB-A2B8-6232F89783DE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{94093301-8854-408E-8138-C7C3D2DACA1F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{D804BA85-DB0F-49EE-B723-DCDF0425BD9F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A986B5D-E5EC-4395-AD2D-0E62B72DA776}]
"(Default)" = "_IParticipantEvents"

[HKCU\Software\Classes\Interface\{A58F54D2-9786-4309-964D-96549AEC7611}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B335AE5E-E4EA-49D3-B03B-646A96FE66D3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{0FDB5B86-DD44-41BF-A443-317FD19BBF3D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{A4E1D1E4-7839-473B-95FA-5D33DDC0D2DD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{70986DCE-4AA8-4DFB-9A45-4BFCF7A206F5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{E5CFF4A5-83A8-4FD8-8DAA-77A3E2288D4A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{61C747F6-157C-4CAE-A37C-EC4352175860}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{744BAB86-B15F-4BD5-B7DD-476B0CE0162A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{37C7F935-E215-46D2-82A3-A451840EC733}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{ED5040FA-8F8F-4876-BF6D-9C62F5EFFD5B}]
"(Default)" = "IModalityDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{DBA05C15-1C07-4A76-8248-08D8416A24E3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9D4D3D10-DEBC-40C6-ACF9-527986CB42BC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{18BA13C7-A64E-4301-BA51-D1BFB3C1C9D5}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{26F15083-86DB-4663-89ED-A0ABC896B9A1}]
"(Default)" = "IScheduledConferenceManager"

[HKCU\Software\Classes\Interface\{85109845-6AE2-4B6B-9524-65BA203E5B7D}]
"(Default)" = "IContact"

[HKCU\Software\Classes\Interface\{68DA8699-6C6E-4390-BD82-709FF1DC1702}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{1566FA3C-FD24-41DB-A2B8-6232F89783DE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4D120020-CE64-43C5-9F84-7A7B2360388F}]
"(Default)" = "IRoomJoinStateChangedEventData"

[HKCU\Software\Classes\Interface\{9E0F8FCA-D9C9-47CD-87F4-5554217DFFCC}]
"(Default)" = "_IConversationWindowEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{F0B791FA-434B-49F2-B84E-05619EBE6BEB}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C6605772-3D9D-44A7-B43A-4590E6B43EE3}]
"(Default)" = "_IGroupCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{E4E1D0AF-5B70-45AF-9A0E-F548D8FBD17C}]
"(Default)" = "IAVModality"

[HKCU\Software\Classes\Interface\{F0CE810F-E36F-4CD8-A836-515B9A6E09FC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E24C2484-C70D-44AB-8A4E-F1585A17A3E1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{08DDF5C4-FA12-4978-B26E-C6D23C453413}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BC9F5F40-D315-40C1-B1C6-CEA0646E18E2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{064E6072-5592-4D13-AFDB-55F5A494E137}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{1FF0E6F1-2FE4-4E29-A123-557AF0DB6927}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{464D5228-9F68-4B1F-B430-156A104E2B85}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{EFEC2816-F16D-48D8-9306-26C810F0EA55}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DC63D621-11C8-4490-B017-B8C57EE1BE25}]
"(Default)" = "IAddress"

[HKCU\Software\Classes\Interface\{C22CE6BF-3A47-46B7-8544-44305BADFEF9}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F719ED75-B7BD-45D3-9097-254509226F20}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{FD9000B3-479F-4B16-9D63-70A49E078946}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{26F15083-86DB-4663-89ED-A0ABC896B9A1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{0BDB9057-28AE-4BF0-AFF0-12A148E51637}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{1124AA59-B6F3-4EB1-B79A-E7F53B388B8D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B3C5872E-591C-4A74-9F84-B00EF970A838}]
"(Default)" = "IConferenceInfo"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAB42E13-500A-409A-AC34-C1BF4719EE2E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{89C7EB8E-42BC-4C9F-BB34-88CDE83CCB37}]
"(Default)" = "IRoomManagerStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{E66CA1CC-9DB0-467E-9C60-6A832ACD6780}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3CD1DB65-D85B-4912-8536-6BD8E19F1738}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{464D5228-9F68-4B1F-B430-156A104E2B85}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{08DDF5C4-FA12-4978-B26E-C6D23C453413}]
"(Default)" = "_IDeviceManagerCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{4023052E-E3B7-48A3-BCB3-CA2234D9BAEE}]
"(Default)" = "IShareableContentActionAvailabilityChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{FA7971EF-1E41-429F-8C79-DAC5F88D444B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{36CDC166-4F21-46AD-A60E-8551F26C1D41}]
"(Default)" = "_IParticipant2Callback"

[HKCU\Software\Classes\Wow6432Node\Interface\{94093301-8854-408E-8138-C7C3D2DACA1F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{95B9A382-EA50-45E4-965E-BA61E7213DBA}]
"(Default)" = "_IAudioChannelCallback"

[HKCU\Software\Classes\Interface\{00E22CBB-3170-453A-AE62-EAFBC75A9F8D}]
"(Default)" = "IConversationPropertyDictionary"

[HKCU\Software\Classes\Interface\{3187885C-A8AF-4D4B-8E80-F4B9D447A7B2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C0034194-F7B6-43EB-B0E0-7852FC8E7BFA}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAB42E13-500A-409A-AC34-C1BF4719EE2E}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{26F15083-86DB-4663-89ED-A0ABC896B9A1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7B39CB77-4AEB-42D7-B351-CB5472C1C6AD}]
"(Default)" = "IChannel2"

[HKCU\Software\Classes\Wow6432Node\Interface\{02DD541F-C863-4295-92AB-A4CF29F5D841}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{E0E8B413-BB57-4B58-B1FB-288F3A269E35}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F0B791FA-434B-49F2-B84E-05619EBE6BEB}]
"(Default)" = "ICredentialRequestedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{35CE3A44-C636-4D31-BC95-B9370C2251B9}]
"(Default)" = "IFavoriteContacts"

[HKCU\Software\Classes\Interface\{B8FD4A53-E7E6-4995-A5B5-1306C7584964}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DAA5FDE3-A81C-4F23-80B6-C47B52C649BF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DEDDD7BD-4763-41D2-9AAA-B2C143457CA4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F0CE810F-E36F-4CD8-A836-515B9A6E09FC}]
"(Default)" = "IContactInformationDictionary"

[HKCU\Software\Classes\Interface\{899B846A-8887-45D6-B8F5-8AAA0BFDF722}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C4D95336-5949-4D13-AAC8-82039E5CBCFC}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{84340964-7820-4EBC-BCD3-702926DE23E8}]
"(Default)" = "_IContentSharingModalityCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{AF2ABA54-F591-42BA-8004-20944C9FB4D7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AAFE380B-B079-4B55-B81B-A9401D77B776}]
"(Default)" = "IPowerPointContent"

[HKCU\Software\Classes\Interface\{68DA8699-6C6E-4390-BD82-709FF1DC1702}]
"(Default)" = "IRoomUser"

[HKCU\Software\Classes\Wow6432Node\Interface\{1FF8AA01-D8AF-4B2B-B254-BEFEFABAF2D6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{628D7BDD-45AB-404D-8505-B3ADC15F454D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{81C9D13F-A4F9-4E13-92D3-BB271E8DF3D2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{603E2454-725A-4679-A6A8-363B21633CB2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8F04E92D-EE26-4B64-B9C1-56DD90816810}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B1F5BCD8-69A6-4FC3-9EF0-9BD4AD999061}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DA7CF784-67DF-429C-82FB-9AFD99F6CCCB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D2BFC7D7-A64F-48EF-BF90-C3C7E684D89C}]
"(Default)" = "IDistributionGroupExpansionStateChangedEventData"

[HKCU\Software\Classes\Interface\{85109845-6AE2-4B6B-9524-65BA203E5B7D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{855AD949-E2EB-473D-AAF2-9800008EA303}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{209DA899-15F1-499A-B8B5-A847EAA899AE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{F87AFD9A-9BF8-4AC4-953E-33C4D2035D33}]
"(Default)" = "IPreviousConversationsManagerConnectionStateChangedEventData"

[HKCU\Software\Classes\Interface\{37C7F935-E215-46D2-82A3-A451840EC733}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8C9B6953-33CC-4A04-9DA4-F71AE79DA0C0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{7CD92461-CA4F-4BEB-A636-8BBCC192E60F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A0984F01-5D2C-4302-87A0-69BE7B015143}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AB2D1A67-2B3D-4E25-B21C-03F4BFC4C2BE}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{48B3099D-841D-4CAA-9202-5787596E2BD2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{6A7FF112-42CE-4D03-8922-D02AC6C5759F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B22EDBEA-9E61-4703-82BE-01C05619B6D6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{10FDD9BA-0CBA-4958-B6C8-D0912BF2703F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{25A47938-5C31-4F43-9108-DA01EE5869C0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{806D3227-4CB8-47C4-9864-7D4DF4F44069}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B0B0E8F8-32DA-4CB0-A124-D1E35891D53A}]
"(Default)" = "IAudioDevice"

[HKCU\Software\Classes\Interface\{899B846A-8887-45D6-B8F5-8AAA0BFDF722}]
"(Default)" = "IActiveContentChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{C63F58CB-EF11-4934-AA3B-2D69244F0780}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{899B846A-8887-45D6-B8F5-8AAA0BFDF722}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{064E6072-5592-4D13-AFDB-55F5A494E137}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{55A21CF3-A2B3-484E-BE2A-14280F501289}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{340C54A6-35CF-4971-B540-72D7F040AC24}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B0B0E8F8-32DA-4CB0-A124-D1E35891D53A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{00E22CBB-3170-453A-AE62-EAFBC75A9F8D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{ACABFA1C-0738-4C4D-AF7E-326873CF4ACE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{80EDBF3A-812E-42B5-A67F-6CC6D9A19A6C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B28F2007-3926-49CF-9101-4CCB9574049B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{56F7DEC0-59CA-47C6-9F35-D5066A702B39}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{9D4D3D10-DEBC-40C6-ACF9-527986CB42BC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F5996C71-77AB-4020-9776-C2C270FEF2AE}]
"(Default)" = "IConversationHistory"

[HKCU\Software\Classes\Interface\{E2C6D6E0-52EF-47A2-BDA9-9D6A7A29A391}]
"(Default)" = "_IRoomManagerEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{10D66B39-5E4B-4C98-AAC6-D0458FEB1BDB}]
"(Default)" = "_IModalityEvents"

[HKCU\Software\Classes\Interface\{109D32CE-E09F-46F5-9ECB-01E1D273B7DA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{8A88C016-AA5D-4EAE-9C79-7AA5C360ED76}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{2209E091-5B90-4CAF-8582-CC5979883376}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{9AB20314-B258-48F8-B659-AD250DFA20F5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{87084018-7E74-4F92-AB39-1CF03188580E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{EFEC2816-F16D-48D8-9306-26C810F0EA55}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{6A986B5D-E5EC-4395-AD2D-0E62B72DA776}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BE026CD2-7E82-4F7C-8762-F6B02F496174}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AB2D1A67-2B3D-4E25-B21C-03F4BFC4C2BE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B28F2007-3926-49CF-9101-4CCB9574049B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AB2D1A67-2B3D-4E25-B21C-03F4BFC4C2BE}]
"(Default)" = "IConversationManagerEventData"

[HKCU\Software\Classes\Interface\{90B49A60-72AF-4360-9F9B-916DB7504A3C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{12480BD4-072F-4763-B9FB-41B2CA54F9CD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C22CE6BF-3A47-46B7-8544-44305BADFEF9}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{082EE280-726E-417F-99CB-81A0CCBFF883}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{25D64AEA-0E65-49CB-8D6D-65DB0AC1AF65}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1A8A9402-E89F-40AE-88A8-B328391684B6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B0C10F94-CAB6-4821-9643-D781885A46AF}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DBA05C15-1C07-4A76-8248-08D8416A24E3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{FD02E775-CB9D-4CE3-9243-115C81E5F11C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E2C6D6E0-52EF-47A2-BDA9-9D6A7A29A391}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{995F992C-9DEF-47B9-BF11-81813C0C0E28}]
"(Default)" = "ISearchProviderStateChangedEventData"

[HKCU\Software\Classes\Interface\{48B3099D-841D-4CAA-9202-5787596E2BD2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F97BED54-E434-4020-A197-F15AEA9D9C95}]
"(Default)" = "IConversationWindowNeedsAttentionEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{FD9000B3-479F-4B16-9D63-70A49E078946}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{5418E2AB-EB9A-4659-B4DC-28DE633B2B8F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F97BED54-E434-4020-A197-F15AEA9D9C95}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3CD1DB65-D85B-4912-8536-6BD8E19F1738}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{569E04F2-D286-4903-9642-44D850310956}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DD31376E-E529-43F2-B3B4-E379EBD28E2A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAC6D77B-12F7-405C-BB33-002D6D4007F3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{064E6072-5592-4D13-AFDB-55F5A494E137}]
"(Default)" = "IParticipantCollectionChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{2D3D62CA-E9F6-4F94-8EBD-5FABAB29E6A5}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{855AD949-E2EB-473D-AAF2-9800008EA303}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D0984CEF-E323-4574-B07B-5C970C9CAEE0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8684D3AD-7061-4056-A894-EBF1270ADB9B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{6B551C9E-DE81-41DF-A0AE-39F0AF11D508}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F719ED75-B7BD-45D3-9097-254509226F20}]
"(Default)" = "_ICustomGroupEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{E0E8B413-BB57-4B58-B1FB-288F3A269E35}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{57C3CB4D-C794-456F-846D-0E1ECA78BD00}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3DEBDC7E-811F-4304-BDD7-7D98C732026C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E24C2484-C70D-44AB-8A4E-F1585A17A3E1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{FB67275C-4D9E-4C32-9793-A96749884FC1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{18A9A79A-CBC7-4F8B-8B2B-9B40CA75EC3C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{25025B1B-0084-44D1-B383-9FFC9A99ABCD}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{2D3D62CA-E9F6-4F94-8EBD-5FABAB29E6A5}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B00F2520-029C-47D0-B4E8-8FBEF47CAA7E}]
"(Default)" = "IVideoViewInformationDictionary"

[HKCU\Software\Classes\Interface\{DAC6D77B-12F7-405C-BB33-002D6D4007F3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{ED5040FA-8F8F-4876-BF6D-9C62F5EFFD5B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7B39CB77-4AEB-42D7-B351-CB5472C1C6AD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DC63D621-11C8-4490-B017-B8C57EE1BE25}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8AFFB8CE-5404-4280-BCA3-E2E4388E6D73}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{0CA9BAE8-DD28-4929-A821-4D00F11203CC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E24C2484-C70D-44AB-8A4E-F1585A17A3E1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadNetworkName" = "Network 3"

[HKCU\Software\Classes\Interface\{21629AB6-9557-4985-9237-49177F618692}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{9B3A702D-5BE1-4FCE-ADB3-EBBD23E078C3}]
"(Default)" = "IClientStateChangedEventData"

[HKCU\Software\Classes\Interface\{9274DBDC-43CE-45AA-A817-414A4494AD28}]
"(Default)" = "IDeviceManager"

[HKCU\Software\Classes\Interface\{603E2454-725A-4679-A6A8-363B21633CB2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{AA41EE75-F9C5-42F7-8D17-1D92D6BA4D92}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{76428270-36FA-4236-8BDF-AADB39FD1371}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9E0F8FCA-D9C9-47CD-87F4-5554217DFFCC}]
"(Default)" = "_IConversationWindowEvents"

[HKCU\Software\Classes\Interface\{7CD92461-CA4F-4BEB-A636-8BBCC192E60F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{68B1FC26-B48F-4D5F-B041-8E246676D836}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E82737B9-B2BE-4AFD-B649-C9F665627F20}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D9D04B55-D820-4D5B-A690-658A49368478}]
"(Default)" = "_IVoiceMailsManagerCallback"

[HKCU\Software\Classes\Interface\{B1C6ECC3-1EA7-495D-9337-02FE4FB723F0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{9274DBDC-43CE-45AA-A817-414A4494AD28}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{ACD2FDB9-98ED-4283-AAE8-3CD989EBD9AE}]
"(Default)" = "_IAVModalityEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{3690D374-3779-4EFC-B8E8-20642C01529A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A9AAB6A0-54B9-4419-AAAF-6B26DFAC1585}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3187885C-A8AF-4D4B-8E80-F4B9D447A7B2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DCDEA425-B5F2-4719-A3B4-69FFB9770BE6}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3959E5C6-75CC-448E-9A18-9F163FF47646}]
"(Default)" = "IActiveAudioDeviceChangedEventData"

[HKCU\Software\Classes\Interface\{B8FD4A53-E7E6-4995-A5B5-1306C7584964}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{80EDBF3A-812E-42B5-A67F-6CC6D9A19A6C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{ACD2FDB9-98ED-4283-AAE8-3CD989EBD9AE}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\TypeLib\{B9AA1F11-F480-4054-A84E-B5D9277E40A8}\1.0\HELPDIR]
"(Default)" = "%Program Files% (x86)\Skype\Phone\Skype.exe\"

[HKCU\Software\Classes\Wow6432Node\Interface\{62074904-8D06-43FE-A531-E63DF7FDC2E7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{ABF012A2-2068-4B4D-80D7-6D386BA7C8A2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DF414A68-5051-4465-AAE2-4F301315734E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{2C59A886-ACD3-46BB-8BAC-7C1C59FB2E0D}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{90B49A60-72AF-4360-9F9B-916DB7504A3C}]
"(Default)" = "IAlertLevelChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{9274DBDC-43CE-45AA-A817-414A4494AD28}]
"(Default)" = "IDeviceManager"

[HKCU\Software\Classes\Wow6432Node\Interface\{18A9A79A-CBC7-4F8B-8B2B-9B40CA75EC3C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{92A9EB9B-85EE-444E-A302-00C3C945BAA4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{1B04D929-11E4-46C2-9162-EA4F2758C3A7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{76428270-36FA-4236-8BDF-AADB39FD1371}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F8DF0B4B-A4CE-476B-81D3-9FBA98461B62}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{10FDD9BA-0CBA-4958-B6C8-D0912BF2703F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7818A3F7-674B-477E-99E8-54774579A8E7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{330639F2-E399-48CB-863F-56A50A27A138}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{76DE1CD8-F278-48A1-A391-E5BEB8F428E6}]
"(Default)" = "IRoomManager"

[HKCU\Software\Classes\Interface\{F5996C71-77AB-4020-9776-C2C270FEF2AE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C79E4169-535F-4A41-8DE2-C65A90D9503D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DC4BC923-6A52-4F02-9F8A-547B606955E7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{74B6CAF0-755E-454D-A819-D0E439EF5296}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{70986DCE-4AA8-4DFB-9A45-4BFCF7A206F5}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{65B71572-5338-43C8-9E4C-F1DFC6711AD1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DC4BC923-6A52-4F02-9F8A-547B606955E7}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{57CC2235-96C5-49FA-B92B-350486C6CF52}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7818A3F7-674B-477E-99E8-54774579A8E7}]
"(Default)" = "IExchangeECPUrlChangedEventData"

[HKCU\Software\Classes\Interface\{EBD19735-0CB5-4AF3-8E05-B0140CF9D545}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E664682C-CBA5-4C7C-A65B-9CD046F24CBD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{086F0E9D-A416-40F9-877C-F1C82DC1A6AD}]
"(Default)" = "IVideoViewInformationChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{AA41EE75-F9C5-42F7-8D17-1D92D6BA4D92}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9AB20314-B258-48F8-B659-AD250DFA20F5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{15D4461D-C7EB-45CB-B214-F1C45FED1DB2}]
"(Default)" = "IPreviousConversationsManagerDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{ACD2FDB9-98ED-4283-AAE8-3CD989EBD9AE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{899B846A-8887-45D6-B8F5-8AAA0BFDF722}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{12480BD4-072F-4763-B9FB-41B2CA54F9CD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{2C59A886-ACD3-46BB-8BAC-7C1C59FB2E0D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{25D64AEA-0E65-49CB-8D6D-65DB0AC1AF65}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E6B3F5FA-4208-4C37-AE07-F6435B68D693}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{81C9D13F-A4F9-4E13-92D3-BB271E8DF3D2}]
"(Default)" = "IPreviousConversationCollection"

[HKCU\Software\Classes\Interface\{15D4461D-C7EB-45CB-B214-F1C45FED1DB2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{2EDAF003-14A6-4FAF-8A72-99526D048D63}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{478DDA59-64C0-4429-AC8A-F10A940B52CC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{37C7F935-E215-46D2-82A3-A451840EC733}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DD31376E-E529-43F2-B3B4-E379EBD28E2A}]
"(Default)" = "IAccessEntryCollectionChangedEventData"

[HKCU\Software\Classes\Interface\{D4B240B9-059B-4D13-8997-31B282B3BD43}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{56F7DEC0-59CA-47C6-9F35-D5066A702B39}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BC9F5F40-D315-40C1-B1C6-CEA0646E18E2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9397FF55-EE06-4F02-8F2A-BE3AE249D4BB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3F60CFF7-BE3F-4404-8395-C02D0CDD318E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{1FF8AA01-D8AF-4B2B-B254-BEFEFABAF2D6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{B22EDBEA-9E61-4703-82BE-01C05619B6D6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{56A868B4-0AD4-11CE-B03A-0020AF0BA770}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D9D04B55-D820-4D5B-A690-658A49368478}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{68DA8699-6C6E-4390-BD82-709FF1DC1702}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9397FF55-EE06-4F02-8F2A-BE3AE249D4BB}]
"(Default)" = "IConversationHistoryActionAvailabilityEventData"

[HKCU\Software\Classes\Interface\{3C8210C8-8578-47C6-87A9-FA1AD2BA9873}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C6605772-3D9D-44A7-B43A-4590E6B43EE3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{66D1FFC0-C234-4F3D-ABAA-98222A69E525}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F8DF0B4B-A4CE-476B-81D3-9FBA98461B62}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D60B1701-766D-401E-8586-83E0C9106BE0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{219DC126-9A48-483F-80C2-3F22B3B47829}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{6A986B5D-E5EC-4395-AD2D-0E62B72DA776}]
"(Default)" = "_IParticipantEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{E664682C-CBA5-4C7C-A65B-9CD046F24CBD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{74B6CAF0-755E-454D-A819-D0E439EF5296}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A766520D-F700-4BF5-8428-56BD914C1C40}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{81C9D13F-A4F9-4E13-92D3-BB271E8DF3D2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F719ED75-B7BD-45D3-9097-254509226F20}]
"(Default)" = "_ICustomGroupEvents"

[HKCU\Software\Classes\Interface\{C12F0DE5-9A7D-425C-B391-8BE004EAA2F6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{00E22CBB-3170-453A-AE62-EAFBC75A9F8D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B1C6ECC3-1EA7-495D-9337-02FE4FB723F0}]
"(Default)" = "_IContactEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAB42E13-500A-409A-AC34-C1BF4719EE2E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DAC6D77B-12F7-405C-BB33-002D6D4007F3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{C7ACB102-B692-49CC-92DA-5824822C7B96}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{02DD541F-C863-4295-92AB-A4CF29F5D841}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{08DDF5C4-FA12-4978-B26E-C6D23C453413}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F0B791FA-434B-49F2-B84E-05619EBE6BEB}]
"(Default)" = "ICredentialRequestedEventData"

[HKCU\Software\Classes\Interface\{F0B791FA-434B-49F2-B84E-05619EBE6BEB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{09028936-CD20-43EF-98CF-56726ADDBA34}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{89C7EB8E-42BC-4C9F-BB34-88CDE83CCB37}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{F87AFD9A-9BF8-4AC4-953E-33C4D2035D33}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4AA93AA8-898C-45EE-8E5C-1A86739B3F96}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{62B932E9-7847-4D78-BEEE-5D58BF815B03}]
"(Default)" = "IContactPositionChangedEventData"

[HKCU\Software\Classes\Interface\{C0034194-F7B6-43EB-B0E0-7852FC8E7BFA}]
"(Default)" = "IPhonesChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{744BAB86-B15F-4BD5-B7DD-476B0CE0162A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4E8DC7E0-04B8-470B-BDFA-F520099B975F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{E5CFF4A5-83A8-4FD8-8DAA-77A3E2288D4A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2EDAF003-14A6-4FAF-8A72-99526D048D63}]
"(Default)" = "IAutomation"

[HKCU\Software\Classes\Wow6432Node\Interface\{08E1E9CF-A7E4-43BE-AE8E-B223CE71E46E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4D120020-CE64-43C5-9F84-7A7B2360388F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{311DDE48-ED7D-46FA-9E0A-2E314B7FEF7C}]
"(Default)" = "_IContactCallback"

[HKCU\Software\Classes\Interface\{D2BFC7D7-A64F-48EF-BF90-C3C7E684D89C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1FF0E6F1-2FE4-4E29-A123-557AF0DB6927}]
"(Default)" = "IContactEndpoint"

[HKCU\Software\Classes\Wow6432Node\Interface\{05789509-AFA1-4E90-B4FA-1A7820DB9796}]
"(Default)" = "IRoomCollection"

[HKCU\Software\Classes\Interface\{AE3A7C39-9C30-4E0F-BAE4-D8344EF377EA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B22EDBEA-9E61-4703-82BE-01C05619B6D6}]
"(Default)" = "ILocalSharedResourcesChangedEventData"

[HKCU\Software\Classes\Interface\{65B71572-5338-43C8-9E4C-F1DFC6711AD1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C4D95336-5949-4D13-AAC8-82039E5CBCFC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{06437ABB-C419-4B11-A474-1A2B02FBD646}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{FA7971EF-1E41-429F-8C79-DAC5F88D444B}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{61C747F6-157C-4CAE-A37C-EC4352175860}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C31FB52D-9E9E-45AD-A102-5218E1685B78}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{DD181E97-EEE0-4D65-BAD1-16866D0C7953}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{0BDB9057-28AE-4BF0-AFF0-12A148E51637}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{CA62E6F3-3E6D-451B-AEAA-6A1B7AACF8D4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{BC9F5F40-D315-40C1-B1C6-CEA0646E18E2}]
"(Default)" = "IRoomUserChangedEventData"

[HKCU\Software\Classes\Interface\{DAA5FDE3-A81C-4F23-80B6-C47B52C649BF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{3C8210C8-8578-47C6-87A9-FA1AD2BA9873}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C63F58CB-EF11-4934-AA3B-2D69244F0780}]
"(Default)" = "_IConversationEvents"

[HKCU\Software\Classes\Interface\{DF414A68-5051-4465-AAE2-4F301315734E}]
"(Default)" = "IPreviousConversation"

[HKCU\Software\Classes\Interface\{B00F2520-029C-47D0-B4E8-8FBEF47CAA7E}]
"(Default)" = "IVideoViewInformationDictionary"

[HKCU\Software\Classes\Interface\{BC9F5F40-D315-40C1-B1C6-CEA0646E18E2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B28F2007-3926-49CF-9101-4CCB9574049B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{FF037274-455A-4E34-B5D1-D42DB866F9B7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{6964B116-8FE6-4C19-9052-0EAA74460A58}]
"(Default)" = "_IConversation2Callback"

[HKCU\Software\Classes\Interface\{8E839AF9-9508-475A-AA47-3EE8A946B75E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B3C5872E-591C-4A74-9F84-B00EF970A838}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{0CA9BAE8-DD28-4929-A821-4D00F11203CC}]
"(Default)" = "_IChannelEvents"

[HKCU\Software\Classes\Interface\{109D32CE-E09F-46F5-9ECB-01E1D273B7DA}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{71A054B3-4D4B-4643-B14F-4572494B19E7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{340C54A6-35CF-4971-B540-72D7F040AC24}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{06437ABB-C419-4B11-A474-1A2B02FBD646}]
"(Default)" = "_ISelfEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{EBD19735-0CB5-4AF3-8E05-B0140CF9D545}]
"(Default)" = "IPreviousConversationBatchEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{9112CE9B-3704-48C0-86DC-7A7B0F34D7A3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{DCDEA425-B5F2-4719-A3B4-69FFB9770BE6}]
"(Default)" = "IRecentContacts"

[HKCU\Software\Classes\Wow6432Node\Interface\{DBA05C15-1C07-4A76-8248-08D8416A24E3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C8210C8-8578-47C6-87A9-FA1AD2BA9873}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{18A9A79A-CBC7-4F8B-8B2B-9B40CA75EC3C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DD181E97-EEE0-4D65-BAD1-16866D0C7953}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{A58F54D2-9786-4309-964D-96549AEC7611}]
"(Default)" = "IShareableContentCollection"

[HKCU\Software\Classes\Interface\{7818A3F7-674B-477E-99E8-54774579A8E7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A766520D-F700-4BF5-8428-56BD914C1C40}]
"(Default)" = "IRoom"

[HKCU\Software\Classes\Wow6432Node\Interface\{66D1FFC0-C234-4F3D-ABAA-98222A69E525}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{6A7FF112-42CE-4D03-8922-D02AC6C5759F}]
"(Default)" = "ISharingResourceList"

[HKCU\Software\Classes\Wow6432Node\Interface\{C22CE6BF-3A47-46B7-8544-44305BADFEF9}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{10FDD9BA-0CBA-4958-B6C8-D0912BF2703F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{7CD92461-CA4F-4BEB-A636-8BBCC192E60F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{B22EDBEA-9E61-4703-82BE-01C05619B6D6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{81C9D13F-A4F9-4E13-92D3-BB271E8DF3D2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{C413A27F-601E-4261-B9E3-0EB966F4E7D1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{464D5228-9F68-4B1F-B430-156A104E2B85}]
"(Default)" = "IPreviousHistoryRetrievalStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{FF037274-455A-4E34-B5D1-D42DB866F9B7}]
"(Default)" = "IConversationWindowInformationChangedEventData"

[HKCU\Software\Classes\Interface\{57C3CB4D-C794-456F-846D-0E1ECA78BD00}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{04378C72-E58F-47C0-8621-901B85CA2ED4}]
"(Default)" = "IConversationContext"

[HKCU\Software\Classes\Wow6432Node\Interface\{10C3ACC7-6C0C-4F35-ADFB-AE0F200A8583}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A58F54D2-9786-4309-964D-96549AEC7611}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{3187885C-A8AF-4D4B-8E80-F4B9D447A7B2}]
"(Default)" = "_IShareableContentCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{3C8D7146-35EA-4133-B2F6-C1FC2401A091}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{0FDB5B86-DD44-41BF-A443-317FD19BBF3D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{FA7971EF-1E41-429F-8C79-DAC5F88D444B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8F04E92D-EE26-4B64-B9C1-56DD90816810}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{E2C6D6E0-52EF-47A2-BDA9-9D6A7A29A391}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{569E04F2-D286-4903-9642-44D850310956}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{E0E8B413-BB57-4B58-B1FB-288F3A269E35}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2209E091-5B90-4CAF-8582-CC5979883376}]
"(Default)" = "IConversationWindowStateChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{E6B3F5FA-4208-4C37-AE07-F6435B68D693}]
"(Default)" = "IContactManager"

[HKCU\Software\Classes\Interface\{340C54A6-35CF-4971-B540-72D7F040AC24}]
"(Default)" = "IDistributionGroup"

[HKCU\Software\Classes\Interface\{0C81EC90-9469-4ED4-ACAD-ADB86E11039C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{D4B240B9-059B-4D13-8997-31B282B3BD43}]
"(Default)" = "IModality"

[HKCU\Software\Classes\Interface\{10D66B39-5E4B-4C98-AAC6-D0458FEB1BDB}]
"(Default)" = "_IModalityEvents"

[HKCU\Software\Classes\Interface\{CA478B44-4FCE-4082-8700-8CEC69FB50E1}]
"(Default)" = "IShareableContentPropertyDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{E5CFF4A5-83A8-4FD8-8DAA-77A3E2288D4A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{FB67275C-4D9E-4C32-9793-A96749884FC1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{18BA13C7-A64E-4301-BA51-D1BFB3C1C9D5}]
"(Default)" = "IVoiceMailBatchEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{48B3099D-841D-4CAA-9202-5787596E2BD2}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{899B846A-8887-45D6-B8F5-8AAA0BFDF722}]
"(Default)" = "IActiveContentChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{086F0E9D-A416-40F9-877C-F1C82DC1A6AD}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{DD31376E-E529-43F2-B3B4-E379EBD28E2A}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{F644C610-A146-4A56-8338-A69C45C71CEF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{E2C6D6E0-52EF-47A2-BDA9-9D6A7A29A391}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8665FD95-7720-4F9E-B605-6ABCBD7EDFF4}]
"(Default)" = "IParticipantPropertyDictionary"

[HKCU\Software\Classes\Interface\{06437ABB-C419-4B11-A474-1A2B02FBD646}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{A766520D-F700-4BF5-8428-56BD914C1C40}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{9112CE9B-3704-48C0-86DC-7A7B0F34D7A3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{70986DCE-4AA8-4DFB-9A45-4BFCF7A206F5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{A9AAB6A0-54B9-4419-AAAF-6B26DFAC1585}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8665FD95-7720-4F9E-B605-6ABCBD7EDFF4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{10C3ACC7-6C0C-4F35-ADFB-AE0F200A8583}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D5C1C8FB-DC8A-45A3-AAA3-53B89D43CDE4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D0984CEF-E323-4574-B07B-5C970C9CAEE0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{65B71572-5338-43C8-9E4C-F1DFC6711AD1}]
"(Default)" = "IAccessEntry"

[HKCU\Software\Classes\Wow6432Node\Interface\{EC9773AD-7D22-4B03-B949-5E9055AF0F19}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4CB70415-BA71-491E-B12D-155D85CBDFF1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{995F992C-9DEF-47B9-BF11-81813C0C0E28}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AA186C92-181E-417F-B150-FCA0F367E0FC}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{65B71572-5338-43C8-9E4C-F1DFC6711AD1}]
"(Default)" = "IAccessEntry"

[HKCU\Software\Classes\Wow6432Node\Interface\{7452BD0F-65CB-4A5E-AC37-E2BEA1F43DD9}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{04378C72-E58F-47C0-8621-901B85CA2ED4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{0678C83E-F580-4D99-902F-930699B28BE8}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{25A47938-5C31-4F43-9108-DA01EE5869C0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{378CD767-1B64-4A0E-A941-8F52869FC9DF}]
"(Default)" = "ISearchResult"

[HKCU\Software\Classes\Wow6432Node\Interface\{DAA5FDE3-A81C-4F23-80B6-C47B52C649BF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{EC9773AD-7D22-4B03-B949-5E9055AF0F19}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{B0C10F94-CAB6-4821-9643-D781885A46AF}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{35CE3A44-C636-4D31-BC95-B9370C2251B9}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{71A054B3-4D4B-4643-B14F-4572494B19E7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{CA7EEB7A-7DC3-4FFE-A174-23DB5A003C04}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA478B44-4FCE-4082-8700-8CEC69FB50E1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DAA5FDE3-A81C-4F23-80B6-C47B52C649BF}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{4DA899D3-FAC7-4F43-8E4A-1987988FBC9B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{26C8D96D-7D22-4E9E-948A-EDCCB4CA9C64}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{4FE44049-4E44-4109-B234-4E4EFC135A86}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8665FD95-7720-4F9E-B605-6ABCBD7EDFF4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{25A47938-5C31-4F43-9108-DA01EE5869C0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{663C61F4-A9DA-4A6F-A606-F142F665DF61}]
"(Default)" = "IConversationWindowActions"

[HKCU\Software\Classes\Wow6432Node\Interface\{8665FD95-7720-4F9E-B605-6ABCBD7EDFF4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{FF037274-455A-4E34-B5D1-D42DB866F9B7}]
"(Default)" = "IConversationWindowInformationChangedEventData"

[HKCU\Software\Classes\Interface\{C12F0DE5-9A7D-425C-B391-8BE004EAA2F6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{B335AE5E-E4EA-49D3-B03B-646A96FE66D3}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{25D64AEA-0E65-49CB-8D6D-65DB0AC1AF65}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8FE9A23D-72BC-4EA3-A5AF-E37F75EAD8A2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{6A986B5D-E5EC-4395-AD2D-0E62B72DA776}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{5E7AB04C-E4B8-49FB-85FF-9E2BCA2899D3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D2BFC7D7-A64F-48EF-BF90-C3C7E684D89C}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{311DDE48-ED7D-46FA-9E0A-2E314B7FEF7C}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8AFFB8CE-5404-4280-BCA3-E2E4388E6D73}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{081793DA-7221-45C3-8AFA-3A2E6E464670}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{744BAB86-B15F-4BD5-B7DD-476B0CE0162A}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{09028936-CD20-43EF-98CF-56726ADDBA34}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8C9B6953-33CC-4A04-9DA4-F71AE79DA0C0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{95B9A382-EA50-45E4-965E-BA61E7213DBA}]
"(Default)" = "_IAudioChannelCallback"

[HKCU\Software\Classes\Interface\{94093301-8854-408E-8138-C7C3D2DACA1F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{38E5EC21-81A1-45A7-94D6-B812976231A4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{90B49A60-72AF-4360-9F9B-916DB7504A3C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B00F2520-029C-47D0-B4E8-8FBEF47CAA7E}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D992371E-5161-453B-97E6-6E7C67BC075E}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{A0984F01-5D2C-4302-87A0-69BE7B015143}]
"(Default)" = "IConferenceRegionalAccessInformationCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{84340964-7820-4EBC-BCD3-702926DE23E8}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{478DDA59-64C0-4429-AC8A-F10A940B52CC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{71A054B3-4D4B-4643-B14F-4572494B19E7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AF2ABA54-F591-42BA-8004-20944C9FB4D7}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{464D5228-9F68-4B1F-B430-156A104E2B85}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{953AE732-F53A-4116-AC1B-0321B3FB3DBA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{082EE280-726E-417F-99CB-81A0CCBFF883}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{478DDA59-64C0-4429-AC8A-F10A940B52CC}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{21C41EDE-7ED8-4D97-9B0D-DD785781AF9B}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{92D7E7A8-48D8-4166-8911-630AE02B2B93}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{420A24E2-5C31-4262-9BD5-058682300ED6}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{5FA92EA7-6E6E-4A82-8F0D-107FEAF5A75D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{ACD2FDB9-98ED-4283-AAE8-3CD989EBD9AE}]
"(Default)" = "_IAVModalityEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{9918673D-4D74-41CF-8840-D4996395A34C}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{082EE280-726E-417F-99CB-81A0CCBFF883}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{DD181E97-EEE0-4D65-BAD1-16866D0C7953}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "46 00 00 00 46 00 00 00 09 00 00 00 00 00 00 00"

[HKCU\Software\Classes\Interface\{663C61F4-A9DA-4A6F-A606-F142F665DF61}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{9112CE9B-3704-48C0-86DC-7A7B0F34D7A3}]
"(Default)" = "IUtilities2"

[HKCU\Software\Classes\Interface\{B26F6403-761E-48D4-84E2-619C17EAEB13}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{50D86EE2-288F-44F5-8144-69F6E3B24B90}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{95B8D3E8-F3D5-4DC0-BCFE-AB80C835DEA0}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{4DA899D3-FAC7-4F43-8E4A-1987988FBC9B}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{082EE280-726E-417F-99CB-81A0CCBFF883}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{ABF012A2-2068-4B4D-80D7-6D386BA7C8A2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{F97BED54-E434-4020-A197-F15AEA9D9C95}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8A88C016-AA5D-4EAE-9C79-7AA5C360ED76}]
"(Default)" = "IConversationContextCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{76DE1CD8-F278-48A1-A391-E5BEB8F428E6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{D5C1C8FB-DC8A-45A3-AAA3-53B89D43CDE4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{95B8D3E8-F3D5-4DC0-BCFE-AB80C835DEA0}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{A58F54D2-9786-4309-964D-96549AEC7611}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{0678C83E-F580-4D99-902F-930699B28BE8}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{35CE3A44-C636-4D31-BC95-B9370C2251B9}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F7EE956B-A713-48D3-AFEF-0A28F37740B3}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{E24C2484-C70D-44AB-8A4E-F1585A17A3E1}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{21629AB6-9557-4985-9237-49177F618692}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DD31376E-E529-43F2-B3B4-E379EBD28E2A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{C7ACB102-B692-49CC-92DA-5824822C7B96}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BD891697-C93E-4A0B-9B6C-004BD81B6EE8}]
"(Default)" = "IConferenceSettingDictionary"

[HKCU\Software\Classes\Wow6432Node\Interface\{8057F99D-292C-4371-926B-5312E61A3A40}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C22CE6BF-3A47-46B7-8544-44305BADFEF9}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1566FA3C-FD24-41DB-A2B8-6232F89783DE}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{DEDDD7BD-4763-41D2-9AAA-B2C143457CA4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{109D32CE-E09F-46F5-9ECB-01E1D273B7DA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{1B04D929-11E4-46C2-9162-EA4F2758C3A7}]
"(Default)" = "IClientSettings"

[HKCU\Software\Classes\Wow6432Node\Interface\{10D66B39-5E4B-4C98-AAC6-D0458FEB1BDB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{6B551C9E-DE81-41DF-A0AE-39F0AF11D508}]
"(Default)" = "_IShareableContentEvents"

[HKCU\Software\Classes\Wow6432Node\Interface\{35CE3A44-C636-4D31-BC95-B9370C2251B9}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{05789509-AFA1-4E90-B4FA-1A7820DB9796}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{C79E4169-535F-4A41-8DE2-C65A90D9503D}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{E2C6D6E0-52EF-47A2-BDA9-9D6A7A29A391}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{DCDEA425-B5F2-4719-A3B4-69FFB9770BE6}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{F719ED75-B7BD-45D3-9097-254509226F20}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7B39CB77-4AEB-42D7-B351-CB5472C1C6AD}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{64561371-77A2-4BD4-A909-E6DEB1B5C6CF}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{7B39CB77-4AEB-42D7-B351-CB5472C1C6AD}]
"(Default)" = "IChannel2"

[HKCU\Software\Classes\Wow6432Node\Interface\{ACABFA1C-0738-4C4D-AF7E-326873CF4ACE}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B3C5872E-591C-4A74-9F84-B00EF970A838}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{C63F58CB-EF11-4934-AA3B-2D69244F0780}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{8A88C016-AA5D-4EAE-9C79-7AA5C360ED76}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{08DDF5C4-FA12-4978-B26E-C6D23C453413}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{0678C83E-F580-4D99-902F-930699B28BE8}]
"(Default)" = "IConversationWindowActionAvailabilityChangedEventData"

[HKCU\Software\Classes\Interface\{B1F5BCD8-69A6-4FC3-9EF0-9BD4AD999061}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{94093301-8854-408E-8138-C7C3D2DACA1F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{81C9D13F-A4F9-4E13-92D3-BB271E8DF3D2}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{25D64AEA-0E65-49CB-8D6D-65DB0AC1AF65}]
"(Default)" = "IClientSettingsChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{89C7EB8E-42BC-4C9F-BB34-88CDE83CCB37}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9AB20314-B258-48F8-B659-AD250DFA20F5}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{53D014C1-54DB-42B3-9DFD-8E231EF2C356}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{5E7AB04C-E4B8-49FB-85FF-9E2BCA2899D3}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{081793DA-7221-45C3-8AFA-3A2E6E464670}]
"(Default)" = "IRoomMessagesEventData"

[HKCU\Software\Classes\Interface\{56A868B4-0AD4-11CE-B03A-0020AF0BA770}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{06437ABB-C419-4B11-A474-1A2B02FBD646}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{9397FF55-EE06-4F02-8F2A-BE3AE249D4BB}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{C0034194-F7B6-43EB-B0E0-7852FC8E7BFA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{70986DCE-4AA8-4DFB-9A45-4BFCF7A206F5}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{61C747F6-157C-4CAE-A37C-EC4352175860}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{FF037274-455A-4E34-B5D1-D42DB866F9B7}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{61C747F6-157C-4CAE-A37C-EC4352175860}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{011B320C-9AC1-4DDE-B595-3D0014472E2F}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{05789509-AFA1-4E90-B4FA-1A7820DB9796}]
"(Default)" = "IRoomCollection"

[HKCU\Software\Classes\Wow6432Node\Interface\{94093301-8854-408E-8138-C7C3D2DACA1F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1A8A9402-E89F-40AE-88A8-B328391684B6}]
"(Default)" = "INamedPropertyList"

[HKCU\Software\Classes\Interface\{628D7BDD-45AB-404D-8505-B3ADC15F454D}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{C413A27F-601E-4261-B9E3-0EB966F4E7D1}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{855AD949-E2EB-473D-AAF2-9800008EA303}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{953AE732-F53A-4116-AC1B-0321B3FB3DBA}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{84340964-7820-4EBC-BCD3-702926DE23E8}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{95B9A382-EA50-45E4-965E-BA61E7213DBA}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{1B04D929-11E4-46C2-9162-EA4F2758C3A7}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{10FDD9BA-0CBA-4958-B6C8-D0912BF2703F}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA62E6F3-3E6D-451B-AEAA-6A1B7AACF8D4}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B00F2520-029C-47D0-B4E8-8FBEF47CAA7E}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{B1F5BCD8-69A6-4FC3-9EF0-9BD4AD999061}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{09028936-CD20-43EF-98CF-56726ADDBA34}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{8F04E92D-EE26-4B64-B9C1-56DD90816810}]
"(Default)" = "IFollowedRoomsChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{081793DA-7221-45C3-8AFA-3A2E6E464670}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{855AD949-E2EB-473D-AAF2-9800008EA303}]
"(Default)" = "IConversationContextList"

[HKCU\Software\Microsoft\ActiveMovie\devenum]
"Version" = "7"

[HKCU\Software\Classes\Wow6432Node\Interface\{53D014C1-54DB-42B3-9DFD-8E231EF2C356}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{464D5228-9F68-4B1F-B430-156A104E2B85}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{300E56A3-CE08-4EB3-9F48-505AA162C9DA}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{2F8C3E58-436B-42DB-8924-6C394B37DCA2}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{CA7EEB7A-7DC3-4FFE-A174-23DB5A003C04}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{88C688B0-3908-4C56-A2E8-F90AB705C536}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{7693221D-7E9F-47D3-8782-6437CF3D4C0C}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{8FE9A23D-72BC-4EA3-A5AF-E37F75EAD8A2}]
"(Default)" = "IParticipationStateChangedEventData"

[HKCU\Software\Classes\Interface\{7CD92461-CA4F-4BEB-A636-8BBCC192E60F}]
"(Default)" = "ISearchResults2"

[HKCU\Software\Classes\Wow6432Node\Interface\{4D120020-CE64-43C5-9F84-7A7B2360388F}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{18BA13C7-A64E-4301-BA51-D1BFB3C1C9D5}]
"(Default)" = "IVoiceMailBatchEventData"

[HKCU\Software\Classes\Interface\{CA7EEB7A-7DC3-4FFE-A174-23DB5A003C04}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{744BAB86-B15F-4BD5-B7DD-476B0CE0162A}]
"(Default)" = "IDelegatorClientCollectionEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{85109845-6AE2-4B6B-9524-65BA203E5B7D}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{B0C10F94-CAB6-4821-9643-D781885A46AF}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{EF5C00E4-75E2-4D39-B358-0ED9CB14F3CB}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{61C747F6-157C-4CAE-A37C-EC4352175860}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{64B7E9AD-D920-4EAA-95C7-9D95DE9ACE24}]
"(Default)" = "IConferenceApplicationProperties"

[HKCU\Software\Classes\Interface\{663C61F4-A9DA-4A6F-A606-F142F665DF61}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{806D3227-4CB8-47C4-9864-7D4DF4F44069}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{F97973D7-9436-4A3E-A802-F6EA172A0425}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{1124AA59-B6F3-4EB1-B79A-E7F53B388B8D}]
"(Default)" = "IParticipantActionAvailabilityChangedEventData"

[HKCU\Software\Classes\Interface\{71A054B3-4D4B-4643-B14F-4572494B19E7}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{3C43A2BE-BA4A-41E8-8F93-A9DC5F091892}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Interface\{A4E1D1E4-7839-473B-95FA-5D33DDC0D2DD}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{68DA8699-6C6E-4390-BD82-709FF1DC1702}]
"(Default)" = "IRoomUser"

[HKCU\Software\Classes\Interface\{38E5EC21-81A1-45A7-94D6-B812976231A4}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Interface\{76DE1CD8-F278-48A1-A391-E5BEB8F428E6}]
"(Default)" = "IRoomManager"

[HKCU\Software\Classes\Interface\{A58F54D2-9786-4309-964D-96549AEC7611}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{AA41EE75-F9C5-42F7-8D17-1D92D6BA4D92}]
"(Default)" = "IApplicationRegistration"

[HKCU\Software\Classes\Interface\{C31FB52D-9E9E-45AD-A102-5218E1685B78}]
"(Default)" = "IConversationManager"

[HKCU\Software\Classes\Interface\{219DC126-9A48-483F-80C2-3F22B3B47829}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{064E6072-5592-4D13-AFDB-55F5A494E137}\TypeLib]
"Version" = "1.0"

[HKCU\Software\Classes\Wow6432Node\Interface\{68B1FC26-B48F-4D5F-B041-8E246676D836}]
"(Default)" = "_IVoiceMailCallback"

[HKCU\Software\Classes\Wow6432Node\Interface\{04378C72-E58F-47C0-8621-901B85CA2ED4}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{081793DA-7221-45C3-8AFA-3A2E6E464670}]
"(Default)" = "IRoomMessagesEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{0FDB5B86-DD44-41BF-A443-317FD19BBF3D}]
"(Default)" = "_IRoomManagerCallback"

[HKCU\Software\Classes\Interface\{25A47938-5C31-4F43-9108-DA01EE5869C0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Interface\{25A47938-5C31-4F43-9108-DA01EE5869C0}]
"(Default)" = "IVoiceMail"

[HKCU\Software\Classes\Interface\{65B71572-5338-43C8-9E4C-F1DFC6711AD1}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{BC9F5F40-D315-40C1-B1C6-CEA0646E18E2}]
"(Default)" = "IRoomUserChangedEventData"

[HKCU\Software\Classes\Wow6432Node\Interface\{56A868B4-0AD4-11CE-B03A-0020AF0BA770}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCU\Software\Classes\Wow6432Node\Interface\{D0984CEF-E323-4574-B07B-5C970C9CAEE0}\TypeLib]
"(Default)" = "{B9AA1F11-F480-4054-A84E-B5D9277E40A8}"

[HKCU\Software\Classes\Wow6432Node\Interface\{7818A3F7-674B-477E-99E8-54774579A8E7}\TypeLib]
"Version" = "1.0"

Proxy settings are disabled:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"

The Trojan deletes the following value(s) in system registry:

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f3-c8-bd]
"WpadDetectedUrl"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\00-50-56-f5-e5-a3]
"WpadDetectedUrl"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyOverride"
"AutoDetect"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyServer"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\{9C99CCBB-10A0-4B2A-A5BE-4CAC43F74632}]
"WpadDetectedUrl"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"

[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"

The process flashax.exe:3716 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
"(Default)" = "0"

[HKCR\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
"(Default)" = "C:\Windows\SysWOW64\Macromed\Flash\Flash10h.ocx"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32}]
"Policy" = "3"

[HKCR\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0]
"(Default)" = "FlashBroker"

[HKCR\Wow6432Node\Interface\{86230738-D762-4C50-A2DE-A753E5B1686F}]
"(Default)" = "IFlashObject"

[HKCR\MIME\Database\Content Type\application/futuresplash]
"Extension" = ".spl"

[HKLM\SOFTWARE\Wow6432Node\Macromedia\FlashPlayer]
"currentVersion" = "10,1,53,64"

[HKCR\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
"LocalizedString" = "@C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe,-101"

[HKCR\MacromediaFlashPaper.MacromediaFlashPaper]
"(Default)" = "Macromedia Flash Paper"

[HKCR\Wow6432Node\Interface\{86230738-D762-4C50-A2DE-A753E5B1686F}\TypeLib]
"Version" = "1.0"

[HKCR\ShockwaveFlash.ShockwaveFlash]
"(Default)" = "Shockwave Flash Object"

[HKCR\Wow6432Node\Interface\{86230738-D762-4C50-A2DE-A753E5B1686F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}\TypeLib]
"Version" = "1.0"

[HKLM\SOFTWARE\Wow6432Node\Macromedia\FlashPlayer\SafeVersions]
"8.0" = "42"

[HKCR\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\Interface\{D27CDB6C-AE6D-11CF-96B8-444553540000}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"VersionMinor" = "1"

[HKCR\ShockwaveFlash.ShockwaveFlash\CurVer]
"(Default)" = "ShockwaveFlash.ShockwaveFlash.10"

[HKCR\Interface\{D27CDB6C-AE6D-11CF-96B8-444553540000}]
"(Default)" = "IShockwaveFlash"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"URLInfoAbout" = "http://www.adobe.com"

[HKCR\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
"(Default)" = "Macromedia Flash Factory Object"

[HKCR\ShockwaveFlash.ShockwaveFlash.1]
"(Default)" = "Shockwave Flash Object"

[HKCR\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
"(Default)" = "C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"URLUpdateInfo" = "http://www.adobe.com/go/getflashplayer/"

[HKCR\Wow6432Node\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}\TypeLib]
"(Default)" = "{D27CDB6B-AE6D-11CF-96B8-444553540000}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"VersionMajor" = "10"

[HKCR\Interface\{86230738-D762-4C50-A2DE-A753E5B1686F}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
"(Default)" = "1.0"

[HKCR\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKCR\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
"Version" = "1.0"

[HKCR\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0\HELPDIR]
"(Default)" = "C:\Windows\SysWOW64\Macromed\Flash"

[HKCR\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
"(Default)" = "_IShockwaveFlashEvents"

[HKCR\MacromediaFlashPaper.MacromediaFlashPaper\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
"(Default)" = "1.0"

[HKCR\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
"(Default)" = "{D27CDB6B-AE6D-11cf-96B8-444553540000}"

[HKCR\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0\FLAGS]
"(Default)" = "0"

[HKCR\Wow6432Node\Interface\{86230738-D762-4C50-A2DE-A753E5B1686F}\TypeLib]
"(Default)" = "{D27CDB6B-AE6D-11CF-96B8-444553540000}"

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus\1]
"(Default)" = "131473"

[HKCR\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
"(Default)" = "IFlashBroker4"

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
"(Default)" = "ShockwaveFlash.ShockwaveFlash"

[HKCR\Wow6432Node\Interface\{D27CDB6C-AE6D-11CF-96B8-444553540000}\TypeLib]
"(Default)" = "{D27CDB6B-AE6D-11CF-96B8-444553540000}"

[HKLM\SOFTWARE\Wow6432Node\Macromedia\FlashPlayer\SafeVersions]
"9.0" = "17235968"

[HKCR\MIME\Database\Content Type\application/x-shockwave-flash]
"CLSID" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}]
"(Default)" = ""

[HKCR\FlashFactory.FlashFactory.1]
"(Default)" = "Macromedia Flash Factory Object"

[HKCR\ShockwaveFlash.ShockwaveFlash.8]
"(Default)" = "Shockwave Flash Object"

[HKCR\Interface\{86230738-D762-4C50-A2DE-A753E5B1686F}]
"(Default)" = "IFlashObject"

[HKCR\Interface\{86230738-D762-4C50-A2DE-A753E5B1686F}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\FlashFactory.FlashFactory\CurVer]
"(Default)" = "FlashFactory.FlashFactory.1"

[HKCU\Software\Macromedia\FlashPlayer]
"FlashPlayerVersion" = "10.1.53.64~installVector=1"

[HKCR\ShockwaveFlash.ShockwaveFlash.10\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\HELPDIR]
"(Default)" = "C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe"

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
"(Default)" = "C:\Windows\SysWOW64\Macromed\Flash\Flash10h.ocx"

[HKCR\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\FLAGS]
"(Default)" = "0"

[HKLM\SOFTWARE\Wow6432Node\Macromedia\FlashPlayerActiveX]
"Version" = "10.1.53.64"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"NoModify" = "1"

[HKCR\ShockwaveFlash.ShockwaveFlash.6]
"(Default)" = "Shockwave Flash Object"

[HKCR\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\0\win32]
"(Default)" = "C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe"

[HKLM\SOFTWARE\Wow6432Node\Macromedia\FlashPlayer\SafeVersions]
"10.0" = "3473472"

[HKCR\.mfp]
"(Default)" = "MacromediaFlashPaper.MacromediaFlashPaper"

[HKLM\SOFTWARE\Wow6432Node\Macromedia\FlashPlayerActiveX]
"PlayerPath" = "C:\Windows\SysWOW64\Macromed\Flash\Flash10h.ocx"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"DisplayVersion" = "10.1.53.64"

[HKCR\MacromediaFlashPaper.MacromediaFlashPaper\DefaultIcon]
"(Default)" = "%Program Files% (x86)\Mozilla Firefox\firefox.exe,1"

[HKCR\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
"ThreadingModel" = "Apartment"

[HKCR\MacromediaFlashPaper.MacromediaFlashPaper\shell\open\command]
"(Default)" = "%Program Files% (x86)\Mozilla Firefox\firefox.exe -osint -url %1"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"NoRepair" = "1"

[HKCR\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0]
"(Default)" = "Shockwave Flash"

[HKCR\.spl]
"Content Type" = "application/futuresplash"

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
"(Default)" = "C:\Windows\SysWOW64\Macromed\Flash\Flash10h.ocx, 1"

[HKCR\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0\0\win32]
"(Default)" = "C:\Windows\SysWOW64\Macromed\Flash\Flash10h.ocx"

[HKCR\Wow6432Node\Interface\{D27CDB6C-AE6D-11CF-96B8-444553540000}]
"(Default)" = "IShockwaveFlash"

[HKCR\.swf]
"Content Type" = "application/x-shockwave-flash"

[HKCR\FlashFactory.FlashFactory.1\CLSID]
"(Default)" = "{D27CDB70-AE6D-11cf-96B8-444553540000}"

[HKLM\SOFTWARE\Wow6432Node\Macromedia\FlashPlayer\SafeVersions]
"6.0" = "88"

[HKCR\ShockwaveFlash.ShockwaveFlash.8\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
"(Default)" = "FlashFactory.FlashFactory.1"

[HKCR\Interface\{D27CDB6C-AE6D-11CF-96B8-444553540000}\TypeLib]
"(Default)" = "{D27CDB6B-AE6D-11CF-96B8-444553540000}"

[HKCR\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
"(Default)" = "C:\Windows\SysWOW64\Macromed\Flash\Flash10h.ocx, 1"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32}]
"AppPath" = "C:\Windows\SysWOW64\Macromed\Flash"

[HKLM\SOFTWARE\Wow6432Node\Macromedia\FlashPlayerActiveX]
"UninstallerPath" = "C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe"

[HKCR\ShockwaveFlash.ShockwaveFlash.3]
"(Default)" = "Shockwave Flash Object"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"HelpLink" = "http://www.adobe.com/go/flashplayer_support/"

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
"ThreadingModel" = "Apartment"

[HKCR\ShockwaveFlash.ShockwaveFlash.7]
"(Default)" = "Shockwave Flash Object"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32}]
"AppName" = "FlashUtil10h_ActiveX.exe"

[HKCR\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled" = "1"

[HKCR\Interface\{86230738-D762-4C50-A2DE-A753E5B1686F}\TypeLib]
"(Default)" = "{D27CDB6B-AE6D-11CF-96B8-444553540000}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"RequiresIESysFile" = "4.70.0.1155"

[HKCR\Wow6432Node\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
"(Default)" = "_IShockwaveFlashEvents"

[HKCR\Interface\{D27CDB6C-AE6D-11CF-96B8-444553540000}\TypeLib]
"Version" = "1.0"

[HKCR\Wow6432Node\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}\ProxyStubClsid32]
"(Default)" = "{00020420-0000-0000-C000-000000000046}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\ActiveX Compatibility\{D27CDB70-AE6D-11cf-96B8-444553540000}]
"Compatibility Flags" = "65536"

[HKCR\FlashFactory.FlashFactory]
"(Default)" = "Macromedia Flash Factory Object"

[HKCR\ShockwaveFlash.ShockwaveFlash.5]
"(Default)" = "Shockwave Flash Object"

[HKCR\ShockwaveFlash.ShockwaveFlash.7\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
"(Default)" = "{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKCR\ShockwaveFlash.ShockwaveFlash.9]
"(Default)" = "Shockwave Flash Object"

[HKCR\ShockwaveFlash.ShockwaveFlash.4\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"UninstallString" = "C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe -maintain activex"
"DisplayName" = "Adobe Flash Player 10 ActiveX"

[HKCR\ShockwaveFlash.ShockwaveFlash\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\.sol]
"Content Type" = "text/plain"

[HKCR\Wow6432Node\Interface\{D27CDB6C-AE6D-11CF-96B8-444553540000}\TypeLib]
"Version" = "1.0"

[HKCR\MIME\Database\Content Type\application/x-shockwave-flash]
"Extension" = ".swf"

[HKCR\.sor]
"Content Type" = "text/plain"

[HKCR\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
"(Default)" = "FlashBroker"

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
"(Default)" = "{D27CDB6B-AE6D-11cf-96B8-444553540000}"

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
"(Default)" = "Shockwave Flash Object"

[HKLM\SOFTWARE\Wow6432Node\Macromedia\FlashPlayer\SafeVersions]
"7.0" = "73"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"Publisher" = "Adobe Systems Incorporated"

[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
"(Default)" = "ShockwaveFlash.ShockwaveFlash.10"

[HKCR\MIME\Database\Content Type\application/futuresplash]
"CLSID" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\.swf]
"(Default)" = "ShockwaveFlash.ShockwaveFlash"

[HKCR\.spl]
"(Default)" = "ShockwaveFlash.ShockwaveFlash"

[HKCR\Wow6432Node\Interface\{D27CDB6C-AE6D-11CF-96B8-444553540000}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"

[HKCR\ShockwaveFlash.ShockwaveFlash.6\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\ShockwaveFlash.ShockwaveFlash.4]
"(Default)" = "Shockwave Flash Object"

[HKCR\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
"(Default)" = "FlashFactory.FlashFactory"

[HKCR\.mfp]
"Content Type" = "application/x-shockwave-flash"

[HKCR\ShockwaveFlash.ShockwaveFlash.5\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
"(Default)" = "{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"EstimatedSize" = "6144"

[HKCR\ShockwaveFlash.ShockwaveFlash.1\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}\TypeLib]
"(Default)" = "{D27CDB6B-AE6D-11CF-96B8-444553540000}"

[HKCR\ShockwaveFlash.ShockwaveFlash.10]
"(Default)" = "Shockwave Flash Object"

[HKCR\ShockwaveFlash.ShockwaveFlash.3\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

[HKCR\FlashFactory.FlashFactory\CLSID]
"(Default)" = "{D27CDB70-AE6D-11cf-96B8-444553540000}"

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
"DisplayIcon" = "C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe"

[HKCR\ShockwaveFlash.ShockwaveFlash.9\CLSID]
"(Default)" = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"

The Trojan deletes the following registry key(s):

[HKCR\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Programmable]
[HKCR\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Programmable]

Dropped PE files

MD5 File path
858af4eacefc93bca142e303fda4ff08 c:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
33411cb54e2729f76aa8d4abb2579c4a c:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
16d394cb3797629dd663ce4fe8c635d9 c:\Program Files (x86)\Skype\Phone\RtmCodecs.dll
0912240d3711ef635c226d87fc4d7d05 c:\Program Files (x86)\Skype\Phone\RtmMediaManager.dll
969cfa3a3513ff5e5fe3db503db722ac c:\Program Files (x86)\Skype\Phone\RtmPal.dll
b2a18c4b369511669eb0450128ad3410 c:\Program Files (x86)\Skype\Phone\RtmPltfm.dll
f5a0554f655c566eb946841e6e7ae061 c:\Program Files (x86)\Skype\Phone\Skype.exe
6272b4355cba4df9ae58dc4dd1dfc700 c:\Program Files (x86)\Skype\Updater\Updater.dll
f6ef225a23d336ca30001e5007644c24 c:\Program Files (x86)\Skype\Updater\Updater.exe
1131a770c62a319516bb92faa56a2e40 c:\Program Files (x86)\TuneUp Utilities 2014\AppInitialization.bpl
a94e1cffccb34f66810974556694e325 c:\Program Files (x86)\TuneUp Utilities 2014\BrowserCleaner.exe
fa74622a0a21d05b04966d2a68a32e8d c:\Program Files (x86)\TuneUp Utilities 2014\CommonForms.bpl
42a1b23f2c3139ead4779d5113696827 c:\Program Files (x86)\TuneUp Utilities 2014\DEC.bpl
778fe434191ea196a4cbb856a5a425ce c:\Program Files (x86)\TuneUp Utilities 2014\DiskCleaner.exe
e74bad658f31d700ac5a0f94cfa3b571 c:\Program Files (x86)\TuneUp Utilities 2014\DiskDoctor.exe
5fe5335d3360264556ec66f3e943701a c:\Program Files (x86)\TuneUp Utilities 2014\DiskExplorer.exe
63771d1c40c956d741d0caa821eee402 c:\Program Files (x86)\TuneUp Utilities 2014\DriveDefrag.exe
c7b94b77537cbe7d36268bbb629ef791 c:\Program Files (x86)\TuneUp Utilities 2014\DseShExt-x64.dll
3acd958368a48e36303304bcf8b79f77 c:\Program Files (x86)\TuneUp Utilities 2014\DseShExt-x86.dll
61032af18c3b1b97f0c3ad0ad20713cc c:\Program Files (x86)\TuneUp Utilities 2014\DuplicateFileFinder.dll
015139149b6b16a5148d8f23b346fa8e c:\Program Files (x86)\TuneUp Utilities 2014\DuplicateFinder.exe
655ee803dc4806f63ce2e686dba2e309 c:\Program Files (x86)\TuneUp Utilities 2014\EnergyOptimizer.exe
fc5d32a1ed728b39f413a7ffaef3287a c:\Program Files (x86)\TuneUp Utilities 2014\GR32_D6.bpl
3fd2578a54f8d2578219c65876e9252c c:\Program Files (x86)\TuneUp Utilities 2014\HexEdit.bpl
ec88afac4dc3faf681dd4649cf9a5e84 c:\Program Files (x86)\TuneUp Utilities 2014\Html.bpl
8f7a493f62533e329654a239bd72d9bc c:\Program Files (x86)\TuneUp Utilities 2014\IECacheWinInetLdr.exe
5ed8dfeeab316611b03aaef7c039768b c:\Program Files (x86)\TuneUp Utilities 2014\IEControl.bpl
eeecc614f595c0215d7fa287e76a4ea6 c:\Program Files (x86)\TuneUp Utilities 2014\ImgResTu.dat
07036cdd3e3103a3324b0ddc36e61270 c:\Program Files (x86)\TuneUp Utilities 2014\Indicators.bpl
57031e13643d72390494b50efd68270a c:\Program Files (x86)\TuneUp Utilities 2014\Integrator.exe
8b99456b2b8a5952ef3e511453b87e41 c:\Program Files (x86)\TuneUp Utilities 2014\Internet.bpl
5ab3e3abd515d7bf0d9496b7a55ace54 c:\Program Files (x86)\TuneUp Utilities 2014\MSI_D6.bpl
346c0ce964b1175f47f92fc2d234e1d3 c:\Program Files (x86)\TuneUp Utilities 2014\MainControls.bpl
cd1963de36fda886ab20499021cddf4f c:\Program Files (x86)\TuneUp Utilities 2014\MsStyles.dll
3631801f974fdd3b1c5ff77c889bd326 c:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe
6498945000862f1ae10f1c17df1394d1 c:\Program Files (x86)\TuneUp Utilities 2014\OneClickStarter.exe
561f846272ec7d141dc4a858dfa4fea5 c:\Program Files (x86)\TuneUp Utilities 2014\PMLauncher.exe
ff9ed8e359fa3c5f90e5dca7f1cda534 c:\Program Files (x86)\TuneUp Utilities 2014\PerformanceOptimizer.exe
169e102b610054a3063b4d468149aa42 c:\Program Files (x86)\TuneUp Utilities 2014\PerlRegEx.bpl
15b9aeb12c3e25672ae2d3d8e26e016e c:\Program Files (x86)\TuneUp Utilities 2014\PowerManager.bpl
94570f7b267ad8ec5170df22e9eeb5fa c:\Program Files (x86)\TuneUp Utilities 2014\PowerModeManager.exe
61e7359294e2eaf5a03f4b69d9a6600a c:\Program Files (x86)\TuneUp Utilities 2014\ProcessManager.exe
c1f912a68228bfb47cefaf2fa502a7fb c:\Program Files (x86)\TuneUp Utilities 2014\ProcessManager64.exe
a23053357fd10bc47de2f3db4c4203c9 c:\Program Files (x86)\TuneUp Utilities 2014\ProgramDeactivator.exe
dbf0449d6c6a33a0a5355a8791c1247f c:\Program Files (x86)\TuneUp Utilities 2014\ProgramRating.bpl
0ce05331751aa3b3dc5a0e98127e9ec3 c:\Program Files (x86)\TuneUp Utilities 2014\RegCleaner.bpl
77ee34ebf3036a68fc10e0c9ff187fe2 c:\Program Files (x86)\TuneUp Utilities 2014\RegWiz.exe
c8ed93f34ef7b900287235a8cd6368aa c:\Program Files (x86)\TuneUp Utilities 2014\RegistryCleaner.exe
15731961e2a8fb8c305b5a168ebba0a4 c:\Program Files (x86)\TuneUp Utilities 2014\RegistryDefrag.exe
0a02046170e3bb555c3c4e42dade013b c:\Program Files (x86)\TuneUp Utilities 2014\RegistryEditor.exe
93500d56bb9484015acfa2ff61952ddb c:\Program Files (x86)\TuneUp Utilities 2014\RepairWizard.exe
041a43bb6ce4e4a7e28b1d6ec892ddb5 c:\Program Files (x86)\TuneUp Utilities 2014\Report.exe
8311037f67ef74bca5c3ec69f09a47dd c:\Program Files (x86)\TuneUp Utilities 2014\RescueCenter.exe
78d9d56b21d00728d4d2d8fc569964bf c:\Program Files (x86)\TuneUp Utilities 2014\SDShelEx-win32.dll
795129a07ff22e0cfa13b5286964d5dd c:\Program Files (x86)\TuneUp Utilities 2014\SDShelEx-x64.dll
8f6b06f530222b5c3c621811bac1e4fb c:\Program Files (x86)\TuneUp Utilities 2014\SchedAgent_2007.bpl
64637de0c6df691c07096de518064e4b c:\Program Files (x86)\TuneUp Utilities 2014\SettingCenter.exe
5994778564680d2ecd65ec770b179a01 c:\Program Files (x86)\TuneUp Utilities 2014\ShortcutCleaner.exe
35028d794beb8fab5c23170c8ebea8a5 c:\Program Files (x86)\TuneUp Utilities 2014\Shredder.exe
710b131fad87edd4d0f5a594b72c47af c:\Program Files (x86)\TuneUp Utilities 2014\SilentUpdater.exe
b3a3dcbb077819b353bb457764176a94 c:\Program Files (x86)\TuneUp Utilities 2014\StartUpManager.exe
be61a56d78a6b4c327859a9b76ecc690 c:\Program Files (x86)\TuneUp Utilities 2014\StartupOptimizer.exe
45cf728109d52d6054eed5bbe249f6bf c:\Program Files (x86)\TuneUp Utilities 2014\Stiderc.dll
b348403355dea63f600013994fb528e3 c:\Program Files (x86)\TuneUp Utilities 2014\Styler.exe
05f8497141dcb80b1e7ecb071540beeb c:\Program Files (x86)\TuneUp Utilities 2014\SysControls.bpl
adca90ff492ff50e840ea0ad7249c770 c:\Program Files (x86)\TuneUp Utilities 2014\SysInfo.bpl
264e54db7c579fbd516ff873b340141f c:\Program Files (x86)\TuneUp Utilities 2014\SystemControl.exe
636de979eac86e1864949715fafc8ad4 c:\Program Files (x86)\TuneUp Utilities 2014\SystemInformation.exe
f71f945c83ebd2843a742f1013206ae9 c:\Program Files (x86)\TuneUp Utilities 2014\TUAnalyzeInfo.dll
ff04251e04002a4940939a4be2dddd0c c:\Program Files (x86)\TuneUp Utilities 2014\TUAnalyzeInfo64.dll
2cb6aa85b1cbc3b8cdebffc89594f881 c:\Program Files (x86)\TuneUp Utilities 2014\TUApps.bpl
61a1a3088271c8c54206f8cf021e8146 c:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe
3088ecfaa59dc0dacfbe34cd9346c1b6 c:\Program Files (x86)\TuneUp Utilities 2014\TUAutoUpdateCheck.exe
25042db30c0014e2a129d9aa9a7bad6a c:\Program Files (x86)\TuneUp Utilities 2014\TUBase.bpl
aefc9fc545c8822168390a8fecb71e3e c:\Program Files (x86)\TuneUp Utilities 2014\TUBasic.bpl
bc15dc886a8f4b8e7d56c5de4b6a3fba c:\Program Files (x86)\TuneUp Utilities 2014\TUCompression.bpl
286ef3d4ec4d6bbb3cd6bc021a07ff08 c:\Program Files (x86)\TuneUp Utilities 2014\TUDefragBackend64.exe
92c836d7f8b030a21df903e219ba4629 c:\Program Files (x86)\TuneUp Utilities 2014\TUDefragClient.bpl
0bbb56efec93fd3b24b0c847044ba825 c:\Program Files (x86)\TuneUp Utilities 2014\TUDiskCleanerClass.bpl
16e25698e4f92c70acb3a74fbefc60e9 c:\Program Files (x86)\TuneUp Utilities 2014\TUHTMLTabbedNavPkg.bpl
7ea361b252ddfb93bee144527c392ea7 c:\Program Files (x86)\TuneUp Utilities 2014\TUIECacheClass.bpl
30234bedf40ddd2cf7cf1c8d93de522f c:\Program Files (x86)\TuneUp Utilities 2014\TUIEInstVer.bpl
4b9a7e4274feab35cdb5850272618294 c:\Program Files (x86)\TuneUp Utilities 2014\TUIcoEngineerDirTree.bpl
fd8b2250394a72f32cda07402374aabe c:\Program Files (x86)\TuneUp Utilities 2014\TUInstallHelper.exe
959af56aba2f4c9580ccd9f0145518f6 c:\Program Files (x86)\TuneUp Utilities 2014\TUKernel.bpl
0272dcf553c0222dc00c799c915514ce c:\Program Files (x86)\TuneUp Utilities 2014\TUMessages.exe
a54e039043d74bb2936d2f5433d16419 c:\Program Files (x86)\TuneUp Utilities 2014\TUOperaClass.bpl
a9437b4f4eb7951b716214466efb3350 c:\Program Files (x86)\TuneUp Utilities 2014\TUPSAPI.dll
780f902e838efb4a3f8e5c11127eb8d0 c:\Program Files (x86)\TuneUp Utilities 2014\TUParams.dll
4d71319f975b316d97c61d530a85af58 c:\Program Files (x86)\TuneUp Utilities 2014\TURar.bpl
13d43f5599f45289b403bc141d5fa529 c:\Program Files (x86)\TuneUp Utilities 2014\TURatingSynch.exe
708b8324c0a241466cf78a906a2ab461 c:\Program Files (x86)\TuneUp Utilities 2014\TURegOpt64.exe
cc1f2dbc82251550684c7065a2ab9eca c:\Program Files (x86)\TuneUp Utilities 2014\TUSafariClass.bpl
01224a73cba60b517a95f8454f6a7cc1 c:\Program Files (x86)\TuneUp Utilities 2014\TUShell.bpl
0d7cff05209f572809125f4208beae47 c:\Program Files (x86)\TuneUp Utilities 2014\TUShredder.bpl
ba6abcc858ae6179c4302041fc218674 c:\Program Files (x86)\TuneUp Utilities 2014\TUSqlDB32.dll
aca4e58dab3fe8b990c25798af0ab438 c:\Program Files (x86)\TuneUp Utilities 2014\TUTransl.bpl
b50712349f24c727706799386468ff67 c:\Program Files (x86)\TuneUp Utilities 2014\TUTuningIndex.dll
baa1e45961c9f44fe5296c1193b645b5 c:\Program Files (x86)\TuneUp Utilities 2014\TUTuningIndex64.dll
7bde2e7da8a5784b83859a6fa8d3d660 c:\Program Files (x86)\TuneUp Utilities 2014\TUUUnInstallHelper.exe
74000be24940cf5ee805c4cd2e1446d6 c:\Program Files (x86)\TuneUp Utilities 2014\Traces.bpl
cc80f47866f59dde0f89491e79ae6678 c:\Program Files (x86)\TuneUp Utilities 2014\TuApplications.bpl
00d1d2ef5dd7fb7f868131a6a16f22c9 c:\Program Files (x86)\TuneUp Utilities 2014\TuZenManager.exe
102cff8782a2afabd185b60cb28e3bf3 c:\Program Files (x86)\TuneUp Utilities 2014\TuneUpRPC32.dll
18142d428cdff8550edc35527d354451 c:\Program Files (x86)\TuneUp Utilities 2014\TuneUpSystemStatusCheck.exe
61e19c82125dff3a83b445152a048ae6 c:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
45427c4b8cac6b241478f149b935cd80 c:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys
258c050d197d923668b36c8d3f6a2353 c:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
c420e0d3b24bb6dcc13a8255dfd56055 c:\Program Files (x86)\TuneUp Utilities 2014\TuningWizard.bpl
4885b8a0c48e81d950995893643f8777 c:\Program Files (x86)\TuneUp Utilities 2014\UnRar.dll
6882639248f25aad524455925f8cb4bf c:\Program Files (x86)\TuneUp Utilities 2014\Undelete.exe
3d2d3a2b280cfebc640ee397225581dd c:\Program Files (x86)\TuneUp Utilities 2014\UninstallManager.exe
15ec57ce7ebc2b1a85f6be795558f233 c:\Program Files (x86)\TuneUp Utilities 2014\UpdateWizard.exe
fa98ba7350c816a55ec495d5f4a19b74 c:\Program Files (x86)\TuneUp Utilities 2014\VirtualTreesR.bpl
3df60b70b5d6dbccd2883146764681c6 c:\Program Files (x86)\TuneUp Utilities 2014\VisControls.bpl
45db0e0f43ac5aa34ae465596afbc59a c:\Program Files (x86)\TuneUp Utilities 2014\XMLComponents.bpl
59f9b92a6403ae5e58d85081bed986fa c:\Program Files (x86)\TuneUp Utilities 2014\authuitu-x64.dll
ba2a165f3100d7476bdca12c0041f827 c:\Program Files (x86)\TuneUp Utilities 2014\authuitu-x86.dll
f330cfcab656afb20e079fbfb3c91b66 c:\Program Files (x86)\TuneUp Utilities 2014\avgdiagex.exe
402334f16389f4cfd509ae8264162e33 c:\Program Files (x86)\TuneUp Utilities 2014\avgduix.dll
f270222bf86e18e984457738d1499062 c:\Program Files (x86)\TuneUp Utilities 2014\avgdumpa.exe
211bcf1ef035c9ebca9deb6a9bf572ce c:\Program Files (x86)\TuneUp Utilities 2014\avgdumpx.exe
9350774de8c5d5296d88bc0732c4d634 c:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll
07b3e4e15c314217770f66d744c7cf85 c:\Program Files (x86)\TuneUp Utilities 2014\avgreplibx.dll
13fce7af374dfc683068a5fd80b93ad9 c:\Program Files (x86)\TuneUp Utilities 2014\cefcomponent.bpl
76e85178ccdc8e662778be6c21734e1d c:\Program Files (x86)\TuneUp Utilities 2014\cxLibraryD12.bpl
c152629447732b74272d011c0b8aa20c c:\Program Files (x86)\TuneUp Utilities 2014\dbrtl120.bpl
084045667782144896ff1d237941c083 c:\Program Files (x86)\TuneUp Utilities 2014\dxBarD12.bpl
161d6383a2b09b053bed63b634a9bba8 c:\Program Files (x86)\TuneUp Utilities 2014\dxBarExtItemsD12.bpl
ec729e9e0295862b544663a1617229d1 c:\Program Files (x86)\TuneUp Utilities 2014\dxComnD12.bpl
236d39ccb660e59cbe9facd4a3458001 c:\Program Files (x86)\TuneUp Utilities 2014\dxCoreD12.bpl
9cb47107e7098812bbcf447b529e91cf c:\Program Files (x86)\TuneUp Utilities 2014\dxDockingD12.bpl
baadffb0de3eea92d683f3907111c35e c:\Program Files (x86)\TuneUp Utilities 2014\dxGDIPlusD12.bpl
9ef2027f192337a5fc0964a136f6a397 c:\Program Files (x86)\TuneUp Utilities 2014\dxRibbonD12.bpl
c9967d203cd392ad62067f58fea2c3b2 c:\Program Files (x86)\TuneUp Utilities 2014\dxSkinsCoreD12.bpl
c24f28a228e1f58d218534d01b04dc9b c:\Program Files (x86)\TuneUp Utilities 2014\dxThemeD12.bpl
8cd8d3477977f8103e17cd79051c81dc c:\Program Files (x86)\TuneUp Utilities 2014\icudt.dll
f6a2521d00c69f3b9aaca3138891d554 c:\Program Files (x86)\TuneUp Utilities 2014\libcef.dll
4cf51720398d40d8b950939a3d2b7fda c:\Program Files (x86)\TuneUp Utilities 2014\ntrtl60.bpl
0400cbb7558638933661984791398ca2 c:\Program Files (x86)\TuneUp Utilities 2014\rtl120.bpl
3f058529ba2bb5c82ca52a4c0af78d84 c:\Program Files (x86)\TuneUp Utilities 2014\tuavga.dll
7d8d76de5efea61606c2c4e0d79ebedf c:\Program Files (x86)\TuneUp Utilities 2014\tuavgx.dll
2db91c52769e54cac4d8553f81869348 c:\Program Files (x86)\TuneUp Utilities 2014\tulic-x64.dll
0c8e0b01a10b727de8c4aabfac8a06de c:\Program Files (x86)\TuneUp Utilities 2014\tulic.dll
5e5e57bca399cae86520317c65e14718 c:\Program Files (x86)\TuneUp Utilities 2014\tux64thk.exe
97bcd40e27c46b398524df9b4dc88a6f c:\Program Files (x86)\TuneUp Utilities 2014\uxtuneup-x64.dll
47a712e2ec4cb6b140dcb4824980031b c:\Program Files (x86)\TuneUp Utilities 2014\uxtuneup-x86.dll
066589820a4a17ea2d0a0d0c070d2e90 c:\Program Files (x86)\TuneUp Utilities 2014\vcl120.bpl
c7efcdeae5ce3e30acf135020d67a0a8 c:\Program Files (x86)\TuneUp Utilities 2014\vcldb120.bpl
139eae714653d55f83c1dd3dde22a1aa c:\Program Files (x86)\TuneUp Utilities 2014\vclimg120.bpl
1d7828406c07fa2b4c90bb40cd28ffb2 c:\Program Files (x86)\TuneUp Utilities 2014\vclx120.bpl
aefb476ea69595d4c99db7f10f6cea18 c:\Program Files (x86)\TuneUp Utilities 2014\xmlrtl120.bpl
a536fbe34dad5d3a09bb4211bccb3f2c c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comp01.000
677db13a0f1581526d0524d0d3bf8116 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\AcsInstA.dll
677db13a0f1581526d0524d0d3bf8116 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\AcsInstA.dll
99fc038a01d38750869233bfee3b7d66 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\AcsInstC.dll
5be271643f1bdb2a1c057d9e68073ebb c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acscore.exe
0c67b081eaf75a68dd1a30cfc5bafbc4 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acslaeu.exe
4145b39478763f6db2b0be62f9b5cdb7 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acslang.exe
30112c869f53788c6bd7a1894feab5a4 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acsrollb.exe
8b307ac96328b7606e00f5aa06b19e64 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acsshutd.exe
fb4b5f9714438220c710360034ead63f c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\instSup.dll
76fea2b136ba4ff3673c02112c084e19 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpchk.dll
4c95c4e949e974cddc01e5d64890a18d c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpgc.exe
ea56b1a21fe2c8727fffa72eae0fb910 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpinst.exe
02d0bc9f8614877ad05be0cd3c62f74b c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\ecuchk.dll
0cc744e640b29003c8e79cad2afc91db c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\ecuinst.exe
9e0716313e36a00f6a2f10e1406abe49 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\gui.dll
486782c0ebeb36040162fcbff5cc246e c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\instSup.dll
b099db9901815091fc19ee42d026d016 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\instph.dll
5698fb01e5166cf36685ea4fb9bf2e75 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\postproc.exe
00c108f1b7620c3db99ec4b5941cd613 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\setup.exe
f16ff042e4a1053d54c59809382b6cb0 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\browser\aolbwsrinst.exe
58e6c4a1a04190b3eab13ed40f9403e6 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\browser\aolbwsrlp.exe
9b9089fe6cb9690baa4b8297db004083 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\flash\flashax.exe
47ee0aafbf70215e50a439793519ced4 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\msvcr9\msvc9rt.exe
b24832829e87ac8cf90e67323f180998 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\muinst\muinst.exe
99cd37721d91b978478ddb06b238ae94 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\parcon\AOLParconLink.exe
0c3ac76c6a5aaf1af04252bdddefc90b c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\search\aolSearchInstaller.exe
ea532af86e3ce0fcebf017c4d024e734 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\sysinfo\SiNdInst.dll
64e0f330cdc7d09e0b5a6e0fe1944298 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\sysinfo\SinfInst.exe
b577f2f5d53bf29f7ab693d426f9102a c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tb\tbinst.dll
dc89bf1fee901711cef4d23a5885f5ba c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tb\tbsetup.exe
7163cb774c355b35a625bc3be0a15051 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\toolbar\aol_toolbar.exe
2e7b65130339c02366d3e2dec0b3e85a c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tpspd\Dacldll.dll
54f6b217be17652f8f11e58dc3e8a8bd c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tpspd\tsverchk.dll
3b1346435569c11f5f2772da538554b0 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tpspd\wbsetup.exe
1e8056cfb32e0827f4dea4ab80c293a9 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\AOLVPChk.dll
6bc9a79f9257ea150fc64b70059b08e2 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\VPPrePop.exe
fc393cff7bc091c6733a7df192a4d133 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\Vwpt.exe
2eba0ffcb9c06ef626488adb07f02613 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\noneCodesignFilesBundle.exe
54f581e871958949b225a0e7006532e6 c:\ProgramData\AOL Downloads\waol\0.4343.19.1\waol-0.4343.19.1.exe
a536fbe34dad5d3a09bb4211bccb3f2c c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comp01.000
677db13a0f1581526d0524d0d3bf8116 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\AcsInstA.dll
677db13a0f1581526d0524d0d3bf8116 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\AcsInstA.dll
99fc038a01d38750869233bfee3b7d66 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\AcsInstC.dll
5be271643f1bdb2a1c057d9e68073ebb c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acscore.exe
0c67b081eaf75a68dd1a30cfc5bafbc4 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acslaeu.exe
4145b39478763f6db2b0be62f9b5cdb7 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acslang.exe
30112c869f53788c6bd7a1894feab5a4 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acsrollb.exe
8b307ac96328b7606e00f5aa06b19e64 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acsshutd.exe
fb4b5f9714438220c710360034ead63f c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\instSup.dll
76fea2b136ba4ff3673c02112c084e19 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpchk.dll
4c95c4e949e974cddc01e5d64890a18d c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpgc.exe
ea56b1a21fe2c8727fffa72eae0fb910 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpinst.exe
02d0bc9f8614877ad05be0cd3c62f74b c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\ecuchk.dll
0cc744e640b29003c8e79cad2afc91db c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\ecuinst.exe
9e0716313e36a00f6a2f10e1406abe49 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\gui.dll
486782c0ebeb36040162fcbff5cc246e c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\instSup.dll
b099db9901815091fc19ee42d026d016 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\instph.dll
5698fb01e5166cf36685ea4fb9bf2e75 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\postproc.exe
00c108f1b7620c3db99ec4b5941cd613 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\acs\setup.exe
f16ff042e4a1053d54c59809382b6cb0 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\browser\aolbwsrinst.exe
58e6c4a1a04190b3eab13ed40f9403e6 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\browser\aolbwsrlp.exe
9b9089fe6cb9690baa4b8297db004083 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\flash\flashax.exe
47ee0aafbf70215e50a439793519ced4 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\msvcr9\msvc9rt.exe
b24832829e87ac8cf90e67323f180998 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\muinst\muinst.exe
99cd37721d91b978478ddb06b238ae94 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\parcon\AOLParconLink.exe
0c3ac76c6a5aaf1af04252bdddefc90b c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\search\aolSearchInstaller.exe
ea532af86e3ce0fcebf017c4d024e734 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\sysinfo\SiNdInst.dll
64e0f330cdc7d09e0b5a6e0fe1944298 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\sysinfo\SinfInst.exe
b577f2f5d53bf29f7ab693d426f9102a c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\tb\tbinst.dll
dc89bf1fee901711cef4d23a5885f5ba c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\tb\tbsetup.exe
7163cb774c355b35a625bc3be0a15051 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\toolbar\aol_toolbar.exe
2e7b65130339c02366d3e2dec0b3e85a c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\tpspd\Dacldll.dll
54f6b217be17652f8f11e58dc3e8a8bd c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\tpspd\tsverchk.dll
3b1346435569c11f5f2772da538554b0 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\tpspd\wbsetup.exe
1e8056cfb32e0827f4dea4ab80c293a9 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\vwpt\AOLVPChk.dll
6bc9a79f9257ea150fc64b70059b08e2 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\vwpt\VPPrePop.exe
fc393cff7bc091c6733a7df192a4d133 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\comps\vwpt\Vwpt.exe
2eba0ffcb9c06ef626488adb07f02613 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\noneCodesignFilesBundle.exe
54f581e871958949b225a0e7006532e6 c:\Users\All Users\AOL Downloads\waol\0.4343.19.1\waol-0.4343.19.1.exe
f70fd2250ba1827225da0d752fdae0ba c:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7QBP14P\SkypeSetupFull[1].exe
fbe5bf1a6e1a29d4f376edb921345f48 c:\Users\"%CurrentUserName%"\AppData\Local\Temp\dlgui.dll
2a2cc871b2c2fc9536d5724264445f07 c:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll
8a75325dd2c5a2e888573455cb622e21 c:\Users\"%CurrentUserName%"\AppData\Local\Temp\roadie.exe
f0b3c151c25cc5fd45cd63ecda01d5fa c:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\du340b.exe
7d92f9cf0e121e7fb72da522f7fcd6cb c:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\syesubc3_p2v3.exe
0d121b06a7d31b1407624c34d026b793 c:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\TuneUpUtilities2014WORLDW1D_en-US.exe
f0b3c151c25cc5fd45cd63ecda01d5fa c:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\du340b.exe
fc0de6d57d1b675a8991d0794761fa29 c:\Users\"%CurrentUserName%"\AppData\Roaming\rmi\aol-desktop-9.7 Rev 4343.19.exe
00b0ace97eaa8a8f1cc1867e49b1fe74 c:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe
f366d1694e4d244a73f4e52817c38d5b c:\Windows\SysWOW64\Macromed\Flash\Flash10h.ocx
dc299b13e8f608358cf69fea25ad8b36 c:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.dll
5698b99b81d3692bf9fcdee5a07ea250 c:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe
ba2a165f3100d7476bdca12c0041f827 c:\Windows\SysWOW64\authuitu.dll
fd5cabbe52272bd76007b68186ebaf00 c:\Windows\SysWOW64\msvcp120.dll
034ccadc1c073e4216e9466b720f9849 c:\Windows\SysWOW64\msvcr120.dll
69837e50c50561a083a72a5f8ea1f6a2 c:\Windows\SysWOW64\vccorlib120.dll
f366d1694e4d244a73f4e52817c38d5b c:\Windows\System32\Macromed\Flash\Flash10h.ocx
dc299b13e8f608358cf69fea25ad8b36 c:\Windows\System32\Macromed\Flash\FlashUtil10h_ActiveX.dll
5698b99b81d3692bf9fcdee5a07ea250 c:\Windows\System32\Macromed\Flash\FlashUtil10h_ActiveX.exe
ba2a165f3100d7476bdca12c0041f827 c:\Windows\System32\authuitu.dll
fd5cabbe52272bd76007b68186ebaf00 c:\Windows\System32\msvcp120.dll
034ccadc1c073e4216e9466b720f9849 c:\Windows\System32\msvcr120.dll
69837e50c50561a083a72a5f8ea1f6a2 c:\Windows\System32\vccorlib120.dll

HOSTS file anomalies

No changes have been detected.

Rootkit activity

No anomalies have been detected.

Propagation

VersionInfo

Company Name:
Product Name: AOL Desktop
Product Version:
Legal Copyright:
Legal Trademarks:
Original Filename:
Internal Name:
File Version: 1.0.0.0
File Description: AOL Desktop
Comments:
Language: Language Neutral

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Section MD5
.text 4096 24422 24576 4.49105 e62875ed9a30df4dd2a76c8f2b1aefc4
.rdata 28672 4948 5120 3.49196 8a134e15423272c853e24b49bfc8707f
.data 36864 3795736 1536 2.6078 2eac3d14ab9bbc46ba5fd06b09176c66
.ndata 3833856 167936 0 0 d41d8cd98f00b204e9800998ecf8427e
.rsrc 4001792 38960 39424 2.84333 c096ab9b5f7cc61aa3a6a97bcd869e19

Dropped from:

Downloaded by:

Similar by SSDeep:

Similar by Lavasoft Polymorphic Checker:

URLs

URL IP
hxxp://api.opencandy.com/?bn=3&bv=10.00.9200.16521&clientv=103&cltzone=120&csk=12586259620818734781-11775504302967998912&language=en,en&method=get_offers&mstime=0.218&num_offers=3&os=WIN6.1SP1-64&product_key=b37b25f3ccc49015eceda3b5d0db7760&sswnt=&tm=2015-01-05 17:13:39.386&v=1.0&signature=6951da3ed1f1acadff417ac2c683a515
hxxp://a469.d.akamai.net/templates/7861/0/61113.png
hxxp://a469.d.akamai.net/templates/3596/0/60635.png
hxxp://a469.d.akamai.net/p/1186/dc/du340b.exe
hxxp://api.opencandy.com/?accepted_ind=1&clientv=103&csk=12586259620818734781-11775504302967998912&dpix=96&dpiy=96&inst_id=61113&language=en,en&lst=0&max=2&method=track_offer_result&mstime=36.411&offer_id=7861&offer_shown_secs=12.61&olang=en&opt_shown_count=0&os=WIN6.1SP1-64&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&ready=2&session_key=22d61a24e8d388cad4a87ebeaf52304b&tm=2015-01-05 17:14:15.573&v=1.0&wlss=11.076&signature=4d62c2a65ebd21c28fe05dfb39d731f8
hxxp://installs.innovativesyst.com/get_file.php?p=87/aol-desktop-9.7 Rev 4343.19.exe&u={1AFC46EE-2392-4896-B343-6D8F5785AA90}
hxxp://api.opencandy.com/?accepted_ind=1&clientv=103&csk=12586259620818734781-11775504302967998912&dpix=96&dpiy=96&inst_id=60635&language=en,en&lst=0&max=2&method=track_offer_result&mstime=36.442&offer_id=3596&offer_shown_secs=12.64&olang=en&opt_shown_count=0&os=WIN6.1SP1-64&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&ready=2&session_key=2afe7a0b83df4567c38d830b988dc6b9&tm=2015-01-05 17:14:15.963&v=1.0&wlss=11.076&signature=412a9f326c9fd84e4e7bdf2251f3ad5d
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&language=en&method=get_translations&mstime=0.171&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&v=1.0&version=0&signature=09a04c32e0258117e61c39e099ef2eb6
hxxp://d7.innovativesyst.com/87/aol-desktop-9.7
hxxp://api.opencandy.com/?clientv=103&csk=12586259620818734781-11775504302967998912&method=track_product_installed&mstime=36.504&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&skip=0&tm=2015-01-05 17:14:16.400&v=1.0&signature=6a52480ee7fd9f8e47f688627102722c
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&language=en&method=get_translations&mstime=0.359&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&v=1.0&version=0&signature=87b4d79c19932db8f0b658b5555ec3e6
hxxp://api.opencandy.com/?clientv=103&csk=12586259620818734781-11775504302967998912&method=track_product_installed&mstime=36.520&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&skip=0&tm=2015-01-05 17:14:16.837&v=1.0&signature=eebe2d7c08f23748556f2ab515259ddc
hxxp://a469.d.akamai.net/p/883/icons/Skype.ico
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_encapsulated_offer_download_started&offer_id=7861&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&sswnt=&v=1.0&signature=ba857c135dc175c1466b8a7a14d6ca2d
hxxp://a469.d.akamai.net/p/883/ius/syesubc3_p2v3.exe
hxxp://api.opencandy.com/?clientv=103&csk=12586259620818734781-11775504302967998912&method=track_product_installed&mstime=36.520&pos=3&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2df60a996c6bc69b895b545497cf8bf5&skip=0&tm=2015-01-05 17:14:17.274&v=1.0&signature=cb62a00d903d3bbbef54f7a9c0b05e82
hxxp://mediahelper.co/fas/stat.php?sid=1&tt=1&iid=24&pid=86638&tid=1&st=:49:50:51:
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_encapsulated_offer_downloaded&offer_downloaded_secs=0.250&offer_id=7861&package_md5=7d92f9cf0e121e7fb72da522f7fcd6cb&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&sswnt=&v=1.0&signature=9f053e70792e794733d18a0b13d7c267
hxxp://api.opencandy.com/?clientv=103&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_offer_downloaded&mstime=36.676&offer_downloaded_secs=0.000&offer_id=7861&package_md5=f0b3c151c25cc5fd45cd63ecda01d5fa&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&tm=2015-01-05 17:14:17.757&v=1.0&signature=99eceb0466d5a6397fab817ac4f058c7
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_encapsulated_offer_install_started&offer_id=7861&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&v=1.0&signature=ef1e9c1ec59e9767318e3921e524d54b
hxxp://api.opencandy.com/?clientv=103&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_offer_downloaded&mstime=36.925&offer_downloaded_secs=0.000&offer_id=3596&package_md5=f0b3c151c25cc5fd45cd63ecda01d5fa&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&tm=2015-01-05 17:14:18.896&v=1.0&signature=de1b4b4a183ef61ddc25a9f8e3b206a7
hxxp://api.opencandy.com/?clientv=103&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_offer_installed&mstime=36.972&offer_id=7861&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&tm=2015-01-05 17:14:19.271&v=1.0&signature=b69a5fcc6676d653654b0bc5ed2aed8a
hxxp://api.opencandy.com/?clientv=103&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_offer_installed&mstime=37.237&offer_id=3596&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&tm=2015-01-05 17:14:19.707&v=1.0&signature=aa12bd73795803ae3f814ba0fcb35caf
hxxp://www.skype.akadns.net/go/getskype-trackable550
hxxp://a1306.cl.akamai.net/325c4af68d6b04ac77426bf5318ebf57/partner/trackable/550/SkypeSetupFull.exe
hxxp://api.opencandy.com/?clientv=103&csk=12586259620818734781-11775504302967998912&method=track_offers_not_ready&mstime=42.167&offer_id=&pos=3&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2df60a996c6bc69b895b545497cf8bf5&soi=7666&sot=0.016&state=8&state_time_secs=0.780&tm=2015-01-05 17:14:21.330&v=1.0&signature=138a2dc47fa342685339729296ad4f28
hxxp://23.43.139.27/MFEwTzBNMEswSTAJBgUrDgMCGgUABBRIt2RJ89X++hEzqoBeQg8PymQ2UQQUANhaTCXBIuWLMe9tuvPMXynxDWECEGVSJuGyLhjhWQ8phawi51w=
hxxp://23.43.139.27/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEA/folAAtu2XY7/sias/UTw=
hxxp://149.174.97.123/clients/bush/waol/0.4343.19.1/roadie1.8.4.1/roadie.loc
hxxp://aol.122.2o7.net/b/ss//6
hxxp://149.174.97.123/clients/bush/waol/0.4343.19.1/comps/acs/comps/acsshutd.exe
hxxp://149.174.97.123/clients/bush/waol/0.4343.19.1/noneCodesignFilesBundle.exe
hxxp://ui.skype.akadns.net/ui/0/7.0.0.102.550/en/getnewestversion?defaultbrowser=ie
hxxp://a1363.g.akamai.net/pki/crl/products/MicCodSigPCA_08-31-2010.crl
hxxp://e8218.ce.akamaiedge.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBS56bKHAoUD+Oyl+0LhPg9JxyQm4gQUf9Nlp8Ld7LvwMAnzQzn6Aq8zMTMCEFIA5aolVvwahu2WydRLM8c=
hxxp://e8218.ce.akamaiedge.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTSqZMG5M8TA9rdzkbCnNwuMAd5VgQUz5mp6nsm9EvJjo/X8AUm7+PSp50CECAKfRxMDvODER0cHOAslgg=
hxxp://a1363.g.akamai.net/pki/crl/products/microsoftrootcert.crl
hxxp://a1363.g.akamai.net/pki/crl/products/WinPCA.crl
hxxp://a1363.g.akamai.net/pki/crl/products/MicrosoftTimeStampPCA.crl
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_encapsulated_offer_installed&offer_id=7861&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&v=1.0&signature=d169c9878c48de71f03478b05406e426
hxxp://a1621.g.akamai.net/msdownload/update/v3/static/trustedr/en/authrootstl.cab?937ef1f3c6451758
hxxp://ui.skype.akadns.net/ui/0/7.0.0.102.550/en/installed
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_encapsulated_offer_download_started&offer_id=3596&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&sswnt=&v=1.0&signature=a581d3689fe2509610118dc34ba6bf42
hxxp://cdp1.public-trust.com/CRL/Omniroot2025.crl
hxxp://a469.d.akamai.net/p/583/icons/TuneUpUtilities.ico
hxxp://a469.d.akamai.net/p/583/ius/TuneUpUtilities2014WORLDW1D_en-US.exe
hxxp://cs1.wpc.v0cdn.net/pki/mscorp/crl/mswww(6).crl
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_encapsulated_offer_downloaded&offer_downloaded_secs=2.512&offer_id=3596&package_md5=0d121b06a7d31b1407624c34d026b793&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&sswnt=&v=1.0&signature=7fb3e2987d521151dbd54959fb3b203d
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_encapsulated_offer_install_started&offer_id=3596&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&v=1.0&signature=e49c96333e81f97eea551ea7e8c1e884
hxxp://e8218.ce.akamaiedge.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTSqZMG5M8TA9rdzkbCnNwuMAd5VgQUz5mp6nsm9EvJjo/X8AUm7+PSp50CECIVIUXpJZiHEgbSY/2ShDY=
hxxp://204.193.144.124/?dj0wMDAwMyZwaWQ9MTUmcHY9MTQlMkUwJTJFMTAwMCUyRTM0MCZtaWQ9YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZSZsaWM9MiZjb21wb25lbnRzPSZvcz1XaW5kb3dzJTIwT1MlMjA2JTJFMSUyRTElMkU3NjAxJTIwU2VydmljZSUyMFBhY2slMjAxJm1vZGVsPVBDJm1hcmtldGluZ19pZD0mYWN0aW9uPTEmZGVzYz1Nc2lSZXMlM0ElMjAwJnVzYWdlPTAmTGljZW5zZT1UQUtSUC1IWEJMTC1SN1FORy1BR1dPUC1XNjJTVS1VJmV4cD0w&z=70fd9ae49d20ae98d165bef6e256a7c7fe8bb7a9
hxxp://api.opencandy.com/?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_encapsulated_offer_installed&offer_id=3596&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&v=1.0&signature=3e07aa645f8cc73be574744051fd028f
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/AcsInstA.dll
hxxp://a1129.b.akamai.net/link/?target=installhelp&errorcode=0&tu_wi=0&action=1&T=MzFoIEw9VEFLUlAtSFhCTEwtUjdRTkctQUdXT1AtVzYyU1UtVSBJPSBMTkc9dXMgVj0xNC4wLjEwMDAuMzQwIE9TVj02LjEuNzYwMSBPUz1XVjdYWDY0IFNTUD0xLjAgTUlEPWI2YmM3NDhhOGIwNTQ3Y2Q4MDA5ZDExOTEwYzVlODg3LThiYjlmM2VjOTFhMGQzMWM0ZTJmYmJjNjVjZDI5NWI4YTE0NDFiMmUgQkU9MSBBST0wIFBSVFlQRT0gTFQ9Mg~~&os_ver=6.1.7601&os_x64=1&os_sp=1.0&os_id=48&os_suite=256&os_syslang=en-US&os_ulang=en-US&os_ucountry=US&tu_version=14.0.1000.340&tu_lang=en-US&tu_pkhash=39d97615f349c325fff665bbd1936eaa&tu_product=tuu2014&tu_appid=291&x-sid=1_tuu2014t_en-us_2200546&tu_sids=1_tuu2014t_en-us_2200546&tu_ind=2015-01-05 17:15:02&tu_dod=2015-01-05 17:15:00&tu_tab=tcp2_2&tu_tbar=MC0wLTAtMA~~&tu_mid=YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZQ~~
hxxp://a1129.b.akamai.net/en/services/whats-new/tuu2014/
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/tb/tbsetup.exe
hxxp://a1129.b.akamai.net/services/whats-new/tuu2014/
hxxp://a1129.b.akamai.net/typo3temp/minify/all_552368784b_minify__merged.css
hxxp://a1129.b.akamai.net/typo3temp/minify/screen_8b9521acb8_minify__merged.css
hxxp://a1129.b.akamai.net/typo3temp/minify/print_382db5047c_minify__merged.css
hxxp://a1129.b.akamai.net/typo3temp/minify/ebacc5180d_minify__merged.js
hxxp://a1129.b.akamai.net/fileadmin/templates/tu2013/images/tuneup_logo.png
hxxp://a1129.b.akamai.net/uploads/pics/tuu_box_whatsnew.png
hxxp://a1129.b.akamai.net/uploads/pics/ico_alpha_DuplicateFinder_128x128.png
hxxp://a1129.b.akamai.net/uploads/pics/ico_alpha_FlightMode_128x128.png
hxxp://a1129.b.akamai.net/uploads/pics/ico_alpha_UserInterface_128x128.png
hxxp://a1129.b.akamai.net/uploads/pics/ico_alpha_DiscCleaner_128x128_02.png
hxxp://a1129.b.akamai.net/js/webmetro_dsmmtracker.js
hxxp://pagead.l.doubleclick.net/pagead/conversion.js
hxxp://a1129.b.akamai.net/fileadmin/templates/tu2013/images/tuneup_design_sprites.png?1377584391
hxxp://a1129.b.akamai.net/fileadmin/images/services/whats_new/bgTeaserBlog.png?1365499180
hxxp://a1129.b.akamai.net/fileadmin/templates/tu2013/images/tuneup_arrow.gif?1371128329
hxxp://pagead.l.doubleclick.net/pagead/conversion/1017626827/?random=1420478124985&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://e3821.dspe1.akamaiedge.net/de_DE/all.js
hxxp://pagead.l.doubleclick.net/pagead/conversion/1017626827/?random=1420478124985&cv=7&fst=1420478124985&num=1&fmt=4&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://tracking.dsmmadvantage.com/DBScripts/conversion_currency.asp?wm_DSMM_client=AVGTechnologies&wm_DSMM_ckid=1420478124830&wm_DSMM_ctid_PPC=null&wm_DSMM_kwid_PPC=null&wm_DSMM_referrer_PPC=null&wm_DSMM_referrerDomain_PPC=null&wm_DSMM_lpid_PPC=null&wm_DSMM_crid_PPC=null&wm_DSMM_venue_crid_PPC=null&wm_DSMM_venue_id_PPC=null&wm_DSMM_defaultURL_PPC=null&wm_DSMM_serverredirect_PPC=null&wm_DSMM_mtid_PPC=null&wm_DSMM_landingPage_PPC=null&wm_DSMM_landingPage_SEO=null&wm_DSMM_referrer_SEO=null&wm_DSMM_referrerDomain_SEO=null&wm_DSMM_orderID=tu-install&wm_DSMM_Revenue=0&wm_DSMM_ConversionType=13&wm_DSMM_TrackAllConversions=false&wm_DSMM_CookieTypeUsed=3&wm_DSMM_ConversionPage=http://www.tuneup.de/services/whats-new/tuu2014/&wm_DSMM_ConversionReferrerPage=&wm_DSMM_Currency=&wm_DSMM_dvid_PPC=null
hxxp://tuneup.de.d2.sc.omtrdc.net/b/ss/tuneupdev/1/H.23.6/s59128751490513?AQB=1&ndh=1&t=5/0/2015 19:15:24 1 -120&ce=UTF-8&ns=tuneupdistribution&pageName=mp:de:services:whats-new:tuu2014&g=http://www.tuneup.de/services/whats-new/tuu2014/&cc=EUR&ch=services&server=88.221.132.203&v0=mp_de-de&events=event16,event27&c1=services:whats-new&c2=services:whats-new:tuu2014&c3=services:whats-new:tuu2014&v3=mp:de:services:whats-new:tuu2014&c4=services:whats-new:tuu2014&v9=mp_de-de&v10=mp_de-de&c14=tuneup.de&c16=New&v16=New&v17=tuneup.de&c18=http://www.tuneup.de/services/whats-new/tuu2014/&c19=install_success&c21=1&v24=+10&c25=HIT&v26=mp_de-de&c28=http&c29=1|19:00&c30=1-12&v31=2015010517&c35=0|0|&c36=0|0|0|1|&c38=Install&s=1716x901&c=24&j=1.6&v=Y&k=Y&bw=1716&bh=804&ct=lan&hp=N&AQE=1
hxxp://pagead.l.doubleclick.net/pagead/conversion/1069401893/?random=1420478125198&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://pagead.l.doubleclick.net/pagead/conversion/1026731593/?random=1420478125201&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://pagead.l.doubleclick.net/pagead/conversion/1026731593/?random=1420478125201&cv=7&fst=1420478124985&num=3&fmt=4&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://pagead.l.doubleclick.net/pagead/viewthroughconversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://pagead.l.doubleclick.net/pagead/viewthroughconversion/1017626827/?random=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://pagead.l.doubleclick.net/pagead/conversion/1022173009/?random=1420478125404&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://pagead.l.doubleclick.net/pagead/conversion/1017626827/?random=1420478125407&cv=7&fst=1420478124985&num=5&fmt=3&value=0&label=iPiLCJX99QcQy4Gf5QM&bg=ffffff&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://pagead.l.doubleclick.net/pagead/viewthroughconversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://pagead.l.doubleclick.net/pagead/viewthroughconversion/1026731593/?random=72281364&cv=7&fst=1420478124985&num=3&fmt=3&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://e6845.ce.akamaiedge.net/crls/secureca.crl
hxxp://e6845.ce.akamaiedge.net/ThawtePremiumServerCA.crl
hxxp://pagead.l.doubleclick.net/pagead/viewthroughconversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://tuneup.de.d2.sc.omtrdc.net/b/ss/tuneupdev/1/H.23.6/s59128751490513?AQB=1&pccr=true&vidn=2A55636205011053-6000011660000A31&&ndh=1&t=5/0/2015 19:15:24 1 -120&ce=UTF-8&ns=tuneupdistribution&pageName=mp:de:services:whats-new:tuu2014&g=http://www.tuneup.de/services/whats-new/tuu2014/&cc=EUR&ch=services&server=88.221.132.203&v0=mp_de-de&events=event16,event27&c1=services:whats-new&c2=services:whats-new:tuu2014&c3=services:whats-new:tuu2014&v3=mp:de:services:whats-new:tuu2014&c4=services:whats-new:tuu2014&v9=mp_de-de&v10=mp_de-de&c14=tuneup.de&c16=New&v16=New&v17=tuneup.de&c18=http://www.tuneup.de/services/whats-new/tuu2014/&c19=install_success&c21=1&v24=+10&c25=HIT&v26=mp_de-de&c28=http&c29=1|19:00&c30=1-12&v31=2015010517&c35=0|0|&c36=0|0|0|1|&c38=Install&s=1716x901&c=24&j=1.6&v=Y&k=Y&bw=1716&bh=804&ct=lan&hp=N&AQE=1
hxxp://pagead.l.doubleclick.net/pagead/viewthroughconversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://pagead.l.doubleclick.net/pagead/viewthroughconversion/1017626827/?random=474304591&cv=7&fst=1420478124985&num=5&fmt=3&value=0&label=iPiLCJX99QcQy4Gf5QM&bg=ffffff&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://www.google.com/ads/conversion/1017626827/?random=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=3489569060
hxxp://www.google.com/ads/conversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1465290058
hxxp://star.c10r.facebook.com/plugins/like_box.php?app_id=&channel=http://static.ak.facebook.com/connect/xd_arbiter/7r8gQb8MIqE.js?version=41#cb=f21c76821e32918&domain=www.tuneup.de&origin=http%3A%2F%2Fwww.tuneup.de%2Ff28d04c9bd6046c&relation=parent.parent&color_scheme=light&header=false&href=http://www.facebook.com/tuneuputilities&locale=de_DE&sdk=joey&show_border=false&show_faces=false&stream=false&width=300
hxxp://www.google.com/ads/conversion/1026731593/?random=72281364&cv=7&fst=1420478124985&num=3&fmt=3&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=987752761
hxxp://www.google.com/ads/conversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1280476108
hxxp://a749.dsw4.akamai.net/connect/xd_arbiter/7r8gQb8MIqE.js?version=41
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/search/aolSearchInstaller.exe
hxxp://www.google.com/ads/conversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1668964727
hxxp://e8218.ce.akamaiedge.net/MEQwQjBAMD4wPDAJBgUrDgMCGgUABBSxtDkXkBa3l3lQEfFgudSiPNvt7gQUAPkqw0GRtsnCuD5V8sCXEROgByACAwI6dg==
hxxp://e8218.ce.akamaiedge.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQwF4prw9S7mCbCEHD/yl6nWPkczAQUe1tFz6/Oy3r9MZIaarbzRutXSFACEHYQEooXtoK7Oh+dGpo1wJI=
hxxp://ocsp.godaddy.com.akadns.net/MEMwQTA/MD0wOzAJBgUrDgMCGgUABBTkIInKBAzXkF0Qh0pel3lfHJ9GPAQU0sSw0pHUTBFxs2HLPaH+3ahq1OMCAgMB
hxxp://www.google.com/ads/conversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=822544588
hxxp://ocsp.globalsign.com/rootr1/MEwwSjBIMEYwRDAJBgUrDgMCGgUABBS3V7W2nAf4FiMTjpDJKg6+MgGqMQQUYHtmGkUNl8qJUC99BM00qP/8/UsCCwQAAAAAAS9O4UUM 108.162.232.204
hxxp://www.google.com/ads/user-lists/1017626827/?label=iPiLCJX99QcQy4Gf5QM&fmt=3&bg=ffffff&num=5&ct_cookie_present=false&cv=7&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&random=2423336321
hxxp://e8218.ce.akamaiedge.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBT1uKgYjpCmJone3Avzs5JQQsaeCgQUq0TkXeyDx9nAhZ/34caXkLCMP5gCEHwXPZBtM3AREod3hWg/yGI=
hxxp://www.google.com.ua/ads/conversion/1017626827/?random=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=3489569060&ipr=y
hxxp://www.google.com.ua/ads/conversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1668964727&ipr=y
hxxp://www.google.com.ua/ads/conversion/1026731593/?random=72281364&cv=7&fst=1420478124985&num=3&fmt=3&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=987752761&ipr=y
hxxp://www.google.com.ua/ads/conversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1280476108&ipr=y
hxxp://www.google.com.ua/ads/conversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1465290058&ipr=y
hxxp://www.google.com.ua/ads/conversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=822544588&ipr=y
hxxp://plus.l.google.com/ocsp/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBTy4Gr5hYodjXCbSRkjeqm1Gih+ZAQUSt0GFhu89mi1dvWBtrtiGrpagS8CCAJeRLXDSRa3
hxxp://cs9.wac.edgecastcdn.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTfqhLjKLEJQZPin0KCzkdAQpVYowQUsT7DaQP4v0cB1JgmGggC72NkK8MCEApfEU0DWxeRF9Lv1AOMPzs=
hxxp://www.google.com.ua/ads/user-lists/1017626827/?label=iPiLCJX99QcQy4Gf5QM&fmt=3&bg=ffffff&num=5&ct_cookie_present=false&cv=7&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&random=2423336321&ipr=y
hxxp://cs9.wac.edgecastcdn.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTtSK3dy3sA4g6EKqm0CfGsMDTPlgQUUOpzidsp+xCPnuUBINTeeZlIg/cCEAJwu3i4ZpYdN6xM1SVvBys=
hxxp://ocsp.godaddy.com.akadns.net//MEgwRjBEMEIwQDAJBgUrDgMCGgUABBRwKSJ2U38avI/VPJSE6RTLdioFKgQU/axhMpNsRdbi7oVfmrrndplozOcCBytdi1E/zM0=
hxxp://cdp1.public-trust.com/cgi-bin/CRL/2018/cdp.crl
hxxp://ocsp.globalsign.com/gsorganizationvalg2/MFMwUTBPME0wSzAJBgUrDgMCGgUABBReGXQV/tqUV3SNMRE+s25eR/vhjwQUXUayjcRLdBy77fVztjq3OI91nn4CEhEh54JWgbQMvvRwtKAm/gVdLg== 108.162.232.204
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpinst.exe
hxxp://a1158.b.akamai.net/MFUwUzBRME8wTTAJBgUrDgMCGgUABBS856ddZAq5lE7vDJmoUDW1u98SMAQU3WyAfLq1MhelhEFA8NIEZhMvqZACFGozgiJkrf5JafrJHx/pwJ6+De+O
hxxp://gs1.wac.v2cdn.net/PublicSureServerSV.crl
hxxp://plus.l.google.com/ocsp/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBTy4Gr5hYodjXCbSRkjeqm1Gih+ZAQUSt0GFhu89mi1dvWBtrtiGrpagS8CCCp142CW+FCt
hxxp://plus.l.google.com/ocsp/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBTy4Gr5hYodjXCbSRkjeqm1Gih+ZAQUSt0GFhu89mi1dvWBtrtiGrpagS8CCAD9M+oC6dVe
hxxp://a1129.b.akamai.net/services/whats-new/tuu2014/favicon.ico
hxxp://a1129.b.akamai.net/favicon.ico
hxxp://e7955.g.akamaiedge.net/WRSiteInterceptEngine/?Q_ZID=ZN_0Ul36Rghx9ZFnik&Q_LOC=http://www.tuneup.de/services/whats-new/tuu2014/
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/acslang.exe
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/gui.dll
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/instSup.dll
hxxp://ptuhb.cloud.avg.com/?dj0wMDAwMyZwaWQ9MTUmcHY9MTQlMkUwJTJFMTAwMCUyRTM0MCZtaWQ9YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZSZsaWM9MiZjb21wb25lbnRzPSZvcz1XaW5kb3dzJTIwT1MlMjA2JTJFMSUyRTElMkU3NjAxJTIwU2VydmljZSUyMFBhY2slMjAxJm1vZGVsPVBDJm1hcmtldGluZ19pZD0mYWN0aW9uPTYmZGVzYz0mdXNhZ2U9MCZMaWNlbnNlPVRBS1JQLUhYQkxMLVI3UU5HLUFHV09QLVc2MlNVLVUmZXhwPTA=&z=f7c5c5c1ed8e0e4381f6a01cd981578dc957e592
hxxp://ptuhb.cloud.avg.com/?dj0wMDAwMyZwaWQ9MTUmcHY9MTQlMkUwJTJFMTAwMCUyRTM0MCZtaWQ9YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZSZsaWM9MiZjb21wb25lbnRzPSZvcz1XaW5kb3dzJTIwT1MlMjA2JTJFMSUyRTElMkU3NjAxJTIwU2VydmljZSUyMFBhY2slMjAxJm1vZGVsPVBDJm1hcmtldGluZ19pZD0mYWN0aW9uPTAmZGVzYz0mdXNhZ2U9MiZMaWNlbnNlPVRBS1JQLUhYQkxMLVI3UU5HLUFHV09QLVc2MlNVLVUmZXhwPTA=&z=ceabfcd9419392788111ad473829a14e134ce61a
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/AcsInstA.dll
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/browser/aolbwsrlp.exe
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/msvcr9/msvc9rt.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/instph.dll
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/tpspd/wbsetup.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/instSup.dll
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/waol-0.4343.19.1.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/AcsInstC.dll
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/postproc.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/sysinfo/SinfInst.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/acscore.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/setup.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/acslaeu.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/browser/aolbwsrinst.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/parcon/AOLParconLink.exe
hxxp://ftp-newaol-shared-a-atc.evip.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpgc.exe
hxxp://ocsp.globalsign.com/MFQwUjBQME4wTDAJBgUrDgMCGgUABBQmECJms4f7i5EbxtN7NbzQCBwAdAQUUa8kJpz0aCJXgCYrO0ZiFXsezKUCE1oAAHevvgBk+xJc0C0AAQAAd68= 108.162.232.204
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/ecuchk.dll
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/ecuinst.exe
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/acsrollb.exe
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpchk.dll
hxxp://ftp-newaol.egslb.aol.com/clients/bush/waol/0.4343.19.1/comps/toolbar/aol_toolbar.exe
hxxp://e8218.ce.akamaiedge.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEAxNF3PJUX7iAOhAP2oGxcI=
hxxp://e6845.ce.akamaiedge.net/pca3.crl
hxxp://e8218.ce.akamaiedge.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ/xkCfyHfJr7GQ6M658NRZ4SHo/AQUCPVR6Pv+PT1kNnxoz1t4qN+5xTcCEGC2x6sSmevembHfY1acIZk=
hxxp://e8218.ce.akamaiedge.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEGwkCSV07gf3g5QOsqmf+MY=
hxxp://e8218.ce.akamaiedge.net/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEEES5jLHsYoCmjofrIA6uJ8=
hxxp://ocsp.usertrust.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBR8sWZUnKvbRO5iJhat9GV793rVlAQUrb2YejS0Jvf6xCZU7wO94CTLVBoCECdm7lbrSfOOq9dwovyE3iI= 178.255.83.1
hxxp://ocsp.usertrust.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBReAhtobFzTvhaRmVeJ38QUchY9AwQUu69+Aj36pvE8hI6t7jiY7NkyMtQCEC58h8wOk0pS/pT9HLfNNK8= 178.255.83.1
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/ecuchk.dll 149.174.97.123
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/acsshutd.exe 149.174.97.123
hxxp://www.tuneup.de/fileadmin/templates/tu2013/images/tuneup_arrow.gif?1371128329
hxxp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://ocsp.verisign.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ/xkCfyHfJr7GQ6M658NRZ4SHo/AQUCPVR6Pv+PT1kNnxoz1t4qN+5xTcCEGC2x6sSmevembHfY1acIZk=
hxxp://www.googleadservices.com/pagead/conversion/1017626827/?random=1420478125407&cv=7&fst=1420478124985&num=5&fmt=3&value=0&label=iPiLCJX99QcQy4Gf5QM&bg=ffffff&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://ocsp.verisign.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEAxNF3PJUX7iAOhAP2oGxcI=
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/parcon/AOLParconLink.exe 149.174.97.123
hxxp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://www.tuneup.de/fileadmin/templates/tu2013/images/tuneup_logo.png
hxxp://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTfqhLjKLEJQZPin0KCzkdAQpVYowQUsT7DaQP4v0cB1JgmGggC72NkK8MCEApfEU0DWxeRF9Lv1AOMPzs=
hxxp://cdn3.opencandy.com/p/1186/dc/du340b.exe 95.101.0.107
hxxp://www.tuneup.de/typo3temp/minify/print_382db5047c_minify__merged.css
hxxp://ocsp.comodoca.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBReAhtobFzTvhaRmVeJ38QUchY9AwQUu69+Aj36pvE8hI6t7jiY7NkyMtQCEC58h8wOk0pS/pT9HLfNNK8=
hxxp://siteintercept.qualtrics.com/WRSiteInterceptEngine/?Q_ZID=ZN_0Ul36Rghx9ZFnik&Q_LOC=http://www.tuneup.de/services/whats-new/tuu2014/
hxxp://www.tuneup.de/services/whats-new/tuu2014/favicon.ico
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/instSup.dll 149.174.97.123
hxxp://crl.microsoft.com/pki/crl/products/MicCodSigPCA_08-31-2010.crl
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/search/aolSearchInstaller.exe 149.174.97.123
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/postproc.exe 149.174.97.123
hxxp://www.googleadservices.com/pagead/conversion/1026731593/?random=1420478125201&cv=7&fst=1420478124985&num=3&fmt=4&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpinst.exe 149.174.97.123
hxxp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1017626827/?random=474304591&cv=7&fst=1420478124985&num=5&fmt=3&value=0&label=iPiLCJX99QcQy4Gf5QM&bg=ffffff&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/browser/aolbwsrlp.exe 149.174.97.123
hxxp://d7.innovativesyst.com/87/aol-desktop-9.7 Rev 4343.19.exe
hxxp://www.tuneup.de/typo3temp/minify/ebacc5180d_minify__merged.js
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/acsrollb.exe 149.174.97.123
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/waol-0.4343.19.1.exe 149.174.97.123
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/sysinfo/SinfInst.exe 149.174.97.123
hxxp://crl.omniroot.com/PublicSureServerSV.crl
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/browser/aolbwsrinst.exe 149.174.97.123
hxxp://ocsp.thawte.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQwF4prw9S7mCbCEHD/yl6nWPkczAQUe1tFz6/Oy3r9MZIaarbzRutXSFACEHYQEooXtoK7Oh+dGpo1wJI=
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/instSup.dll 149.174.97.123
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/acslang.exe 149.174.97.123
hxxp://www.tune-up.com/link/?target=installhelp&errorcode=0&tu_wi=0&action=1&T=MzFoIEw9VEFLUlAtSFhCTEwtUjdRTkctQUdXT1AtVzYyU1UtVSBJPSBMTkc9dXMgVj0xNC4wLjEwMDAuMzQwIE9TVj02LjEuNzYwMSBPUz1XVjdYWDY0IFNTUD0xLjAgTUlEPWI2YmM3NDhhOGIwNTQ3Y2Q4MDA5ZDExOTEwYzVlODg3LThiYjlmM2VjOTFhMGQzMWM0ZTJmYmJjNjVjZDI5NWI4YTE0NDFiMmUgQkU9MSBBST0wIFBSVFlQRT0gTFQ9Mg~~&os_ver=6.1.7601&os_x64=1&os_sp=1.0&os_id=48&os_suite=256&os_syslang=en-US&os_ulang=en-US&os_ucountry=US&tu_version=14.0.1000.340&tu_lang=en-US&tu_pkhash=39d97615f349c325fff665bbd1936eaa&tu_product=tuu2014&tu_appid=291&x-sid=1_tuu2014t_en-us_2200546&tu_sids=1_tuu2014t_en-us_2200546&tu_ind=2015-01-05 17:15:02&tu_dod=2015-01-05 17:15:00&tu_tab=tcp2_2&tu_tbar=MC0wLTAtMA~~&tu_mid=YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZQ~~
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/AcsInstA.dll 149.174.97.123
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpgc.exe 149.174.97.123
hxxp://www.facebook.com/plugins/like_box.php?app_id=&channel=http://static.ak.facebook.com/connect/xd_arbiter/7r8gQb8MIqE.js?version=41#cb=f21c76821e32918&domain=www.tuneup.de&origin=http%3A%2F%2Fwww.tuneup.de%2Ff28d04c9bd6046c&relation=parent.parent&color_scheme=light&header=false&href=http://www.facebook.com/tuneuputilities&locale=de_DE&sdk=joey&show_border=false&show_faces=false&stream=false&width=300
hxxp://download.skype.com/325c4af68d6b04ac77426bf5318ebf57/partner/trackable/550/SkypeSetupFull.exe
hxxp://cdn3.opencandy.com/p/883/icons/Skype.ico 95.101.0.107
hxxp://connect.facebook.net/de_DE/all.js
hxxp://www.tuneup.de/fileadmin/templates/tu2013/images/tuneup_design_sprites.png?1377584391
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/gui.dll 149.174.97.123
hxxp://www.tuneup.de/js/webmetro_dsmmtracker.js
hxxp://crl.verisign.com/pca3.crl
hxxp://www.tune-up.com/en/services/whats-new/tuu2014/
hxxp://ocsp.thawte.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBT1uKgYjpCmJone3Avzs5JQQsaeCgQUq0TkXeyDx9nAhZ/34caXkLCMP5gCEHwXPZBtM3AREod3hWg/yGI=
hxxp://www.tuneup.de/favicon.ico
hxxp://crl.geotrust.com/crls/secureca.crl
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpchk.dll 149.174.97.123
hxxp://www.googleadservices.com/pagead/conversion.js
hxxp://www.googleadservices.com/pagead/conversion/1017626827/?random=1420478124985&cv=7&fst=1420478124985&num=1&fmt=4&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://www.tuneup.de/typo3temp/minify/all_552368784b_minify__merged.css
hxxp://cdn3.opencandy.com/p/583/icons/TuneUpUtilities.ico 95.101.0.107
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/acscore.exe 149.174.97.123
hxxp://ocsp.verisign.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEEES5jLHsYoCmjofrIA6uJ8=
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/setup.exe 149.174.97.123
hxxp://ocsp.verisign.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTSqZMG5M8TA9rdzkbCnNwuMAd5VgQUz5mp6nsm9EvJjo/X8AUm7+PSp50CECIVIUXpJZiHEgbSY/2ShDY=
hxxp://www.public-trust.com/cgi-bin/CRL/2018/cdp.crl
hxxp://g.symcd.com/MEQwQjBAMD4wPDAJBgUrDgMCGgUABBSxtDkXkBa3l3lQEfFgudSiPNvt7gQUAPkqw0GRtsnCuD5V8sCXEROgByACAwI6dg==
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/AcsInstC.dll 149.174.97.123
hxxp://ui.skype.com/ui/0/7.0.0.102.550/en/installed
hxxp://ocsp.verisign.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEGwkCSV07gf3g5QOsqmf+MY=
hxxp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://www.tuneup.de/typo3temp/minify/screen_8b9521acb8_minify__merged.css
hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?937ef1f3c6451758
hxxp://www.googleadservices.com/pagead/conversion/1017626827/?random=1420478124985&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/comps/acslaeu.exe 149.174.97.123
hxxp://crl.thawte.com/ThawtePremiumServerCA.crl
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/noneCodesignFilesBundle.exe 149.174.97.123
hxxp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1026731593/?random=72281364&cv=7&fst=1420478124985&num=3&fmt=3&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://ocsp.godaddy.com//MEgwRjBEMEIwQDAJBgUrDgMCGgUABBRwKSJ2U38avI/VPJSE6RTLdioFKgQU/axhMpNsRdbi7oVfmrrndplozOcCBytdi1E/zM0=
hxxp://crl.microsoft.com/pki/crl/products/WinPCA.crl
hxxp://www.googleadservices.com/pagead/conversion/1022173009/?random=1420478125404&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/ecuinst.exe 149.174.97.123
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/toolbar/aol_toolbar.exe 149.174.97.123
hxxp://www.skype.com/go/getskype-trackable550
hxxp://www.googleadservices.com/pagead/conversion/1026731593/?random=1420478125201&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://clients1.google.com/ocsp/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBTy4Gr5hYodjXCbSRkjeqm1Gih+ZAQUSt0GFhu89mi1dvWBtrtiGrpagS8CCCp142CW+FCt
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/tb/tbsetup.exe 149.174.97.123
hxxp://crl.microsoft.com/pki/crl/products/MicrosoftTimeStampPCA.crl
hxxp://cdn3.opencandy.com/p/883/ius/syesubc3_p2v3.exe 95.101.0.107
hxxp://ocsp.verisign.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBRIt2RJ89X++hEzqoBeQg8PymQ2UQQUANhaTCXBIuWLMe9tuvPMXynxDWECEGVSJuGyLhjhWQ8phawi51w=
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/msvcr9/msvc9rt.exe 149.174.97.123
hxxp://www.tuneup.de/uploads/pics/tuu_box_whatsnew.png
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/AcsInstA.dll 149.174.97.123
hxxp://cdn3.opencandy.com/templates/3596/0/60635.png 95.101.0.107
hxxp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1017626827/?random=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/roadie1.8.4.1/roadie.loc 149.174.97.123
hxxp://ocsp.verisign.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBS56bKHAoUD+Oyl+0LhPg9JxyQm4gQUf9Nlp8Ld7LvwMAnzQzn6Aq8zMTMCEFIA5aolVvwahu2WydRLM8c=
hxxp://clients1.google.com/ocsp/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBTy4Gr5hYodjXCbSRkjeqm1Gih+ZAQUSt0GFhu89mi1dvWBtrtiGrpagS8CCAJeRLXDSRa3
hxxp://ocsp2.globalsign.com/gsorganizationvalg2/MFMwUTBPME0wSzAJBgUrDgMCGgUABBReGXQV/tqUV3SNMRE+s25eR/vhjwQUXUayjcRLdBy77fVztjq3OI91nn4CEhEh54JWgbQMvvRwtKAm/gVdLg==
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/tpspd/wbsetup.exe 149.174.97.123
hxxp://www.tuneup.de/services/whats-new/tuu2014/
hxxp://cdn3.opencandy.com/templates/7861/0/61113.png 95.101.0.107
hxxp://static.ak.facebook.com/connect/xd_arbiter/7r8gQb8MIqE.js?version=41
hxxp://ocsp.msocsp.com/MFQwUjBQME4wTDAJBgUrDgMCGgUABBQmECJms4f7i5EbxtN7NbzQCBwAdAQUUa8kJpz0aCJXgCYrO0ZiFXsezKUCE1oAAHevvgBk+xJc0C0AAQAAd68=
hxxp://metrics.tuneup.de/b/ss/tuneupdev/1/H.23.6/s59128751490513?AQB=1&pccr=true&vidn=2A55636205011053-6000011660000A31&&ndh=1&t=5/0/2015 19:15:24 1 -120&ce=UTF-8&ns=tuneupdistribution&pageName=mp:de:services:whats-new:tuu2014&g=http://www.tuneup.de/services/whats-new/tuu2014/&cc=EUR&ch=services&server=88.221.132.203&v0=mp_de-de&events=event16,event27&c1=services:whats-new&c2=services:whats-new:tuu2014&c3=services:whats-new:tuu2014&v3=mp:de:services:whats-new:tuu2014&c4=services:whats-new:tuu2014&v9=mp_de-de&v10=mp_de-de&c14=tuneup.de&c16=New&v16=New&v17=tuneup.de&c18=http://www.tuneup.de/services/whats-new/tuu2014/&c19=install_success&c21=1&v24=+10&c25=HIT&v26=mp_de-de&c28=http&c29=1|19:00&c30=1-12&v31=2015010517&c35=0|0|&c36=0|0|0|1|&c38=Install&s=1716x901&c=24&j=1.6&v=Y&k=Y&bw=1716&bh=804&ct=lan&hp=N&AQE=1
hxxp://instlxml1.sa.aol.com/b/ss//6
hxxp://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTtSK3dy3sA4g6EKqm0CfGsMDTPlgQUUOpzidsp+xCPnuUBINTeeZlIg/cCEAJwu3i4ZpYdN6xM1SVvBys=
hxxp://download.newaol.com:80/clients/bush/waol/0.4343.19.1/comps/acs/instph.dll 149.174.97.123
hxxp://vassg141.ocsp.omniroot.com/MFUwUzBRME8wTTAJBgUrDgMCGgUABBS856ddZAq5lE7vDJmoUDW1u98SMAQU3WyAfLq1MhelhEFA8NIEZhMvqZACFGozgiJkrf5JafrJHx/pwJ6+De+O
hxxp://www.tuneup.de/uploads/pics/ico_alpha_DiscCleaner_128x128_02.png
hxxp://www.tuneup.de/uploads/pics/ico_alpha_FlightMode_128x128.png
hxxp://crl.microsoft.com/pki/crl/products/microsoftrootcert.crl
hxxp://cdn3.opencandy.com/p/583/ius/TuneUpUtilities2014WORLDW1D_en-US.exe 95.101.0.107
hxxp://metrics.tuneup.de/b/ss/tuneupdev/1/H.23.6/s59128751490513?AQB=1&ndh=1&t=5/0/2015 19:15:24 1 -120&ce=UTF-8&ns=tuneupdistribution&pageName=mp:de:services:whats-new:tuu2014&g=http://www.tuneup.de/services/whats-new/tuu2014/&cc=EUR&ch=services&server=88.221.132.203&v0=mp_de-de&events=event16,event27&c1=services:whats-new&c2=services:whats-new:tuu2014&c3=services:whats-new:tuu2014&v3=mp:de:services:whats-new:tuu2014&c4=services:whats-new:tuu2014&v9=mp_de-de&v10=mp_de-de&c14=tuneup.de&c16=New&v16=New&v17=tuneup.de&c18=http://www.tuneup.de/services/whats-new/tuu2014/&c19=install_success&c21=1&v24=+10&c25=HIT&v26=mp_de-de&c28=http&c29=1|19:00&c30=1-12&v31=2015010517&c35=0|0|&c36=0|0|0|1|&c38=Install&s=1716x901&c=24&j=1.6&v=Y&k=Y&bw=1716&bh=804&ct=lan&hp=N&AQE=1
hxxp://www.tuneup.de/uploads/pics/ico_alpha_DuplicateFinder_128x128.png
hxxp://clients1.google.com/ocsp/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBTy4Gr5hYodjXCbSRkjeqm1Gih+ZAQUSt0GFhu89mi1dvWBtrtiGrpagS8CCAD9M+oC6dVe
hxxp://ocsp.godaddy.com/MEMwQTA/MD0wOzAJBgUrDgMCGgUABBTkIInKBAzXkF0Qh0pel3lfHJ9GPAQU0sSw0pHUTBFxs2HLPaH+3ahq1OMCAgMB
hxxp://www.tuneup.de/uploads/pics/ico_alpha_UserInterface_128x128.png
hxxp://www.googleadservices.com/pagead/conversion/1069401893/?random=1420478125198&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://www.tuneup.de/services/whats-new/tuu2014/&vis=1
hxxp://ui.skype.com/ui/0/7.0.0.102.550/en/getnewestversion?defaultbrowser=ie
hxxp://ocsp.verisign.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTSqZMG5M8TA9rdzkbCnNwuMAd5VgQUz5mp6nsm9EvJjo/X8AUm7+PSp50CECAKfRxMDvODER0cHOAslgg=
hxxp://www.tuneup.de/fileadmin/images/services/whats_new/bgTeaserBlog.png?1365499180
ipv4only.arpa 192.0.0.170
zuul-test.cloudapp.net 191.238.101.181


IDS verdicts (Suricata alerts: Emerging Threats ET ruleset)

SURICATA UDPv4 invalid checksum
SURICATA IPv4 invalid checksum
ET MALWARE W32/OpenCandy Adware Checkin
ET POLICY Executable served from Amazon S3
ET POLICY User-Agent (NSIS_Inetc (Mozilla)) - Sometimes used by hostile installers
ET TROJAN VMProtect Packed Binary Inbound via HTTP - Likely Hostile
ET CHAT Skype User-Agent detected
SURICATA STREAM SHUTDOWN RST invalid ack
SURICATA STREAM Packet with invalid ack
ET SHELLCODE Possible TCP x86 JMP to CALL Shellcode Detected

Traffic

GET /b/ss/tuneupdev/1/H.23.6/s59128751490513?AQB=1&ndh=1&t=5/0/2015 19:15:24 1 -120&ce=UTF-8&ns=tuneupdistribution&pageName=mp:de:services:whats-new:tuu2014&g=http://VVV.tuneup.de/services/whats-new/tuu2014/&cc=EUR&ch=services&server=88.221.132.203&v0=mp_de-de&events=event16,event27&c1=services:whats-new&c2=services:whats-new:tuu2014&c3=services:whats-new:tuu2014&v3=mp:de:services:whats-new:tuu2014&c4=services:whats-new:tuu2014&v9=mp_de-de&v10=mp_de-de&c14=tuneup.de&c16=New&v16=New&v17=tuneup.de&c18=http://VVV.tuneup.de/services/whats-new/tuu2014/&c19=install_success&c21=1&v24=+10&c25=HIT&v26=mp_de-de&c28=http&c29=1|19:00&c30=1-12&v31=2015010517&c35=0|0|&c36=0|0|0|1|&c38=Install&s=1716x901&c=24&j=1.6&v=Y&k=Y&bw=1716&bh=804&ct=lan&hp=N&AQE=1 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: metrics.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: s_sess= s_cc=true; pLoadTime=; ev16=New; s_gvo=1; v17=tuneup.de; s_camp=mp_de-de; s_ppv=0; pCopTxt=; s_sq=;; s_pers= s_gpv_pn=mp%3Ade%3Aservices%3Awhats-new%3Atuu2014|1420479924805; s_nr=1420478124808-New|1423070124808; ev10=%5B%5B'mp_de-de'%2C'1420478124816'%5D%5D%
HTTP/1.1 302 Found
Date: Mon, 05 Jan 2015 17:15:48 GMT
Server: Omniture DC/2.0.0
Access-Control-Allow-Origin: *
Set-Cookie: s_vi=[CS]v1|2A55636205011053-6000011660000A31[CE]; Expires=Wed,  4 Jan 2017 17:15:48 GMT; Domain=.tuneup.de; Path=/
Location: hXXp://metrics.tuneup.de/b/ss/tuneupdev/1/H.23.6/s59128751490513?AQB=1&pccr=true&vidn=2A55636205011053-6000011660000A31&&ndh=1&t=5/0/2015 19:15:24 1 -120&ce=UTF-8&ns=tuneupdistribution&pageName=mp:de:services:whats-new:tuu2014&g=http://VVV.tuneup.de/services/whats-new/tuu2014/&cc=EUR&ch=services&server=88.221.132.203&v0=mp_de-de&events=event16,event27&c1=services:whats-new&c2=services:whats-new:tuu2014&c3=services:whats-new:tuu2014&v3=mp:de:services:whats-new:tuu2014&c4=services:whats-new:tuu2014&v9=mp_de-de&v10=mp_de-de&c14=tuneup.de&c16=New&v16=New&v17=tuneup.de&c18=http://VVV.tuneup.de/services/whats-new/tuu2014/&c19=install_success&c21=1&v24=+10&c25=HIT&v26=mp_de-de&c28=http&c29=1|19:00&c30=1-12&v31=2015010517&c35=0|0|&c36=0|0|0|1|&c38=Install&s=1716x901&c=24&j=1.6&v=Y&k=Y&bw=1716&bh=804&ct=lan&hp=N&AQE=1
X-C: ms-4.9.2
Expires: Sun, 04 Jan 2015 17:15:48 GMT
Last-Modified: Tue, 06 Jan 2015 17:15:48 GMT
Cache-Control: no-cache, no-store, max-age=0, no-transform, private
Pragma: no-cache
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www179
Content-Length: 0
Keep-Alive: timeout=15
Connection: Keep-Alive
Content-Type: text/plain
....

<<< skipped >>>

GET /b/ss/tuneupdev/1/H.23.6/s59128751490513?AQB=1&pccr=true&vidn=2A55636205011053-6000011660000A31&&ndh=1&t=5/0/2015 19:15:24 1 -120&ce=UTF-8&ns=tuneupdistribution&pageName=mp:de:services:whats-new:tuu2014&g=http://VVV.tuneup.de/services/whats-new/tuu2014/&cc=EUR&ch=services&server=88.221.132.203&v0=mp_de-de&events=event16,event27&c1=services:whats-new&c2=services:whats-new:tuu2014&c3=services:whats-new:tuu2014&v3=mp:de:services:whats-new:tuu2014&c4=services:whats-new:tuu2014&v9=mp_de-de&v10=mp_de-de&c14=tuneup.de&c16=New&v16=New&v17=tuneup.de&c18=http://VVV.tuneup.de/services/whats-new/tuu2014/&c19=install_success&c21=1&v24=+10&c25=HIT&v26=mp_de-de&c28=http&c29=1|19:00&c30=1-12&v31=2015010517&c35=0|0|&c36=0|0|0|1|&c38=Install&s=1716x901&c=24&j=1.6&v=Y&k=Y&bw=1716&bh=804&ct=lan&hp=N&AQE=1 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: metrics.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: s_sess= s_cc=true; pLoadTime=; ev16=New; s_gvo=1; v17=tuneup.de; s_camp=mp_de-de; s_ppv=0; pCopTxt=; s_sq=;; s_pers= s_gpv_pn=mp%3Ade%3Aservices%3Awhats-new%3Atuu2014|1420479924805; s_nr=1420478124808-New|1423070124808; ev10=%
HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:48 GMT
Server: Omniture DC/2.0.0
Access-Control-Allow-Origin: *
Set-Cookie: s_vi=[CS]v1|2A55636205011053-6000011660000A31[CE]; Expires=Wed,  4 Jan 2017 17:15:48 GMT; Domain=.tuneup.de; Path=/
X-C: ms-4.9.2
Expires: Sun, 04 Jan 2015 17:15:48 GMT
Last-Modified: Tue, 06 Jan 2015 17:15:48 GMT
Cache-Control: no-cache, no-store, max-age=0, no-transform, private
Pragma: no-cache
ETag: "54AAC6C4-73FC-398D6E4E"
Vary: *
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www1652
Content-Length: 43
Keep-Alive: timeout=15
Connection: Keep-Alive
Content-Type: image/gif
GIF89a.............!.......,............Q.;HTTP/1.1 200 OK..Date: Mon,
05 Jan 2015 17:15:48 GMT..Server: Omniture DC/2.0.0..Access-Control-A
llow-Origin: *..Set-Cookie: s_vi=[CS]v1|2A55636205011053-6000011660000
A31[CE]; Expires=Wed, 4 Jan 2017 17:15:48 GMT; Domain=.tuneup.de; Pat
h=/..X-C: ms-4.9.2..Expires: Sun, 04 Jan 2015 17:15:48 GMT..Last-Modif
ied: Tue, 06 Jan 2015 17:15:48 GMT..Cache-Control: no-cache, no-store,
max-age=0, no-transform, private..Pragma: no-cache..ETag: "54AAC6C4-7
3FC-398D6E4E"..Vary: *..P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR
NID PSA OUR IND COM NAV STA"..xserver: www1652..Content-Length: 43..K
eep-Alive: timeout=15..Connection: Keep-Alive..Content-Type: image/gif
..GIF89a.............!.......,............Q.;..


GET /templates/3596/0/60635.png HTTP/1.1
Connection: Keep-Alive
Accept: */*
Host: cdn3.opencandy.com


HTTP/1.1 200 OK
x-amz-id-2: r54Rn NXrBf4jRScfjlGpRSOrB6OvMCDB1DU 7QsC0rM5xFlRv81LSmZI2bdiB53
x-amz-request-id: C5108468258748E9
Last-Modified: Mon, 22 Dec 2014 22:28:04 GMT
ETag: "2bdab91834651e570f606dff3df76f64"
Accept-Ranges: bytes
Content-Type: image/png
Content-Length: 25865
Server: AmazonS3
Cache-Control: max-age=19
Date: Mon, 05 Jan 2015 17:14:03 GMT
Connection: keep-alive
.PNG........IHDR.......h........a.. .IDATx...{|S.....I.4m....j-.....".
......P....C....Wt~q..!*.KE..q.NED....q.ET. 0V..B.... ..I...4!ms......
|<.......s..999o...XE.!........B.!~j$..!...&.U.!..0..B.!D.Ip.B.!...
.WU.....B.<......AM)...sT.P.b?......q....Zc..-JHL .,..B\...\.U...?%
...(.|[email protected] .[..X....G_...!..W..)7.......<.b,.=([email protected]
>..(............t.....E...B.qe..;...C.O.C1.a........<X..j.m...@o
.}...z.V..`.~...B.!.....\....d..Cp.....&.......;.....`.......C...\....
G...<.!..... .V.....5(F.s..[...e....3.*A....>.g....m..?A`;N..a8r
^G.[/.h..B. @...QU....<j.J ..!..c.....?...E.}....o}h$1......q....Q.
.../.p..B...gpu.Tp~.|B..G1......tu.z...r8uV.....g..........;..v..PU...
...B=....~..&..B\.>..c.....C.6.P.`...v./.a..#Az...z...EMg.u<.Z.=
....P..3t;.P..Qw.....l.}..&..B\..G..k9...c.>...'6z#X:.<..r~.....
...E..7.s.........g....L*8.....*O.l...`:.....TUu...V.5.`-.."...(..PJ.C
....|.....<...Lll,..v.G..mt9....q..Z.......1...w.}...._}....g..>
....7Z.JMM%"".........RQQADD....u^_.h.iii...s.=...........j.Jq..x%.e .
...............x1h..Vd..d..L..CP......../:..k_..w.9.......2.~.s..}.=$j
.*(*..jle...-.Q.9JIk.9...:[.:]5.b.[....k1ju9...%,..N..D...w..e..7..^z.
.n....*^}.UF.....{i.....6..M.6.... W.m.6...[T.._}........(.j.k.....[,.
.{.=z..i....kos..Zce/F.D.\.u.\.k].o.57....^.Z.^.^.Z.......QU...*t.....
..y....E..w7;7tw..3....c.[..p8.T..#V;`w._..Z.......%.........L#..1.g..
...QN..y...........s...A..?...h...V .g.f.....6...DDD..f..[.n|..7.l...^
.za6..7n....w...........?-Z.`.IIIDEE..gOv.......D* ..o~..-[.....&

<<< skipped >>>

GET /p/1186/dc/du340b.exe HTTP/1.1

Connection: Keep-Alive
Accept: */*
Host: cdn3.opencandy.com


HTTP/1.1 200 OK
x-amz-id-2: c5HEbcgB74NJ1p0t6YG2WrT1mqv FLQD30KkPBw9U8uTnZDtjDQboFoVlaeQLG5 ShV4TFGzP8w=
x-amz-request-id: 80C486206CA8B6F0
Last-Modified: Tue, 16 Dec 2014 23:53:28 GMT
ETag: "f0b3c151c25cc5fd45cd63ecda01d5fa"
Accept-Ranges: bytes
Content-Type: binary/octet-stream
Content-Length: 308696
Server: AmazonS3
Cache-Control: max-age=89
Date: Mon, 05 Jan 2015 17:14:38 GMT
Connection: keep-alive
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$.......4...pO..pO..
pO..n...uO......tO..y7..>O..y7..PO..y7..rN..y7..mO..pO..6N..y7..^O.
.n...qO..y7..qO..RichpO..........PE..L......T.........................
[email protected]......;.....@............
.....................0a.. .......0...................Pd...............
......................................................................
.UPX0....................................UPX1.........................
[email protected]...............................@......................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..........3.07.UPX!..........\a............I......*..]...F..D. .m....M
..........2z....q..E?...<...;..z..).wt....V....q.3.s.[5.q....W.2]..
...."/.X.....Nn.......)....h..;....l..C.I/...8.]<%q.....bFi9..%.w.f
...B..]BO.ER...............3...=........\...qt..m......J4..:..Qn.f....
...l.z.. .........=.$SEzFxct..........o... m......Z.Ru.~........b..c..
.....R....sH..}.......7|....yp.o.A{...RQ..^.'.N...-Ig..|*\.'....Z../..
...Z.......s..3..K....gE.)..d.F.6._.....N......q.9.^...NoL.....Z......
...^...^...........'B....Q..a.....j.:)..Q.l.{K.......'...K.....'.(

<<< skipped >>>

GET /p/583/icons/TuneUpUtilities.ico HTTP/1.1
Host: cdn3.opencandy.com
Accept: */*


HTTP/1.1 200 OK
x-amz-id-2: IDvjN7Z/SJqaj2YxLRseuvhnowxEHglO7x7bZy2yS1qMsYC3UFuUvZkO40b04  Jvlego5svsHM=
x-amz-request-id: DB0A17B47605C667
Last-Modified: Wed, 07 Nov 2012 20:44:31 GMT
ETag: "4cb9a9272629ef190f39b935448170aa"
Accept-Ranges: bytes
Content-Type: binary/octet-stream
Content-Length: 64710
Server: AmazonS3
Cache-Control: max-age=273
Date: Mon, 05 Jan 2015 17:15:21 GMT
Connection: keep-alive
[email protected]...........@..  ..........v]..........h....j..
HH.... ..T...m..00.... ..%...... .... ............... .h...^...(...H.
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
........................w..l..i..\..H..8..2.....(..!..$.. ..;.........
......................................................................
......................................................................
............>...x..x..x..w..x..x..x..x..x..x..x..x..x..x..z..y.....
.....c................................................................
......................................................................
......................................................................
.............Sv..1..*..$..!..%....Tt..................................
........b.............................................................
......................................................................
.............Km. 7........$..'..........-@............................
......................................................................
..................................................................

<<< skipped >>>

GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_encapsulated_offer_installed&offer_id=7861&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&v=1.0&signature=d169c9878c48de71f03478b05406e426 HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:19 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:15:19 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
64..<?xml version="1.0"?><track_offer_installed><operat
ion>Completed</operation></track_offer_installed>..0..


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/setup.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:32 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 169288
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:32 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/AcsInstA.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:14 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 46408
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:14 GMT
Keep-Alive: timeout=2, max=97
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /ads/conversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1280476108 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com


HTTP/1.1 302 Found
Location: hXXp://VVV.google.com.ua/ads/conversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1280476108&ipr=y
Cache-Control: private, max-age=43200
Date: Mon, 05 Jan 2015 17:15:48 GMT
Expires: Mon, 05 Jan 2015 17:15:48 GMT
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 724
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
<HTML><HEAD><meta http-equiv="content-type" content="te
xt/html;charset=utf-8">.<TITLE>302 Moved</TITLE></HE
AD><BODY>.<H1>302 Moved</H1>.The document has mov
ed.<A HREF="hXXp://VVV.google.com.ua/ads/conversion/1069401893/?ran
dom=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&
value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid
=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&am
p;u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&
;frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&
vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct
=2&convclickts=0&random=1280476108&ipr=y">here</A>
;...</BODY></HTML>....

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/waol-0.4343.19.1.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:23 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1584976
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:23 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /DBScripts/conversion_currency.asp?wm_DSMM_client=AVGTechnologies&wm_DSMM_ckid=1420478124830&wm_DSMM_ctid_PPC=null&wm_DSMM_kwid_PPC=null&wm_DSMM_referrer_PPC=null&wm_DSMM_referrerDomain_PPC=null&wm_DSMM_lpid_PPC=null&wm_DSMM_crid_PPC=null&wm_DSMM_venue_crid_PPC=null&wm_DSMM_venue_id_PPC=null&wm_DSMM_defaultURL_PPC=null&wm_DSMM_serverredirect_PPC=null&wm_DSMM_mtid_PPC=null&wm_DSMM_landingPage_PPC=null&wm_DSMM_landingPage_SEO=null&wm_DSMM_referrer_SEO=null&wm_DSMM_referrerDomain_SEO=null&wm_DSMM_orderID=tu-install&wm_DSMM_Revenue=0&wm_DSMM_ConversionType=13&wm_DSMM_TrackAllConversions=false&wm_DSMM_CookieTypeUsed=3&wm_DSMM_ConversionPage=http://VVV.tuneup.de/services/whats-new/tuu2014/&wm_DSMM_ConversionReferrerPage=&wm_DSMM_Currency=&wm_DSMM_dvid_PPC=null HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: tracking.dsmmadvantage.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html
Content-Encoding: gzip
Vary: Accept-Encoding
Server: Microsoft-IIS/7.5
Set-Cookie: ASPSESSIONIDQATTCTDA=ACNGHMFBHKOGAAJHCJKBHJKH; path=/
X-Powered-By: ASP.NET
p3p: policyref="/w3c/p3p.xml",CP="NOI DSP COR NID CUR OUR STP UNI"
Date: Mon, 05 Jan 2015 17:15:47 GMT
Content-Length: 208
.............`.I.%&/m.{.J.J..t...`[email protected]#).*..eVe]f.@......{
....{....;.N'...?\fd.l..J...!....?~|.?"...Ey..'..y6...h............./.
H....m..H...U.>...i....:}..WU.7........5.f...7NR.....M..g.......{..
.HTTP/1.1 200 OK..Cache-Control: private..Content-Type: text/html..Con
tent-Encoding: gzip..Vary: Accept-Encoding..Server: Microsoft-IIS/7.5.
.Set-Cookie: ASPSESSIONIDQATTCTDA=ACNGHMFBHKOGAAJHCJKBHJKH; path=/..X-
Powered-By: ASP.NET..p3p: policyref="/w3c/p3p.xml",CP="NOI DSP COR NID
CUR OUR STP UNI"..Date: Mon, 05 Jan 2015 17:15:47 GMT..Content-Length
: 208...............`.I.%&/m.{.J.J..t...`[email protected]#).*..eVe]f.@
......{....{....;.N'...?\fd.l..J...!....?~|.?"...Ey..'..y6...h........
...../.H....m..H...U.>...i....:}..WU.7........5.f...7NR.....M..g...
....{.....


GET /p/883/icons/Skype.ico HTTP/1.1
Host: cdn3.opencandy.com
Accept: */*


HTTP/1.1 200 OK
x-amz-id-2: SBobmyg9nfiFCAkKg7jLCJeqxKEg4y/c oVV5boapEnI0W4 /Xj PGWw5DVRv63amONT3HPbP1M=
x-amz-request-id: 6245075062FDAC3B
Last-Modified: Fri, 08 Mar 2013 19:06:01 GMT
ETag: "dc18592798a53cd013d3bab799cef366"
Accept-Ranges: bytes
Content-Type: binary/octet-stream
Content-Length: 64710
Server: AmazonS3
Cache-Control: max-age=52
Date: Mon, 05 Jan 2015 17:14:40 GMT
Connection: keep-alive
[email protected]...........@..  ..........v]..........h....j..
HH.... ..T...m..00.... ..%...... .... ............... .h...^...(...H.
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
.................................................s..K..D..F..]........
......................................................................
......................................................................
...........................................V..........................
.........3............................................................
......................................................................
.......t..D..6..*.. .. ..*..6..D..t........%..........................
........................o.............................................
......................................................................
.............. .......................................................
......................................................................
....................................R.................................
......................................................................
......................................................................
..................................................................

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/browser/aolbwsrlp.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:15 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 106160
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:15 GMT
Keep-Alive: timeout=2, max=96
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...<.6D.................|...........;...
[email protected].................................
......................`..............`...P............................
................................................................text..
.bz.......|.................. ..`.rdata...3.......4..................@
[email protected][email protected].....................
..............rsrc........`......................@..@.................
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
t.@..}..e....@[email protected]... M.........3..M.....FQ.....NU..M..
........VT..U.....FP..E...............E.P.M...D.@..E..P.E..E.P.u...x.@
..u....E..9}[email protected].}[email protected]
[email protected][email protected] ....E..E.Pj.h..B.W..|[email protected].....@._
^3.[.....L$....B...i......T.....tUVW.q.3.;5..B.sD..i......D..S.....t.G
.....t...O..t .....u...3....3...F.....;5..B.r.[_^...U..QQ.U.SV..i.

<<< skipped >>>

GET /typo3temp/minify/ebacc5180d_minify__merged.js HTTP/1.1
Accept: application/javascript, */*;q=0.8
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Server: nginx
Content-Type: application/javascript
Last-Modified: Tue, 27 May 2014 08:18:57 GMT
ETag: "53844a71-39d87"
X-AVG: web-tuu-dus004.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Vary: Accept-Encoding
Content-Encoding: gzip
Content-Length: 75144
Cache-Control: max-age=472962
Expires: Sun, 11 Jan 2015 04:38:29 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
............mc.6.(.}.....d....8.dX'.....=M.....R$%..H..d...o.3...)9i..
..nd....`0o..''Gm...}.}.......W.0.g.W.....,L..*.s......e.fG.,.......x.
...[$Y.MSL.j%~.2..Y.|...V.r.0.m*../.0.u...Sn..p.....<..GPW..Aq.n.FI
.dF.U.w....pf5>......A.....Rs.m...%..*...h.....k..%...1..Q.hI}H..l.
{...M.U.]..X.".az.x... R..C...r.=.i..........y..X1..7 X..,......y..g..
x...Z....l....6..{....,{.e.....B...c*..,(VY|....x..e...yC...}hEA ...F.
W.UC........b1.%...!...sH...#>..<.....ix....._#..p..~......,....
..=... .x..:.v..x.........8.1,Q.C.W]......L...........V...FEb..C.x...,
.`.....v.....D..n......_<W.=]....>.W..w..:..(..0NWr4.U...r.`...(
e.!ek7Z.,...;.[.Q`.....!.....N...[.......9`.->=PU_......?.?.n-...g.
..=..Gqpw.....w..x.....v......G..(....H?..`....H..;U............b.....
..|!..IW.B|.M1.7.......(./._./...(.`...*#|@..r.5....6W..{...H.......y[
..J.....m......Z {....$.-.....V..#.....L..(..)B7........4...?......e..
...M...~S7....(..S.. j(`F..|t7./..7..?}!......y.{..P..........R.Av.K.O
_.I.................s.....a.y..qY..f.;/ ..~.y......v..0..wa.<....wS
.:.....e../r6...(.e 0z3...L.}....,J..)...e.....-.p.^....d.............
. .m........a..P.J# ...S.qz............>.=k............9.mA.cY.X...
"4..Bv.... .^g.,..._....a...My.~...*.......^(7f.=...:...k.?I.....0..V
s."{.Se...f.>U.T.j......l~.Y..!.O....(..q......2t.k..j..zv)'....[{.
........^.L..A*.H..].#,l4...j.,....u..;..No...w....~...g...=vCd;...a..
....Y.W.8.@...[=.....5^./t=...'*p!..C..m%'......sk........P...;.t.*...
.nX..s.t5..8..........7m.:..9..i..7..;. .......I....W..*.5.tzb*...

<<< skipped >>>

POST /b/ss//6 HTTP/1.1
Host: instlxml1.sa.aol.com
Connection: close
Content-Length: 498

<?xml version="1.0" encoding="UTF-8"?><request><reportsuiteid>aoljet</reportsuiteid><pagename>cmp : Roadie - Download Start</pagename><products>;waol_0.4343.19.1</products><events>prodview</events><prop1>cmp :</prop1><prop2>cmp :</prop2><prop49>xml api</prop49><eVar5>Download | Roadie  | waol_0.4343.19.1 | Download Start</eVar5><prop16>Roadie | Download Start | waol_0.4343.19.1</prop16><visitorid>7119412490101760-284726882154462</visitorid><prop3>gmt_5</prop3><prop24>uaid_na</prop24></request>
HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:48 GMT
Server: Omniture DC/2.0.0
Access-Control-Allow-Origin: *
X-C: ms-4.9.2
Expires: Sun, 04 Jan 2015 17:14:48 GMT
Last-Modified: Tue, 06 Jan 2015 17:14:48 GMT
Cache-Control: no-cache, no-store, max-age=0, no-transform, private
Pragma: no-cache
ETag: "54AAC688-72DB-305FE737"
Vary: *
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www25
Content-Length: 64
Content-Type: text/xml
Connection: close
<?xml version="1.0" encoding="UTF-8"?>.<status>SUCCESS<
/status>...


GET /ads/conversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=822544588 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com


HTTP/1.1 302 Found
Location: hXXp://VVV.google.com.ua/ads/conversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=822544588&ipr=y
Cache-Control: private, max-age=43200
Date: Mon, 05 Jan 2015 17:15:49 GMT
Expires: Mon, 05 Jan 2015 17:15:49 GMT
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 723
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
<HTML><HEAD><meta http-equiv="content-type" content="te
xt/html;charset=utf-8">.<TITLE>302 Moved</TITLE></HE
AD><BODY>.<H1>302 Moved</H1>.The document has mov
ed.<A HREF="hXXp://VVV.google.com.ua/ads/conversion/1022173009/?ran
dom=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&
value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid
=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&am
p;u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&
;frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&
vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct
=2&convclickts=0&random=822544588&ipr=y">here</A>
...</BODY></HTML>....

<<< skipped >>>

GET /p/883/ius/syesubc3_p2v3.exe HTTP/1.1
Host: cdn3.opencandy.com
Accept: */*


HTTP/1.1 200 OK
x-amz-id-2: YhN4lCZ8/e/eqwyzd9zxuxxBJgCPrO7oo8u9 S2zY2BNAMe4G3UnZL4onUEB6dtI
x-amz-request-id: 81287FC9DB7682A4
Last-Modified: Tue, 16 Dec 2014 16:59:02 GMT
ETag: "7d92f9cf0e121e7fb72da522f7fcd6cb"
Accept-Ranges: bytes
Content-Type: binary/octet-stream
Content-Length: 65008
Server: AmazonS3
Cache-Control: max-age=41
Date: Mon, 05 Jan 2015 17:14:40 GMT
Connection: keep-alive
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$.......A{.k...8...8
...8.b<8...8.b,8...8...8...8...8...8..%8...8.."8...8Rich...8.......
.PE..L.....GO.................n.......B...8............@..............
[email protected]..........
.............8...........d............................................
........................................text....m.......n.............
..... ..`.rdata..b*.......,...r..............@[email protected]....~...........
[email protected]......
.........................@[email protected][email protected].
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
..@..}[email protected]... M..........M........E...FQ.....NU
..M.......M...VT..U........FP..E...............E.P.M...H.@..E..P.E..E.
[email protected]}[email protected].}.j.W.E......E.....
[email protected][email protected][email protected] [email protected].
u.....@._^3.[.....L$...-G...i. @...T.....tUVW.q.3.;5.-G.sD..i. @...D..
S.....t.G.....t...O..t .....u...3....3...F. @..;5.-G.r.[_^...U..QQ

<<< skipped >>>

GET /templates/7861/0/61113.png HTTP/1.1
Connection: Keep-Alive
Accept: */*
Host: cdn3.opencandy.com


HTTP/1.1 200 OK
x-amz-id-2: GOsZXI4aL9VbL54e4OJmvnb6nHVcL7yodb1Z1J/ZQxc3GqFGF/DLBo7 Pgao vzJ
x-amz-request-id: ACA3AEA9DCBAE64C
Last-Modified: Mon, 22 Dec 2014 21:03:05 GMT
ETag: "e6af697014842a0403b58b31b72d67e3"
Accept-Ranges: bytes
Content-Type: image/png
Content-Length: 16888
Server: AmazonS3
Cache-Control: max-age=300
Date: Mon, 05 Jan 2015 17:14:03 GMT
Connection: keep-alive
.PNG........IHDR............."4.... [email protected].
$..8.......,......C.ETD...D.M...5...!.-... $..0.e2..~.T...}..v....|..&
gt;3.ou....u.... ...EQ.EI...?"RZN.-......."p..u.....A/D.EQ.8H6`..\.[..
..../4..Q|.C.....(J.J...-....Hu*.u. "..._.v.&.....l.z...$...4.*..(qH#.
.......2.w.(6.%\.v.... ......q.7.6.V..h.[............8............(J..
...-..h.[Ic...`...1.8....n.wO .=..q..8....S...p).u...O...T..f.p(.u..W.
84.*..(q....-....g....u.K.<..0.}.....=..X......[=..w.z..r3p.p.7..,.
...nqh....`.`/..s...x.x........UQ.E.Cnpml..h.....?.n..*......0./..`.0.
..{q.c.t.&d.........>..xx....u/kpU.EQ...\.Z7...&... .. ..6l......`.
.......S.MQ.E..Tx..!!..\......Q9.W..c......t...nVw...m3....T.`u......S
F1...|.#0..<...lY..6C..N..RE{7...u|.a.2....*.2...n...n..w...kO....Q
.p...v.-g\...ex}u.....%....... ..[.......z...N3fI...84VE.EQ...op=6(...
.f..l36.6.....ov....#..vl....a.Q....;V3.....Y%;<..nO..U...;...6...
F1...?.J....U.........._y.....>.LU.\.c5.N.Euy.m.=.......r; :..O....
.8s.J.t.....iI....*..(...\....km9..360 e...~.......(..}...V.7......a9O
....6}.......V.C7...[U..V.MF...9...^..e]T..........V..7..b...9..5..0..
4..4T.=E..! EQ.e=..qV.{..;.....Z....u.......s....z{mXAgO..pm.p..csF.o.
.....{_..8tBeNp=xBx0.z.....nn[.IM.p....`\Y...>.m.Z....:'..[..O^mgnk
7.G.q...8h......\..h...Z.....v..ag...5HQ.EQ<xGc....q....._j...;.si'
?...>.....=..2...uy.W..m{.a.....~{...^.o..M../...I...n..kr..>...
=.[...........U,n.K...2N.\.ySF.n{om..zb5.-...5=<....f.......O....J.
....i?m....N^..EQ.%.o.....J..J..9.ol]..7(.L....L}x...^...w.e~.n...

<<< skipped >>>

GET /p/1186/dc/du340b.exe HTTP/1.1

Connection: Keep-Alive
Accept: */*
Host: cdn3.opencandy.com


HTTP/1.1 200 OK
x-amz-id-2: c5HEbcgB74NJ1p0t6YG2WrT1mqv FLQD30KkPBw9U8uTnZDtjDQboFoVlaeQLG5 ShV4TFGzP8w=
x-amz-request-id: 80C486206CA8B6F0
Last-Modified: Tue, 16 Dec 2014 23:53:28 GMT
ETag: "f0b3c151c25cc5fd45cd63ecda01d5fa"
Accept-Ranges: bytes
Content-Type: binary/octet-stream
Content-Length: 308696
Server: AmazonS3
Cache-Control: max-age=89
Date: Mon, 05 Jan 2015 17:14:39 GMT
Connection: keep-alive
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$.......4...pO..pO..
pO..n...uO......tO..y7..>O..y7..PO..y7..rN..y7..mO..pO..6N..y7..^O.
.n...qO..y7..qO..RichpO..........PE..L......T.........................
[email protected]......;.....@............
.....................0a.. .......0...................Pd...............
......................................................................
.UPX0....................................UPX1.........................
[email protected]...............................@......................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..........3.07.UPX!..........\a............I......*..]...F..D. .m....M
..........2z....q..E?...<...;..z..).wt....V....q.3.s.[5.q....W.2]..
...."/.X.....Nn.......)....h..;....l..C.I/...8.]<%q.....bFi9..%.w.f
...B..]BO.ER...............3...=........\...qt..m......J4..:..Qn.f....
...l.z.. .........=.$SEzFxct..........o... m......Z.Ru.~........b..c..
.....R....sH..}.......7|....yp.o.A{...RQ..^.'.N...-Ig..|*\.'....Z../..
...Z.......s..3..K....gE.)..d.F.6._.....N......q.9.^...NoL.....Z......
...^...^...........'B....Q..a.....j.:)..Q.l.{K.......'...K.....'.(

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/AcsInstA.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:15 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 46408
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:15 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$........b..N...N...
N...]...O...!...L.......M...!...J...K...O.......X...]...L.......I...N.
..........L.......O.......O.......O...RichN...........................
PE..L...x.<[email protected].................
.....................yo...............................f..j...h^..x....
...................H............Q.....................................
..........P..x............................text....9.......@...........
....... ..`.rdata..j....P... ...P..............@[email protected].....
[email protected]...............................@[email protected]
[email protected].......................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..................................................................

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/acs/instSup.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:22 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 75088
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:22 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /crls/secureca.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.geotrust.com


HTTP/1.1 200 OK
Server: Apache
ETag: "97b01f301bc9a51397b6f0192cafab53:1420476615"
Last-Modified: Mon, 05 Jan 2015 16:50:15 GMT
Date: Mon, 05 Jan 2015 17:15:48 GMT
Content-Length: 878
Connection: keep-alive
Content-Type: application/pkix-crl
0..j0...0...*.H........0N1.0...U....US1.0...U....Equifax1-0 ..U...$Equ
ifax Secure Certificate Authority..150105164300Z..150115164300Z0..R0..
..X...140427081922Z0....v...140618150003Z0........140429180917Z0......
..140709194633Z0........140416233935Z0........140521155053Z0.....)..14
0617185515Z0....Bf..120627171053Z0.....3..020515130611Z0.....#..140606
204021Z0........100729164439Z0....x...140507204001Z0........1406062221
39Z0....%...020514181157Z0....S...140423105438Z0........140725020038Z0
........100729164732Z0....M\..140430000442Z0.....-..140617185011Z0....
V...140624123102Z0........120627171025Z0........100301134531Z0........
140618143256Z0........120627171017Z0.....>..140711125531Z0....[...1
00730213120Z0....j...140226123519Z0...*.H.............S..Y.G..!.G.....
...._...'.u..-.p.Yx..5...c...fa......6t.5.<.G.....9.o.q Y......F.4.
.S.N.I...R.d.hE................D.$...r<....6HTTP/1.1 200 OK..Server
: Apache..ETag: "97b01f301bc9a51397b6f0192cafab53:1420476615"..Last-Mo
dified: Mon, 05 Jan 2015 16:50:15 GMT..Date: Mon, 05 Jan 2015 17:15:48
GMT..Content-Length: 878..Connection: keep-alive..Content-Type: appli
cation/pkix-crl..0..j0...0...*.H........0N1.0...U....US1.0...U....Equi
fax1-0 ..U...$Equifax Secure Certificate Authority..150105164300Z..150
115164300Z0..R0....X...140427081922Z0....v...140618150003Z0........140
429180917Z0........140709194633Z0........140416233935Z0........1405211
55053Z0.....)..140617185515Z0....Bf..120627171053Z0.....3..02051513061
1Z0.....#..140606204021Z0........100729164439Z0....x...14050720400

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/toolbar/aol_toolbar.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:17:00 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 3806192
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:27:00 GMT
Keep-Alive: timeout=2, max=98
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /MFUwUzBRME8wTTAJBgUrDgMCGgUABBS856ddZAq5lE7vDJmoUDW1u98SMAQU3WyAfLq1MhelhEFA8NIEZhMvqZACFGozgiJkrf5JafrJHx/pwJ6+De+O HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: vassg141.ocsp.omniroot.com


HTTP/1.1 200 OK
Server: nginx
Content-Type: application/ocsp-response
Content-Length: 1765
Last-Modified: Mon, 05 Jan 2015 17:03:10 GMT
ETag: "f5eba7879a63c5d6236ff768176ba16c238141db"
Cache-Control: public, no-transform, must-revalidate, max-age=339932
Expires: Fri, 09 Jan 2015 15:41:21 GMT
Date: Mon, 05 Jan 2015 17:15:49 GMT
Connection: keep-alive
0..........0..... .....0......0...0..........[us..Ni......f....2015010
5170310Z0w0u0M0... ...........]d...N....P5....0...l.|[email protected]./...
.j3."d..Ii...............20150105170310Z....20150109170310Z0...*.H....
..........}e.{...A..L.Sl#.x......|...^4."./..A.*[email protected]......
u.8..v.U...j.(e&g.3.v.b.z.#...[H.a.jH..f..k$."...Jck1.........-d. h2.
w...M.V..aPe.&.J... :)4.........&w......x...<..c*|..Y...h.......;..
XV.W...~Z.$.#..ZJ......4..N...\...$wy..F'......../0....a......0...0...
0...........=......Ri..\..(.{..0...*.H........0..1.0...U....NL1.0...U.
...Amsterdam1%0#..U....Verizon Enterprise Solutions1.0...U....Cybertru
st1.0,..U...%Verizon Akamai SureServer CA G14-SHA10...140410115548Z..1
50410115548Z0..1.0...U....NL1.0...U....Amsterdam1%0#..U....Verizon Ent
erprise Solutions1.0...U....Cybertrust1806..U.../Verizon Akamai SureSe
rver CA G14-SHA1 Responder0.."0...*.H.............0.........f..).1....
.........Z.45..l. IB..r`...f....h.....h..._i'...J....|.c....E.D0bg.b.v
..........:Q....W._U.w..3....i...k........t.....m.CO$..j@.....>..Q.
m......1/Z.r......L..a.n..;..KoIY.......fk{..c..d...IU.......zy.X...zp
...F.1..F......b...Z...=9.o...N.fL.%Z.........H0..D0... .....0......0L
..U. .E0C0A.. .....>..0402.. ........&hXXps://secure.omniroot.com/r
epository0~.. ........r0p06.. .....0..*hXXps://cacert.a.omniroot.com/v
assg141.crt06.. .....0..*hXXps://cacert.a.omniroot.com/vassg141.der0..
.U...........0...U.%..0... .......0...U.#..0....l.|[email protected]./..0..
.U..........[us..Ni......f..0...*.H.............Fk:..%..H.:.|P.;..

<<< skipped >>>

GET /typo3temp/minify/screen_8b9521acb8_minify__merged.css HTTP/1.1
Accept: text/css
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Server: nginx
Content-Type: text/css
Last-Modified: Fri, 01 Aug 2014 16:03:28 GMT
ETag: "53dbba50-1cbbf"
X-AVG: web-tuu-dus015.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Vary: Accept-Encoding
Content-Encoding: gzip
Content-Length: 18083
Cache-Control: max-age=670670
Expires: Tue, 13 Jan 2015 11:33:37 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
...........}k..8r.w...T.{.!........y.}..p..q..pTP.U.4%....5......L...T
......R.@".H..D>...I......}..%.e.}....~.....6}^....N..uy.{...y..../
....(.b.w.Z......d~......l.~....n6.vV..t..o...B.j..... .........m....}
...m.}Y.......?"?.......7.C...)~s_...t.1 k..........}..^....jk.CJ..@P.
.......,.....W.w...W%.*.K...}..-.~.?..I..?...aU.7...-...X....C.....F.r
...7....0....t.....'..'..D...`...M.?.....|.Oi.)-.E2<.t.C..V....0./.
/.......OW..h.-..2;....N)..e.]./.-y._.s......ge:tF.B...........<.&g
t;..=....Ez....g.|$.S _.... ......X..J...(>..).w^..6..E^.....Q.}*.d
.....j....q3.c....A...]...K.dl..>.....4Y...].nH7....<......._...
{X..B.....h.}.G?.L.i...[gF...._.....4!.<l.<.(......2..(.d)......
K....|?....._2.....~.d...8.d.P.....?.6...........HO.......d..>..d..
.._.A..6...|.qx..../.?..EYu"...^..M.../oo...I...t3O..t..;B..]..v.\...b
......7.h.,-...cz.n.>=...[.C..a.|..m.[x....|.S...o..$...".y.(......
.e"....%...d)........c}(..el5'.^..4./.RRs/.PR3/.NRK53.!.!V..:.h..bek..
...-[..^........8...D.".s....u.........{!...b.....#....Sv.H.Y.tG..e.E.
...N>.?"{...o...jP.)[email protected]......'...w......Z..7...['..9!_
.......E.r.p......e.,,..c.....m.]...a."....9.2.Kr,...krdv?.....r..2 A"
e.OxF.....O.w.....<!..")){....=..3.=.Jpf...K......?...A.OZ:w...M...
[......}V.~.........y*..!.T./.z%.D...........:....:...B...e.....GJa...
h.....ES.>......... .#.I..W..2....8,.E.....VAz....^..&..X.|...t\%4.
.....'eVl..$.[...x.x6.M.ZQ2..=@~NF...8......!...._..f.;........}....}.
..';Z.m.i...B.u..II*:....|...J...u.$...1[I...h.X-..Yk...z.ly...m..

<<< skipped >>>

GET /uploads/pics/ico_alpha_UserInterface_128x128.png HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Last-Modified: Wed, 04 Sep 2013 13:18:41 GMT
ETag: "52273331-550c"
Server: nginx
Content-Type: image/png
X-AVG: web-tuu-dus002.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Length: 21772
Cache-Control: max-age=326545
Expires: Fri, 09 Jan 2015 11:58:12 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
.PNG........IHDR..............>a.....tEXtSoftware.Adobe ImageReadyq
.e<..T.IDATx..}...Gu....~..LO...(".(K....... ll.,.g.......|.....9..
gmc....%...... c0.HV.M...=.=._..._{.[U.......hd.W-........n,....}...V.
......'N~..G...d3.....R...T*}&.J....(.LS*mF&.".LF:...LF>.s|..".'."y
t........k....=.......;v.....?~._.y....m.G.3>v..^[email protected].
...*P........x.......|......>.AM....k).'|..H$it......y}=.S>..y .
PK..4.=..i..x.O..S..H/..D...T.UZ7:z......w.>f...<..$%..<..M.J
.w%.M0k<.?}..n.Gx.%0...?y.."b.......Xh1.....0.$C<..)x.e........H
......0.>....O.8....4..3..........r.,........G.:.2z=...FH.w........
......x..?.,.I...-C<j..~a....`..5w.j5.l.KT7...T*M..@?...R...."I.l..
.."e..J....9F.QF..v0.z....c....>2R....d.G..r..1....02h. .....4.N...
c...{ixd.......iph.......A.a.H.R.a...)`..o.<.aH!.F..F...\.X..".....
..?}.J.',....R}.D...P,.k..nXT,......Y.w..(L.........4TB&E..,..........
3.Y3B......k..~Jf...4.W.T..u..kT...d...K..%.x.h.|`..nku<..$.1../...
...T........I..SL.do..i#..,..U.0V./.....%.......l.r.y..}.....[.f......
..!Q!.\F.L...bC..k...~......~....J....:..dx.S.G.._ .sd.T*U...$..>o.
....1fX".s....U.bI..HD|...X*...<..O..}....&t.......?.n...kh-K.!V..:
....%I..7) ..(..x,%..%t..~....[..x..I.~~.M.=...,..z...d.r...r9.......%
.c.t....yJ..X...F...Q4,.X...#&$s..-.VXJT.V...,.>;I....,..8......5C.
4..`)1l."..E]]9f.#-......u..x...XJ.-...R.)4K.M......./8......a..js. .p
[email protected])....W.kJ....K........bF..,......./H3CDl1DB0>v..F....s.t....&
gt;..&....14./*..S.3. K..>V.3h..f......Qh\....L.~.../...._iT...

<<< skipped >>>

GET /fileadmin/templates/tu2013/images/tuneup_arrow.gif?1371128329 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070; s_sess= s_cc=true; pLoadTime=; ev16=New; s_gvo=1; v17=tuneup.de; s_camp=mp_de-de; s_ppv=0; pCopTxt=; s_sq=;; s_pers= s_gpv_pn=mp%3Ade%3Aservices%3Awhats-new%3Atuu2014|1420479924805; s_nr=1420478124808-New|1423070124808; ev10=%5B%5B'mp_de-de'%2C'1420478124816'%5D%5D|1578244524816; vtd=1423070124820|1423070124820;


HTTP/1.1 200 OK
Last-Modified: Wed, 02 Jul 2014 06:54:58 GMT
ETag: "53b3acc2-34"
Server: nginx
Content-Type: image/gif
X-AVG: web-tuu-dus002.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Length: 52
Cache-Control: max-age=684354
Expires: Tue, 13 Jan 2015 15:21:42 GMT
Date: Mon, 05 Jan 2015 17:15:48 GMT
Connection: keep-alive
GIF89a........x....!.......,.............a.z.Pt....;HTTP/1.1 200 OK..L
ast-Modified: Wed, 02 Jul 2014 06:54:58 GMT..ETag: "53b3acc2-34"..Serv
er: nginx..Content-Type: image/gif..X-AVG: web-tuu-dus002.mgm.avg.com.
.X-AVG-REWRITE: 0..Accept-Ranges: bytes..Content-Length: 52..Cache-Con
trol: max-age=684354..Expires: Tue, 13 Jan 2015 15:21:42 GMT..Date: Mo
n, 05 Jan 2015 17:15:48 GMT..Connection: keep-alive..GIF89a........x..
..!.......,.............a.z.Pt....;..


GET /WRSiteInterceptEngine/?Q_ZID=ZN_0Ul36Rghx9ZFnik&Q_LOC=http://VVV.tuneup.de/services/whats-new/tuu2014/ HTTP/1.1
Accept: application/javascript, */*;q=0.8
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: siteintercept.qualtrics.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 200 OK
Server: Apache
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, max-age=0
Expires: Mon, 05 Jan 2015 17:15:53 GMT
Content-Encoding: gzip
P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE"
ServerShortName: 
Content-Length: 11581
Content-Type: application/javascript
Date: Mon, 05 Jan 2015 17:15:53 GMT
Connection: keep-alive
Vary: Accept-Encoding
...........}.W.:........|.E.bBR...n......hi.|]..$.I.l.G!.o.3z..#..s..&
gt;...,.F...4.W_.N{^Xj{.-.....:.JP2...q"....f....2j.R...R....~...U....
.ruu. kk[... ..k.............;....~...n..a{.>..o~...H..S.....h..:..
....K.....qx=..w8...h..U..W.?.wv.a.]....?^........7[......>...H...;
..n..coU.N...j...4....=v...9...;......O..?...d...n.=..n-|;............
.u....5'.........G.{.v......{.z.}...~......7....7.....s...........`...
[email protected]> o.l........>...o;..=..v|.;..U...q....Y...^.q
4'...........s...v.............lN...|.\wn_.j.T?.9U...d..?.t..^.>...
..f..N..........{g...........91............|{N..1.....:.EI.~....i....l
...O..9g...~....~i]...=............o'..99.t....|.;jn..N..'vwsx...u.7.7
[email protected] w.....w.....{..q..
.:k[.w.._\:...vo....W.fw|u?.p\.o..........=..D?....u....._...@....~e..
}v.{Ns....T.oo.................../.^..4..J..;.S,........o.........eY..
...oH]...)=L.X../.s..........{./.....m......J.\I. .....d7.;..,Nqq...Q.
.".......S...H...}.TY.:.U}[email protected]$...^..j..!..''.|=
&.(.......o'..1K4.].x.\....b.G...~...................G.Q..o.nc.a.O._.r
...W.m{.im8..Y1........AX..d.aD.....Z......Z6...Hw..b....sX..m....,.B.
..U.....!..}_j5K._....z..F>.._.%.D..w:..........w.!...q..r._{{...m.
..zW...........4......'g.!...`...b..Q...^ .n...tjU.g^...^.......%...b.
..o.8J....4....;.Wc...N9...H..xa\T....,V.pu...P....2.$..." .\....C'...
...:q}g....k....5......W\...I........m...N.t.0......F=.`.R...(...^..=]
...v..-........v.R`5b.~......?.: ....3&....e2.Q..=...qk.......GI..

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBRIt2RJ89X++hEzqoBeQg8PymQ2UQQUANhaTCXBIuWLMe9tuvPMXynxDWECEGVSJuGyLhjhWQ8phawi51w= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEA/folAAtu2XY7/sias/UTw= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com



QG.d.}...r...gv... f...z.#..}..J...r9h.........LI-..^.......PUD.h<.
l....(n..i.....E.....2....^./Y......Y.m...'...hz..y..E..........0...0.
..U....0.0....U. ...0..0....`.H...E....0..0(.. .........hXXps://VVV.ve
risign.com/CPS0b.. .......0V0...VeriSign, Inc.0.....=VeriSign's CPS in
corp. by reference liab. ltd. (c)97 VeriSign0...U.%..0... .......0...U
........0... .....0......0"..U....0...0.1.0...U....TGV-B-24710...*.H..
...........P.j.EA .\.w.ur.....1........]^.....rG....8..Q..d.j..t....H.
..9.i......=s..;(oq.A.....A.......5w......s..=.....4......Q....kR..<
;.Qcx.....4..|b..^..e=.......41.^.?.Stn...i....L.G..:W...8 .Wq........
5..NK.lmg<q.6~(.*.......}[email protected].:....80|N..


GET /de_DE/all.js HTTP/1.1
Accept: application/javascript, */*;q=0.8
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: connect.facebook.net
DNT: 1
Connection: Keep-Alive


HTTP/1.1 200 OK
ETag: "4c946dafc10b271f6bbf120064b7af05"
Content-Type: application/x-javascript; charset=utf-8
Timing-Allow-Origin: *
Content-Encoding: gzip
Content-MD5: HHtoyd0zJ aVNvEhnp5PeA==
X-FB-Debug: XZtgEoQo4cbUXuznKCf2j/T Rn6NvHtAInYxnf0W6OmVfX2vvTxhPmWwDcOqB9ggzFQsW8ZKrzS/Ih4B/I0ABA==
Content-Length: 52103
Cache-Control: public, max-age=1200
Expires: Mon, 05 Jan 2015 17:35:48 GMT
Date: Mon, 05 Jan 2015 17:15:48 GMT
Connection: keep-alive
Vary: Accept-Encoding
............{..../.....R...B.%.J.....xw....Lv)....H... %Q..k..[..h. %'
.=.g6k.}..............N..8=}.y...{.m<I..Eg...z......'..x.....OG..oG
?..o....t9.z.y.C...q<,}.t...._.N8I.ni1........L...Q9^...,..J'..j...
i.......p.j<....tr.....?}{.(...m>[.V7....T?.\Z.K.....].d.....`VJ
..e./I.W....8..MRU.4.8.|.Mh.~.:.....'..{4...U3M...q2.g..(S@'z.Q..6..S.
.f ........k.EEhtz..p<./?h(...e.........?..S..f.|1...f..q..r.....,.
ZD..k.....T..m.u.u.O.o:.Q..F...:....$.G.4...nI..qw1B..v....s.P..1.....
...j?H>.L...i8./.....v..E..........9Y.F.y....&.M..l.....<..S. N.
Z(M.y.....B..m.c.=.M]y}.W.......2.....:.'.y..xC.y...vQc....WQcT....&.w
..~st..:AB]*...~......!.. ..........d.5.)C}.e...].W..0.$...,F..^...Fe.
.x^..au.H...}........xC....&.V&M.Nv3....>..|9..KZ......... .S..ai..
j'.t.9...Z.....&}..O....4.pD....@.....%.6Q......7.Y.$..........M......
.c.]h7...`.N..E.T.{.TR..N....o~.....l.....L0.........Je.R..R4)..G.....
.F..(..U...?j`...{.......>.xH.......br4!{zc..dR..I...4.^R=....;.4$.
..).y..u8[..Cf..n...\p..h.....C.......y....h.x#o`..e@(.W....G..c.&....
.1.03.... .o?_..-.......Gj?zUs..?..4.W.F$C.......G......H.|xL....`.{..
[email protected]=^.....|.....f5.O$..f=.\......_
.....)bKg....i.u.vw.d:.....7...gTw*..N_.....:.3..>...o.Y4..(.F..T3t
.F.@*q..ZI.?.RTg...,.A..#.xm...8h.Z$.,.......Qu...4dy)..~.T....<.y.
..l.y@..=...V.....:w.....?0......v|}|.i1n...5...n].h.).DG.....C..`....
IY>......^..3..4=(...]. ..D .<....D..(p.q.eL.9z4..).F..R.f..P..J
.......!....Q......$$Y.....`7a..&...$. Q?.(..#..]...A.....3U.ak..%

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/acs/ecuinst.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:55 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 260120
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:55 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /clients/bush/waol/0.4343.19.1/comps/sysinfo/SinfInst.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:28 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 711216
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:28 GMT
Keep-Alive: timeout=2, max=83
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$..........,K|..K|..
K|...t..J|..._..J|..Xt..I|...t..A|..._..N|..K|...|..Np..A|...w..J|..Np
..J|..RichK|..........PE..L...Ei.C.................h...........:......
[email protected]....................................
..........l............p..............P...............................
.............................................................text....f
.......h.................. ..`.rdata...............l..............@..@
[email protected]................
...........rsrc....p.......j..................@..@....................
......................................................................
......................................................................
......................................................................
......................................................................
............................................U....\.}..t .}.F.E.u..H...
..cB..H.P.u..u..u...|[email protected][email protected].@
..}..e....@[email protected]... M.........3..M.....FQ.....NU..M.....
.....VT..U.....FP..E...............E.P.M...D.@[email protected]
....E..9}[email protected].}[email protected]..
[email protected][email protected] ....E..E.Pj.h.[[email protected].@._^3.
[.....L$...dB...i......T.....tUVW.q.3.;5.dB.sD..i......D..S.....t.G...
..t...O..t .....u...3....3...F.....;5.dB.r.[_^...U..QQ.U.SV..i....

<<< skipped >>>

GET /services/whats-new/tuu2014/ HTTP/1.1
Accept: text/html, application/xhtml xml, */*
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive


HTTP/1.1 200 OK
Server: nginx
Content-Type: text/html
X-AVG: web-tuu-dus011.mgm.avg.com
X-AVG-REWRITE: 0
Vary: Accept-Encoding
Content-Encoding: gzip
Date: Mon, 05 Jan 2015 17:15:47 GMT
Content-Length: 8097
Connection: keep-alive
Set-Cookie: tupc_p=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT
Set-Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; path=/
Set-Cookie: avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070;max-age=300;path=/
...........}.n#I..s........-e&.w]..D.T..TjQ...r..K..b.:#S.T[..6....^..
<.....w...`m.``......10....{ND.H..J=.........q..........?.?.{.;..I.
LB..>...bk..S0.../`.....'...5.....&..:........ ...!.:..^....".D...;
Q8.......$.<..lb12.:.BJ...f4.&......F$b........z.MI.....g....v.....
...a^....T.#......g.....L...Z.m_.#.Z(0...O.2.jZ0....5.m..e.=rM...|....
.9..._..x..uc.-U j.x.E`2._.9..\.6..fP9.P ..&Fh]@Gf....9pG^.h!... w.K.
DA..aSQ. ...^0V.H....1J&..u.q..l&..K#_6.....vh.6..A..O.C...PF..u...._.
...~L#.D....."Z$b..C;.)....,?...D.....^..q.|AZ9 F:jKK...W.3.5..#.~..J.
b..QlRf...\...../<[email protected]....'O).
.......4^.....S .........o..E...nS..XS..w...Z.....A.......mo...m.S.D.&
gt;...!B#.._e..@@.....V)....ts-YxeS6.4L*sS`0.....R.W.`..J.U.6..Z..j...
(......)...5-..o..c....>....o4..f...P.....>..pXkWM.Q.......bP...
....V..Di.K...<.98.r..!....`C.[...vF......4..;.!.m....X.........M:.
$...........}.1.#..CsFYx...Eo.2....L.n Z..E..Aj...M.n....|y.sxvz.....Y
.....O{..34a......."T..}}<......xr...3.....)..V~...S.M"z..i5....D..
.d0.......|=H.....R../._..un.-....YM..........J\..!..#..Q......;kDJGZ8
.....S*.n.n...,.4..WH.............%..1?.[L^.i...cI...O.k_.._.:...5<
...p...\....l{..j2JSy...Rbt..*.....N..M,.,.....0..,..i............V|(.
Qd.....#.f..Q.!yxa..........-.=7.)....{..1)[email protected]..%9~yFN.
G/_...K.....99.......i...[.0.......(.....P..,U..{..`#p$....).n....d...
.z.<.4...z%......^@....V..p....-..{....p.}.Z..../..7[.(....^..9....
.W.uM.....V6$w.........1..*.!d.1...Ya...w.v..T...".;..y.f...w.i.x.

<<< skipped >>>

GET /typo3temp/minify/all_552368784b_minify__merged.css HTTP/1.1

Accept: text/css
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Last-Modified: Thu, 11 Apr 2013 13:36:36 GMT
ETag: "5166bc64-1006"
Server: nginx
Content-Type: text/css
X-AVG: web-tuu-dus004.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Vary: Accept-Encoding
Content-Encoding: gzip
Content-Length: 654
Cache-Control: max-age=603152
Expires: Mon, 12 Jan 2015 16:48:19 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
............Mo.0.....z....M..\.......^...V.M.7..../.JY...zH.....x.....
?..........R`FC..........."*...X.|..q~.V{2iO.Y3..8\..AF...g..Pfq......
S.)..H...7.n.....?~}.i..P.iNPk....].}.......)..%.A..K.C............!.2
=VG..7.,.Gy.'Ip%.J.......sL.Clu.....;.......6..H..o.li...d;..$zy.r.'..
.M|}...e../p.......(e..-h.dQc.<m5U*..B..../.E$y....C%.......m.U.M._
..%.M"...C....L..C.V....3..zE\`.H7.....X...a.2.....rA.s..f..*..._.y...
m?=A...... cS...9:,E....3;c^.."#..[....(.....S..........$o..JM.g84.A .
P.....H. .X._.|k.n.E{B.{...U.M.t..mc...l'..........L........-....f..k.
y%....j...A.....>[email protected];R...5 .....7.2..x.....[O...5...#...%...q.
.t..&je.K3.ke.u.n....72Z".....
....



GET /typo3temp/minify/print_382db5047c_minify__merged.css HTTP/1.1

Accept: text/css
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Last-Modified: Thu, 11 Apr 2013 13:36:36 GMT
ETag: "5166bc64-a64"
Vary: Accept-Encoding
Server: nginx
Content-Type: text/css
X-AVG: web-tuu-dus005.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Encoding: gzip
Content-Length: 896
Cache-Control: max-age=661177
Expires: Tue, 13 Jan 2015 08:55:24 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
...........V...8.}...6..(....3...}...[...6m.#K..L.5..K_2....^^...9.H..
.&a.k..Af4UB..Xr..o....L...".JNT.b.E. ...4g......L..A...)#.IC.h._.m..s
...... ..Np...^.6..(8.............%.Z^.M.t....U..c[...I..rC.-)?.;m.;=.
.b......|/.~.3...D..i]..s.......\....Df.....%....X8Y....`..de...$....f
_.<......Y.&...b\...R....\.oJ.....t.'J...^.a.L..P,#k..:.S..Z.s.qS..
....5 .&.. M...1;X.s.\....M.....c9z5..BV)...}`M...A.4.\.!.C..Y..u...I.
;.c.y......?.~.fT..>..#$....JrA.u.....5...F....p...E....\...d....&.
..X^X.l.g..\.....4f..d.T`...l...*T3....{AZy~...49......=.K..{......)..
$....2P..ux.3h&fS..O.}......O....`.....n372.....w5.2.Qp..;........!...
...yN.0..b...MB...e.........5O)....m.........r...,cs...#n'Wa......"...
.U.(.......p..|Mz.8.(...*...g.......<.......z.....a...bI9.x.q......
9m[...........2.X..9....~*[email protected].........>.1...N
d...../^i.....}R<.....4..0...y.x..,V.c.ng...|...3@'ho.l.v>..P2J.
d...HTTP/1.1 200 OK..Last-Modified: Thu, 11 Apr 2013 13:36:36 GMT..ETa
g: "5166bc64-a64"..Vary: Accept-Encoding..Server: nginx..Content-Type:
text/css..X-AVG: web-tuu-dus005.mgm.avg.com..X-AVG-REWRITE: 0..Accept
-Ranges: bytes..Content-Encoding: gzip..Content-Length: 896..Cache-Con
trol: max-age=661177..Expires: Tue, 13 Jan 2015 08:55:24 GMT..Date: Mo
n, 05 Jan 2015 17:15:47 GMT..Connection: keep-alive.............V...8.
}...6..(....3...}...[...6m.#K..L.5..K_2....^^...9.H...&a.k..Af4UB..Xr.
.o....L...".JNT.b.E. ...4g......L..A...)#.IC.h._.m..s...... ..Np...^.6
..(8.............%.Z^.M.t....U..c[...I..rC.-)?.;m.;=..b......|/.~.

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/acslang.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:56 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1662632
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:56 GMT
Keep-Alive: timeout=2, max=97
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...<.6D.................|...........;...
.........@..................................{.........................
.....................................`I..H............................
................................................................text..
.bz.......|.................. ..`.rdata...3.......4..................@
[email protected][email protected].....................
..............rsrc...............................@..@.................
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
t.@..}..e....@[email protected]... M.........3..M.....FQ.....NU..M..
........VT..U.....FP..E...............E.P.M...D.@..E..P.E..E.P.u...x.@
..u....E..9}[email protected].}[email protected]
[email protected][email protected] ....E..E.Pj.h..B.W..|[email protected].....@._
^3.[.....L$....B...i......T.....tUVW.q.3.;5..B.sD..i......D..S.....t.G
.....t...O..t .....u...3....3...F.....;5..B.r.[_^...U..QQ.U.SV..i.

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEEES5jLHsYoCmjofrIA6uJ8= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1790
content-transfer-encoding: binary
Cache-Control: max-age=341350, public, no-transform, must-revalidate
Last-Modified: Fri, 2 Jan 2015 16:03:52 GMT
Expires: Fri, 9 Jan 2015 16:03:52 GMT
Date: Mon, 05 Jan 2015 17:19:04 GMT
Connection: keep-alive
0..........0..... .....0......0...0........6?s....V....OlL".O..2015010
2160352Z0s0q0I0... ..........!7h....O.d...AG&h.....k.&p..?...-.5......
.A..2.....:...:......20150102160352Z....20150109160352Z0...*.H........
.....'..........p...D.<!......>Bh.o.....v..>#...{T.=H....S...
.....SC...T.l6..}....N..eQ.ck..2....y.c>.x.^.0X..e..4..._....{..<
;.ya&X3...U.B..Y'^..}..3S..../4.`........(...SQ.k.Uc./../;...;.u.z"O.}
O.80.TC.....9<..d..4[>..l..gHrV2tdM<r.H....l........&..... .[
..G.....#0...0...0..........<o&S.-S..}...e.30...*.H........0..1.0..
.U....US1.0...U....VeriSign, Inc.1.0...U....VeriSign Trust Network1;09
..U...2Terms of use at hXXps://VVV.verisign.com/rpa (c)09100...U...'Ve
riSign Class 3 Code Signing 2009-2 CA0...141205000000Z..150305235959Z0
..1.0...U....US1.0...U....VeriSign, Inc.1.0...U....VeriSign Trust Netw
ork1;09..U...2Terms of use at hXXps://VVV.verisign.com/rpa (c)091<0
:..U...3VeriSign Class 3 Code Signing 2009-2 OCSP Responder0.."0...*.H
.............0.........{(..t....2.Vf.....&;6).i*[email protected]
._p.E.6.|.mk....(..........p...........X.DF....^0N....b9.:..J. ZK.".^.
.\..p.'.$..JA..~QG.d.}...r...gv... f...z.#..}..J...r9h.........LI-..^.
......PUD.h<.l....(n..i.....E.....2....^./Y......Y.m...'...hz..y..E
..........0...0...U....0.0....U. ...0..0....`.H...E....0..0(.. .......
..hXXps://VVV.verisign.com/CPS0b.. .......0V0...VeriSign, Inc.0.....=V
eriSign's CPS incorp. by reference liab. ltd. (c)97 VeriSign0...U.%..0
... .......0...U........0... .....0......0"..U....0...0.1.0...U...

<<< skipped >>>

GET /?clientv=103&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_offer_installed&mstime=37.237&offer_id=3596&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&tm=2015-01-05 17:14:19.707&v=1.0&signature=aa12bd73795803ae3f814ba0fcb35caf HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:43 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:43 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
64..<?xml version="1.0"?><track_offer_installed><operat
ion>Completed</operation></track_offer_installed>..0..


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/instSup.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:00 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 74536
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:00 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /PublicSureServerSV.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.omniroot.com


HTTP/1.1 200 OK
Accept-Ranges: bytes
Cache-Control: max-age=864000
Content-Type: application/x-pkcs7-crl
Date: Mon, 05 Jan 2015 17:15:50 GMT
Etag: "2b0037-465ae-b4bb1bc0"
Expires: Thu, 15 Jan 2015 17:15:50 GMT
Last-Modified: Mon, 05 Jan 2015 15:54:31 GMT
Server: ECS (frf/87DB)
X-Cache: HIT
Content-Length: 288174
0..e.0..d....0...*.H........0F1.0...U....Cybertrust Inc1 0)..U..."Cybe
rtrust Public SureServer SV CA..150105153341Z..150115153341Z0..c.0....
..... .Lz...101018164835Z0.........,.)5...101116173409Z0.........,U..I
..101116165848Z0.........,U./...101116173007Z0.........,U.h...10111617
2944Z0.........,V.bC..101116193600Z0.........,V.[H..101116193534Z0....
.....,V3Y)..101116193648Z0.........,V5._..101116193745Z0.........,Vg.z
..101116194901Z0.........,Vh....101116194922Z0.........,Vn.4..10111619
5619Z0.........,Vqvg..101116195553Z0.........,_..(..101118145747Z0....
.....-..4...110315204303Z0........../P....120206141831Z0..........I..@
..120124180322Z0..........JP....110222182509Z0..........Jf/Y..12021314
2815Z0..........Jf.P..120213142915Z0..........OT....120221131614Z0....
......YQ.1..120220131256Z0..........Y`?W..120220131507Z0..........Yuu.
..120220131416Z0..........^..^..111007192320Z0..........`.w...12021314
4727Z0..........`.y...120213145412Z0..........`.&...120130163851Z0....
......hlG...120213145015Z0..........h.....120130140408Z0............j.
..120110213653Z0...........}....110406160143Z0............$...11040100
5006Z0................110401005536Z0............W...120308151704Z0....
.........h..120228141105Z0................110314145902Z0............`.
..110322142311Z0................110322142551Z0............lb..12011021
3802Z0.............0..130201130700Z0............OB..110321165802Z0....
.........o..110321172720Z0...........g.:..120221183148Z0...........Ud.
..110516131110Z0............h5..120229174140Z0................1202

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/gui.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:59 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 472912
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:59 GMT
Keep-Alive: timeout=2, max=98
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$............m...m..
.m..4e...m...e...m..4e...m...e...m...a...m...a../m...m...o..MN...m...a
.. m...a...m..[f...m...a...m..Rich.m..........................PE..L...
...E...........!......................................................
.........."...............................p...j...............(F......
....."..P........_......................................H.............
......`[email protected]............................... ..`
.rdata...$.......&..................@[email protected]...@f... ...$............
[email protected]...(F.......H...(..............@[email protected]..&...........
[email protected]..................................................
......................................................................
......................................................................
......................................................................
..............................................p..........V.t$..&.W....
.W...........P..........t.WP......_3.^...U.......3..V.E.3.......j..M.Q
[email protected]...^.......j.
X.U..........3...E...h...P..h...............x....u...l.........s..C...
Ph. ........... ...M.........D$...........|$.....u...v...t$...........
....~.%.........P......U...u..u.........u.].VP..........u.3..2.u..u...
.....M......v.;.s.I....tV.u.;.s.f..f....#.^][email protected]$........
.u...t$.P.t$..y........A........J........Q...R..SV...F...t.P.R....

<<< skipped >>>

GET //MEgwRjBEMEIwQDAJBgUrDgMCGgUABBRwKSJ2U38avI/VPJSE6RTLdioFKgQU/axhMpNsRdbi7oVfmrrndplozOcCBytdi1E/zM0= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.godaddy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:49 GMT
Server: Apache
Content-Transfer-Encoding: Binary
Cache-Control: max-age=119168, public, no-transform, must-revalidate
Last-Modified: Mon, 05 Jan 2015 16:06:30 GMT
Expires: Wed, 07 Jan 2015 04:06:30 GMT
ETag: "1222bfa2948b848c8f344cc860e85f2f17419d0b"
Content-Length: 1923
Connection: close
Content-Type: application/ocsp-response
0.........x0..t.. .....0.....e0..a0..)...0..1.0...U....US1.0...U....Ar
izona1.0...U....Scottsdale1.0...U....GoDaddy.com, LLC1-0 ..U...$http:/
/certs.godaddy.com/repository/1&0$..U....Go Daddy Validation Authority
..20150105160630Z0j0h0@0... ........p)"vS.....<.....v*.*....a2.lE..
.._...v.h.... ].Q?......20150105160630Z....20150107040630Z0...*.H.....
........7p.....U.....!......b. ............J..)..%..0...V.fc......!.4.
t..........o. &[[email protected]?.)[ )....E.woXR....A..8.z.L.s .^.....P
.z..p.....qZz.[.sm..-i.....4$....~.|b....O..$...w....B....z..>.$...
.|.....^.XvH'..(.{.h.,.[..C..k.j.D....\.......el..<.%.P......0...0.
..0.......... .0...*.H........0..1.0...U....US1.0...U....Arizona1.0...
U....Scottsdale1.0...U....GoDaddy.com, Inc.1301..U...*hXXp://certifica
tes.godaddy.com/repository100...U...'Go Daddy Secure Certification Aut
hority1.0...U....079692870...140401070000Z..150401070000Z0..1.0...U...
.US1.0...U....Arizona1.0...U....Scottsdale1.0...U....GoDaddy.com, LLC1
-0 ..U...$hXXp://certs.godaddy.com/repository/1&0$..U....Go Daddy Vali
dation Authority0.."0...*.H.............0..........}....J...:-.E'K.]&l
t;.N.'[email protected]%...L,l...i.8d.._`6....n...$.CV].<..s.unn..G..uk.&l
t;....#.....=!..\.I........D....o.v!......D.p.U..b=-DT.:]yz^...PZ.....
Ax..F,[8..~.s.P...-.4._~|*.*.B1....'=4[.;.....|..}.....l....W..\.?P...
.....e..7S.....l....r.Q....Yx..l..........$0.. 0...U.......0.0...U....
.......0...U.%..0... ......... .......0...U......^..T.......'t0..ZJ..0
...U.#..0.....a2.lE...._...v.h..0... .....0......0B..U...;0907.5.3

<<< skipped >>>

GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_encapsulated_offer_downloaded&offer_downloaded_secs=0.250&offer_id=7861&package_md5=7d92f9cf0e121e7fb72da522f7fcd6cb&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&sswnt=&v=1.0&signature=9f053e70792e794733d18a0b13d7c267 HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:41 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:41 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
66..<?xml version="1.0"?><track_offer_downloaded><opera
tion>Completed</operation></track_offer_downloaded>..0.
.


GET /uploads/pics/tuu_box_whatsnew.png HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Last-Modified: Wed, 04 Sep 2013 08:58:36 GMT
ETag: "5226f63c-a144"
Server: nginx
Content-Type: image/png
X-AVG: web-tuu-dus003.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Length: 41284
Cache-Control: max-age=569474
Expires: Mon, 12 Jan 2015 07:27:01 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
.PNG........IHDR...............W.....tEXtSoftware.Adobe ImageReadyq.e&
lt;....IDATx.....$E.?.....9.^.w...G.I.b..."(.d...(.. .WD0.<..D.p\.8
.........'u..UUwO..\.=X.n..N......{..{........6.7m....Ap.n.. 8..Ap.n..
8..Ap.n....<.q....#.....~..YY...*C.#'Q...o..U....L....<.....'Z.
X.t.9.a.}.....4.c..k.......s....s} ....1.#.......^..e.G....9.........b
S.W..9.kQ.M........u......c.5...[...<....z...!O.|.....v......0.s...
.;..[...{....PR....J X.DG...o..v-P.3...U.-k..W/L-.....k x....T.[3..6..
..|......D.{.=.Dk....7...........).tH#.p=..N..L{5.......A.yh6..7g.im;.
.[o4.W.......,5O...B...q..L..][email protected]#....*.w...Ap~.CIp.}..i.5N
5[..."[.B^.0.!......E..4r.\[email protected]...\s....EZ]` ..h'?%...o. 8
..7Y..q....f......e...{.!...p#J.H.DM.....\.fQ..i...K.d...rzef..I~(>
.BvWXWay.,.n........ [email protected]...~G..2D ;..#....X...g*P..K..h~.
j....%.\.G.Q......J-...B.\..'a..OU.C.-#>..-. .m..I.2.._.........|3.
.......xr...."Zp<X....Q.._...\..\.C.LJdG...)T&s)[email protected].....
.....Q.x.-./..gQzE.UP..z...n.}..Z....#.0...S.E.x..F.3...[.9...}..m.H..
..G.... .B..E.....f....(-.......?.....P...r$C1I ..&.%.%g.....6X..3..5F
&..q....[[email protected]@.)AI.2.......$...}^.|Z.Z.]./..p..
......].d.Ao...|C.&:.'.....%en.m.I .g=u.".0.....g..l. W..~..7...,.....
.c....$qFOKu...'..2.k....].............8.....z.X46....`..%d.4. (-....o
.....:.!{.......U.`0..r.".&<f. ..v......3s...*..`...f.I.....;.U.[C.
gW`t8...v>.S.....S..C=,.[A.T$.4..O~.E...&..f..J..l.........'p666...
%.L.............LZM.Y.-.Wbrd.r.^D..C..K...C..B.{.YL.C:.BCJ).7r..7W

<<< skipped >>>

GET /js/webmetro_dsmmtracker.js HTTP/1.1

Accept: application/javascript, */*;q=0.8
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Last-Modified: Wed, 02 Jul 2014 06:56:24 GMT
ETag: "53b3ad18-5ae2"
Server: nginx
Content-Type: application/x-javascript
X-AVG: web-tuu-dus002.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Vary: Accept-Encoding
Content-Encoding: gzip
Content-Length: 3916
Cache-Control: max-age=266450
Expires: Thu, 08 Jan 2015 19:16:37 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
............][email protected]..(...4....n..8..N_l.C...."....k.....$>)..
:w7QZY.v...bw.X..c.E{Q.......^.>:...t..a....~.<~t..h1..?9:.....j
....S.O.$J.!.ZC.2...{{Ir......p@...(.C.....y:7A...........{.X.......XU
`)..(.K.[.fD..uVlB..3.1..[;..........O..us.L/..S/........L.....i8.3W.U
........[...........DH..\.$j....*1.Q ....)..c...H...u.6...<.#.>.
Q...n.j.v=.}..a.G.....zl!.O..a.;O....1BA...d..E...i..(.....Z9...O....P
...V....B....n.~.2....h..6.u.K.Y.J...*9.7.]t.Es.......fD..d.S/..(..<
;......,7.....4...O~:.!....b......9.8...y........[...;.r./;DZ.O}..z..|
.......~...../..&{|E..[&...r..b.......E.q.{3.PI.....a!W..$'.8.H..v..~R
8*.......lQ84.......X>...Z.n.uN........>..".a.=K.ux'.G......L...
8.w........ [email protected]&.t.....|..T..5.!m..s..*}..s.&..2tq..G.....
"....<... ....WY.._..TH.cw.\.....p.......1`.........[U......;....?.
.......~.%.7@....*1........Q.E!.)......d..>......tF...........k..9N
..2.m...(.=.....d..^...9g........iM3...'a. ..vo...........p.ya:.'.-..W
. M~.j:....9..^.O...t.N....Q9..^.........j.......r .W..........h......
X,z..^..........I>.^..0.1..s.......M..?..;....#f...o.g...q.........
5.K...9..h.i?kw.q..(..tk..)..0....u.I.{.z.. .J."a..P.Q......#.....P.|%
.Z...`kK2&"-:....,....g%..b..v..N-...cnUE.g...KT%....yG6;..V...:..z"".
..X....{!.RZK....K.o.}Wp...<./.%..C.AY..%[email protected]...../..@............
z...[}..d.XP.)|....I.I...B..c..../.(GW.4..5t...q..t...rt"..idt...8..&l
.>r..G#%..1V.3b=rC.O....{.:.z..:..........[...... D.....G.\.......:
........D.B[y}.c.....:U!..Y..jp....0.c.w.>.r.............|.!...

<<< skipped >>>

GET /fileadmin/templates/tu2013/images/tuneup_design_sprites.png?1377584391 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070; s_sess= s_cc=true; pLoadTime=; ev16=New; s_gvo=1; v17=tuneup.de; s_camp=mp_de-de; s_ppv=0; pCopTxt=; s_sq=;; s_pers= s_gpv_pn=mp%3Ade%3Aservices%3Awhats-new%3Atuu2014|1420479924805; s_nr=1420478124808-New|1423070124808; ev10=%5B%5B'mp_de-de'%2C'1420478124816'%5D%5D|1578244524816; vtd=1423070124820|1423070124820;


HTTP/1.1 200 OK
Last-Modified: Wed, 02 Jul 2014 06:54:58 GMT
ETag: "53b3acc2-1ba90"
Server: nginx
Content-Type: image/png
X-AVG: web-tuu-dus001.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Length: 113296
Cache-Control: max-age=537060
Expires: Sun, 11 Jan 2015 22:26:48 GMT
Date: Mon, 05 Jan 2015 17:15:48 GMT
Connection: keep-alive
.PNG........IHDR..............N......tEXtSoftware.Adobe ImageReadyq.e&
lt;...2IDATx...............qw\...4...v.H...51&&&1...?.&1.....1...)..Q.
X.P...E@,...\..wf...........m.;........S.....6AQ. .. .3...A..A.A..A.@.
[email protected][email protected][email protected].$..
[email protected][email protected].$..A....A..A.A..A.$..A....A
[email protected][email protected][email protected].
.A.Q.!...:.B...|....p.....=l9.}<........b.g.....i......X..Xz....M..
l...A.o0......-.X.....4.M.6.-...cQ........l....q.F........{.*ZZZ.....9
..p.._.}.?.G.yD .D..t..."..a..,=..^......,uh..N..~.m.K.Y.ai.i..Y>..
.e..B.......&*{. .yl.....R..O...7v./.......[....8..{...n...?.\)//O.H.8
.....I.R*.$.D...g....P........d.T..Yz.;q0.....).].....8.a..Y..6....R1K
.Y...y.}...^.P.x. `.......l.Nb.....x .._...s5.M5...)S..[.l...dE.....1J
...H.9..q.K?bi....mh..G..K......^....41)...1m..6...&.m,=...&-....i.s..
\...3E...M.0l.;....1Q na...nc....}2P_...l..9..u........;v$%.(....p..G.
Jq.Oa^.."........O.i.{..K..D.9..C\...a..m..4......k3.......u.T..K.....
..:...o..t..-l.....`.0`_>g.^......v...H.8.....q......\%{..a^..a...w
..`>.di...].w1...q.....x....p.{....$=....cW9:][.e.......KG.|.Sp.gh.
'.......xv.......NW.b...........c.(........HX.yQ,. ...$.0/K_.<nQ...
.....X.y.. .a...W....i[..2.G.-d>1x.f...V.!.[..J[...p:...n7..J..T2..
.;........V.......E....G.{[email protected]/1......c....
Wj.. .f..n.M.yK).N=....~..s.p......Hx......CWW...5...p.......7X.`..<
;r.H.......4P.0/K>......<...E...8..`.Wa...z6...=E.UG.....?b.

<<< skipped >>>

GET /services/whats-new/tuu2014/favicon.ico HTTP/1.1

Accept: */*
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070; wm_AVGTechnologies=1420478124830; s_sess= s_cc=true; pLoadTime=; ev16=New; s_gvo=1; v17=tuneup.de; s_camp=mp_de-de; s_ppv=0; pCopTxt=; s_sq=;; s_pers= s_gpv_pn=mp%3Ade%3Aservices%3Awhats-new%3Atuu2014|1420479924805; s_nr=1420478124808-New|1423070124808; ev10=%5B%5B'mp_de-de'%2C'1420478124816'%5D%5D|1578244524816; vtd=1423070124820|1423070124820;; s_vi=[CS]v1|2A55636205011053-6000011660000A31[CE]


HTTP/1.1 301 Moved Permanently
Server: nginx
Content-Type: text/html
Location: hXXp://VVV.tuneup.de/favicon.ico
X-AVG: web-tuu-dus013.mgm.avg.com
X-AVG-REWRITE: 0
Content-Length: 1392
Date: Mon, 05 Jan 2015 17:15:52 GMT
Connection: keep-alive
<html>..<head><script id="f5_cspm">//<![CDATA[..(
function() { var f5_cspm = {.. pass_params: '1379490703_3254190461_234
6309230_195277088_0_0_4294901760_1184436226_0', src_uuid: 0, transacti
on_num: 2,.get_rot13hash:function(str){var hash=2;var _int;for(i=0;i&l
t;str.length;i ){_int=str.charCodeAt(i);hash=(hash) (_int)-((((hash)
(_int))<<13)|(((hash) (_int))>>>19));}.return hash&0x7f
ffffff;},wait_perf_data:function(){try{var wp=window.performance.timin
g;if(wp.loadEventEnd>0){var res=wp.loadEventEnd-wp.navigationStart;
if(res>60000)return;var cookie_val=f5_cspm.pass_params '_' res '_'
f5_cspm.src_uuid '_' f5_cspm.transaction_num;cookie_val=cookie_val '_'
f5_cspm.get_rot13hash(cookie_val);window.document.cookie='cspm=' enco
deURIComponent(cookie_val) ';path=/';return;}}.catch(err){return;}.set
Timeout(f5_cspm.wait_perf_data,100);return;},go:function(){var chunk=w
indow.document.cookie.split(/\s*;\s*/);for(var i=0;i<chunk.length;
i){var pair=chunk[i].split(/\s*=\s*/);if(pair[0]=='srv_resp_indicatio
n'){if(pair[1]=='1234'){var d=new Date();d.setTime(d.getTime()-1);wind
ow.document.cookie='srv_resp_indication=;expires=' d.toUTCString() ';p
ath=/';setTimeout(f5_cspm.wait_perf_data,100);}}}}}.f5_cspm.go();}());
..//]]></script><title>301 Moved Permanently</title&
gt;</head>..<body bgcolor="white">..<center><h1&g
t;301 Moved Permanently</h1></center>..<hr><cente
r>nginx</center>..</body>..</html>..
..

<<< skipped >>>

GET /favicon.ico HTTP/1.1

Accept: */*
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070; wm_AVGTechnologies=1420478124830; s_sess= s_cc=true; pLoadTime=; ev16=New; s_gvo=1; v17=tuneup.de; s_camp=mp_de-de; pCopTxt=; s_sq=; s_ppv=43%7C0;; s_pers= s_gpv_pn=mp%3Ade%3Aservices%3Awhats-new%3Atuu2014|1420479924805; s_nr=1420478124808-New|1423070124808; ev10=%5B%5B'mp_de-de'%2C'1420478124816'%5D%5D|1578244524816; vtd=1423070124820|1423070124820;; s_vi=[CS]v1|2A55636205011053-6000011660000A31[CE]


HTTP/1.1 200 OK
Last-Modified: Wed, 02 Jul 2014 06:56:58 GMT
ETag: "53b3ad3a-1266"
Server: nginx
Content-Type: image/x-icon
X-AVG: web-tuu-dus001.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Length: 4710
Cache-Control: max-age=501676
Expires: Sun, 11 Jan 2015 12:37:08 GMT
Date: Mon, 05 Jan 2015 17:15:52 GMT
Connection: keep-alive
......  ..........F...........(.......  ..........V...........h.......
(... ...@.............................................................
..........................................................~...........
..v..~...........x...|x.........xxw............x........x.........v...
.v~............|~......x.x.....~w..............|.|.....x........w...x.
.........~x.w.h..x.........~.vg.............gg.............f|.w.......
...lf|hlh..........ddvvv~..........FF..^G...........Ffgl~.......x....d
Dvx.....xw......lll..............Fh...............@...................
......................................................................
......................................................................
.........?............................................................
.......................?....................(....... .................
......................................................................
...................x......xx.h...x.x..h....x.w.............x.~|`....|l
f......gg......llp..x...fp.x..........................................
............................................................(... ...@.
..................................q7..v8..y9..~:..ih_.lkb.poe.rrh..=..
.D...H...S...R...T...Y...]...c...c...e...i...k...d#..l$..m%..p'..q*..r
,..u/..w$..z...{ ..~/..v3..w4..y5..w8..{7..|....5...?...?...,...5...5.
..:...>...?...>[email protected].
..]...S...Z...\..._...R...d...f...`...f...d...h...n...z...t...w...y...
y...}...`...l...p...v...u...}...~...|.............................

<<< skipped >>>

GET /pca3.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.verisign.com


HTTP/1.1 200 OK
Server: Apache
ETag: "66304c4a5660ab8615727e6bb27b3cdb:1418950819"
Last-Modified: Fri, 19 Dec 2014 01:00:19 GMT
Date: Mon, 05 Jan 2015 17:18:58 GMT
Content-Length: 933
Connection: keep-alive
Content-Type: application/pkix-crl
0...0...0...*.H........0_1.0...U....US1.0...U....VeriSign, Inc.1705..U
....Class 3 Public Primary Certification Authority..141210000000Z..150
331235959Z0..x0!...v....a_>..2......020924164823Z0!.....A.....{2..Y
.#..140129175709Z0!...,.|.|...<...j ...080605174907Z0!...`y..q.....
..fh...020923171400Z0!...?A....a.nF`.P....020923171548Z0!............R
.e.53..010207212458Z0!..!......Y...ISi....010706171411Z0!..$-..I{r....
u<._...080403172226Z0!..&.."?..y..51}..1..010706172118Z0!..4....2..
..{W......080605175030Z0!..B....c............070411175910Z0!..H.Py...N
....* [email protected]!..Y......w
`G........070411175657Z0!..Z`[email protected].*q..080403172017Z0!..l....I..
.Y..] .c..010706171749Z0"......T=deQ...1u.]...010207212247Z0".....p..1
..7<.....e..010207211822Z0...*.H............5..v...V.._)....A... ..
..>.5]....6.(.0uFW.*:T...6$.....R...Y.N.k........%Jn..I.j*.6.3~...r
../[email protected]?....0.A.HTTP/1.1 200 OK..Server: Apache.
.ETag: "66304c4a5660ab8615727e6bb27b3cdb:1418950819"..Last-Modified: F
ri, 19 Dec 2014 01:00:19 GMT..Date: Mon, 05 Jan 2015 17:18:58 GMT..Con
tent-Length: 933..Connection: keep-alive..Content-Type: application/pk
ix-crl..0...0...0...*.H........0_1.0...U....US1.0...U....VeriSign, Inc
.1705..U....Class 3 Public Primary Certification Authority..1412100000
00Z..150331235959Z0..x0!...v....a_>..2......020924164823Z0!.....A..
...{2..Y.#..140129175709Z0!...,.|.|...<...j ...080605174907Z0!...`y
..q.......fh...020923171400Z0!...?A....a.nF`.P....020923171548Z0!.

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/ecuinst.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:55 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 260120
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:55 GMT
Keep-Alive: timeout=2, max=89
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........Jr..Jr..
[email protected]~..Cr...y..Kr..O~
..Kr..RichJr..........................PE..L....f.B.................f..
.........:[email protected].......,............
................................... ..................H...............
......................................................................
.......text....d.......f.................. ..`.rdata..r............j..
............@[email protected][email protected]
...........................rsrc........ ......................@..@....
......................................................................
......................................................................
......................................................................
......................................................................
............................................U....\.}..t .}.F.E.u..H...
..cB..H.P.u..u..u...`[email protected][email protected].@
..}..e....@[email protected]... M.........3..M.....FQ.....NU..M.....
.....VT..U.....FP..E...............E.P.M...D.@[email protected]
....E..9}[email protected].}[email protected]..
[email protected][email protected] ....E..E.Pj.h.[[email protected].@._^3.
[.....L$...dB...i......T.....tUVW.q.3.;5.dB.sD..i......D..S.....t.G...
..t...O..t .....u...3....3...F.....;5.dB.r.[_^...U..QQ.U.SV..i....

<<< skipped >>>

GET /ads/conversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1280476108&ipr=y HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com.ua


HTTP/1.1 200 OK
Content-Type: image/gif
Date: Mon, 05 Jan 2015 17:15:49 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 200 OK..Content-Typ
e: image/gif..Date: Mon, 05 Jan 2015 17:15:49 GMT..Pragma: no-cache..E
xpires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Control: no-cache, no-sto
re, must-revalidate..X-Content-Type-Options: nosniff..Server: adclick_
server..Content-Length: 42..X-XSS-Protection: 1; mode=block..Alternate
-Protocol: 80:quic,p=0.002..GIF89a.............!.......,...........D.;
..


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/postproc.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:27 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 35664
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:27 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /?dj0wMDAwMyZwaWQ9MTUmcHY9MTQlMkUwJTJFMTAwMCUyRTM0MCZtaWQ9YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZSZsaWM9MiZjb21wb25lbnRzPSZvcz1XaW5kb3dzJTIwT1MlMjA2JTJFMSUyRTElMkU3NjAxJTIwU2VydmljZSUyMFBhY2slMjAxJm1vZGVsPVBDJm1hcmtldGluZ19pZD0mYWN0aW9uPTYmZGVzYz0mdXNhZ2U9MCZMaWNlbnNlPVRBS1JQLUhYQkxMLVI3UU5HLUFHV09QLVc2MlNVLVUmZXhwPTA=&z=f7c5c5c1ed8e0e4381f6a01cd981578dc957e592 HTTP/1.1
User-Agent: CloudSDK
Host: ptuhb.cloud.avg.com


HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.5
X-Powered-By: ASP.NET
Date: Mon, 05 Jan 2015 17:16:00 GMT
Connection: close
Content-Length: 33
NextCall=86449.NextUICall=950499...


GET /clients/bush/waol/0.4343.19.1/noneCodesignFilesBundle.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:50 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 29111648
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:24:50 GMT
Keep-Alive: timeout=2, max=96
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$..........,K|..K|..
K|...t..J|..._..J|..Xt..I|...t..A|..._..N|..K|...|..Np..A|...w..J|..Np
..J|..RichK|..................PE..L...1.eJ.................j..........
S9............@.......................................................
..................T........................ ..H.......................
.....................................................................t
ext....h.......j.................. ..`.rdata........... ...n..........
....@[email protected][email protected]....... ........
...................rsrc...............................@..@............
......................................................................
......................................................................
......................................................................
......................................................................
............................................U....\.}..t .}.F.E.u..H...
...C..H.P.u..u..u...`[email protected][email protected].@
..}..e....@[email protected]... M.........3..M.....FQ.....NU..M.....
.....VT..U.....FP..E...............E.P.M...D.@[email protected]
....E..9}[email protected].}[email protected]..
[email protected][email protected] [email protected].@._^3.
[.....L$....C...i......T.....tUVW.q.3.;5..C.sD..i......D..S.....t.G...
..t...O..t .....u...3....3...F.....;5..C.r.[_^...U..QQ.U.SV..i....

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEAxNF3PJUX7iAOhAP2oGxcI= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1790
content-transfer-encoding: binary
Cache-Control: max-age=539392, public, no-transform, must-revalidate
Last-Modified: Sun, 4 Jan 2015 23:04:05 GMT
Expires: Sun, 11 Jan 2015 23:04:05 GMT
Date: Mon, 05 Jan 2015 17:18:58 GMT
Connection: keep-alive
0..........0..... .....0......0...0........6?s....V....OlL".O..2015010
4230405Z0s0q0I0... ..........!7h....O.d...AG&h.....k.&p..?...-.5......
..M.s.Q~...@?j.......20150104230405Z....20150111230405Z0...*.H........
........G..z./....,FS?..1..H.b*.!\..U.X)._...\d.V.....a.....). ......;
..9.pD.o4.....!...........5.O*....Gt...DM'...a.S../......<{;.Q#....
*..~g...p.._WB.:1.....~T....=.1...w'.p#*q..]$.NO..!..e5.`[email protected]. ..v
....~......F.....l.........3U..T...^p3.....q..i,RMX%&....#0...0...0...
.......<o&S.-S..}...e.30...*.H........0..1.0...U....US1.0...U....Ve
riSign, Inc.1.0...U....VeriSign Trust Network1;09..U...2Terms of use a
t hXXps://VVV.verisign.com/rpa (c)09100...U...'VeriSign Class 3 Code S
igning 2009-2 CA0...141205000000Z..150305235959Z0..1.0...U....US1.0...
U....VeriSign, Inc.1.0...U....VeriSign Trust Network1;09..U...2Terms o
f use at hXXps://VVV.verisign.com/rpa (c)091<0:..U...3VeriSign Clas
s 3 Code Signing 2009-2 OCSP Responder0.."0...*.H.............0.......
..{(..t....2.Vf.....&;6).i*[email protected]._p.E.6.|.mk....(....
......p...........X.DF....^0N....b9.:..J. ZK.".^..\..p.'.$..JA..~QG.d.
}...r...gv... f...z.#..}..J...r9h.........LI-..^.......PUD.h<.l....
(n..i.....E.....2....^./Y......Y.m...'...hz..y..E..........0...0...U..
..0.0....U. ...0..0....`.H...E....0..0(.. .........hXXps://VVV.verisig
n.com/CPS0b.. .......0V0...VeriSign, Inc.0.....=VeriSign's CPS incorp.
by reference liab. ltd. (c)97 VeriSign0...U.%..0... .......0...U.....
...0... .....0......0"..U....0...0.1.0...U....TGV-B-24710...*.H...

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/acsrollb.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:56 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 148736
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:56 GMT
Keep-Alive: timeout=2, max=92
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...<.6D.................|...........;...
.........@............................................................
....................................../..H............................
................................................................text..
.bz.......|.................. ..`.rdata...3.......4..................@
[email protected][email protected].....................
..............rsrc...............................@..@.................
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
t.@..}..e....@[email protected]... M.........3..M.....FQ.....NU..M..
........VT..U.....FP..E...............E.P.M...D.@..E..P.E..E.P.u...x.@
..u....E..9}[email protected].}[email protected]
[email protected][email protected] ....E..E.Pj.h..B.W..|[email protected].....@._
^3.[.....L$....B...i......T.....tUVW.q.3.;5..B.sD..i......D..S.....t.G
.....t...O..t .....u...3....3...F.....;5..B.r.[_^...U..QQ.U.SV..i.

<<< skipped >>>

GET /PublicSureServerSV.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.omniroot.com


HTTP/1.1 200 OK
Accept-Ranges: bytes
Cache-Control: max-age=864000
Content-Type: application/x-pkcs7-crl
Date: Mon, 05 Jan 2015 17:15:50 GMT
Etag: "2b0037-465ae-b4bb1bc0"
Expires: Thu, 15 Jan 2015 17:15:50 GMT
Last-Modified: Mon, 05 Jan 2015 15:54:31 GMT
Server: ECS (frf/8799)
X-Cache: HIT
Content-Length: 288174
0..e.0..d....0...*.H........0F1.0...U....Cybertrust Inc1 0)..U..."Cybe
rtrust Public SureServer SV CA..150105153341Z..150115153341Z0..c.0....
..... .Lz...101018164835Z0.........,.)5...101116173409Z0.........,U..I
..101116165848Z0.........,U./...101116173007Z0.........,U.h...10111617
2944Z0.........,V.bC..101116193600Z0.........,V.[H..101116193534Z0....
.....,V3Y)..101116193648Z0.........,V5._..101116193745Z0.........,Vg.z
..101116194901Z0.........,Vh....101116194922Z0.........,Vn.4..10111619
5619Z0.........,Vqvg..101116195553Z0.........,_..(..101118145747Z0....
.....-..4...110315204303Z0........../P....120206141831Z0..........I..@
..120124180322Z0..........JP....110222182509Z0..........Jf/Y..12021314
2815Z0..........Jf.P..120213142915Z0..........OT....120221131614Z0....
......YQ.1..120220131256Z0..........Y`?W..120220131507Z0..........Yuu.
..120220131416Z0..........^..^..111007192320Z0..........`.w...12021314
4727Z0..........`.y...120213145412Z0..........`.&...120130163851Z0....
......hlG...120213145015Z0..........h.....120130140408Z0............j.
..120110213653Z0...........}....110406160143Z0............$...11040100
5006Z0................110401005536Z0............W...120308151704Z0....
.........h..120228141105Z0................110314145902Z0............`.
..110322142311Z0................110322142551Z0............lb..12011021
3802Z0.............0..130201130700Z0............OB..110321165802Z0....
.........o..110321172720Z0...........g.:..120221183148Z0...........Ud.
..110516131110Z0............h5..120229174140Z0................1202

<<< skipped >>>

GET /ads/conversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1668964727 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com


HTTP/1.1 302 Found
Location: hXXp://VVV.google.com.ua/ads/conversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1668964727&ipr=y
Cache-Control: private, max-age=43200
Date: Mon, 05 Jan 2015 17:15:48 GMT
Expires: Mon, 05 Jan 2015 17:15:48 GMT
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 742
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
<HTML><HEAD><meta http-equiv="content-type" content="te
xt/html;charset=utf-8">.<TITLE>302 Moved</TITLE></HE
AD><BODY>.<H1>302 Moved</H1>.The document has mov
ed.<A HREF="hXXp://VVV.google.com.ua/ads/conversion/1026731593/?ran
dom=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&
value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid
=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1
716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0
&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats
-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_pres
ent=false&cdct=2&convclickts=0&random=1668964727&ipr=y
">here</A>...</BODY></HTML>....

<<< skipped >>>

POST /b/ss//6 HTTP/1.1
Host: instlxml1.sa.aol.com
Connection: close
Content-Length: 450

<?xml version="1.0" encoding="UTF-8"?><request><reportsuiteid>aoljet</reportsuiteid><pagename>cmp : Roadie - App Start</pagename><events>event1</events><eVar1>Download | Roadie | waol_0.4343.19.1 | Application Start</eVar1><prop1>cmp :</prop1><prop2>cmp :</prop2><prop49>xml api</prop49><prop16>Roadie | App Start | waol_0.4343.19.1</prop16><visitorid>7112392493116416-284416134303502</visitorid><prop3>gmt_5</prop3><prop24>uaid_na</prop24></request>
HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:48 GMT
Server: Omniture DC/2.0.0
Access-Control-Allow-Origin: *
X-C: ms-4.9.2
Expires: Sun, 04 Jan 2015 17:14:48 GMT
Last-Modified: Tue, 06 Jan 2015 17:14:48 GMT
Cache-Control: no-cache, no-store, max-age=0, no-transform, private
Pragma: no-cache
ETag: "54AAC688-4CED-014BF24A"
Vary: *
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www271
Content-Length: 64
Content-Type: text/xml
Connection: close
<?xml version="1.0" encoding="UTF-8"?>.<status>SUCCESS<
/status>...


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/acslang.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:55 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1662632
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:55 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /MEMwQTA/MD0wOzAJBgUrDgMCGgUABBTkIInKBAzXkF0Qh0pel3lfHJ9GPAQU0sSw0pHUTBFxs2HLPaH+3ahq1OMCAgMB HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.godaddy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:49 GMT
Server: Apache
Content-Transfer-Encoding: Binary
Cache-Control: max-age=118894, public, no-transform, must-revalidate
Last-Modified: Mon, 05 Jan 2015 16:01:41 GMT
Expires: Wed, 07 Jan 2015 04:01:41 GMT
ETag: "bfef465d8525648d5496f9dd2d2a872578b9b786"
Content-Length: 1815
Connection: close
Content-Type: application/ocsp-response
0..........0..... .....0......0...0..,...0..1.0...U....US1.0...U....Ar
izona1.0...U....Scottsdale1.0...U....GoDaddy.com, LLC1-0 ..U...$http:/
/certs.godaddy.com/repository/1.0,..U...%Go Daddy Class 2 Validation A
uthority..20150105160141Z0e0c0;0... ......... ......]..J^.y_..F<...
.....L.q.a.=....j..........20150105160141Z....20150107040141Z0...*.H..
...........$.l...R{.%\..)Bj..QX.S\.......?.W.8U.X.I...s..5..5>$`..&
lt;.:/*r..o....x......<..&.t..<....=.......v....3..[.%.A.....!..
`_.a..$.".p.<.....u.....D./O....)xA.k...<dBx....t...-NaB...Q....
...O....{......Fp-w.....z..&wfop..uzV .T.x.c.[i\....R.2c.n..P1.k.....f
.... ....0...0...0.......... .0...*.H........0c1.0...U....US1!0...U...
.The Go Daddy Group, Inc.110/..U...(Go Daddy Class 2 Certification Aut
hority0...140401070000Z..150401070000Z0..1.0...U....US1.0...U....Arizo
na1.0...U....Scottsdale1.0...U....GoDaddy.com, LLC1-0 ..U...$hXXp://ce
rts.godaddy.com/repository/1.0,..U...%Go Daddy Class 2 Validation Auth
ority0.."0...*.H.............0..........J<V_....7p\.....^.'...Y.C.B
PX..$.?.......#..S....'=.....D..h-.n.....#....n..M...c..:E.x..Q.&..2w.
.{[email protected]&.G.U.....G.{.Cj....S.|.).(....... .....}4
.[r........N.........1B.zp..L.....Eq.G$a.A...9..... /.B.....G..e....7.
\=QcN......Xw..4].........0...0...U.......0.0...U...........0...U.%..0
... ......... .......0...U.......dK...Z5...NP.\.S.~.0...U.#..0........
.L.q.a.=....j..0... .....0......02..U... 0)0'.%.#.!hXXp://crl.godaddy.
com/gdroot.crl0M..U. .F0D0B..`.H...m....0301.. ........%hXXps://ce

<<< skipped >>>

GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_encapsulated_offer_download_started&offer_id=7861&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&sswnt=&v=1.0&signature=ba857c135dc175c1466b8a7a14d6ca2d HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:40 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:40 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
8c..<?xml version="1.0"?><track_encapsulated_offer_download_s
tarted><operation>Completed</operation></track_encap
sulated_offer_download_started>..0..


GET /?accepted_ind=1&clientv=103&csk=12586259620818734781-11775504302967998912&dpix=96&dpiy=96&inst_id=61113&language=en,en&lst=0&max=2&method=track_offer_result&mstime=36.411&offer_id=7861&offer_shown_secs=12.61&olang=en&opt_shown_count=0&os=WIN6.1SP1-64&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&ready=2&session_key=22d61a24e8d388cad4a87ebeaf52304b&tm=2015-01-05 17:14:15.573&v=1.0&wlss=11.076&signature=4d62c2a65ebd21c28fe05dfb39d731f8 HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:39 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:39 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
5e..<?xml version="1.0"?><track_offer_result><operation
>Completed</operation></track_offer_result>..0..


GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab?937ef1f3c6451758 HTTP/1.1
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Wed, 12 Mar 2014 20:20:10 GMT
If-None-Match: "0b96c77303ecf1:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: ctldl.windowsupdate.com


HTTP/1.1 200 OK
Cache-Control: max-age=604800
Content-Type: application/octet-stream
Last-Modified: Fri, 12 Sep 2014 18:47:05 GMT
Accept-Ranges: bytes
ETag: "805a83f2b9cecf1:0"
Server: Microsoft-IIS/8.5
X-Powered-By: ASP.NET
X-Powered-By: ARR/2.5
X-Powered-By: ASP.NET
Content-Length: 56928
Date: Mon, 05 Jan 2015 17:15:19 GMT
Connection: keep-alive
MSCF....`.......,...................I.................,E.Y .authroot.s
tl..Y-..8..CK...<T...g.v!M.d..f.%d..}K..5..F. ...T..%.,YJ.,!T......
_..x.<=O.....yy....;3..>.|..~..\.....|......;..8..~.za...."A...q
.......g..m......<X........j"I........!..-w.....w....P...H..(.?}..2
.N. .u..a. ...=.C..D.F>rC.. ..|).=.. ..3b.8H.M...(...u8.%...W.g...\
YB.m:.....dE.........V....$....Dn:....0...S."...o..q.....K...I..K...(x
%....>A.R...`.0 .........<`L0mp...%....y.....g.n...R0Op..<..,
....`0$z.@..&.x"....T..H...<........~..E..".....<<.\B(.......
[email protected]/"...f.......k..Jm7j....R.5q....Rz.
.!@...].......Y.[........4.. .D8..&...t.J^O..Q.._..1.J.m5<'k.,....%
T....i.\.;.;q..S./ 8.?Bu.............}D.Q....L....*..[.."e......15m...
_.0.M........#..v!..<...@..?sc.y....*.....tX[........{.W4.Q...^u@..
*..QP.......~.L9N....2r...4.....B..-\(...b.d...K...O.8..Un.......V.<
;.......A...V.....(..s..f..q.{N0.hS.,..;M.|G|[email protected].._.....7._6...C.0...
A;L....%...M=Y.....f.JV.(.5.....0..?*...KZ....jM...8.6U...#...ew.?..?.
..........WE.Or..O>..{.'[email protected]}.o:?~....]&l
t;!...%....}@.d...L.p.a.g ..K."..N1!%..S.bT.H.-.....e..`.0$...0t..DX..
{.....#./...8.5..M...T.......D......V\C.zy.....3E:..>.{..).QW......
q....9..n..1....8%,.........r.p@.>. ...Q.?.p..7.?..7...&..!........
.`. .=....Sf..q.l.A.....L...t.}g..;...f....=.e.~.z....C..*R....H-..=..
.f..(t'.."....F...g._....n.J..U.4vr`}.....1..o@.....@.#...R. L8....z..
].|......3..y..-./....K..6{...s.<R`.}[email protected]....

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBReAhtobFzTvhaRmVeJ38QUchY9AwQUu69+Aj36pvE8hI6t7jiY7NkyMtQCEC58h8wOk0pS/pT9HLfNNK8= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.comodoca.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:19:04 GMT
Server: Apache/2.2.22 (Debian)
Last-Modified: Sun, 04 Jan 2015 23:37:50 GMT
Expires: Thu, 08 Jan 2015 23:37:50 GMT
ETag: A22E2D0D96E616D3E5C55435A5B9FEB00DAE2674
Cache-Control: max-age=281325,public,no-transform,must-revalidate
X-OCSP-Reponder-ID: h6edcaocsp10
Content-Length: 727
Connection: close
Content-Type: application/ocsp-response
0..........0..... .....0......0...0........~.=...<....8...22...2015
0104233750Z0s0q0I0... ........^..hl\.....W....r.=.....~.=...<....8.
..22....|....JR......4.....20150104233750Z....20150108233750Z0...*.H..
[email protected]... .o.]i.5>W..D!..C^FK.yK6u.6.7..U..#.K.:.nc.Z..
..z[.i............|...".tE.b.VA....[....w9.O8y. ..).Ai.d]...e.>F..s
..$p..s4.....O0....e........M...c$..Y.V.......B..i]..$*..n.o.g..<..
.u.s.F..."....QB....3...M..F....mp...."~^..Q<!.E.........v....^/..~
.A.....m.).......J....&Q......D.j....G....d....I...f2b..~,.....\....;!
.$..j5...\.0~kw($.g......G8...?.^\.{d.1v..SF...2....^.B...| /)o..|.t.u
!..Q4..Q.1.h@.....#<...c....../...NJQ}_.}...>xJ......",...3.2.4c
..s._j.....B.I..f.`&L..Y..b.......B).LB.].7j"....@...


POST /b/ss//6 HTTP/1.1
Host: instlxml1.sa.aol.com
Connection: close
Content-Length: 454

<?xml version="1.0" encoding="UTF-8"?><request><reportsuiteid>aoljet</reportsuiteid><pagename>cmp : Roadie - Install Start</pagename><events>event5</events><prop1>cmp :</prop1><prop2>cmp :</prop2><eVar6>Download | Roadie | waol_0.4343.19.1 | Install Start</eVar6><prop49>xml api</prop49><prop16>Roadie | Install Start | waol_0.4343.19.1</prop16><visitorid>8490971856548864-329424854523814</visitorid><prop3>gmt_5</prop3><prop24>uaid_na</prop24></request>
HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:17:06 GMT
Server: Omniture DC/2.0.0
Access-Control-Allow-Origin: *
X-C: ms-4.9.2
Expires: Sun, 04 Jan 2015 17:17:06 GMT
Last-Modified: Tue, 06 Jan 2015 17:17:06 GMT
Cache-Control: no-cache, no-store, max-age=0, no-transform, private
Pragma: no-cache
ETag: "54AAC712-3414-286FCE27"
Vary: *
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www367
Content-Length: 64
Content-Type: text/xml
Connection: close
<?xml version="1.0" encoding="UTF-8"?>.<status>SUCCESS<
/status>...


GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/AcsInstC.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:26 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 38216
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:26 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$.......\./d..A7..A7
..A7..(7..A7w.E7..A7..O7..A7w.K7..A7..!7..A7..!7..A7...7..A7...7..A7..
@7f.A7..%7..A7...7..A7...7..A7...7..A7Rich..A7................PE..L...
h.<L...........!.....0...........0.......@.........................
.............................................0J..j....D..d............
...........H.......d....A.............................................
[email protected]....#.......0..................
..`.rdata.......@.......@..............@[email protected].....
[email protected]................`..............@[email protected]........
[email protected]...............................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..................................................................

<<< skipped >>>

GET /CRL/Omniroot2025.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: cdp1.public-trust.com


HTTP/1.1 200 OK
Server: Apache/2.2.15 (CentOS)
Last-Modified: Thu, 01 Jan 2015 06:15:02 GMT
ETag: "2015b-6ca-50b91250442c0"
Accept-Ranges: bytes
Content-Type: application/x-pkcs7-crl
Connection: Keep-Alive
Date: Mon, 05 Jan 2015 17:17:03 GMT
Content-Length: 1738
0...0......0...*.H........0Z1.0...U....IE1.0...U....Baltimore1.0...U..
..CyberTrust1"0 ..U....Baltimore CyberTrust Root..141203203331Z..15033
1203831Z0...0....'k...120111220757Z0....'k...120111220847Z0....'.C..13
0130174530Z0....'....130807173059Z0....'....140122185220Z0....'....140
212185542Z0....'....141112202254Z0....'....100217174732Z0....'#...1003
03201301Z0....'!...100312202204Z0....''q..100414175202Z0....'L...11022
4181251Z0....'Pn..110309142119Z0....'....100216203312Z0....'#...100303
201213Z0....'3#..100908172555Z0....''n..101208175627Z0....''m..1012081
75749Z0....''p..101208175916Z0....'H...110114162156Z0#...'X>..11081
5145134Z0.0...U.......0#...'Z2..110818184101Z0.0...U.......0....'g...1
20111164333Z0....'g...120111164409Z0....'g...120111164519Z0....'....10
0216213519Z0....''s..100414175225Z0....''k..100414181839Z0....'3"..100
908172705Z0....'3$..100908172728Z0....''o..101208175645Z0....''l..1012
08175727Z0....'H...110119195142Z0....'Nz..110302154045Z0....'c...11120
7220933Z0....'g...120111164445Z0....''r..100414175143Z0....'8...101012
182723Z0....'e...120111163041Z0....'VJ..110714160903Z0....'s...1301231
62633Z0....'....130904190524Z0....'....131024214319Z0....'....14012917
2435Z0....'....140129172453Z0....'....131024214310Z0....'....131101204
601Z0....'....140219171632Z0....'.^..140409155638Z0....'i...1407091719
30Z0....'/:..141119193302Z0....'k...120111220827Z0....'8...14071619120
3Z0....'....131219195909Z0....'....140219171545Z..0.0...U........0...*
.H.................^..>....]K.................7......~./?...lG.

<<< skipped >>>

GET /pagead/viewthroughconversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: googleads.g.doubleclick.net
DNT: 1
Connection: Keep-Alive
Cookie: id=caebd6253000002||t=1384780400|et=730|cs=002213fd480c4c2631f7c541a4


HTTP/1.1 302 Found
P3P: policyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://VVV.google.com/ads/conversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1465290058
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;....



GET /pagead/viewthroughconversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: googleads.g.doubleclick.net
DNT: 1
Connection: Keep-Alive
Cookie: id=caebd6253000002||t=1384780400|et=730|cs=002213fd480c4c2631f7c541a4


HTTP/1.1 302 Found
P3P: policyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://VVV.google.com/ads/conversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=822544588
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 302 Found..P3P: pol
icyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="C
URa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV O
TC NOI DSP COR"..Date: Mon, 05 Jan 2015 17:15:48 GMT..Pragma: no-cache
..Expires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Control: no-cache, mus
t-revalidate..Location: hXXp://VVV.google.com/ads/conversion/102217300
9/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=
eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&
u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm
=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id
=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=
822544588..Content-Type: image/gif..X-Content-Type-Options: nosniff..S
erver: cafe..Content-Length: 42..X-XSS-Protection: 1; mode=block..Alte
rnate-Protocol: 80:quic,p=0.002..GIF89a.............!.......,.........
..D.;..

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/acsrollb.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:56 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 148736
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:56 GMT
Keep-Alive: timeout=2, max=97
Connection: Keep-Alive
Content-Type: application/x-msdownload


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/ecuchk.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:54 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 11080
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:54 GMT
Keep-Alive: timeout=2, max=95
Connection: Keep-Alive
Content-Type: application/x-msdownload


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/acslaeu.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:33 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 972896
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:33 GMT
Keep-Alive: timeout=2, max=98
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /MFQwUjBQME4wTDAJBgUrDgMCGgUABBQmECJms4f7i5EbxtN7NbzQCBwAdAQUUa8kJpz0aCJXgCYrO0ZiFXsezKUCE1oAAHevvgBk+xJc0C0AAQAAd68= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.msocsp.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:54 GMT
Content-Type: application/ocsp-response
Content-Length: 1757
Connection: keep-alive
Set-Cookie: __cfduid=d0c500c38e1fb0dbf900b39d4dfb757f41420478214; expires=Tue, 05-Jan-16 17:16:54 GMT; path=/; domain=.msocsp.com; HttpOnly
Last-Modified: Thu, 01 Jan 2015 22:11:09 GMT
Expires: Fri, 09 Jan 2015 17:16:53 GMT
ETag: "29cede175fdffd60a65051b245d0315ccd733818"
Cache-Control: public, max-age=345599
CF-Cache-Status: HIT
Server: cloudflare-nginx
CF-RAY: 1a41538a39d415a7-FRA
0..........0..... .....0......0...0..........<.|[email protected]|..2015
0101221109Z0..0..0L0... ........&."f........{5.....t..Q.$&..h"W.& ;Fb.
{.....Z..w...d..\.-....w.....20150101221109Z....20150105221109Z."0 0..
. .....0......20140101221109Z0...*.H..................;...;.{.h)%..T&l
t;....lU|.8f"...c.v.Q.V......8....R..|I.I..,.:.s.....=....-....!..0..h
..o..2E......2....w....T...(%........9uw.~y..J?p.X.....1......[O.....g
A....,..P".&.T.....T..I.42.&..lB..n#...z.....afyN....).oC>..V..:%.#
...y..#.. .....Sh..=.Z@?..4.i.0....0...0...0..........Z..~..M..<ZYJ
....~.0...*.H........0..1.0...U....US1.0...U....Washington1.0...U....R
edmond1.0...U....Microsoft Corporation1.0...U....Microsoft IT1.0...U..
..Microsoft IT SSL SHA20...141229205745Z..150314205745Z0!1.0...U....Sh
ould be ignore by CA0.."0...*.H.............0...........&!(..$.K...."=
f....x.d.._s.....j....9`..l.Z..............^f..u......-e.&.bG.(i.Q....
.......bEy...^7A...A..c....CF-&...e.7..7F....."..w...y.:..`.w{~..D.x*.
......x3Os......q...... S.fB .ig.....L..3......4E..}..7...M....e ...6.
M.O.....<5:......r.....]..A.5........0..0...U..........<.|7...@N
6p.I.e|0...U.#..0...Q.$&..h"W.& ;Fb.{...0...U...........0...U.%..0...
.......0... .....7....0.0... .......0... .....0......0...*.H..........
........sa....^`.U.h.....(c[..j.|. ..#....3.5.?..L.....Z....J......*.w
...w.$.z..Y.d.....l.....G#.....o.\t.......(.B =..P..T....0./P.....z.3.
...L.O3....z...Wxo..~.OeH....c.i.@."..?d.......=v(.....m..LN..PP....&l
t;.}T.X......K.&e.S...|....% ...(F.=k..~.j..C......4.....c...._p..

<<< skipped >>>

GET /?clientv=103&csk=12586259620818734781-11775504302967998912&method=track_product_installed&mstime=36.520&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&skip=0&tm=2015-01-05 17:14:16.837&v=1.0&signature=eebe2d7c08f23748556f2ab515259ddc HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:40 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:40 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
68..<?xml version="1.0"?><track_product_installed><oper
ation>Completed</operation></track_product_installed>..
0..


GET /link/?target=installhelp&errorcode=0&tu_wi=0&action=1&T=MzFoIEw9VEFLUlAtSFhCTEwtUjdRTkctQUdXT1AtVzYyU1UtVSBJPSBMTkc9dXMgVj0xNC4wLjEwMDAuMzQwIE9TVj02LjEuNzYwMSBPUz1XVjdYWDY0IFNTUD0xLjAgTUlEPWI2YmM3NDhhOGIwNTQ3Y2Q4MDA5ZDExOTEwYzVlODg3LThiYjlmM2VjOTFhMGQzMWM0ZTJmYmJjNjVjZDI5NWI4YTE0NDFiMmUgQkU9MSBBST0wIFBSVFlQRT0gTFQ9Mg~~&os_ver=6.1.7601&os_x64=1&os_sp=1.0&os_id=48&os_suite=256&os_syslang=en-US&os_ulang=en-US&os_ucountry=US&tu_version=14.0.1000.340&tu_lang=en-US&tu_pkhash=39d97615f349c325fff665bbd1936eaa&tu_product=tuu2014&tu_appid=291&x-sid=1_tuu2014t_en-us_2200546&tu_sids=1_tuu2014t_en-us_2200546&tu_ind=2015-01-05 17:15:02&tu_dod=2015-01-05 17:15:00&tu_tab=tcp2_2&tu_tbar=MC0wLTAtMA~~&tu_mid=YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZQ~~ HTTP/1.1
Accept: text/html, application/xhtml xml, */*
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tune-up.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 302 Moved Temporarily
Server: nginx
Content-Type: text/html
Location: hXXp://VVV.tune-up.com/en/services/whats-new/tuu2014/
X-AVG: web-tuu-dus011.mgm.avg.com
X-AVG-REWRITE: 0
Content-Length: 0
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
Set-Cookie: tupc_s=b3NfdmVyPTYuMS43NjAxJm9zX3g2ND0xJm9zX3N5c2xhbmc9ZW4tVVMmb3NfdWNvdW50cnk9VVMmdHVfdmVyc2lvbj0xNC4wLjEwMDAuMzQwJnR1X2xhbmc9ZW4tVVMmdHVfcHJvZHVjdD10dXUyMDE0Jngtc2lkPTFfdHV1MjAxNHRfZW4tdXNfMjIwMDU0NiZ0dV90YWI9dGNwMl8yJnR1X3RiYXI9TUMwd0xUQXRNQSU3RSU3RSZ4LXNvdXJjZS10dXZlcnNpb249MTQuMC4xMDAwLjM0MCZ4LXNvdXJjZS1uYW1lPXR1dTIwMTQmeC10dWxhbmc9ZW4tdXM=; path=/; domain=.tune-up.com
Set-Cookie: AVG_persist=!lJho4OdJn fijQGoaK5mvzAVAnN0oLDxN0L2KYofO2vttCONBUpqtOuNblvh8I/0nDRFYmFIhn5VfQ==; path=/
Set-Cookie: avr_3254190461_0_0_4294901760_3414482264_0=2264622653_46346069;max-age=300;path=/
....



GET /en/services/whats-new/tuu2014/ HTTP/1.1

Accept: text/html, application/xhtml xml, */*
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tune-up.com
DNT: 1
Connection: Keep-Alive
Cookie: tupc_s=b3NfdmVyPTYuMS43NjAxJm9zX3g2ND0xJm9zX3N5c2xhbmc9ZW4tVVMmb3NfdWNvdW50cnk9VVMmdHVfdmVyc2lvbj0xNC4wLjEwMDAuMzQwJnR1X2xhbmc9ZW4tVVMmdHVfcHJvZHVjdD10dXUyMDE0Jngtc2lkPTFfdHV1MjAxNHRfZW4tdXNfMjIwMDU0NiZ0dV90YWI9dGNwMl8yJnR1X3RiYXI9TUMwd0xUQXRNQSU3RSU3RSZ4LXNvdXJjZS10dXZlcnNpb249MTQuMC4xMDAwLjM0MCZ4LXNvdXJjZS1uYW1lPXR1dTIwMTQmeC10dWxhbmc9ZW4tdXM=; AVG_persist=!lJho4OdJn fijQGoaK5mvzAVAnN0oLDxN0L2KYofO2vttCONBUpqtOuNblvh8I/0nDRFYmFIhn5VfQ==; avr_3254190461_0_0_4294901760_3414482264_0=2264622653_46346069


HTTP/1.1 302 Moved Temporarily
Server: nginx
Content-Type: text/html
Location: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
X-AVG: web-tuu-dus011.mgm.avg.com
X-AVG-REWRITE: 0
Date: Mon, 05 Jan 2015 17:15:47 GMT
Transfer-Encoding:  chunked
Connection: keep-alive
Connection: Transfer-Encoding
0000009A..<html>..<head><title>302 Found</title&g
t;</head>..<body bgcolor="white">..<center><h1>
;302 Found</h1></center>..<hr><center>nginx<
;/center>..</body>..</html>..00000000..


GET /ads/conversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=822544588&ipr=y HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com.ua


HTTP/1.1 200 OK
Content-Type: image/gif
Date: Mon, 05 Jan 2015 17:15:49 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 200 OK..Content-Typ
e: image/gif..Date: Mon, 05 Jan 2015 17:15:49 GMT..Pragma: no-cache..E
xpires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Control: no-cache, no-sto
re, must-revalidate..X-Content-Type-Options: nosniff..Server: adclick_
server..Content-Length: 42..X-XSS-Protection: 1; mode=block..Alternate
-Protocol: 80:quic,p=0.002..GIF89a.............!.......,...........D.;
..


GET /ads/conversion/1017626827/?random=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=3489569060&ipr=y HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com.ua


HTTP/1.1 200 OK
Content-Type: image/gif
Date: Mon, 05 Jan 2015 17:15:49 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;....



GET /ads/user-lists/1017626827/?label=iPiLCJX99QcQy4Gf5QM&fmt=3&bg=ffffff&num=5&ct_cookie_present=false&cv=7&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&random=2423336321&ipr=y HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com.ua


HTTP/1.1 200 OK
Content-Type: image/gif
Date: Mon, 05 Jan 2015 17:15:49 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 200 OK..Content-Typ
e: image/gif..Date: Mon, 05 Jan 2015 17:15:49 GMT..Pragma: no-cache..E
xpires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Control: no-cache, no-sto
re, must-revalidate..X-Content-Type-Options: nosniff..Server: adclick_
server..Content-Length: 42..X-XSS-Protection: 1; mode=block..Alternate
-Protocol: 80:quic,p=0.002..GIF89a.............!.......,...........D.;
..


HEAD /clients/bush/waol/0.4343.19.1/comps/search/aolSearchInstaller.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:48 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 24392
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:48 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /fileadmin/templates/tu2013/images/tuneup_logo.png HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070



.3....}. ....Ri.D....<..w...66E...o........Gm[7o9m.c....j4..W..--..
..........{.9"...w.ia..<R..yG.`$...l.f.....L.......p.j2).7......>
;;?|.l.=..{6.S.....0......z...m%$&PN;DU.h#G...h2n..q.(5h...:4..n6z...7
0.Z}>.AY..=.)......{_TV.;....V.)}.s..9.. ....DR.i..._. UUU)....n.N.
U.q.I..t...[....ga....7w......q.....&........ _....&....z^J.R...O...Y.
..b....o...x...-..->..8.{{.;z]..yzm0...%O.5.k..6..../S>..C..l. |
..7{t...-..b.z`S....-........ .....cg...).Y.F.NW.lZ.. ...#D. [email protected]
....D.l\..?..?.{.....N....lG~..l?.8.%.I...,.7bs..d..x8.A.... 6.....Xq.
..W...$I.TB.s..P.I,V.KDX...JR./9....t.II.{s5....k...'4..:......6...=!.
..A_Sx.!.tz.3.5[...<.O.z>.xM.3.&./{.^..Ci-M`.X.^..........Unh.k.
[email protected][email protected]!h...<Q..pks8.d..5mg..O...3l.0.....[..
...=/.4*y.........y..p*...P.h4..qZ...,..!).4.F.....`he..../..i.......(
..u.wLt{.W..a.*B..U..s*..V.":Y.I.....hc...cC..b..)yh...q...7.....W.]YY
9LU6..?.n..I.-...,X0n.....s...e./--..~.......:r..=x...f4b.....ln....L.
..j...i...w.. ...Y........5.5^X...A.9.....J..1..h.9................L2.
&W..O&.`.I.:....&.z.....=...&:A...y...(.111r{{;W]].p...4.1.......s....
../*.9h..5...k.y..O_...Ov.o.......?J.7>.IZ...;.d.........C.UT...h..
F..]...Khy..=.p....^..6[[email protected]..!n.....6..q$....k...C.?..?yk...j..
.K.l..|@.ncc.........'Z.lY...e.XCC........... .....&..].....j...Z.:W..
....-.f`.mjZ.K..U..X}.Y.F...\......F......VL....h.......A."..#..Yx.p..
...r%'.||P........&...........N.v]]].msssk....c1......,Vf.>|XY.XSS3
....c....y&.....-.$.<......a.Dgz......t|..b..!.."r...s.e.....-:

<<< skipped >>>

GET /uploads/pics/ico_alpha_FlightMode_128x128.png HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Last-Modified: Wed, 04 Sep 2013 13:18:40 GMT
ETag: "52273330-2051"
Server: nginx
Content-Type: image/png
X-AVG: web-tuu-dus002.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Length: 8273
Cache-Control: max-age=647951
Expires: Tue, 13 Jan 2015 05:14:58 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
.PNG........IHDR..............>a.....tEXtSoftware.Adobe ImageReadyq
.e<....IDATx..].p...~.=.h..a.>e.../..C.$....$.I6.B...MU.Z.T...n.
..M.V...f.r..&.......1X...".c.)..,...sv........V.fdK...'?=........._3.
.i.......8.p..C.g8.p.C.g8.p.C.g8.p.C.g8.p.C.g........`...!.N.AU..N.8..
@....y...S.k...g=.:......;...s.:..C.B<..x,....~..g7op......_.....m.
[email protected].....(..*.B...JKK.,[.l...Mi-.8kfm.!.e.<.m.^.......50sf-L.:.
..*...J.*.1%.j....q....w.p..O...g.....G....AQQ..].~8.i..T5.....-......
..7...r..BE.6....9.:.:1........3....]..G..].rN.%g....JQ.())f..T.1.d..\
....D.......~*..N..Q.......I.......P.D..^.....^........q{Z$x..!.H0.ob.
.....|...$..........[...V.....U@.._V.....>.q?{..?.5`.3........T..K&
....68.. .L..p...]...(.....z.P..*......}:.$..........h........\.D...L&
lt;.k....?.....p.D3....R...0..$QO...D.E..........w..0H..)8).(..a..y.*`
bK:2xu..k..........".. f......(.(.S.n...n.)..}k..^.....i....x~i.A,G.&.
.=N.|"...[...I.p..i...n...<.{.....Yu.!...@...../^....}:..xZ.P......
..7.?.C..p.......={.. .0c.t.b.,.?......x.:....}..............P........
Z./~...9G..R{7..t.N....7._..uNg...H..[....0.....a..k.7p......."<...
.".T.R....... .P.....Dl>k....._#(...rw..;...;r......J...`KUUe..>
3x...MM..........)S&CQQ0.....8..j.. .x....f'...4.<.i........e......
_....6.....=..X........ T1.J..!..0..K...I.ZDQh.$W...%I.`.kz...1xtR.y..
...`..i0...f..9..vy...\..ci...n.........[..{5=...J.....Fx}M$......._..
..t.K.W.?^.*]..O...R(F..A......Kb..........1..Ar.M8.../.....~0xmmg....
X<..w.........n.;.x#....y.....="<.sV........*.... ...&t.....

<<< skipped >>>

GET /?dj0wMDAwMyZwaWQ9MTUmcHY9MTQlMkUwJTJFMTAwMCUyRTM0MCZtaWQ9YjZiYzc0OGE4YjA1NDdjZDgwMDlkMTE5MTBjNWU4ODctOGJiOWYzZWM5MWEwZDMxYzRlMmZiYmM2NWNkMjk1YjhhMTQ0MWIyZSZsaWM9MiZjb21wb25lbnRzPSZvcz1XaW5kb3dzJTIwT1MlMjA2JTJFMSUyRTElMkU3NjAxJTIwU2VydmljZSUyMFBhY2slMjAxJm1vZGVsPVBDJm1hcmtldGluZ19pZD0mYWN0aW9uPTAmZGVzYz0mdXNhZ2U9MiZMaWNlbnNlPVRBS1JQLUhYQkxMLVI3UU5HLUFHV09QLVc2MlNVLVUmZXhwPTA=&z=ceabfcd9419392788111ad473829a14e134ce61a HTTP/1.1
User-Agent: CloudSDK
Host: ptuhb.cloud.avg.com


HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.5
X-Powered-By: ASP.NET
Date: Mon, 05 Jan 2015 17:16:01 GMT
Connection: close
Content-Length: 32
NextCall=86400.NextUICall=86401...


GET /rootr1/MEwwSjBIMEYwRDAJBgUrDgMCGgUABBS3V7W2nAf4FiMTjpDJKg6+MgGqMQQUYHtmGkUNl8qJUC99BM00qP/8/UsCCwQAAAAAAS9O4UUM HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.globalsign.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:49 GMT
Content-Type: application/ocsp-response
Content-Length: 1508
Connection: keep-alive
Set-Cookie: __cfduid=d07be8c0bded8a7153b66b7d62a914d3f1420478149; expires=Tue, 05-Jan-16 17:15:49 GMT; path=/; domain=.globalsign.com; HttpOnly
X-Powered-By: Servlet/3.0; JBossAS-6
ETag: 8be3f2c56d8f392af8bf061b55c405438a46b628
Expires: Tue, 06 Jan 2015 17:15:48 GMT
Last-Modified: Mon, 05 Jan 2015 07:09:38 GMT
Cache-Control: public, max-age=86399
CF-Cache-Status: HIT
Server: cloudflare-nginx
CF-RAY: 1a4151ef7d8815a1-FRA
0..........0..... [email protected]}....)..2015010
5070938Z0n0l0D0... .........W......#....*..2..1..`{f.E....P/}..4....K.
......./N.E.....20150105070938Z....20150106070938Z0...*.H.............
.,..:xT.jk1?..D.....u....0V.<.....y...U....3....&6}{9.~......H.z.'.
.2..b.>.>.}.(0..M/....4.....Evg...9i.z......ij.lE.~....ZPc..a.Y=
..E........A..d!-'....vU.U[.....\..(07.r$I,\k...^~......IT...]..%.0...
H.._.....W.G..w`..}.....x..^.5.'.M..3.... ...)9.....?....0...0...0....
............CgN..0...*.H........0W1.0...U....BE1.0...U....GlobalSign n
v-sa1.0...U....Root CA1.0...U....GlobalSign Root CA0...140106180000Z..
150106180000Z0Y1.0...U....BE1.0...U....GlobalSign nv-sa1/0-..U...&Glob
alSign OCSP for Root R1 - Branch 10.."0...*.H.............0...........
E..\..l............j..577............L..5X>...7...[m...S...E...)...
.L.0~...*=......'..p.s.........x._.5..<...L.2.$.:..r..~.kYa*.c';..5
.....hD..).s.u-....st)Y..9.R^.. 2...n.......3.(.[[email protected].?.....
..-t......O....[!~ .>...'.f.:[email protected]..
[email protected]}....)0L..U. .E0C0A.. .....2._0402..
........&hXXps://VVV.globalsign.com/repository/0...U....0.0...U.%..0.
.. .......0...U.#..0...`{f.E....P/}..4....K0... .....0......0...*.H...
...........osz.Y_..Y..{F....M^yv.t.@>...&"..=.twXnqM3K......dDH....
..*..~.." .^k7.$6..kz....a!k.U.~/....5),D.)9..u.6..ods.......A8.U!...\
..:...q.6.~7jU. .w.."p=..........vJ..t.......V.O....T{....[....{.L.R..
[email protected].:.....~.N7...J.B......OF.....G......~."..H.y....

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/acs/AcsInstA.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:46 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 46408
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:46 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /?bn=3&bv=10.00.9200.16521&clientv=103&cltzone=120&csk=12586259620818734781-11775504302967998912&language=en,en&method=get_offers&mstime=0.218&num_offers=3&os=WIN6.1SP1-64&product_key=b37b25f3ccc49015eceda3b5d0db7760&sswnt=&tm=2015-01-05 17:13:39.386&v=1.0&signature=6951da3ed1f1acadff417ac2c683a515 HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Accept-Encoding: gzip
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:02 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:02 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
1b84..<?xml version="1.0"?>.<get_offers>.    <installer
_md5s>. <md5>0</md5>. </installer_md5s>
. <session_key>22d61a24e8d388cad4a87ebeaf52304b</session_k
ey><session_key>2afe7a0b83df4567c38d830b988dc6b9</session_
key><session_key>2df60a996c6bc69b895b545497cf8bf5</session
_key><product_name><![CDATA[JoyDownload]]></product_
name>. <product><settings track_encapsulated_offer_down
load_started="true" track_encapsulated_offer_install_started="true"/&g
t;</product>. <data encoding="gzip"><![CDATA[H4sIAAA
AAAAAA 1dW2/jSHZ bv KGgWdAQy3KZK6uUfWQJbU09qWLUeSp7cxPTAosiQTTZEML7a1i
7zsYIEASRBggWDzlJc85mGDRZCXJMiP6Wwy y9yqngvFnWx3dikl3xoi2TVqXM/p qT3W1
rscAO0rXTSrPVECtIN11PMVV8TR41RFGUK8hQzKWvLPFpBZsVpGi32PF0Fzt0TKslVzroA
IVX21RWuNP 4rtevzvrfjf9sLbx99932gJ9ngzD96rhu7plushTlu5pRVW8a/VG8Y7IB/v
GMvGR7ZjXLiFQEVIzF7rhYcdFim0bOoaZFfQBr8nP9ChbUT8Ay9e Y3RuPM9 KQiqZsrHl
o1NVTG19bFqrQRbEMVWQ9BUQfPlWnV jO9xW0jPzVNcafXOojqXVbEuqlJdVesLrVZXtYa
MVU2pilp9oSQ0yOg8DZABu/rPcEeuthonjWR4/CI/x7Ms4xpUT5QGkrZdbw1jO219Rd66l
u oGBEtn1b01dJ11MoGwT28sg3Fw65AzC5UBWrqY9tctoU0QTBcuE7C0FwxTTC p3sGa2n
0Ak0w0F9hU8Mamq/RT6x137ozDUvRqBtkJudoathVHd32QMSEch8D65puLpFlojWwhdQbS
1fxEfJudBfZjqX5qodAOKQYroXmGGnhksADiBw4tWHAXUzBWtk uFGap/TiB6B2E6fMH3N
KtRPqeQ6mWTqWb2ovLIgM irQW2wDRKx5Wqk1xSNJqlaQbbk6WeG0Uj2CW9NyVopBJy4ca
xU8FTjLUnZonEKQhlYOpKqgGWj tNK7weqHuXVfQRpeKL7hAbEKBNfc9SybcGmfVjzHx/D
eUe4Wluq7GMgtQGe4kl RrqqGNOnCUm5h poQCehOwVXBTDCyGr 7DqassVtBvpl9a

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/acscore.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:30 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1480288
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:30 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...<.6D.................|...........;...
[email protected].........................
......................p..................H............................
................................................................text..
.bz.......|.................. ..`.rdata...3.......4..................@
[email protected][email protected].....................
..............rsrc........p......................@..@.................
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
t.@..}..e....@[email protected]... M.........3..M.....FQ.....NU..M..
........VT..U.....FP..E...............E.P.M...D.@..E..P.E..E.P.u...x.@
..u....E..9}[email protected].}[email protected]
[email protected][email protected] ....E..E.Pj.h..B.W..|[email protected].....@._
^3.[.....L$....B...i......T.....tUVW.q.3.;5..B.sD..i......D..S.....t.G
.....t...O..t .....u...3....3...F.....;5..B.r.[_^...U..QQ.U.SV..i.

<<< skipped >>>

GET /uploads/pics/ico_alpha_DuplicateFinder_128x128.png HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Last-Modified: Wed, 04 Sep 2013 13:18:41 GMT
ETag: "52273331-5438"
Server: nginx
Content-Type: image/png
X-AVG: web-tuu-dus003.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Length: 21560
Cache-Control: max-age=584947
Expires: Mon, 12 Jan 2015 11:44:54 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
.PNG........IHDR..............>a.....tEXtSoftware.Adobe ImageReadyq
.e<..S.IDATx...y..iv...<........03...3.......f,)..x..l^.I....a.e
.V..._t.#..pHr..P.(Y.-;h.4MS.%wwN.`.,0........./.....h.....g.Y........
.{...(......3~8.....'-..R.y..;.2.u..i....aP... U.3.}......R./....m...n
..V..o.~ow{........t..L.l..|.,...G...g2...m...< [email protected]_/....x
.cA<N..|............o.x...x....?..eV.=.......w.......>.g=....L..
P...0.....<.FGG~..>..<...O..G.T.q....Op.#.4..a>..2.:....y.
..x........P.Z.#.>..4.e..u...c.&T.....u.//..t...w....a.Wq.{a....;..
..C.8..`.S..5..j.:d.V...X...5O...\..^........v.".._d..#..X.-...._..}.g
. .."j..b...~.u...f.-bX}......._.>...9L........X.......a...........
. .....`.....(...MJ|..0::J..P.\!...dyV...........A.>@.}...b?..',.8a
9..........J`....k.K./.3X...3.dsYA..z3.U.J.i.9.{.I........:......~.Ce.
6.o... ...M[.s.....][email protected]... ...c..M'...3a..F.1n....E..X.rI9x.S.
......{2CB.....`.>S..^8.....8^o...8.....F>..{.6....>o....\>
;KuH.....Y0.X..-..f..}......V."o.#r.^%#w.Tz....z...t.........!!.NkA.,.
q..o....-.90.....K..u..}..^..O.1>w.H..}..vG...e>...R.....E..!p..
...|.../. #=Af.....d..#...:.........&...(..L{[email protected]._$..b).&.U|
.6K..^..l.X.|i.@...(.e&h..D..z......}..N;v.t.........S8*[email protected]..........
;ER....Y..I...e.R..............CRb?.........:~K.4....(z..2.`)q.U..X._.
.Hfd>....0.[`...!................5..i/P:mS.H....T.. ......sD....v..
..(w...)0.$D.4E.#.99.............]U.Np..).2.a......n_0.......SAp.W.P.G
Qy/t..a...}_.@.....|:L....:e.....?.gmE77 ...'..."..Wd.z...d*.`..);

<<< skipped >>>

GET /uploads/pics/ico_alpha_DiscCleaner_128x128_02.png HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070


HTTP/1.1 200 OK
Last-Modified: Wed, 04 Sep 2013 13:18:42 GMT
ETag: "52273332-3d70"
Server: nginx
Content-Type: image/png
X-AVG: web-tuu-dus002.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Length: 15728
Cache-Control: max-age=1076255
Expires: Sun, 18 Jan 2015 04:13:22 GMT
Date: Mon, 05 Jan 2015 17:15:47 GMT
Connection: keep-alive
.PNG........IHDR..............>a.....tEXtSoftware.Adobe ImageReadyq
.e<...fiTXtXML:com.adobe.xmp.....<?xpacket begin="..." id="W5M0M
pCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmp
tk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 ">
; <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"&
gt; <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/
xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRe
f#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID=
"xmp.did:D6E6F36F8BE0E11181AA8E0A7416703B" xmpMM:DocumentID="xmp.did:9
4C4A3DFE20611E19AF8DB073DD773ED" xmpMM:InstanceID="xmp.iid:94C4A3DEE20
611E19AF8DB073DD773ED" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)"
> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0A62ED90F0E1E1118
0139C25757A0B4C" stRef:documentID="xmp.did:D6E6F36F8BE0E11181AA8E0A741
6703B"/> </rdf:Description> </rdf:RDF> </x:xmpmeta&g
t; <?xpacket end="r"?>..t...9.IDATx..}w.dgu.}.r....=.aB.d..F3.(
...cc..v..9................c{...Y.`.[Z..B ..,.G...M.I.....r|q../......
a$M=x........~.w.....:[email protected]..}...>[email protected]..
}...>..h.m...6..G....]w..C......./.....fK....#...v..7...f..........
;(&.........*;...=._\.R1.uI.m...;N..%.........a.....u..W....A..%...6..
2.H....~.PtI.>[email protected](.....b................o..JE.
E# km.pU.@.\.H8L.h....8U.P0..a$.w|...T..W..4......b$.BpK..W.q.Q.....J.
K.0!...[..H..x<[email protected].(....6...PP.H.T.h$......xk.353

<<< skipped >>>

GET /fileadmin/images/services/whats_new/bgTeaserBlog.png?1365499180 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.tuneup.de
DNT: 1
Connection: Keep-Alive
Cookie: AVG_persist=!ni4qKpiznQDnrupYsGzwp/wBvE7Bc8hZVJWT1E6MIGQynMs8 KyMs0QYQUZ5dJ1hgnPR1PtKWoHazQ==; avr_3254190461_0_0_4294901760_3891563201_0=2451244383_46346070; s_sess= s_cc=true; pLoadTime=; ev16=New; s_gvo=1; v17=tuneup.de; s_camp=mp_de-de; s_ppv=0; pCopTxt=; s_sq=;; s_pers= s_gpv_pn=mp%3Ade%3Aservices%3Awhats-new%3Atuu2014|1420479924805; s_nr=1420478124808-New|1423070124808; ev10=%5B%5B'mp_de-de'%2C'1420478124816'%5D%5D|1578244524816; vtd=1423070124820|1423070124820;


HTTP/1.1 200 OK
Last-Modified: Tue, 09 Apr 2013 09:19:40 GMT
ETag: "5163dd2c-af6"
Server: nginx
Content-Type: image/png
X-AVG: web-tuu-dus003.mgm.avg.com
X-AVG-REWRITE: 0
Accept-Ranges: bytes
Content-Length: 2806
Cache-Control: max-age=769951
Expires: Wed, 14 Jan 2015 15:08:19 GMT
Date: Mon, 05 Jan 2015 17:15:48 GMT
Connection: keep-alive
.PNG........IHDR...d.........6.9.....tEXtSoftware.Adobe ImageReadyq.e&
lt;....IDATx..Y{pTg.?....M6.lH....).B..P...-Te...ud..B.qPkkG.Q..Q....E
...h..Z[El.-ZZ.EP$..H..a7..k7../.wsV/.M.H...1?vs...~...... .&R..:..:..
..f..s.R..-....*Fc.......V../I<.p.$..\2.N<........a..mPTT.......
.... ..cw...{...d...>1....$$"..=.......M:@.].`(.A.".*..^o..6.......
.....#...R{[email protected]
$.8.N.R5..&..IM7@G7a....".~.......]..=1u......:...t....]S.8{........Sb
..M..Y..4d.$.I1..Iq.....'....j..O..[T.M.4.....{.A.A\`....2:.\;:....Y..
TB.U......L... !.$.]..H..b..&..........[.....!.F..0..d.B|..F."l..b..4"
..>C=....,..iD.......s_..3N.{......o!..`.. .e.g./\;BbC..y...u.-t..{
/A4V.ri...2p.v..2.)....D.;......18.S...#!...T..I-G.J.x.. .@0I...".y...
........ z......z.....Yi!.........<?B|y,K..! .L...BU.t.U....).".ax.
.a.,..,.)H.(......?.&........f.........s..j..l.f..*.q...^D.....0.D.!T"
..L....3..Kd.....s......o.y.....).{....t...S.|0.....#...=.%.@.'.Q....s
1y.YD[......" ..".L.K..*[email protected]....~.N.k.Q....:(-
-..I.b(cy...,[email protected]<k>.X...b..m....i,D... .I....@|..J..&/
.&!...FD....<.....P...`D. ..,..:/#.E2.$.......1....z..?...qt\...d!.
N...g*...0x.xa.....q.......]..-..dyy..P_..L.<K..X1..*....n...,O,.7[
...`V..<f!..'..D,E|.q.m.d..M.?.......$ ^..|..$.8..@8.....,...J...y{
.......p......D*?a.b$.(suM.. UQ.!.......].;....s...@Ii'..R...?04.dj.If
...u...>se.#...4....}.b.=.D.,....'.U.Cl.9...b.E.O!.h-_C|.BD....X...
X.XF^......l.C|q...J%.R.TQ(o5.$D.dS.F"..LY.........5.O....[.".....

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/ecuchk.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:55 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 11080
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:55 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$......./V.hk7.;k7.;
k7.;.(.;i7.;.(.;o7.;...;i7.;.?.;l7.;k7.;d7.;n;.;j7.;. .;j7.;. .;j7.;.&
lt;.;j7.;. .;j7.;Richk7.;........PE..L...Z..L...........!.............
............ ...............................`.......h.................
.............."..n.... [email protected] .......
........................................ ..H..........................
..text...(........................... ..`.rdata..f.... ...............
.......@[email protected]...,[email protected]....@.....
.................@[email protected][email protected].........
......................................................................
......................................................................
......................................................................
......................................................................
................................................L$....SW.D$.P3.Q...^..
......;.......UW... .......;........T$..D$.UWRP.......tk.L$.Q.T$.Rhl .
.U.d.....tR.L$...A......F.....A.......^......^...A....~...............
.~...A.............F...U..( .....]_..[...._..[.......................0
..3.SV..$.....D$.Ph....j.h. ..h......2.... ....uW.L$.Q.L$..T$.R.D$.Pj.
h. ..Q.D$$....... ....u.hp ...T$.R..0 ...D$.P...........L$.Q... ....$.
...^..[3..7........................0.....0..3...$....h.....D$.PQ.D$...
.. ..........V.T$.R.t$..)........t}.L$........tp.D$..L$.;..T$..t$.

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/acslaeu.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:34 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 972896
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:34 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...<.6D.................|...........;...
.........@............................................................
.........................................H............................
................................................................text..
.bz.......|.................. ..`.rdata...3.......4..................@
[email protected][email protected].....................
..............rsrc...............................@..@.................
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
t.@..}..e....@[email protected]... M.........3..M.....FQ.....NU..M..
........VT..U.....FP..E...............E.P.M...D.@..E..P.E..E.P.u...x.@
..u....E..9}[email protected].}[email protected]
[email protected][email protected] ....E..E.Pj.h..B.W..|[email protected].....@._
^3.[.....L$....B...i......T.....tUVW.q.3.;5..B.sD..i......D..S.....t.G
.....t...O..t .....u...3....3...F.....;5..B.r.[_^...U..QQ.U.SV..i.

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBTfqhLjKLEJQZPin0KCzkdAQpVYowQUsT7DaQP4v0cB1JgmGggC72NkK8MCEApfEU0DWxeRF9Lv1AOMPzs= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.digicert.com


HTTP/1.1 200 OK
Accept-Ranges: bytes
Cache-Control: max-age=508122
Content-Type: application/ocsp-response
Date: Mon, 05 Jan 2015 17:15:49 GMT
Etag: "54aa9362-1d7"
Expires: Mon, 12 Jan 2015 05:15:49 GMT
Last-Modified: Mon, 05 Jan 2015 13:36:34 GMT
Server: ECS (frf/8796)
X-Cache: HIT
Content-Length: 471
0..........0..... .....0......0...0.......>.i...G...&....cd ...2015
0104200000Z0s0q0I0... ............([email protected]....>.i...G...&...
.cd ...._.M.[........?;....20150104200000Z....20150111200000Z0...*.H..
..............gR...|..wXP.....^..}.-..'E$.3hb.jj.Aq!..(Q.,.....8.8y.".
...m;..r..._c.=...Hc.o..6Hd....].-p....^<..q........M....$=..~.3K,7
<...|.;......2..Ue...w<.!...91d!....R.h....z..jD3....T....c.v...
......7......*..D ...y;.i..0.3.g4.S........u..9...c.V(....6L....<.<
/font>....



GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBTtSK3dy3sA4g6EKqm0CfGsMDTPlgQUUOpzidsp+xCPnuUBINTeeZlIg/cCEAJwu3i4ZpYdN6xM1SVvBys= HTTP/1.1

Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.digicert.com


HTTP/1.1 200 OK
Accept-Ranges: bytes
Cache-Control: max-age=509357
Content-Type: application/ocsp-response
Date: Mon, 05 Jan 2015 17:15:49 GMT
Etag: "54aa8bed-1d7"
Expires: Mon, 12 Jan 2015 05:15:49 GMT
Last-Modified: Mon, 05 Jan 2015 13:04:45 GMT
Server: ECS (frf/87AC)
X-Cache: HIT
Content-Length: 471
0..........0..... .....0......0...0......P.s..)...... ..y.H....2015010
5125000Z0s0q0I0... .........H...{....*.....04....P.s..)...... ..y.H...
..p.x.f..7.L.%o. ....20150105125000Z....20150112130500Z0...*.H........
.....<:~..cc.QB...\.8V<...2.)"!.U..X.~!cR.1...A.........*...F.c.
.2...e...{...l.1tKt...{Sz.....K`[email protected]
.M...>..zdh~c......2......d...W.........8....Y7K.I..B...F)..4.t....
....8.J_..5.N".t.u.g........z....8.`..acX?.7*.\~.5...)l.Qj..HTTP/1.1 2
00 OK..Accept-Ranges: bytes..Cache-Control: max-age=509357..Content-Ty
pe: application/ocsp-response..Date: Mon, 05 Jan 2015 17:15:49 GMT..Et
ag: "54aa8bed-1d7"..Expires: Mon, 12 Jan 2015 05:15:49 GMT..Last-Modif
ied: Mon, 05 Jan 2015 13:04:45 GMT..Server: ECS (frf/87AC)..X-Cache: H
IT..Content-Length: 471..0..........0..... .....0......0...0......P.s.
.)...... ..y.H....20150105125000Z0s0q0I0... .........H...{....*.....04
....P.s..)...... ..y.H.....p.x.f..7.L.%o. ....20150105125000Z....20150
112130500Z0...*.H.............<:~..cc.QB...\.8V<...2.)"!.U..X.~!
cR.1...A.........*...F.c..2...e...{...l.1tKt...{Sz.....K`......5..6..U
[email protected]...>..zdh~c......2......d...W.........8.
...Y7K.I..B...F)..4.t........8.J_..5.N".t.u.g........z....8.`..acX?.7*
.\~.5...)l.Qj....

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/tpspd/wbsetup.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:20 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 556520
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:20 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /pagead/viewthroughconversion/1026731593/?random=72281364&cv=7&fst=1420478124985&num=3&fmt=3&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: googleads.g.doubleclick.net
DNT: 1
Connection: Keep-Alive
Cookie: id=caebd6253000002||t=1384780400|et=730|cs=002213fd480c4c2631f7c541a4


HTTP/1.1 302 Found
P3P: policyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://VVV.google.com/ads/conversion/1026731593/?random=72281364&cv=7&fst=1420478124985&num=3&fmt=3&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=987752761
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;....



GET /pagead/viewthroughconversion/1017626827/?random=474304591&cv=7&fst=1420478124985&num=5&fmt=3&value=0&label=iPiLCJX99QcQy4Gf5QM&bg=ffffff&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: googleads.g.doubleclick.net
DNT: 1
Connection: Keep-Alive
Cookie: id=caebd6253000002||t=1384780400|et=730|cs=002213fd480c4c2631f7c541a4


HTTP/1.1 302 Found
P3P: policyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://VVV.google.com/ads/user-lists/1017626827/?label=iPiLCJX99QcQy4Gf5QM&fmt=3&bg=ffffff&num=5&ct_cookie_present=false&cv=7&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&random=2423336321
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 302 Found..P3P: pol
icyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="C
URa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV O
TC NOI DSP COR"..Date: Mon, 05 Jan 2015 17:15:48 GMT..Pragma: no-cache
..Expires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Control: no-cache, mus
t-revalidate..Location: hXXp://VVV.google.com/ads/user-lists/101762682
7/?label=iPiLCJX99QcQy4Gf5QM&fmt=3&bg=ffffff&num=5&ct_cookie_present=f
alse&cv=7&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/
&random=2423336321..Content-Type: image/gif..X-Content-Type-Options: n
osniff..Server: cafe..Content-Length: 42..X-XSS-Protection: 1; mode=bl
ock..Alternate-Protocol: 80:quic,p=0.002..GIF89a.............!.......,
...........D.;..


GET /pagead/viewthroughconversion/1017626827/?random=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: googleads.g.doubleclick.net
DNT: 1
Connection: Keep-Alive
Cookie: id=caebd6253000002||t=1384780400|et=730|cs=002213fd480c4c2631f7c541a4


HTTP/1.1 302 Found
P3P: policyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://VVV.google.com/ads/conversion/1017626827/?random=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=3489569060
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;....



GET /pagead/viewthroughconversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: googleads.g.doubleclick.net
DNT: 1
Connection: Keep-Alive
Cookie: id=caebd6253000002||t=1384780400|et=730|cs=002213fd480c4c2631f7c541a4


HTTP/1.1 302 Found
P3P: policyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://VVV.google.com/ads/conversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1668964727
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 302 Found..P3P: pol
icyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="C
URa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV O
TC NOI DSP COR"..Date: Mon, 05 Jan 2015 17:15:48 GMT..Pragma: no-cache
..Expires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Control: no-cache, mus
t-revalidate..Location: hXXp://VVV.google.com/ads/conversion/102673159
3/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=
9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=
1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0
&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014
/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convcli
ckts=0&random=1668964727..Content-Type: image/gif..X-Content-Type-Opti
ons: nosniff..Server: cafe..Content-Length: 42..X-XSS-Protection: 1; m
ode=block..Alternate-Protocol: 80:quic,p=0.002..GIF89a.............!..
.....,...........D.;..

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpinst.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:49 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 4020768
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:49 GMT
Keep-Alive: timeout=2, max=98
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...<.6D.................|...........;...
.........@..........................`......$o=........................
..........................p...........D=.H............................
................................................................text..
.bz.......|.................. ..`.rdata...3.......4..................@
[email protected][email protected].................
..............rsrc....p.......j..................@..@.................
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
t.@..}..e....@[email protected]... M.........3..M.....FQ.....NU..M..
........VT..U.....FP..E...............E.P.M...D.@..E..P.E..E.P.u...x.@
..u....E..9}[email protected].}[email protected]
[email protected][email protected] ....E..E.Pj.h..B.W..|[email protected].....@._
^3.[.....L$....B...i......T.....tUVW.q.3.;5..B.sD..i......D..S.....t.G
.....t...O..t .....u...3....3...F.....;5..B.r.[_^...U..QQ.U.SV..i.

<<< skipped >>>

POST /b/ss//6 HTTP/1.1
Host: instlxml1.sa.aol.com
Connection: close
Content-Length: 570

<?xml version="1.0" encoding="UTF-8"?><request><channel>us.clientinstall</channel><reportSuiteID>aolinstaller</reportSuiteID><language>en-us</language><prop1>9.7</prop1><prop2>4343.19</prop2><evar2>ie</evar2><evar3>9.10.9200.16521</evar3><evar7>Windows</evar7><evar8>Windows 7</evar8><evar10>Service Pack 1</evar10><evar11>2047</evar11><evar13>4343.19</evar13><evar14>10.1.53.64</evar14><products>;aol_9.7_ins;;</products><pageName>close applications</pageName><visitorid>8529511821159424-330723111115911</visitorid><prop3>gmt_5</prop3><prop24>uaid_na</prop24></request>
HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:17:09 GMT
Server: Omniture DC/2.0.0
Access-Control-Allow-Origin: *
X-C: ms-4.9.2
Expires: Sun, 04 Jan 2015 17:17:09 GMT
Last-Modified: Tue, 06 Jan 2015 17:17:09 GMT
Cache-Control: no-cache, no-store, max-age=0, no-transform, private
Pragma: no-cache
ETag: "54AAC715-6A9F-383B27DA"
Vary: *
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www381
Content-Length: 64
Content-Type: text/xml
Connection: close
<?xml version="1.0" encoding="UTF-8"?>.<status>SUCCESS<
/status>...


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/instph.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:19 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 94032
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:19 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&language=en&method=get_translations&mstime=0.171&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&v=1.0&version=0&signature=09a04c32e0258117e61c39e099ef2eb6 HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:39 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:39 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
1d74..<?xml version="1.0"?><get_translations language="en" ve
rsion="0"><Msg_Download><![CDATA[Downloading *]]></M
sg_Download><Msg_PercentComplete><![CDATA[*% Complete]]>
;</Msg_PercentComplete><Msg_ConnctionInterrupted><![CDA
TA[****UNUSED****]]></Msg_ConnctionInterrupted><Msg_Downlo
adComplete><![CDATA[****UNUSED****]]></Msg_DownloadComplet
e><Msg_ClickToInstall><![CDATA[Click to install *]]><
;/Msg_ClickToInstall><Msg_ConfirmCancel><![CDATA[****UNUSE
D****]]></Msg_ConfirmCancel><Msg_DownloadIsPaused><!
[CDATA[Download of * has been paused...Click on the tray icon to resum
e downloading.]]></Msg_DownloadIsPaused><Msg_CriticalError
><![CDATA[A critical error has occurred. Installation of * will
be aborted.]]></Msg_CriticalError><Menu_PauseDownload>
<![CDATA[****UNUSED****]]></Menu_PauseDownload><Menu_Ca
ncelInstall><![CDATA[****UNUSED****]]></Menu_CancelInstall
><Menu_ResumeDownload><![CDATA[****UNUSED****]]></Me
nu_ResumeDownload><Menu_ExitInstaller><![CDATA[****UNUSED*
***]]></Menu_ExitInstaller><Msg_WindowTitleLabel><![
CDATA[* - Recommended by *]]></Msg_WindowTitleLabel><Msg_T
itleLabel><![CDATA[Downloading *...]]></Msg_TitleLabel>
<Msg_HeaderLabel><![CDATA[*, the software recommended to you
by *, is now downloading at your request. We will let you know whe

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/noneCodesignFilesBundle.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:49 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 29111648
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:24:49 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /MFQwUjBQME4wTDAJBgUrDgMCGgUABBQmECJms4f7i5EbxtN7NbzQCBwAdAQUUa8kJpz0aCJXgCYrO0ZiFXsezKUCE1oAAHevvgBk+xJc0C0AAQAAd68= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.msocsp.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:54 GMT
Content-Type: application/ocsp-response
Content-Length: 1757
Connection: keep-alive
Set-Cookie: __cfduid=d6372b6a74a80e9c7666b4abdba04cbea1420478214; expires=Tue, 05-Jan-16 17:16:54 GMT; path=/; domain=.msocsp.com; HttpOnly
Last-Modified: Thu, 01 Jan 2015 22:11:09 GMT
Expires: Fri, 09 Jan 2015 17:16:53 GMT
ETag: "29cede175fdffd60a65051b245d0315ccd733818"
Cache-Control: public, max-age=345599
CF-Cache-Status: HIT
Server: cloudflare-nginx
CF-RAY: 1a41538a95c61577-FRA
0..........0..... .....0......0...0..........<.|[email protected]|..2015
0101221109Z0..0..0L0... ........&."f........{5.....t..Q.$&..h"W.& ;Fb.
{.....Z..w...d..\.-....w.....20150101221109Z....20150105221109Z."0 0..
. .....0......20140101221109Z0...*.H..................;...;.{.h)%..T&l
t;....lU|.8f"...c.v.Q.V......8....R..|I.I..,.:.s.....=....-....!..0..h
..o..2E......2....w....T...(%........9uw.~y..J?p.X.....1......[O.....g
A....,..P".&.T.....T..I.42.&..lB..n#...z.....afyN....).oC>..V..:%.#
...y..#.. .....Sh..=.Z@?..4.i.0....0...0...0..........Z..~..M..<ZYJ
....~.0...*.H........0..1.0...U....US1.0...U....Washington1.0...U....R
edmond1.0...U....Microsoft Corporation1.0...U....Microsoft IT1.0...U..
..Microsoft IT SSL SHA20...141229205745Z..150314205745Z0!1.0...U....Sh
ould be ignore by CA0.."0...*.H.............0...........&!(..$.K...."=
f....x.d.._s.....j....9`..l.Z..............^f..u......-e.&.bG.(i.Q....
.......bEy...^7A...A..c....CF-&...e.7..7F....."..w...y.:..`.w{~..D.x*.
......x3Os......q...... S.fB .ig.....L..3......4E..}..7...M....e ...6.
M.O.....<5:......r.....]..A.5........0..0...U..........<.|7...@N
6p.I.e|0...U.#..0...Q.$&..h"W.& ;Fb.{...0...U...........0...U.%..0...
.......0... .....7....0.0... .......0... .....0......0...*.H..........
........sa....^`.U.h.....(c[..j.|. ..#....3.5.?..L.....Z....J......*.w
...w.$.z..Y.d.....l.....G#.....o.\t.......(.B =..P..T....0./P.....z.3.
...L.O3....z...Wxo..~.OeH....c.i.@."..?d.......=v(.....m..LN..PP....&l
t;.}T.X......K.&e.S...|....% ...(F.=k..~.j..C......4.....c...._p..

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBSpuCE3aK3GivZPzGQJ6L5BRyZofwQUl9BrqCZwyKE/lB8ILcQ1m6ShHvICEGwkCSV07gf3g5QOsqmf+MY= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1790
content-transfer-encoding: binary
Cache-Control: max-age=532785, public, no-transform, must-revalidate
Last-Modified: Sun, 4 Jan 2015 21:14:33 GMT
Expires: Sun, 11 Jan 2015 21:14:33 GMT
Date: Mon, 05 Jan 2015 17:19:01 GMT
Connection: keep-alive
0..........0..... .....0......0...0........6?s....V....OlL".O..2015010
4211433Z0s0q0I0... ..........!7h....O.d...AG&h.....k.&p..?...-.5......
.l$.%t...............20150104211433Z....20150111211433Z0...*.H........
.....P.<...'A.!..?... .T T..0... .K... #.Z..X.@[email protected]...)`...z.fq
........L:T.........7.I....3.}.5&.b.c..DP....O...~....K....N....ny....
.`..Z....{...........f..n....j.h..A*...7T._.. .....q....6.5$|..=.....t
.)....,..B...8...*.O....SM6....VqP.....e...i7Y....Q-.....#0...0...0...
.......<o&S.-S..}...e.30...*.H........0..1.0...U....US1.0...U....Ve
riSign, Inc.1.0...U....VeriSign Trust Network1;09..U...2Terms of use a
t hXXps://VVV.verisign.com/rpa (c)09100...U...'VeriSign Class 3 Code S
igning 2009-2 CA0...141205000000Z..150305235959Z0..1.0...U....US1.0...
U....VeriSign, Inc.1.0...U....VeriSign Trust Network1;09..U...2Terms o
f use at hXXps://VVV.verisign.com/rpa (c)091<0:..U...3VeriSign Clas
s 3 Code Signing 2009-2 OCSP Responder0.."0...*.H.............0.......
..{(..t....2.Vf.....&;6).i*[email protected]._p.E.6.|.mk....(....
......p...........X.DF....^0N....b9.:..J. ZK.".^..\..p.'.$..JA..~QG.d.
}...r...gv... f...z.#..}..J...r9h.........LI-..^.......PUD.h<.l....
(n..i.....E.....2....^./Y......Y.m...'...hz..y..E..........0...0...U..
..0.0....U. ...0..0....`.H...E....0..0(.. .........hXXps://VVV.verisig
n.com/CPS0b.. .......0V0...VeriSign, Inc.0.....=VeriSign's CPS incorp.
by reference liab. ltd. (c)97 VeriSign0...U.%..0... .......0...U.....
...0... .....0......0"..U....0...0.1.0...U....TGV-B-24710...*.H...

<<< skipped >>>

GET /pagead/conversion/1026731593/?random=1420478125201&cv=7&fst=1420478124985&num=3&fmt=4&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1 HTTP/1.1
Accept: application/javascript, */*;q=0.8
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.googleadservices.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 200 OK
P3P: policyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Content-Type: text/javascript; charset=UTF-8
X-Content-Type-Options: nosniff
Content-Disposition: attachment; filename="f.txt"
Content-Encoding: gzip
Server: cafe
Content-Length: 379
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
..........=QM..0.. .BEr.%.#N.......[.J.A.....d.a.-...s..f.<.4..]...
.....E..q.`q}.LB.n..."x..C...J.s..P...r.fP.Q...#.....2................
.........M....W....Z.....Y..yY....i...S.Y..Y.,Y.I...qC.'.....~....o...
....4.. ...D.Q..g..T...kXE.u.......C.b.c.n.?%......l....d.......flg.4l
...i[....{..o....u]..,..PH..e...:...g.iL.d..d...Q^.......].}b...._.s.#
^g..m.^..d..~...=>.......z.v....
....



GET /pagead/conversion/1022173009/?random=1420478125404&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.googleadservices.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 302 Found
P3P: policyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1022173009/?random=1031156397&cv=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 302 Found..P3P: pol
icyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV P
SA PSD IVA IVD OTP OUR OTR IND OTC"..Date: Mon, 05 Jan 2015 17:15:48 G
MT..Pragma: no-cache..Expires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Co
ntrol: no-cache, must-revalidate..Location: hXXp://googleads.g.doublec
lick.net/pagead/viewthroughconversion/1022173009/?random=1031156397&cv
=7&fst=1420478124985&num=4&fmt=3&value=0&label=eyyVCLvZnQIQ0b605wM&bg=
ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his
=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tun
eup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_co
okie_present=false&convclickts=0..Content-Type: image/gif..X-Content-T
ype-Options: nosniff..Server: cafe..Content-Length: 42..X-XSS-Protecti
on: 1; mode=block..Alternate-Protocol: 80:quic,p=0.002..GIF89a........
.....!.......,...........D.;..

<<< skipped >>>

GET /connect/xd_arbiter/7r8gQb8MIqE.js?version=41 HTTP/1.1
Accept: text/html, application/xhtml xml, */*
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: static.ak.facebook.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 200 OK
Content-Type: text/html; charset=utf-8
X-Content-Type-Options: nosniff
X-XSS-Protection: 0
Content-Encoding: gzip
X-FB-Debug: SIjZhSwolq ZALWK0I6SA6GDkNnP0bVjT/9mBnvMqX6xsd7AME8aCw0kjQU0o3fePzZwyp4DR9lKQluvEDhI/w==
Vary: Accept-Encoding
Content-Length: 9732
Cache-Control: public, max-age=27382407
Expires: Wed, 18 Nov 2015 15:29:15 GMT
Date: Mon, 05 Jan 2015 17:15:48 GMT
Connection: keep-alive
...........}y..F....)T...F...g.U.....}}Mw{.3..'....DI....g..<..Gu{w
~o...$.....2...x.....||e..<.........0...k.c.$../.$../.....;.e.$.'F.
..K....U[..%...*..p._.~.-.,.[..M.s,.my..t.pl]<OSw......E:^.^.&...-.
r)..QD. MVF.V.....J.$....).r#...c$...}6.c....sScD.t.a...C..~>..>
..0.........0.26>o..$....".'.Za.R7O.......iO..Qe...z....M!..S{..>
;.....~uU..o.n....Q.."..Y.a...kN.V...E..<fd;.....-..=!3:jyn.Y.=.C.L
......z.......<....|......J1e..g....{ &.]|.!1.8......8i...6...:...W
As.TrO..oR.U.!9NP..H.<A.[y.9O..........O|... e,..nn^.........:..,}!
U6F...3/r.C. ..a.............v..qj.y.B...U.).C...1_f.1b.k.C8O.'.!.C...
}}.q.0.....'Wcg.h......m..........(j5..%.Nl..m.#.....J..w.....\I.....S
.ep...=..-}6......|B.8.K...=R...5..k.../(.p...-8..6..f...g...(c......e
].;D...L...ug.k^....y..G.....Q.s..:M... '.J.0{,( ....xT`v...P'y..c)@..
.P.`.4..d......l.<.\..3.9.8S.F...(r........L...8.._....a......W ...
.jJA;..........p.Q.......Xf."z...S.cw,.......q.W.Q@'J.)I......B!.B.%..
E.....;.'.P..p:.'.)......9#.*...v~k|7.m..Z.......?...Y.2g.C......q.N8.
.......b.z.3.7xXA.]-..0r....f.....r..Y....\..%....>.......Rj...)e/.
.......Q...F..2M.XW.......5..PB.UY.j.%.([email protected]...
.&"[email protected]..`.....V0...1S....*L.5.f....I~lQ.u.A..Bh.b....[.dR1.....&l
t;[email protected].... J...Vp,.....O9....,!... [email protected]..
.*...7.$.C72..m.zf. .>.. '........,...f..?..s.I....V...*P.F.#pUl.Hk
../..J....\1.n....A..e...F|.....N..1.#....??.=X7.^.^..R..$......7r....
..9.`S.~y.....0.....h...4.......3.f.4.iXf..1.......E......... ..4.

<<< skipped >>>

GET /325c4af68d6b04ac77426bf5318ebf57/partner/trackable/550/SkypeSetupFull.exe HTTP/1.1
User-Agent: NSIS_Inetc (Mozilla)
Host: download.skype.com
Connection: Keep-Alive
Cache-Control: no-cache


HTTP/1.1 200 OK
Server: nginx
Content-Type: application/octet-stream
Content-Length: 40462952
Last-Modified: Fri, 12 Dec 2014 14:14:02 GMT
ETag: "548af82a-2696a68"
Accept-Ranges: bytes
Cache-Control: max-age=86400
Date: Mon, 05 Jan 2015 17:14:44 GMT
Connection: keep-alive
MZP.....................@.............................................
..!..L.!..This program must be run under Win32..$7....................
......................................................................
..............................................PE..L......T............
......d.......$..-....$..@[email protected]...
.......@...................................@...............,i.h>...
................................9..................................&..
.................UPX0......$.............................UPX1......d..
[email protected][email protected].............@......
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..........3.07.UPX!......n.U...m.....d..B..&%..........x^...~...{.k...
..>..,.dQEu.Q.._=.. ...f..P*=.<.0..=..j....I,\.......-P..C.uO...
M......}.]..X..T........6..bvM1.*=z.c.^.........I.Uu....$r%....K......
...c.Z.M.6....8q.kW._..k..b.z...%#F.o...-=....G......x.2.......L^....U
.......(.M.0...)i].BdW9xR.4('..C.x.7.........H....=.l..6%.z...lo.w.8..
..X...Y..\...t.G8..R8_.6i^:V.".Q[.....E..2....3Km.hG...^_T.......=0S..
...f.au2&...v.=e.p....".}<o"_m..wF%E.s^....ib...F.s?..%..$.....APt-
.4P.K.161.'|.&.G.......(.,o.*..]l..5.....~-F...S....%...$..7g....

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/acsshutd.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:49 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 21832
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:24:49 GMT
Keep-Alive: timeout=2, max=90
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /clients/bush/waol/0.4343.19.1/comps/acs/postproc.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:27 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 35664
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:27 GMT
Keep-Alive: timeout=2, max=97
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$........`3M..]...].
..].J.....].."A...].......].J.....].3"D...]...\...]...9...].%.....]...
....].Rich..].........................PE..L......E.................T..
[email protected].............
..........................D...........p............v..P...............
.............................................p........................
.......text...8S.......T.................. ..`.rdata.......p.......X..
............@[email protected][email protected].....
.......p..............@..@............................................
......................................................................
......................................................................
......................................................................
......................................................................
............................................j.h....j.j.j.h.....t$....p
@[email protected][email protected]@..}..t.j\.......OO....Y
[email protected].[;..E.|=W.=.p@..........<\u.j.......P.......\..
..u.j.......P..C;].~._^[..U....,[email protected]@[email protected]@.P..
.p@...t3.M.Q.M.Q.M.Q.M.Q....t..M.......v.......E............E.P.E.P.E.
[email protected]@[email protected]
@[email protected]..<[email protected]
[email protected]@[email protected]@[email protected].....

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/instSup.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:22 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 75088
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:22 GMT
Keep-Alive: timeout=2, max=96
Connection: Keep-Alive
Content-Type: application/x-msdownload
[email protected].........
..!..L.!This program cannot be run in DOS mode....$.........XD..6...6.
..6.l./...6...k...6...k...6...i...6...V...6..._...6...i...6...7.D.6...
2...6...8...6...<...6...V...6...9...6...R...6...j...6.z.h...6...l..
.6.Rich..6.........................PE..L....}.H...........!.....p.....
.....M@...............................................................
...................}[email protected]....... ..........
......................................................................
....text....d.......p.................. ..`.rdata...G.......P.........
.........@[email protected][email protected]........
...................@[email protected]..(........ [email protected].......
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..................................................................

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/setup.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:33 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 169288
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:33 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@...................................(.........
..!..L.!This program cannot be run in DOS mode....$........m..........
........................[...L................/......5/......L.........
..s...5(..............................#...............Rich............
................PE..L...B..E.............................-............
@................................................................. O..
Z....>..........`0..............H..................................
..........................................................text........
....................... ..`.rdata..zo.......p..................@[email protected]
ta....>...P.......<[email protected]...`0.......2...N.....
.........@..@.........................................................
......................................................................
......................................................................
......................................................................
.....................................................V.w...(.B.......g
....^.V........D$..t.V.....Y..^...U..QV...F.W..(.B..8;..}.t1.G...t.P.]
...Y.....t....t.W.J...Y.U..3....}.;~.u..F...t.P.,....f..Y....*..._^..V
[email protected]<-t.</t.3..8S...B........-t.HHu)
..V...P.....V...P.FSV.........YYu.@[_^...3...V.t$...tD.>.u?W.|$.hx.
B.W.......YYt. .PWV.....ht.B.V.]........WV.A...YY3.@_..3.^...U..QVW...
..W.M.........u.Y..t.Wj.P...........8.t.3.......}.S.G.h..B.P.(....x.B.
[email protected].....;.YYt.;}.t@.?"t..M...W.6.P..0Ghp.B

<<< skipped >>>

GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_encapsulated_offer_installed&offer_id=3596&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&v=1.0&signature=3e07aa645f8cc73be574744051fd028f HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:46 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:15:46 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
64..<?xml version="1.0"?><track_offer_installed><operat
ion>Completed</operation></track_offer_installed>..0..


GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&language=en&method=get_translations&mstime=0.359&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&v=1.0&version=0&signature=87b4d79c19932db8f0b658b5555ec3e6 HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:40 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:40 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
1d74..<?xml version="1.0"?><get_translations language="en" ve
rsion="0"><Msg_Download><![CDATA[Downloading *]]></M
sg_Download><Msg_PercentComplete><![CDATA[*% Complete]]>
;</Msg_PercentComplete><Msg_ConnctionInterrupted><![CDA
TA[****UNUSED****]]></Msg_ConnctionInterrupted><Msg_Downlo
adComplete><![CDATA[****UNUSED****]]></Msg_DownloadComplet
e><Msg_ClickToInstall><![CDATA[Click to install *]]><
;/Msg_ClickToInstall><Msg_ConfirmCancel><![CDATA[****UNUSE
D****]]></Msg_ConfirmCancel><Msg_DownloadIsPaused><!
[CDATA[Download of * has been paused...Click on the tray icon to resum
e downloading.]]></Msg_DownloadIsPaused><Msg_CriticalError
><![CDATA[A critical error has occurred. Installation of * will
be aborted.]]></Msg_CriticalError><Menu_PauseDownload>
<![CDATA[****UNUSED****]]></Menu_PauseDownload><Menu_Ca
ncelInstall><![CDATA[****UNUSED****]]></Menu_CancelInstall
><Menu_ResumeDownload><![CDATA[****UNUSED****]]></Me
nu_ResumeDownload><Menu_ExitInstaller><![CDATA[****UNUSED*
***]]></Menu_ExitInstaller><Msg_WindowTitleLabel><![
CDATA[* - Recommended by *]]></</Msg_MenuItemResume><Ms
g_MenuItemCancel><![CDATA[Cancel Install]]></Msg_MenuItemC
ancel><Msg_PleaseChooseDlgMsg><![CDATA[Please choose an op
tion]]></Msg_PleaseChooseDlgMsg><Msg_InstallOptMsg>

<<< skipped >>>

GET /87/aol-desktop-9.7 Rev 4343.19.exe HTTP/1.0
Host: d7.innovativesyst.com
User-Agent: NSISDL/1.2 (Mozilla)
Accept: */*


HTTP/1.1 200 OK
Server: nginx
Date: Mon, 05 Jan 2015 08:23:56 GMT
Content-Type: application/octet-stream
Content-Length: 210760
Last-Modified: Sun, 01 Dec 2013 06:51:16 GMT
Connection: close
ETag: "529adc64-33748"
Accept-Ranges: bytes
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$..........,K|..K|..
K|...t..J|..._..J|..Xt..I|...t..A|..._..N|..K|...|..Np..A|...w..J|..Np
..J|..RichK|..................PE..L...6.eJ.................h..........
.:[email protected]....................
..................d........................"..H.......................
.....................................................................t
ext...Zf.......h.................. ..`.rdata...............l..........
....@[email protected][email protected]........
...................rsrc...............................@..@............
......................................................................
......................................................................
......................................................................
......................................................................
............................................U....\.}..t .}.F.E.u..H...
..cB..H.P.u..u..u...`[email protected][email protected].@
..}..e....@[email protected]... M.........3..M.....FQ.....NU..M.....
.....VT..U.....FP..E...............E.P.M...D.@[email protected]
....E..9}[email protected].}[email protected]..
[email protected][email protected] ....E..E.Pj.h.[[email protected].@._^3.
[.....L$...dB...i......T.....tUVW.q.3.;5.dB.sD..i......D..S.....t.G...
..t...O..t .....u...3....3...F.....;5.dB.r.[_^...U..QQ.U.SV..i....

<<< skipped >>>

GET /ads/conversion/1026731593/?random=72281364&cv=7&fst=1420478124985&num=3&fmt=3&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=987752761&ipr=y HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com.ua


HTTP/1.1 200 OK
Content-Type: image/gif
Date: Mon, 05 Jan 2015 17:15:49 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 200 OK..Content-Typ
e: image/gif..Date: Mon, 05 Jan 2015 17:15:49 GMT..Pragma: no-cache..E
xpires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Control: no-cache, no-sto
re, must-revalidate..X-Content-Type-Options: nosniff..Server: adclick_
server..Content-Length: 42..X-XSS-Protection: 1; mode=block..Alternate
-Protocol: 80:quic,p=0.002..GIF89a.............!.......,...........D.;
..


GET /?clientv=103&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_offer_downloaded&mstime=36.925&offer_downloaded_secs=0.000&offer_id=3596&package_md5=f0b3c151c25cc5fd45cd63ecda01d5fa&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&tm=2015-01-05 17:14:18.896&v=1.0&signature=de1b4b4a183ef61ddc25a9f8e3b206a7 HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:42 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:42 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
66..<?xml version="1.0"?><track_offer_downloaded><opera
tion>Completed</operation></track_offer_downloaded>..0.
.


GET /clients/bush/waol/0.4343.19.1/comps/browser/aolbwsrinst.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:36 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1054600
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:36 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...<.6D.................|...........;...
[email protected].........................
......................p..............8...P............................
................................................................text..
.bz.......|.................. ..`.rdata...3.......4..................@
[email protected][email protected].....................
..............rsrc........p......................@..@.................
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
t.@..}..e....@[email protected]... M.........3..M.....FQ.....NU..M..
........VT..U.....FP..E...............E.P.M...D.@..E..P.E..E.P.u...x.@
..u....E..9}[email protected].}[email protected]
[email protected][email protected] ....E..E.Pj.h..B.W..|[email protected].....@._
^3.[.....L$....B...i......T.....tUVW.q.3.;5..B.sD..i......D..S.....t.G
.....t...O..t .....u...3....3...F.....;5..B.r.[_^...U..QQ.U.SV..i.

<<< skipped >>>

GET /PublicSureServerSV.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.omniroot.com


HTTP/1.1 200 OK
Accept-Ranges: bytes
Cache-Control: max-age=864000
Content-Type: application/x-pkcs7-crl
Date: Mon, 05 Jan 2015 17:15:50 GMT
Etag: "2b001e-465ae-ae69ad40"
Expires: Thu, 15 Jan 2015 17:15:50 GMT
Last-Modified: Mon, 05 Jan 2015 15:52:45 GMT
Server: ECS (frf/87C8)
X-Cache: HIT
X-Cnection: close
Content-Length: 288174
0..e.0..d....0...*.H........0F1.0...U....Cybertrust Inc1 0)..U..."Cybe
rtrust Public SureServer SV CA..150105153341Z..150115153341Z0..c.0....
..... .Lz...101018164835Z0.........,.)5...101116173409Z0.........,U..I
..101116165848Z0.........,U./...101116173007Z0.........,U.h...10111617
2944Z0.........,V.bC..101116193600Z0.........,V.[H..101116193534Z0....
.....,V3Y)..101116193648Z0.........,V5._..101116193745Z0.........,Vg.z
..101116194901Z0.........,Vh....101116194922Z0.........,Vn.4..10111619
5619Z0.........,Vqvg..101116195553Z0.........,_..(..101118145747Z0....
.....-..4...110315204303Z0........../P....120206141831Z0..........I..@
..120124180322Z0..........JP....110222182509Z0..........Jf/Y..12021314
2815Z0..........Jf.P..120213142915Z0..........OT....120221131614Z0....
......YQ.1..120220131256Z0..........Y`?W..120220131507Z0..........Yuu.
..120220131416Z0..........^..^..111007192320Z0..........`.w...12021314
4727Z0..........`.y...120213145412Z0..........`.&...120130163851Z0....
......hlG...120213145015Z0..........h.....120130140408Z0............j.
..120110213653Z0...........}....110406160143Z0............$...11040100
5006Z0................110401005536Z0............W...120308151704Z0....
.........h..120228141105Z0................110314145902Z0............`.
..110322142311Z0................110322142551Z0............lb..12011021
3802Z0.............0..130201130700Z0............OB..110321165802Z0....
.........o..110321172720Z0...........g.:..120221183148Z0...........Ud.
..110516131110Z0............h5..120229174140Z0................1202

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/AcsInstC.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:26 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 38216
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:26 GMT
Keep-Alive: timeout=2, max=98
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /clients/bush/waol/0.4343.19.1/waol-0.4343.19.1.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:23 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1584976
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:23 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...................
....I. ...............#.......5.D...............g.............2.......
$.......".......'.....Rich............PE..L......N....................
[email protected].............
[email protected]...............
................................................H.......@.............
.......text............................... ..`.rdata...?.......@......
............@[email protected][email protected].........
......................@..@............................................
......................................................................
......................................................................
......................................................................
......................................................................
.............................................|$.....u..g....t$..}.....
[email protected]....#..^..
[email protected]$.u .u.P.u..u..u..u..q.....E.]. ..t$..q ....E.....D$..
.|...;B....B..........hW....:....h...../....U..QQSV.1.^.....M.....W.].
.P...j..u.........u.......E.;.}[email protected]._.S......E.......G.......E._
^..[.....T$.V.......9P...}...~.W.9j.RP.W._..u..b........^...V...L$...u
.h.@...}......P........^......P....V.t$.;.~....x..~.V. ....".@.;.}....
..;.~.......;.}...P.d...^...V....1..P.........^.V....3....A H..@.

<<< skipped >>>

GET /pagead/viewthroughconversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: googleads.g.doubleclick.net
DNT: 1
Connection: Keep-Alive
Cookie: id=caebd6253000002||t=1384780400|et=730|cs=002213fd480c4c2631f7c541a4


HTTP/1.1 302 Found
P3P: policyref="hXXp://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://VVV.google.com/ads/conversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1280476108
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;..


GET /MEQwQjBAMD4wPDAJBgUrDgMCGgUABBSxtDkXkBa3l3lQEfFgudSiPNvt7gQUAPkqw0GRtsnCuD5V8sCXEROgByACAwI6dg== HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: g.symcd.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1363
content-transfer-encoding: binary
Cache-Control: max-age=420804, public, no-transform, must-revalidate
Last-Modified: Sat, 3 Jan 2015 14:08:53 GMT
Expires: Sat, 10 Jan 2015 14:08:53 GMT
Date: Mon, 05 Jan 2015 17:15:48 GMT
Connection: keep-alive
0..O......H0..D.. .....0.....50..10......7).nj./P(.3.\\.;.B....2015010
3140853Z0f0d0<0... ..........9.....yP..`...<.......*.A.....>U
....... ...:v....20150103140853Z....20150110140853Z0...*.H............
..Y..lK......q..nR......qY-.H..lq.s.T......6..'~.qV...S.9T.1...i.A..3L
.....Y...........=.&..q2I.)[email protected]'lC..?..E....
..w "2.......R....0S.h...%....H...Ov.f....\q.g..g.."&.}C.L.......;._..
..`..s.:.`.V............Nk..I}OK.......{89..L.{....0...0..}0..e.......
.:}0...*.H........0B1.0...U....US1.0...U....GeoTrust Inc.1.0...U....Ge
oTrust Global CA0...141201130534Z..151216130534Z02100...U...'GeoTrust
Global CA TGV OCSP Responder 30.."0...*.H.............0............\.h
pc..J.a.j-.t......F`Aw...)L.YE.2..~..-...2.Y(.".CZ.w..T..Y. syd.....x.
.YE..<....lwv.:J.76>U....uF.a.|8N.. ..1p...`f.X...B>x........
......6..m.&...'..W.plK....[.m.V..h..lI.........?~.....>.|'....o...
A!.Pm.*.N ...<.....3...*|.x._..1..m.W<*....._S.............0..0.
..U.#..0....z.h.....d..}.}e...N0... .....0......0...U.%..0... .......0
...U...........0...U.......0.0!..U....0...0.1.0...U....TGV-B-2830...*.
H.............~....2!...V..0...Y....L..k....z}~a.3Y.x..dS.L...Dk$a...n
R9_......B......m....Y....U.5....'.....<{....v&=.2].....j*.r(7...=.
.w.I...z....\.#.J.ac.....I.[.[....6.X....0...g.3d...z.i.H..f...v.....\
.....^.N..1.J<.)`Z.....4.-.E..n.E.~t....v.e.T...?. ......i..%....

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/toolbar/aol_toolbar.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:17:00 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 3806192
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:27:00 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$........-J..L$..L$.
.L$./D{..L$..L%.?L$."Dy..L$..o...L$.fJ"..L$.Rich.L$...................
......PE..L...DV.F.................d..........C5............@.........
.........................S:...........................................
[email protected]...............................................
.............................................text...\b.......d........
.......... ..`.rdata...............h..............@[email protected]......
.....|[email protected]....... ...........................rsrc.
[email protected]..................@..@....................................
......................................................................
......................................................................
......................................................................
......................................................................
............................................U....\.}..t .}.F.E.u..H...
[email protected][email protected]...\.@
..}[email protected]... [email protected].
....W..C....;.tfj\[email protected]?..|.@.=....t...|[email protected].@
[email protected]<.@..'L..YY.E..E...F:.u.9].t.j..G...Wh.xC..
[email protected][email protected]..
@...K......E......j......j........j..E........Wh..@...K..YY.u.V..p.@..
.t.j......9].t%V..K....t..u.V./[email protected]..@..

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/sysinfo/SinfInst.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:28 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 711216
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:28 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBS56bKHAoUD+Oyl+0LhPg9JxyQm4gQUf9Nlp8Ld7LvwMAnzQzn6Aq8zMTMCEFIA5aolVvwahu2WydRLM8c= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1762
content-transfer-encoding: binary
Cache-Control: max-age=326261, public, no-transform, must-revalidate
Last-Modified: Fri, 2 Jan 2015 11:48:41 GMT
Expires: Fri, 9 Jan 2015 11:48:41 GMT
Date: Mon, 05 Jan 2015 17:15:16 GMT
Connection: keep-alive
0..........0..... .....0......0...0......;O}a.!..u...au..eUNp..2015010
2114841Z0s0q0I0... ...................B.>.I.$&.....e......0..C9...3
13..R...%V.......K3.....20150102114841Z....20150109114841Z0...*.H.....
........`...........:....A. ....&...\._..?B...bpv..w...:p?v.Dg`Y...4.
.:.....fD..Z.r._'..2...q.{%[email protected].#c{.p.R].......`z..
.Jw.8.o...-..OOjJ,.m..W......*......;....^.....|9q..L?]..a.... ....B."
..x...lU..s/.b..>3;]......~...6{..*I.r6|{..\&..c.5........0...0...0
...........2...'U.BM...g.B0...*.H........0..1.0...U....US1.0...U....Ve
riSign, Inc.1.0...U....VeriSign Trust Network1:08..U...1(c) 2006 VeriS
ign, Inc. - For authorized use only1E0C..U...<VeriSign Class 3 Publ
ic Primary Certification Authority - G50...141202000000Z..151216235959
Z0..1.0...U....US1.0...U....Symantec Corporation1.0...U....Symantec Tr
ust Network1?0=..U...6Symantec Class 3 PCA - G5 OCSP Responder Certifi
cate 30.."0...*.H.............0...............2&..PL...,..2....:..tH..
.`JG.%..*...s.c%[email protected]"1.5?..s.....
3[...u......]...R0..Z}....l..I.Y.....j\H.q...#.uw.4qz.#.J.....@2$"..$l
.B.......D.ye..(..2.........@...... ...."... E..0M,..b{.^..s'....f.6.p
r4.J........'j..........0...0...U.......0.0l..U. .e0c0a..`.H...E....0R
0&.. .........hXXp://VVV.symauth.com/cps0(.. .......0...hXXp://VVV.sym
auth.com/rpa0...U.%..0... .......0...U...........0... .....0......0!..
U....0...0.1.0...U....TGV-B-2760...U......;O}a.!..u...au..eUNp0...U.#.
.0.....e......0..C9...3130...*.H.............(.&..Dgr.Ve..#...5.N.

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBTSqZMG5M8TA9rdzkbCnNwuMAd5VgQUz5mp6nsm9EvJjo/X8AUm7+PSp50CECAKfRxMDvODER0cHOAslgg= HTTP/1.1

Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1725
content-transfer-encoding: binary
Cache-Control: max-age=428269, public, no-transform, must-revalidate
Last-Modified: Sat, 3 Jan 2015 16:09:07 GMT
Expires: Sat, 10 Jan 2015 16:09:07 GMT
Date: Mon, 05 Jan 2015 17:15:16 GMT
Connection: keep-alive
0..........0..... .....0......0...0......u\..3Oo?U...H.....O!..2015010
3160907Z0s0q0I0... ...................F....0.yV......{&.K......&......
. .}.L........,......20150103160907Z....20150110160907Z0...*.H........
.....h.q49...y..]..#....k.k[..I<..(E.k~m.j....C.....t;......at.....
...&..olI..v..,y............w{RY_..1M$..1D.....K..s;.k...t..:.%,.l....
.........^pY.#.=H.!....'....S..$K.4. ....LGT`..r8......hR..2{G.x3k.7..
).P..........s.K...u....,.i.h.I....}MB.m.........b}.\.....0...0...0...
......./...nj0...}..i..0...*.H........0..1.0...U....US1.0...U....VeriS
ign, Inc.1.0...U....VeriSign Trust Network1;09..U...2Terms of use at h
ttps://VVV.verisign.com/rpa (c)101.0,..U...%VeriSign Class 3 Code Sign
ing 2010 CA0...141204000000Z..150304235959Z0..1.0...U....US1.0...U....
VeriSign, Inc.1.0...U....VeriSign Trust Network1:08..U...1VeriSign Cla
ss 3 Code Signing 2010 OCSP Responder0.."0...*.H.............0........
.4.4...........o....?..f.........I.!.b.L...L..U.........rM.,.....=..cR
4d.~*..k..x......=.WT.<.A2n1.qZyM.M..Q_...8....9....d.... ...'.....
....h..Z..I...(.b.jK..DO.ra..gb..j..A.(....mrzU.w.......Bv...l.:s..L..
..y.....u..n.)W......Y!....Q...,.i|.....:.Mu..DD1.........0...0...U...
.0.0....U. ...0..0....`.H...E....0..0(.. .........hXXps://VVV.verisign
.com/CPS0b.. .......0V0...VeriSign, Inc.0.....=VeriSign's CPS incorp.
by reference liab. ltd. (c)97 VeriSign0...U.%..0... .......0...U......
..0... .....0......0"..U....0...0.1.0...U....TGV-B-24600...*.H........
[email protected].=.. ...........hi.......>....Q.?

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/search/aolSearchInstaller.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:49 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 24392
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:49 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$......."D..f%..f%..
f%...j3.g%..o]0.d%..o]&.s%..o]!.b%..o]6.b%..A...g%..A...a%..f%..7%..o]
/.d%..o]1.g%..o]4.g%..Richf%..........................PE..L...NH.N....
............. ...&......D'.......0....@...............................
........@.................................`8..x....`...............J..
H....p..t...`[email protected]..<..
..........................text...a........ .................. ..`.rdat
a.......0.......$..............@[email protected]...$....P.......:.............
[email protected]........`.......<..............@[email protected]
[email protected]....................................................
......................................................................
......................................................................
......................................................................
.....................................................2@..%[email protected]...
[email protected]@..D$..t.V..........^...............................y$.r..A..
.A....V...N....2@...\[email protected]@..D$..t.V.?........^...V...N....2@...\0
@...^.%[email protected]@[email protected]$.d........t$..|$ W...0@...
..D$.....W.N....2@...`[email protected]$.d......Y_^.................j.h3/@.d....
.P.. [email protected][email protected]..$4...d.......$D.....3...$.....D$..
\$...$..../.....$ .....$$... .....$([email protected]..$ ...Q....$D.....|0@..
.x0@...;:......GW..$ ...P......|[email protected]@....|$ ;9t..G.PV..$....R..

<<< skipped >>>

GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_encapsulated_offer_install_started&offer_id=3596&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&v=1.0&signature=e49c96333e81f97eea551ea7e8c1e884 HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:25 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:15:25 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
8a..<?xml version="1.0"?><track_encapsulated_offer_install_st
arted><operation>Completed</operation></track_encaps
ulated_offer_install_started>..0..


GET /ThawtePremiumServerCA.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.thawte.com


HTTP/1.1 200 OK
Server: Apache
ETag: "d612dacc4adb2e3678ab51b69ff5c986:1420449046"
Last-Modified: Mon, 05 Jan 2015 09:10:46 GMT
Date: Mon, 05 Jan 2015 17:15:48 GMT
Content-Length: 12487
Connection: keep-alive
Content-Type: application/pkix-crl
0.0.0.0,0...*.H........0..1.0...U....ZA1.0...U....Western Cape1.0...U.
...Cape Town1.0...U....Thawte Consulting cc1(0&..U....Certification Se
rvices Division1!0...U....Thawte Premium Server CA1(0&..*.H........pre
[email protected]./*0!....f....p..
........100129104213Z0!....l.C`..L.%|\.T...130819183955Z0!....T..W...p
.[..%...100322161038Z0!....hx.....k...7....130919164724Z0!....$#.R|..$
.....j..130926101045Z0!...!P..6{[email protected]!...Da\v.....
.....%..130920062728Z0!...>.e..-...s[.2I...140418142220Z0!....dU...
(...=...*..140801114607Z0!........d.{#E..9`...130926061856Z0!....6..q.
'tT..1.Q...130926062249Z0!.....cXzF..(O0.|.N..131002103626Z0!.........
...>..i....130528164218Z0!..........#.P.......130716072254Z0!.....W
........JH....130924125316Z0!.....%.......R......100801221434Z0!.....M
..HK.....x....130926060355Z0!....k."..z......64..130919082450Z0!...N..
D...0....`H2..130829152308Z0!......Q..m...A..j...100226190909Z0!.....-
...k......h...130930085951Z0!...... ...7. .UA.I..130927152007Z0!.....}
.L....\/..$^..100407191443Z0!....1....c...s.>9t..100215170304Z0!...
W..._....%..I....130926063253Z0!..._._~gq.I.)[email protected]!...
..=X>...][email protected]!.............U.<....100318180248
Z0!... .(........n.S...130923202627Z0!.....k(....k4.......130919073042
Z0!....rF..O..#^.......100312081338Z0!....\x...DyV........130920004114
Z0!.....:...B..=]Hsx_..130920011556Z0!....uJdm..'...\G....130523054519
Z0!....]h..g.o....@\ ..100107184454Z0!...z..1).Ht.........10032315

<<< skipped >>>

GET /ads/conversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1465290058&ipr=y HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com.ua


HTTP/1.1 200 OK
Content-Type: image/gif
Date: Mon, 05 Jan 2015 17:15:49 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 200 OK..Content-Typ
e: image/gif..Date: Mon, 05 Jan 2015 17:15:49 GMT..Pragma: no-cache..E
xpires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Control: no-cache, no-sto
re, must-revalidate..X-Content-Type-Options: nosniff..Server: adclick_
server..Content-Length: 42..X-XSS-Protection: 1; mode=block..Alternate
-Protocol: 80:quic,p=0.002..GIF89a.............!.......,...........D.;
..


HEAD /clients/bush/waol/0.4343.19.1/comps/browser/aolbwsrlp.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:15 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 106160
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:15 GMT
Keep-Alive: timeout=2, max=96
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpchk.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:57 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 15144
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:57 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$.......e...!.n.!.n.
!.n...3.%.n.!.o.:.n.N.j.".n.N.d.%.n.2...$.n...1.'.n.....#.n...2. .n...
0. .n...4. .n.Rich!.n.........................PE..L....}.H...........!
......................... ...............................`.......>.
..............................%......X#[email protected]............(..(....
P..4...p ............................................... ..l..........
..................text...$........................... ..`.rdata.......
......................@[email protected][email protected]
rc...x....@......................@[email protected]..$....P....... ...........
[email protected]...............................................................
......................................................................
......................................................................
......................................................................
..................................................................V.t$
.W.=` ..V.D$......D$.............s._...^......V.....=....v._.....^....
.....0..j..D$.Pj.h?...j.j.j.Qh.......0....uf.L$..T$.RV.D$.Pj.Vt......3
.....t<../t...\u..B.B....u...t$.}...t' ........;.v...VSW.......>
....E...t...._^[]...U....0.....0..S3.;.t...;..E.......VW.5.0..... ..;.
.E...c........W......P... ....u.......W......P... ....u........5. ..W.
.....P.u.....u.......W......PS... ..P....u.............P.E.P......P...
...E..P...@:.u. ..........p...@:.u. ................P.E.P......P.b

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/parcon/AOLParconLink.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:38 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 58696
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:38 GMT
Keep-Alive: timeout=2, max=91
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$..........|.../.../
.../.../.../.../.../.../.../l../.../.../.../.../.../.../.../.../.../z.
./.../.../.../Rich.../........................PE..L...4.jL............
.........`.......'............@.................................~n....
..............................................X...............H.......
....@[email protected].............
...............text...Jr.......................... ..`.rdata..........
. ..................@[email protected]...\ [email protected].
..X...........................@..@....................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..................................................................

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpinst.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:49 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 4020768
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:49 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/instSup.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:00 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 74536
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:00 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload
[email protected].........
..!..L.!This program cannot be run in DOS mode....$.........XD..6...6.
..6.l./...6...k...6...k...6...i...6...V...6..._...6...i...6...7.D.6...
2...6...8...6...<...6...V...6...9...6...R...6...j...6.z.h...6...l..
.6.Rich..6.........................PE..L....}.H...........!.....p.....
.....M@.............................................. ................
...................}[email protected]...............(....... ..........
......................................................................
....text....d.......p.................. ..`.rdata...G.......P.........
.........@[email protected][email protected]........
...................@[email protected]..(........ [email protected].......
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..................................................................

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/msvcr9/msvc9rt.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:16 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1113240
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:16 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...<.6D.................|...........;...
[email protected].................................
......................`..............H...P............................
................................................................text..
.bz.......|.................. ..`.rdata...3.......4..................@
[email protected][email protected].....................
..............rsrc........`......................@..@.................
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
t.@..}..e....@[email protected]... [email protected]
[email protected][email protected].`...3..k...
[email protected]...;.........t.B..}........j.....@........}....B. ....
[email protected])...t....@..@.@.......@.@
....@...@[email protected][email protected]..]:[email protected].
[email protected][email protected][email protected].... .B.

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/tb/tbsetup.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:47 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 417240
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:47 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...<.6D.................|...........;...
.........@.................................#..........................
......................p...............H..H............................
................................................................text..
.bz.......|.................. ..`.rdata...3.......4..................@
[email protected][email protected].....................
..............rsrc........p......................@..@.................
......................................................................
......................................................................
......................................................................
......................................................................
...............................................U....\.}..t .}.F.E.u..H
[email protected][email protected]...
t.@..}..e....@[email protected]... M.........3..M.....FQ.....NU..M..
........VT..U.....FP..E...............E.P.M...D.@..E..P.E..E.P.u...x.@
..u....E..9}[email protected].}[email protected]
[email protected][email protected] ....E..E.Pj.h..B.W..|[email protected].....@._
^3.[.....L$....B...i......T.....tUVW.q.3.;5..B.sD..i......D..S.....t.G
.....t...O..t .....u...3....3...F.....;5..B.r.[_^...U..QQ.U.SV..i.

<<< skipped >>>

GET /pagead/conversion/1017626827/?random=1420478124985&cv=7&fst=1420478124985&num=1&fmt=4&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1 HTTP/1.1
Accept: application/javascript, */*;q=0.8
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.googleadservices.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 200 OK
P3P: policyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Content-Type: text/javascript; charset=UTF-8
X-Content-Type-Options: nosniff
Content-Disposition: attachment; filename="f.txt"
Content-Encoding: gzip
Server: cafe
Content-Length: 378
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
..........=QMk.0.. !P.{.%y...0.g)e.M...E .e%.d.a.....{..f.<.4......
....."....X\...P..?...^......R..2(.P..w.jP.-?.........q..wI....}..S.xs
,.m..g/l.&.....*[email protected]%.....c[.....S...}.,p.,.$.F..../..x:./......:
.o..U.p.2.@KT.=.x%...7.fu...#<2....<f Fh.f..).Cy....6..^...." ..
...$..k'=m..~.zo`s....t]."&.i.z....%..."..l:.)..W.,.Y2.K^....v....v...
.E:...2{.h#...$...k......>...{..9....
....



GET /pagead/conversion/1069401893/?random=1420478125198&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.googleadservices.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 302 Found
P3P: policyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1069401893/?random=1715996639&cv=7&fst=1420478124985&num=2&fmt=3&value=0&label=k8iVCPmSqgIQpY73_QM&bg=ffffff&hl=de&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;....



GET /pagead/conversion/1017626827/?random=1420478125407&cv=7&fst=1420478124985&num=5&fmt=3&value=0&label=iPiLCJX99QcQy4Gf5QM&bg=ffffff&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.googleadservices.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 302 Found
P3P: policyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1017626827/?random=474304591&cv=7&fst=1420478124985&num=5&fmt=3&value=0&label=iPiLCJX99QcQy4Gf5QM&bg=ffffff&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 302 Found..P3P: pol
icyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV P
SA PSD IVA IVD OTP OUR OTR IND OTC"..Date: Mon, 05 Jan 2015 17:15:48 G
MT..Pragma: no-cache..Expires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Co
ntrol: no-cache, must-revalidate..Location: hXXp://googleads.g.doublec
lick.net/pagead/viewthroughconversion/1017626827/?random=474304591&cv=
7&fst=1420478124985&num=5&fmt=3&value=0&label=iPiLCJX99QcQy4Gf5QM&bg=f
fffff&guid=ON&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz
=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/
services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_pr
esent=false&convclickts=0..Content-Type: image/gif..X-Content-Type-Opt
ions: nosniff..Server: cafe..Content-Length: 42..X-XSS-Protection: 1;
mode=block..Alternate-Protocol: 80:quic,p=0.002..GIF89a.............!.
......,...........D.;..

<<< skipped >>>

GET /CRL/Omniroot2025.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: cdp1.public-trust.com


HTTP/1.1 200 OK
Server: Apache/2.2.15 (CentOS)
Last-Modified: Thu, 01 Jan 2015 06:15:02 GMT
ETag: "2015b-6ca-50b91250442c0"
Accept-Ranges: bytes
Content-Type: application/x-pkcs7-crl
Connection: Keep-Alive
Date: Mon, 05 Jan 2015 17:17:02 GMT
Content-Length: 1738
0...0......0...*.H........0Z1.0...U....IE1.0...U....Baltimore1.0...U..
..CyberTrust1"0 ..U....Baltimore CyberTrust Root..141203203331Z..15033
1203831Z0...0....'k...120111220757Z0....'k...120111220847Z0....'.C..13
0130174530Z0....'....130807173059Z0....'....140122185220Z0....'....140
212185542Z0....'....141112202254Z0....'....100217174732Z0....'#...1003
03201301Z0....'!...100312202204Z0....''q..100414175202Z0....'L...11022
4181251Z0....'Pn..110309142119Z0....'....100216203312Z0....'#...100303
201213Z0....'3#..100908172555Z0....''n..101208175627Z0....''m..1012081
75749Z0....''p..101208175916Z0....'H...110114162156Z0#...'X>..11081
5145134Z0.0...U.......0#...'Z2..110818184101Z0.0...U.......0....'g...1
20111164333Z0....'g...120111164409Z0....'g...120111164519Z0....'....10
0216213519Z0....''s..100414175225Z0....''k..100414181839Z0....'3"..100
908172705Z0....'3$..100908172728Z0....''o..101208175645Z0....''l..1012
08175727Z0....'H...110119195142Z0....'Nz..110302154045Z0....'c...11120
7220933Z0....'g...120111164445Z0....''r..100414175143Z0....'8...101012
182723Z0....'e...120111163041Z0....'VJ..110714160903Z0....'s...1301231
62633Z0....'....130904190524Z0....'....131024214319Z0....'....14012917
2435Z0....'....140129172453Z0....'....131024214310Z0....'....131101204
601Z0....'....140219171632Z0....'.^..140409155638Z0....'i...1407091719
30Z0....'/:..141119193302Z0....'k...120111220827Z0....'8...14071619120
3Z0....'....131219195909Z0....'....140219171545Z..0.0...U........0...*
.H.................^..>....]K.................7......~./?...lG.

<<< skipped >>>

GET /ads/conversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1465290058 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com


HTTP/1.1 302 Found
Location: hXXp://VVV.google.com.ua/ads/conversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1465290058&ipr=y
Cache-Control: private, max-age=43200
Date: Mon, 05 Jan 2015 17:15:48 GMT
Expires: Mon, 05 Jan 2015 17:15:48 GMT
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 741
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
<HTML><HEAD><meta http-equiv="content-type" content="te
xt/html;charset=utf-8">.<TITLE>302 Moved</TITLE></HE
AD><BODY>.<H1>302 Moved</H1>.The document has mov
ed.<A HREF="hXXp://VVV.google.com.ua/ads/conversion/1017626827/?ran
dom=167188712&cv=7&fst=1420478124985&num=1&fmt=3&v
alue=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=
ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=17
16&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&
amp;u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-
new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_prese
nt=false&cdct=2&convclickts=0&random=1465290058&ipr=y"
>here</A>...</BODY></HTML>....

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBS56bKHAoUD+Oyl+0LhPg9JxyQm4gQUf9Nlp8Ld7LvwMAnzQzn6Aq8zMTMCEFIA5aolVvwahu2WydRLM8c= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1762
content-transfer-encoding: binary
Cache-Control: max-age=326138, public, no-transform, must-revalidate
Last-Modified: Fri, 2 Jan 2015 11:48:41 GMT
Expires: Fri, 9 Jan 2015 11:48:41 GMT
Date: Mon, 05 Jan 2015 17:15:29 GMT
Connection: keep-alive
0..........0..... .....0......0...0......;O}a.!..u...au..eUNp..2015010
2114841Z0s0q0I0... ...................B.>.I.$&.....e......0..C9...3
13..R...%V.......K3.....20150102114841Z....20150109114841Z0...*.H.....
........`...........:....A. ....&...\._..?B...bpv..w...:p?v.Dg`Y...4.
.:.....fD..Z.r._'..2...q.{%[email protected].#c{.p.R].......`z..
.Jw.8.o...-..OOjJ,.m..W......*......;....^.....|9q..L?]..a.... ....B."
..x...lU..s/.b..>3;]......~...6{..*I.r6|{..\&..c.5........0...0...0
...........2...'U.BM...g.B0...*.H........0..1.0...U....US1.0...U....Ve
riSign, Inc.1.0...U....VeriSign Trust Network1:08..U...1(c) 2006 VeriS
ign, Inc. - For authorized use only1E0C..U...<VeriSign Class 3 Publ
ic Primary Certification Authority - G50...141202000000Z..151216235959
Z0..1.0...U....US1.0...U....Symantec Corporation1.0...U....Symantec Tr
ust Network1?0=..U...6Symantec Class 3 PCA - G5 OCSP Responder Certifi
cate 30.."0...*.H.............0...............2&..PL...,..2....:..tH..
.`JG.%..*...s.c%[email protected]"1.5?..s.....
3[...u......]...R0..Z}....l..I.Y.....j\H.q...#.uw.4qz.#.J.....@2$"..$l
.B.......D.ye..(..2.........@...... ...."... E..0M,..b{.^..s'....f.6.p
r4.J........'j..........0...0...U.......0.0l..U. .e0c0a..`.H...E....0R
0&.. .........hXXp://VVV.symauth.com/cps0(.. .......0...hXXp://VVV.sym
auth.com/rpa0...U.%..0... .......0...U...........0... .....0......0!..
U....0...0.1.0...U....TGV-B-2760...U......;O}a.!..u...au..eUNp0...U.#.
.0.....e......0..C9...3130...*.H.............(.&..Dgr.Ve..#...5.N.

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBTSqZMG5M8TA9rdzkbCnNwuMAd5VgQUz5mp6nsm9EvJjo/X8AUm7+PSp50CECIVIUXpJZiHEgbSY/2ShDY= HTTP/1.1

Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1725
content-transfer-encoding: binary
Cache-Control: max-age=482000, public, no-transform, must-revalidate
Last-Modified: Sun, 4 Jan 2015 07:04:25 GMT
Expires: Sun, 11 Jan 2015 07:04:25 GMT
Date: Mon, 05 Jan 2015 17:15:29 GMT
Connection: keep-alive
0..........0..... .....0......0...0......u\..3Oo?U...H.....O!..2015010
4070425Z0s0q0I0... ...................F....0.yV......{&.K......&......
.".!E.%.....c...6....20150104070425Z....20150111070425Z0...*.H........
.....P} $r.A_....(...5..-..^...o.....8...u...)...w..Q.^...%f.F..3.f...
...m.K9kP..N..6.lj......:....#[email protected]$I.......u..q..\5>.r*.../....Gk@
....k..>..9.YX.....?sk.|...`a.......`.4...he#.......<.fH.i..w.m.
c.JR......5L.....q.5..O^..>-.z.}.......N=..5..[>.?9..!..........
0...0...0........../...nj0...}..i..0...*.H........0..1.0...U....US1.0.
..U....VeriSign, Inc.1.0...U....VeriSign Trust Network1;09..U...2Terms
of use at hXXps://VVV.verisign.com/rpa (c)101.0,..U...%VeriSign Class
3 Code Signing 2010 CA0...141204000000Z..150304235959Z0..1.0...U....U
S1.0...U....VeriSign, Inc.1.0...U....VeriSign Trust Network1:08..U...1
VeriSign Class 3 Code Signing 2010 OCSP Responder0.."0...*.H..........
...0.........4.4...........o....?..f.........I.!.b.L...L..U.........rM
.,.....=..cR4d.~*..k..x......=.WT.<.A2n1.qZyM.M..Q_...8....9....d..
.. ...'.........h..Z..I...(.b.jK..DO.ra..gb..j..A.(....mrzU.w.......Bv
...l.:s..L....y.....u..n.)W......Y!....Q...,.i|.....:.Mu..DD1.........
0...0...U....0.0....U. ...0..0....`.H...E....0..0(.. .........hXXps://
VVV.verisign.com/CPS0b.. .......0V0...VeriSign, Inc.0.....=VeriSign's
CPS incorp. by reference liab. ltd. (c)97 VeriSign0...U.%..0... ......
.0...U........0... .....0......0"..U....0...0.1.0...U....TGV-B-24600..
.*[email protected].=.. ...........hi......

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBQwF4prw9S7mCbCEHD/yl6nWPkczAQUe1tFz6/Oy3r9MZIaarbzRutXSFACEHYQEooXtoK7Oh+dGpo1wJI= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.thawte.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1503
content-transfer-encoding: binary
Cache-Control: max-age=448926, public, no-transform, must-revalidate
Last-Modified: Sat, 3 Jan 2015 21:53:55 GMT
Expires: Sat, 10 Jan 2015 21:53:55 GMT
Date: Mon, 05 Jan 2015 17:15:48 GMT
Connection: keep-alive
0..........0..... .....0......0...0......&Km...."....}....,.c..2015010
3215355Z0s0q0I0... ........0..k....&..p..^.X.....{[E....z.1..j..F.WHP.
.v.......:....5......20150103215355Z....20150110215355Z0...*.H........
.......%|...:.M.....[xB......U~....Q.....b...1 .,&Q!.Wh......`..I.k...
...TF..w.,.!...E.c!...FQ....{g.0...$s0-b..^..l........:{q..CB3.....`F.
...wQam.h.A..}.3w.?..X$.v....yM..o}..3..._..._.a^..Bz.. .rd.&...Y%..I`
&.......LhXw..r,)..,..bg.F.to..V\...'Er.X.OFS.....w....0...0...0......
......I...*....^n...0...*.H........0..1.0...U....US1.0...U....thawte,
Inc.1(0&..U....Certification Services Division1806..U.../(c) 2006 thaw
te, Inc. - For authorized use only1.0...U....thawte Primary Root CA0..
.141202000000Z..151216235959Z0_1.0...U....US1.0...U....thawte, Inc.190
7..U...0thawte Primary Root OCSP Responder Certificate 30.."0...*.H...
..........0.........x...F83..,.D.,2D.;JGc.|_.k.....B.7.....G}.M.s.....
S.i.Uu.h.Aq..v...4:l..U.......T7l...~vl...r....{*..........V.o..8|.B..
^.a.. ...z....x..s...\[Y....<....'> ..YC..7.zVk.$...o3..kao]c...
>C./bPX.......I..Oc.....NN......g.....,/..]......qN.....V!<.3.).
..y#.........i0g0...U.%..0... .......0... .....0......0...U.......0.0.
..U...........0!..U....0...0.1.0...U....TGV-B-2770...*.H..............
..lt..\..z. ..N.f.!.S5d?J.&....r...D........L.`.s.p...HC.L.8f... .....
....GA7......P..Z.%.../............z.n.6~I...].).....W...W\|.uya..:...
^...hW..7.Z.uc.'....:.xL...HS.....>.........5......%....3S....h....
....U....o.C.\.t.....G.._.C0(l.E9..6UTxg.gF ..;.
....

<<< skipped >>>

GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBT1uKgYjpCmJone3Avzs5JQQsaeCgQUq0TkXeyDx9nAhZ/34caXkLCMP5gCEHwXPZBtM3AREod3hWg/yGI= HTTP/1.1

Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.thawte.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1402
content-transfer-encoding: binary
Cache-Control: max-age=582819, public, no-transform, must-revalidate
Last-Modified: Mon, 5 Jan 2015 11:09:28 GMT
Expires: Mon, 12 Jan 2015 11:09:28 GMT
Date: Mon, 05 Jan 2015 17:15:49 GMT
Connection: keep-alive
0..v......o0..k.. .....0.....\0..X0..............{.k@>@..7Fw ..2015
0105110928Z0s0q0I0... ...............&.......PB......D.]..............
?...|.=.m3p...w.h?.b....20150105110928Z....20150112110928Z0...*.H.....
..........t.1p.._.IQ.zX..=T..2.D.!..4..ac....t=..:..L..H....&.........
..'..5_...a.0,......_..&....M...,h..D..0.........`-X...m....J.0..~.n..
S.$...G...*U......z.".(.*P.4........#.../XoA.l.&.<L.wg)....#...|...
G.j.....$......9T........\..c5..VK..............E...{...u....0...0...0
..........J.uc.%....&d.x|.0...*.H........0^1.0...U....US1.0...U....Tha
wte, Inc.1.0...U....Domain Validated SSL1.0...U....Thawte DV SSL CA0..
.141204000000Z..150304235959Z0K1.0...U....US1.0...U....Thawte, Inc.1%0
#..U....Thawte DV SSL OCSP Responder0.."0...*.H.............0.........
.PI......h?]..L[....9../..xuW........Ky...u_..y. :&.../tV.p....f..G.Nu
.......U8Y..>^%..l$.<..w.&u....#).\,z.(..L..4Ve.EC....?J.t...K..
U....!FI28.....f/..\......._..... Y....8\:[.\....vd...3o......!G.]....
><T...b....../.' .m.......<...E.`...3..w....HTTP/1.1 200 OK..
Server: nginx/1.4.7..Content-Type: application/ocsp-response..Content-
Length: 1402..content-transfer-encoding: binary..Cache-Control: max-ag
e=582819, public, no-transform, must-revalidate..Last-Modified: Mon, 5
Jan 2015 11:09:28 GMT..Expires: Mon, 12 Jan 2015 11:09:28 GMT..Date:
Mon, 05 Jan 2015 17:15:49 GMT..Connection: keep-alive..0..v......o0..k
.. .....0.....\0..X0..............{.k@>@..7Fw ..20150105110928Z0s0q
0I0... ...............&.......PB......D.]..............?...|.=.m3p

<<< skipped >>>

POST /b/ss//6 HTTP/1.1
Host: instlxml1.sa.aol.com
Connection: close
Content-Length: 592

<?xml version="1.0" encoding="UTF-8"?><request><channel>us.clientinstall</channel><reportSuiteID>aolinstaller</reportSuiteID><language>en-us</language><prop1>9.7</prop1><prop2>4343.19</prop2><evar2>ie</evar2><evar3>9.10.9200.16521</evar3><evar7>Windows</evar7><evar8>Windows 7</evar8><evar10>Service Pack 1</evar10><evar11>2047</evar11><evar13>4343.19</evar13><events>event1</events><evar14>Unknown</evar14><products>;aol_9.7_ins;;</products><pageName>Initialize installer</pageName><visitorid>8498931827434496-329728342310253</visitorid><prop3>gmt_5</prop3><prop24>uaid_na</prop24></request>
HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:17:06 GMT
Server: Omniture DC/2.0.0
Access-Control-Allow-Origin: *
X-C: ms-4.9.2
Expires: Sun, 04 Jan 2015 17:17:06 GMT
Last-Modified: Tue, 06 Jan 2015 17:17:06 GMT
Cache-Control: no-cache, no-store, max-age=0, no-transform, private
Pragma: no-cache
ETag: "54AAC712-401E-2BED3E25"
Vary: *
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www74
Content-Length: 64
Content-Type: text/xml
Connection: close
<?xml version="1.0" encoding="UTF-8"?>.<status>SUCCESS<
/status>...


GET /?clientv=103&csk=12586259620818734781-11775504302967998912&method=track_product_installed&mstime=36.504&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&skip=0&tm=2015-01-05 17:14:16.400&v=1.0&signature=6a52480ee7fd9f8e47f688627102722c HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:39 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:39 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
68..<?xml version="1.0"?><track_product_installed><oper
ation>Completed</operation></track_product_installed>..
0..


GET /gsorganizationvalg2/MFMwUTBPME0wSzAJBgUrDgMCGgUABBReGXQV/tqUV3SNMRE+s25eR/vhjwQUXUayjcRLdBy77fVztjq3OI91nn4CEhEh54JWgbQMvvRwtKAm/gVdLg== HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp2.globalsign.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:49 GMT
Content-Type: application/ocsp-response
Content-Length: 1499
Connection: keep-alive
Set-Cookie: __cfduid=d20889b4cfbe90606d0caaf2adfdc91761420478149; expires=Tue, 05-Jan-16 17:15:49 GMT; path=/; domain=.globalsign.com; HttpOnly
Last-Modified: Mon, 05 Jan 2015 07:00:19 GMT
ETag: 02f295aaf9282677b4ed629d34fbf31e70a6e7fe
Expires: Tue, 06 Jan 2015 17:15:48 GMT
Cache-Control: public, max-age=86399
CF-Cache-Status: HIT
Server: cloudflare-nginx
CF-RAY: 1a4151f26f531583-FRA
0..........0..... .....0......0...0.........$"/q.>......!.=r]..2015
0105070019Z0u0s0K0... ........^.t....Wt.1.>.n^G.....]F...Kt....s.:.
8.u.~...!..V.....p..&..].....20150105070019Z....20150106070019Z0...*.H
.............D...)..7..-He.....x..zl."......&P[.K......]...nN...<u]
./_....o........yl...}4...........h.y..-..8Q....v.J..fY}..'O.9.<^..
..o......J8..`..?..M......_...~L..=..<y..`.!Z...W1..s:.3....`%g....
&..Yu......C.B.S...%>9.x.7WK....=....4.c.p.v.XY.IB..F....t."./c..i.
...0...0...0...........!7........h.!v.).0...*.H........0]1.0...U....BE
1.0...U....GlobalSign nv-sa1301..U...*GlobalSign Organization Validati
on CA - G20...141212164441Z..150312164441Z0..1.0...U....BE1.0...U....G
lobalSign nv-sa1F0D..U...=GlobalSign Organization Validation CA - G2 O
CSP responder - 21.0...U....201412121744000.."0...*.H.............0...
.........L.1y..c...)...o...l......%i.v.....&...s....u..1.C..VqPr.Ki.E.
....G..a .E....nz.z..r....g.3.d........R.c......y|[....W....F...`.....
."..3!.~.........&,;....N.A\.$el@.,...i...hO.9...7...B.`...y\..BW=..[.
.....[K.........R....L.g7v....Y.....C....l.......'.........0..0...U...
.0.0...U...........0...U.%..0... .......0... .....0......0...U........
.$"/q.>......!.=r]0...U.#..0...]F...Kt....s.:.8.u.~0...*.H.........
....b.[... .....l..>.5.....[.....L..........<..T..)@..,=DSG..r.7
.1=.YXU<J..4..<r.......R'....)qcU..\04.......2...|.=...&./.....6
..4.5.......>..C.. ._g.'....ZNw.6.LA.x....1......x..........b(.ts.p
=.\...........* .7.E....#*..q6......h....O,...c.!.t....zJ...$.{...

<<< skipped >>>

GET /get_file.php?p=87/aol-desktop-9.7 Rev 4343.19.exe&u={1AFC46EE-2392-4896-B343-6D8F5785AA90} HTTP/1.0
Host: installs.innovativesyst.com
User-Agent: NSISDL/1.2 (Mozilla)
Accept: */*


HTTP/1.1 301 Moved Permanently
Server: nginx
Date: Mon, 05 Jan 2015 17:14:39 GMT
Content-Type: text/html
Connection: close
X-Powered-By: PHP/5.3.29
Location: hXXp://d7.innovativesyst.com/87/aol-desktop-9.7 Rev 4343.19.exe


GET /cgi-bin/CRL/2018/cdp.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: VVV.public-trust.com


HTTP/1.1 200 OK
Server: Apache/2.2.15 (CentOS)
Last-Modified: Wed, 17 Dec 2014 19:30:01 GMT
ETag: "200c0-409-50a6e807b773a"
Accept-Ranges: bytes
Content-Type: application/x-pkcs7-crl
Connection: Keep-Alive
Date: Mon, 05 Jan 2015 17:17:30 GMT
Content-Length: 1033
0...0..n...0...*.H........0u1.0...U....US1.0...U....GTE Corporation1'0
%..U....GTE CyberTrust Solutions, Inc.1#0!..U....GTE CyberTrust Global
Root..141217194109Z..150322194609Z0...0....'.x..110110211653Z0....'..
..141119195306Z0....'B...141119195752Z0....'....141119200006Z0....'.:.
.071121154528Z0....'.v..080219183346Z0....'....080514142515Z0....'....
080515170349Z0....'....080924143337Z0....'#...081203144336Z0....''j..0
90209174351Z0....'b...100414181148Z0....'....080917150432Z0....'#...08
1203144209Z0....'#...081203144241Z0....'#...081203144304Z0....'%u..081
203144409Z0....'/9..090318130930Z0....'8...090715181853Z0....'TU..1001
13191852Z0....'k...101130163724Z0....'.B..111107193907Z0....'@...14111
9200409Z0....'....080917150312Z0....'....140709175318Z0....'....141210
173900Z0....'-E..141119195854Z0....'....141119200037Z0....'F...1412171
93909Z0....'F...141217193956Z..0.0...U........0...*.H............R.T_H
.Rt......!..................zDB5.nm.;...V.... [email protected][..{G....u.9....Q
....._...7L. e.....Fn.|[email protected]/1.1 200 OK..
Server: Apache/2.2.15 (CentOS)..Last-Modified: Wed, 17 Dec 2014 19:30:
01 GMT..ETag: "200c0-409-50a6e807b773a"..Accept-Ranges: bytes..Content
-Type: application/x-pkcs7-crl..Connection: Keep-Alive..Date: Mon, 05
Jan 2015 17:17:30 GMT..Content-Length: 1033..0...0..n...0...*.H.......
.0u1.0...U....US1.0...U....GTE Corporation1'0%..U....GTE CyberTrust So
lutions, Inc.1#0!..U....GTE CyberTrust Global Root..141217194109Z..150
322194609Z0...0....'.x..110110211653Z0....'....141119195306Z0....'

<<< skipped >>>

POST /b/ss//6 HTTP/1.1
Host: instlxml1.sa.aol.com
Connection: close
Content-Length: 573

<?xml version="1.0" encoding="UTF-8"?><request><reportsuiteid>aoljet,aolcmp,aolsvc</reportsuiteid><pagename>cmp : Roadie Download</pagename><products>;waol_0.4343.19.1;1;0</products><channel>us.roadie</channel><events>purchase,event10,event4</events><prop1>cmp : Downloads</prop1><prop2>cmp : Roadie</prop2><eVar4>Download | Roadie | waol_0.4343.19.1 | Download Complete</eVar4><prop49>xml api</prop49><prop16>Roadie | Download Complete | waol_0.4343.19.1</prop16><visitorid>8487391856548864-329424854523814</visitorid><prop3>gmt_5</prop3><prop24>uaid_na</prop24></request>
HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:17:05 GMT
Server: Omniture DC/2.0.0
Access-Control-Allow-Origin: *
X-C: ms-4.9.2
Expires: Sun, 04 Jan 2015 17:17:05 GMT
Last-Modified: Tue, 06 Jan 2015 17:17:05 GMT
Cache-Control: no-cache, no-store, max-age=0, no-transform, private
Pragma: no-cache
ETag: "54AAC711-2DFA-155F2CC4"
Vary: *
P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID PSA OUR IND COM NAV STA"
xserver: www40
Content-Length: 64
Content-Type: text/xml
Connection: close
<?xml version="1.0" encoding="UTF-8"?>.<status>SUCCESS<
/status>...


GET /pki/crl/products/microsoftrootcert.crl HTTP/1.1
Cache-Control: max-age = 812
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Thu, 23 Oct 2014 05:05:32 GMT
If-None-Match: "a2f3ff97eeecf1:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.microsoft.com


HTTP/1.1 304 Not Modified
Content-Type: application/pkix-crl
Last-Modified: Thu, 23 Oct 2014 05:05:32 GMT
ETag: "a2f3ff97eeecf1:0"
Cache-Control: max-age=900
Date: Mon, 05 Jan 2015 17:15:18 GMT
Connection: keep-alive
HTTP/1.1 304 Not Modified..Content-Type: application/pkix-crl..Last-Mo
dified: Thu, 23 Oct 2014 05:05:32 GMT..ETag: "a2f3ff97eeecf1:0"..Cache
-Control: max-age=900..Date: Mon, 05 Jan 2015 17:15:18 GMT..Connection
: keep-alive..
....



GET /pki/crl/products/WinPCA.crl HTTP/1.1

Cache-Control: max-age = 900
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Mon, 06 Oct 2014 05:06:02 GMT
If-None-Match: "3e1c83923e1cf1:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.microsoft.com


HTTP/1.1 200 OK
Content-Type: application/pkix-crl
Last-Modified: Sun, 21 Dec 2014 06:03:02 GMT
Accept-Ranges: bytes
ETag: "d2e35dc7e31cd01:0"
Server: Microsoft-IIS/8.5
VTag: 791633315200000000
P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI"
X-Powered-By: ASP.NET
Content-Length: 561
Cache-Control: max-age=900
Date: Mon, 05 Jan 2015 17:15:18 GMT
Connection: keep-alive
0..-0......0...*.H........0..1.0...U....US1.0...U....Washington1.0...U
....Redmond1.0...U....Microsoft Corporation1 0)..U..."Microsoft Window
s Verification PCA..141220223154Z..150321105154Z._0]0...U.#..0.......p
............<.J0... .....7.......0...U......30... .....7......15032
0224154Z0...*.H.............h.~oH#i.J.vh_.....A'B..g...........F....9c
.{[email protected].^ 4.r..Wv.Q.0.w..j....c9..w....I..%.~.l..F.......xo....
_...o...7BR.;<..\R/ .....b.(....~..]|.v.u.i.X.B....I......./*...P..
A..fi.}& .x.v{TFP[.G......A......L.o...)R.......V.u..V.../.Q..(L.]....
.uki~..HTTP/1.1 200 OK..Content-Type: application/pkix-crl..Last-Modif
ied: Sun, 21 Dec 2014 06:03:02 GMT..Accept-Ranges: bytes..ETag: "d2e35
dc7e31cd01:0"..Server: Microsoft-IIS/8.5..VTag: 791633315200000000..P3
P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OU
R SAMo CNT COM INT NAV ONL PHY PRE PUR UNI"..X-Powered-By: ASP.NET..Co
ntent-Length: 561..Cache-Control: max-age=900..Date: Mon, 05 Jan 2015
17:15:18 GMT..Connection: keep-alive..0..-0......0...*.H........0..1.0
...U....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft
Corporation1 0)..U..."Microsoft Windows Verification PCA..141220223154
Z..150321105154Z._0]0...U.#..0.......p............<.J0... .....7...
....0...U......30... .....7......150320224154Z0...*.H.............h.~o
H#i.J.vh_.....A'B..g...........F....9c.{[email protected].^ 4.r..Wv.Q.0.w..
j....c9..w....I..%.~.l..F.......xo...._...o...7BR.;<..\R/ .....b.(.
...~..]|.v.u.i.X.B....I......./*...P..A..fi.}& .x.v{TFP[.G......A.

<<< skipped >>>

GET /pki/crl/products/MicrosoftTimeStampPCA.crl HTTP/1.1

Cache-Control: max-age = 900
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Sat, 04 Oct 2014 05:06:12 GMT
If-None-Match: "58cddbea90dfcf1:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.microsoft.com


HTTP/1.1 200 OK
Content-Type: application/pkix-crl
Last-Modified: Fri, 19 Dec 2014 06:02:00 GMT
Accept-Ranges: bytes
ETag: "9a9a44d511bd01:0"
Server: Microsoft-IIS/8.0
VTag: 279252244600000000
P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI"
X-Powered-By: ASP.NET
Content-Length: 550
Cache-Control: max-age=900
Date: Mon, 05 Jan 2015 17:15:18 GMT
Connection: keep-alive
0.."0......0...*.H........0w1.0...U....US1.0...U....Washington1.0...U.
...Redmond1.0...U....Microsoft Corporation1!0...U....Microsoft Time-St
amp PCA..141218221600Z..150319103600Z._0]0...U.#..0...#[email protected].. .
.5..0... .....7.......0...U......10... .....7......150318222600Z0...*.
H............./..0Q~.r.}.E....&\....F.Z.C..#..F.s........<&\..9G..-
....j..N... .C.Fk....;l.....2.K5D.........-.>...(...g.0.S.[?...T4q&
gt;[email protected].('..e...Y..Bo..q..........I....'....i>
..y:.eH@h`..\...UA.m#.~.. ;.3..d..;..<..........p..s..J..N `Az.....
[email protected]/1.1 200 OK..Content-Type: application/pkix-crl..Last-Modifie
d: Fri, 19 Dec 2014 06:02:00 GMT..Accept-Ranges: bytes..ETag: "9a9a44d
511bd01:0"..Server: Microsoft-IIS/8.0..VTag: 279252244600000000..P3P:
CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR S
AMo CNT COM INT NAV ONL PHY PRE PUR UNI"..X-Powered-By: ASP.NET..Conte
nt-Length: 550..Cache-Control: max-age=900..Date: Mon, 05 Jan 2015 17:
15:18 GMT..Connection: keep-alive..0.."0......0...*.H........0w1.0...U
....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corp
oration1!0...U....Microsoft Time-Stamp PCA..141218221600Z..15031910360
0Z._0]0...U.#..0...#[email protected].. ..5..0... .....7.......0...U......10
... .....7......150318222600Z0...*.H............./..0Q~.r.}.E....&\...
.F.Z.C..#..F.s........<&\..9G..-....j..N... .C.Fk....;l.....2.K5D..
.......-.>...(...g.0.S.[?...T4q>[email protected].('..e.
..Y..Bo..q..........I....'....i>..y:.eH@h`..\...UA.m#.~.. ;.3..

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/acsshutd.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:49 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 21832
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:24:49 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$.........E... ... .
.. ...B... .../... .v.%... ...!... ...v... .v.v... ...*... ...K... .{.
K... ...u... .{.q... .Rich.. .........................PE..L...c.<L.
................*...........6.......@[email protected].
.....s........................................F..d....`..x............
@..H............@...............................................@.....
..........................text....).......*.................. ..`.rdat
a.......@......................@[email protected].......:.............
[email protected]....`.......<..............@..@......................
......................................................................
......................................................................
......................................................................
......................................................................
.........................................................0P@[email protected]
.j.j...$......0@@.....tB..T@@.=....u...$......$....PQ.T$.h....R..h@@..
...D$.P..X@@.V..`@@...$....^3...%[email protected]..
$t...U..$|...V..$t...W3.......|$ [email protected]$h.D$.Q.D$(D....D$$.
. @@..5.@@[email protected]$hP..U.L$hQ...T$.R.D$$Pj.j.j.j.j.j...$....Qj
....@@......T$dRtNh.B@........$.....D$....WP...@@.=....u.WSh.A@.......
L$....j.Q...@@[email protected]@@[email protected]........$x..._..^][3...$....l.
...........W.D$.Ph....3.Wh`[email protected].......@@.........V.t$..L$.QV.T$.RP

<<< skipped >>>

GET /?clientv=103&csk=12586259620818734781-11775504302967998912&method=track_product_installed&mstime=36.520&pos=3&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2df60a996c6bc69b895b545497cf8bf5&skip=0&tm=2015-01-05 17:14:17.274&v=1.0&signature=cb62a00d903d3bbbef54f7a9c0b05e82 HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:40 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:40 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
68..<?xml version="1.0"?><track_product_installed><oper
ation>Completed</operation></track_product_installed>..
0..


GET /?clientv=103&csk=12586259620818734781-11775504302967998912&method=track_offers_not_ready&mstime=42.167&offer_id=&pos=3&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2df60a996c6bc69b895b545497cf8bf5&soi=7666&sot=0.016&state=8&state_time_secs=0.780&tm=2015-01-05 17:14:21.330&v=1.0&signature=138a2dc47fa342685339729296ad4f28 HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:44 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:44 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
66..<?xml version="1.0"?><track_offers_not_ready><opera
tion>Completed</operation></track_offers_not_ready>..0.
.


GET /clients/bush/waol/0.4343.19.1/roadie1.8.4.1/roadie.loc HTTP/1.1
Host: download.newaol.com:80
Connection: close



Link.exe;%aoldownloads%\waol\0.4343.19.1\comps\parcon\AOLParconLink.ex
e;58696;..F25=download.newaol.com/clients/bush/waol/0.4343.19.1/comps/
acs/comps/ocpgc.exe;%aoldownloads%\waol\0.4343.19.1\comps\acs\comps\oc
pgc.exe;62248;..F26=download.newaol.com/clients/bush/waol/0.4343.19.1/
comps/acs/ecuchk.dll;%aoldownloads%\waol\0.4343.19.1\comps\acs\ecuchk.
dll;11080;..F27=download.newaol.com/clients/bush/waol/0.4343.19.1/comp
s/acs/ecuinst.exe;%aoldownloads%\waol\0.4343.19.1\comps\acs\ecuinst.ex
e;260120;..F28=download.newaol.com/clients/bush/waol/0.4343.19.1/comps
/acs/comps/acsrollb.exe;%aoldownloads%\waol\0.4343.19.1\comps\acs\comp
s\acsrollb.exe;148736;..F29=download.newaol.com/clients/bush/waol/0.43
43.19.1/comps/acs/comps/ocpchk.dll;%aoldownloads%\waol\0.4343.19.1\com
ps\acs\comps\ocpchk.dll;15144;..F30=download.newaol.com/clients/bush/w
aol/0.4343.19.1/comps/toolbar/aol_toolbar.exe;%aoldownloads%\waol\0.43
43.19.1\comps\toolbar\aol_toolbar.exe;3806192;......[XP64]..PACKAGEID=
waol_0.4343.19.1..RAM=124..SYS=250..ALT=..IE=75730..Launch=%aoldownloa
ds%\waol\0.4343.19.1\waol-0.4343.19.1.exe..Params=..F1=download.newaol
.com/clients/bush/waol/0.4343.19.1/comps/acs/comps/acsshutd.exe;%aoldo
wnloads%\waol\0.4343.19.1\comps\acs\comps\acsshutd.exe;21832;..F2=down
load.newaol.com/clients/bush/waol/0.4343.19.1/noneCodesignFilesBundle.
exe;%aoldownloads%\waol\0.4343.19.1\noneCodesignFilesBundle.exe;291116
48;2;/s..F3=download.newaol.com/clients/bush/waol/0.4343.19.1/comps/ac
s/AcsInstA.dll;%aoldownloads%\waol\0.4343.19.1\comps\acs\AcsInstA.

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/AcsInstA.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:46 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 46408
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:46 GMT
Keep-Alive: timeout=2, max=86
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$........b..N...N...
N...]...O...!...L.......M...!...J...K...O.......X...]...L.......I...N.
..........L.......O.......O.......O...RichN...........................
PE..L...x.<[email protected].................
.....................yo...............................f..j...h^..x....
...................H............Q.....................................
..........P..x............................text....9.......@...........
....... ..`.rdata..j....P... ...P..............@[email protected].....
[email protected]...............................@[email protected]
[email protected].......................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..................................................................

<<< skipped >>>

GET /?clientv=103&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_offer_installed&mstime=36.972&offer_id=7861&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&tm=2015-01-05 17:14:19.271&v=1.0&signature=b69a5fcc6676d653654b0bc5ed2aed8a HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:42 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:42 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
64..<?xml version="1.0"?><track_offer_installed><operat
ion>Completed</operation></track_offer_installed>..0..


GET /ui/0/7.0.0.102.550/en/installed HTTP/1.1
User-Agent: Skype. 7.0
Host: ui.skype.com
Cache-Control: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:21 GMT
Server: Apache
Last-Modified: Fri, 12 Dec 2014 16:30:08 GMT
Accept-Ranges: bytes
Content-Length: 0
X-Debug: Served from cache
Connection: close
Content-Type: text/plain; charset=utf-8
Content-Language: en


GET /ads/conversion/1017626827/?random=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=3489569060 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com


HTTP/1.1 302 Found
Location: hXXp://VVV.google.com.ua/ads/conversion/1017626827/?random=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=3489569060&ipr=y
Cache-Control: private, max-age=43200
Date: Mon, 05 Jan 2015 17:15:48 GMT
Expires: Mon, 05 Jan 2015 17:15:48 GMT
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 756
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
<HTML><HEAD><meta http-equiv="content-type" content="te
xt/html;charset=utf-8">.<TITLE>302 Moved</TITLE></HE
AD><BODY>.<H1>302 Moved</H1>.The document has mov
ed.<A HREF="hXXp://VVV.google.com.ua/ads/conversion/1017626827/?ran
dom=1100854404&cv=7&fst=1420478124985&num=1&fmt=3&
adtest=on&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&
hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=
857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true
&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/
services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&
ct_cookie_present=false&cdct=2&convclickts=0&random=348956
9060&ipr=y">here</A>...</BODY></HTML>..>....

<<< skipped >>>

GET /ads/user-lists/1017626827/?label=iPiLCJX99QcQy4Gf5QM&fmt=3&bg=ffffff&num=5&ct_cookie_present=false&cv=7&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&random=2423336321 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com


HTTP/1.1 302 Found
Location: hXXp://VVV.google.com.ua/ads/user-lists/1017626827/?label=iPiLCJX99QcQy4Gf5QM&fmt=3&bg=ffffff&num=5&ct_cookie_present=false&cv=7&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&random=2423336321&ipr=y
Cache-Control: private, max-age=43200
Date: Mon, 05 Jan 2015 17:15:49 GMT
Expires: Mon, 05 Jan 2015 17:15:49 GMT
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 446
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
<HTML><HEAD><meta http-equiv="content-type" content="te
xt/html;charset=utf-8">.<TITLE>302 Moved</TITLE></HE
AD><BODY>.<H1>302 Moved</H1>.The document has mov
ed.<A HREF="hXXp://VVV.google.com.ua/ads/user-lists/1017626827/?lab
el=iPiLCJX99QcQy4Gf5QM&fmt=3&bg=ffffff&num=5&ct_cookie
_present=false&cv=7&frm=0&url=http://VVV.tuneup.de/servi
ces/whats-new/tuu2014/&random=2423336321&ipr=y">here</A&
gt;...</BODY></HTML>..HTTP/1.1 302 Found..Location: http:/
/VVV.google.com.ua/ads/user-lists/1017626827/?label=iPiLCJX99QcQy4Gf5Q
M&fmt=3&bg=ffffff&num=5&ct_cookie_present=false&cv=7&frm=0&url=http:
//VVV.tuneup.de/services/whats-new/tuu2014/&random=2423336321&ipr=y..C
ache-Control: private, max-age=43200..Date: Mon, 05 Jan 2015 17:15:49
GMT..Expires: Mon, 05 Jan 2015 17:15:49 GMT..Content-Type: text/html;
charset=UTF-8..X-Content-Type-Options: nosniff..Server: adclick_server
..Content-Length: 446..X-XSS-Protection: 1; mode=block..Alternate-Prot
ocol: 80:quic,p=0.002..<HTML><HEAD><meta http-equiv="co
ntent-type" content="text/html;charset=utf-8">.<TITLE>302 Mov
ed</TITLE></HEAD><BODY>.<H1>302 Moved</H1&g
t;.The document has moved.<A HREF="hXXp://VVV.google.com.ua/ads/use
r-lists/1017626827/?label=iPiLCJX99QcQy4Gf5QM&fmt=3&bg=ffffff&
amp;num=5&ct_cookie_present=false&cv=7&frm=0&url=http%
3A//VVV.tuneup.de/services/whats-new/tuu2014/&random=242333632

<<< skipped >>>

GET /p/583/ius/TuneUpUtilities2014WORLDW1D_en-US.exe HTTP/1.1
Host: cdn3.opencandy.com
Accept: */*


HTTP/1.1 200 OK
x-amz-id-2: vDU/YA9ZSa9sSeSwj0G0Y0gTer0i3i0rfTJjcUto09jq/7PuWsSEB3Ob/NGT3qtc
x-amz-request-id: 649A5F6C9EEDBF40
Last-Modified: Tue, 21 Oct 2014 22:58:46 GMT
ETag: "0d121b06a7d31b1407624c34d026b793"
Accept-Ranges: bytes
Content-Type: binary/octet-stream
Content-Length: 28369720
Server: AmazonS3
Cache-Control: max-age=54666
Date: Mon, 05 Jan 2015 17:15:21 GMT
Connection: keep-alive
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$.........c..t...t..
.t..q....t.......t.......t.......t..M....t.......t.......t...t...u..M.
...t..M....t...t...t..M....t..Rich.t..................PE..L....8.S....
.........................8.......0....@..........................p....
........@.............................................................
8........U..`[email protected]........
.......................text............................... ..`.rdata..
$....0......................@[email protected]........ ...&..................@.
...rsrc................,..............@[email protected]......................
[email protected]..........................................................
......................................................................
......................................................................
......................................................................
............................................................U..V...L..
..E..t.V..........^]..................."..............U..j.hZ.E.d.....
P...V..'H.3.P.E.d........u.j.......E......F......F...F......F..3..F...
..f.F..F.f.F .F$.F(.F,.F0.E...E...u(.E.P.M..E.d.F..'...hX.G..E.P.E..}F
...2..PV.s.........M.d......Y^..]...V..V......F,.....t.P.k.......F,...
..F$..t.P.T.......F$.....F...t.P.=.......F......F...t.P.&.......F.....
.F...t.P.........F......F...t.P.........F.......^.......U..V.u........
...}F...^]........U...E..V.....}F.t.V..........^].................

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/browser/aolbwsrinst.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:36 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1054600
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:36 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_encapsulated_offer_downloaded&offer_downloaded_secs=2.512&offer_id=3596&package_md5=0d121b06a7d31b1407624c34d026b793&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&sswnt=&v=1.0&signature=7fb3e2987d521151dbd54959fb3b203d HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:24 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:15:24 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
66..<?xml version="1.0"?><track_offer_downloaded><opera
tion>Completed</operation></track_offer_downloaded>..0.
.


GET /ui/0/7.0.0.102.550/en/getnewestversion?defaultbrowser=ie HTTP/1.1
User-Agent: 7.0.0.102
Host: ui.skype.com
Cache-Control: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:14 GMT
Server: Apache
Cache-control: no-cache, must revalidate
Pragma: no-cache
Expires: 0
Set-Cookie: SC=CC=:CCY=:LC=en:TM=1420478114:TS=1420478114:TZ=:VER=0/7.0.0.102/550; expires=Tue, 05-Jan-16 17:15:14 GMT; path=/; domain=.skype.com;
Content-Length: 9
Connection: close
Content-Type: text/html; charset=utf-8
Content-Language: en
7.0.0.102..


GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_encapsulated_offer_install_started&offer_id=7861&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&v=1.0&signature=ef1e9c1ec59e9767318e3921e524d54b HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:41 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:41 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
8a..<?xml version="1.0"?><track_encapsulated_offer_install_st
arted><operation>Completed</operation></track_encaps
ulated_offer_install_started>..0..


GET /ocsp/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBTy4Gr5hYodjXCbSRkjeqm1Gih+ZAQUSt0GFhu89mi1dvWBtrtiGrpagS8CCAJeRLXDSRa3 HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: clients1.google.com


HTTP/1.1 200 OK
Content-Type: application/ocsp-response
Date: Fri, 02 Jan 2015 06:26:40 GMT
Expires: Tue, 06 Jan 2015 06:26:40 GMT
Server: ocsp_responder
Content-Length: 463
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Age: 298149
Cache-Control: public, max-age=345600
Alternate-Protocol: 80:quic,p=0.002
0..........0..... .....0......0...0......J......h.v....b..Z./..2015010
2010412Z0k0i0A0... ..........j.....p.I.#z...(~d..J......h.v....b..Z./.
..^D..I......20150102010412Z....20150109010412Z0...*.H...............
!s....y...j..G....>... .>..........$.../...=8j][email protected]/.}.f....
...~..1./..M.m...x...x...u*e.E.....G....h.Z..D..^Q!P...V}..x.u.t?..2.!
[.=..-..nR.@<[email protected]..`QZa....r...".}J2.........=g..nV&4....
i.\.E3>[email protected]../.^.F....6.....J.Iw.....g...9.....;S.HTTP/1.1 200 OK
..Content-Type: application/ocsp-response..Date: Fri, 02 Jan 2015 06:2
6:40 GMT..Expires: Tue, 06 Jan 2015 06:26:40 GMT..Server: ocsp_respond
er..Content-Length: 463..X-XSS-Protection: 1; mode=block..X-Frame-Opti
ons: SAMEORIGIN..Age: 298149..Cache-Control: public, max-age=345600..A
lternate-Protocol: 80:quic,p=0.002..0..........0..... .....0......0...
0......J......h.v....b..Z./..20150102010412Z0k0i0A0... ..........j....
.p.I.#z...(~d..J......h.v....b..Z./...^D..I......20150102010412Z....20
150109010412Z0...*.H............... !s....y...j..G....>... .>...
.......$.../...=8j][email protected]/.}.f.......~..1./..M.m...x...x...u*e.E....
.G....h.Z..D..^Q!P...V}..x.u.t?..2.![.=..-..nR.@<[email protected]..`Q
Za....r...".}J2.........=g..nV&4....i.\.E3>[email protected]../.^.F....6.....J
.Iw.....g...9.....;S.
....

<<< skipped >>>

GET /ocsp/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBTy4Gr5hYodjXCbSRkjeqm1Gih+ZAQUSt0GFhu89mi1dvWBtrtiGrpagS8CCCp142CW+FCt HTTP/1.1

Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: clients1.google.com


HTTP/1.1 200 OK
Content-Type: application/ocsp-response
Date: Mon, 05 Jan 2015 02:18:53 GMT
Expires: Fri, 09 Jan 2015 02:18:53 GMT
Server: ocsp_responder
Content-Length: 463
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Age: 53817
Cache-Control: public, max-age=345600
Alternate-Protocol: 80:quic,p=0.002
0..........0..... .....0......0...0......J......h.v....b..Z./..2015010
4190222Z0k0i0A0... ..........j.....p.I.#z...(~d..J......h.v....b..Z./.
.*u.`..P.....20150104190222Z....20150111190222Z0...*.H................
mf..'..!........G.2614.V..1.x.`..z..cR.2....ooqI.N,S.....>Y...j...3
.....#&j'.7...bbtj......yz...b.ptV.`W:........!......f..Z#... ^.Jc..9.
.....S6.f...n-....Y..4.A.M.E.i.ZJ..ZS...|../..S......Kz..b.."6...T,..j
...E..X..y!..&EP...TE2...,....g..T.....]_..,..HTTP/1.1 200 OK..Content
-Type: application/ocsp-response..Date: Mon, 05 Jan 2015 02:18:53 GMT.
.Expires: Fri, 09 Jan 2015 02:18:53 GMT..Server: ocsp_responder..Conte
nt-Length: 463..X-XSS-Protection: 1; mode=block..X-Frame-Options: SAME
ORIGIN..Age: 53817..Cache-Control: public, max-age=345600..Alternate-P
rotocol: 80:quic,p=0.002..0..........0..... .....0......0...0......J..
....h.v....b..Z./..20150104190222Z0k0i0A0... ..........j.....p.I.#z...
(~d..J......h.v....b..Z./..*u.`..P.....20150104190222Z....201501111902
22Z0...*.H................mf..'..!........G.2614.V..1.x.`..z..cR.2....
ooqI.N,S.....>Y...j...3.....#&j'.7...bbtj......yz...b.ptV.`W:......
..!......f..Z#... ^.Jc..9......S6.f...n-....Y..4.A.M.E.i.ZJ..ZS...|../
..S......Kz..b.."6...T,..j...E..X..y!..&EP...TE2...,....g..T.....]_..,
..
....

<<< skipped >>>

GET /ocsp/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBTy4Gr5hYodjXCbSRkjeqm1Gih+ZAQUSt0GFhu89mi1dvWBtrtiGrpagS8CCAD9M+oC6dVe HTTP/1.1

Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: clients1.google.com


HTTP/1.1 200 OK
Content-Type: application/ocsp-response
Date: Mon, 05 Jan 2015 01:18:34 GMT
Expires: Fri, 09 Jan 2015 01:18:34 GMT
Server: ocsp_responder
Content-Length: 463
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Age: 57436
Cache-Control: public, max-age=345600
Alternate-Protocol: 80:quic,p=0.002
0..........0..... .....0......0...0......J......h.v....b..Z./..2015010
4190457Z0k0i0A0... ..........j.....p.I.#z...(~d..J......h.v....b..Z./.
...3....^....20150104190457Z....20150111190457Z0...*.H...............c
Ix...9.2|=.><...d.C.e..\..o.]....[.{../..-U..T.m.%...H.,...'TV.C
...}..d..w....B`.Z....i.F...u.W..'....."..........$f.lns.6.&.B........
...Y..=.:PL.5.1.G.7..5sf.A..f..>.P........S=...L.q.0..<..}.....G
..........*.2-u...@...$..m......../.B.~.*..XG..h)c..C..HTTP/1.1 200 OK
..Content-Type: application/ocsp-response..Date: Mon, 05 Jan 2015 01:1
8:34 GMT..Expires: Fri, 09 Jan 2015 01:18:34 GMT..Server: ocsp_respond
er..Content-Length: 463..X-XSS-Protection: 1; mode=block..X-Frame-Opti
ons: SAMEORIGIN..Age: 57436..Cache-Control: public, max-age=345600..Al
ternate-Protocol: 80:quic,p=0.002..0..........0..... .....0......0...0
......J......h.v....b..Z./..20150104190457Z0k0i0A0... ..........j.....
p.I.#z...(~d..J......h.v....b..Z./....3....^....20150104190457Z....201
50111190457Z0...*.H...............cIx...9.2|=.><...d.C.e..\..o.]
....[.{../..-U..T.m.%...H.,...'TV.C...}..d..w....B`.Z....i.F...u.W..'.
...."..........$f.lns.6.&.B...........Y..=.:PL.5.1.G.7..5sf.A..f..>
.P........S=...L.q.0..<..}.....G..........*.2-u...@...$..m......../
.B.~.*..XG..h)c..C....

<<< skipped >>>

GET /?clientv=52&csk=12586259620818734781-11775504302967998912&inst_id=60635&method=track_encapsulated_offer_download_started&offer_id=3596&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=2afe7a0b83df4567c38d830b988dc6b9&sswnt=&v=1.0&signature=a581d3689fe2509610118dc34ba6bf42 HTTP/1.1
Host: api.opencandy.com
Accept: */*
Cache-Control: no-cache
Pragma: no-cache


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:21 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:15:21 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
8c..<?xml version="1.0"?><track_encapsulated_offer_download_s
tarted><operation>Completed</operation></track_encap
sulated_offer_download_started>..0..


GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBR8sWZUnKvbRO5iJhat9GV793rVlAQUrb2YejS0Jvf6xCZU7wO94CTLVBoCECdm7lbrSfOOq9dwovyE3iI= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.usertrust.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:19:04 GMT
Server: Apache/2.2.22 (Debian)
Last-Modified: Sun, 04 Jan 2015 23:37:50 GMT
Expires: Thu, 08 Jan 2015 23:37:50 GMT
ETag: FE84710150570876588E24FD0D7B0BBD2674D1C5
Cache-Control: max-age=281325,public,no-transform,must-revalidate
X-OCSP-Reponder-ID: h6edcaocsp10
Content-Length: 471
Connection: close
Content-Type: application/ocsp-response
0..........0..... .....0......0...0.........z4.&...&T....$.T...2015010
4233750Z0s0q0I0... ........|.fT...D.b&...e{.z.......z4.&...&T....$.T..
.'f.V.I....p...."....20150104233750Z....20150108233750Z0...*.H........
.....K..?K4....N0.L`H.uk%G..?..8(.B..1;[email protected]..~..^.
..b...~....). s...|......s...|....t2a.ux....T.~...I?.3'.'[email protected].
...B.5.;.fD|o.....([email protected]!...AA.TD...`.=
.......6{|...l.hv".....!.......b....pT%..J.[.........


GET /?clientv=103&csk=12586259620818734781-11775504302967998912&inst_id=61113&method=track_offer_downloaded&mstime=36.676&offer_downloaded_secs=0.000&offer_id=7861&package_md5=f0b3c151c25cc5fd45cd63ecda01d5fa&pos=1&product_key=b37b25f3ccc49015eceda3b5d0db7760&session_key=22d61a24e8d388cad4a87ebeaf52304b&tm=2015-01-05 17:14:17.757&v=1.0&signature=99eceb0466d5a6397fab817ac4f058c7 HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:42 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:42 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
66..<?xml version="1.0"?><track_offer_downloaded><opera
tion>Completed</operation></track_offer_downloaded>..0.
.


GET /clients/bush/waol/0.4343.19.1/comps/tpspd/wbsetup.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:20 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 556520
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:20 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$...........L...L...
L.......M.......M..._...N.......F.......I...L.......I...G.......M...I.
..M...RichL...........PE..L...2.6D.................~..........b9......
......@..........................@....................................
[email protected]...............................
.............................................................text....|
.......~.................. ..`.rdata...4.......6..................@..@
[email protected]................
...........rsrc....@.......@..................@..@....................
......................................................................
......................................................................
......................................................................
......................................................................
............................................U....\.}..t .}.F.E.u..H...
[email protected][email protected].@
..}..e....@[email protected]... M.........3..M.....FQ.....NU..M.....
.....VT..U.....FP..E...............E.P.M...D.@[email protected]
....E..9}[email protected].}[email protected]..
[email protected][email protected] ....E..E.Pj.h.9C.W..|[email protected].....@._^3.
[.....L$...AC...i......T.....tUVW.q.3.;5.AC.sD..i......D..S.....t.G...
..t...O..t .....u...3....3...F.....;5.AC.r.[_^...U..QQ.U.SV..i....

<<< skipped >>>

GET /ads/conversion/1026731593/?random=72281364&cv=7&fst=1420478124985&num=3&fmt=3&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=987752761 HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com


HTTP/1.1 302 Found
Location: hXXp://VVV.google.com.ua/ads/conversion/1026731593/?random=72281364&cv=7&fst=1420478124985&num=3&fmt=3&adtest=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=987752761&ipr=y
Cache-Control: private, max-age=43200
Date: Mon, 05 Jan 2015 17:15:48 GMT
Expires: Mon, 05 Jan 2015 17:15:48 GMT
Content-Type: text/html; charset=UTF-8
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 753
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
<HTML><HEAD><meta http-equiv="content-type" content="te
xt/html;charset=utf-8">.<TITLE>302 Moved</TITLE></HE
AD><BODY>.<H1>302 Moved</H1>.The document has mov
ed.<A HREF="hXXp://VVV.google.com.ua/ads/conversion/1026731593/?ran
dom=72281364&cv=7&fst=1420478124985&num=3&fmt=3&ad
test=on&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl
=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=85
7&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&a
mp;u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/se
rvices/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct
_cookie_present=false&cdct=2&convclickts=0&random=98775276
1&ipr=y">here</A>...</BODY></HTML>....

<<< skipped >>>

GET /go/getskype-trackable550 HTTP/1.1
User-Agent: NSIS_Inetc (Mozilla)
Host: VVV.skype.com
Connection: Keep-Alive
Cache-Control: no-cache


HTTP/1.1 302 Found
Date: Mon, 05 Jan 2015 17:14:44 GMT
Server: Apache
Location: hXXp://download.skype.com/325c4af68d6b04ac77426bf5318ebf57/partner/trackable/550/SkypeSetupFull.exe
Vary: User-Agent
X-Frame-Options: SAMEORIGIN
Cache-Control: max-age=0, private, no-store, no-cache, must-revalidate
Pragma: no-cache
Content-Length: 0
Keep-Alive: timeout=3
Connection: Keep-Alive
Content-Type: text/html; charset=utf-8
HTTP/1.1 302 Found..Date: Mon, 05 Jan 2015 17:14:44 GMT..Server: Apach
e..Location: hXXp://download.skype.com/325c4af68d6b04ac77426bf5318ebf5
7/partner/trackable/550/SkypeSetupFull.exe..Vary: User-Agent..X-Frame-
Options: SAMEORIGIN..Cache-Control: max-age=0, private, no-store, no-c
ache, must-revalidate..Pragma: no-cache..Content-Length: 0..Keep-Alive
: timeout=3..Connection: Keep-Alive..Content-Type: text/html; charset=
utf-8..


GET /ads/conversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&cdct=2&convclickts=0&random=1668964727&ipr=y HTTP/1.1
Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
DNT: 1
Connection: Keep-Alive
Host: VVV.google.com.ua


HTTP/1.1 200 OK
Content-Type: image/gif
Date: Mon, 05 Jan 2015 17:15:49 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, no-store, must-revalidate
X-Content-Type-Options: nosniff
Server: adclick_server
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 200 OK..Content-Typ
e: image/gif..Date: Mon, 05 Jan 2015 17:15:49 GMT..Pragma: no-cache..E
xpires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Control: no-cache, no-sto
re, must-revalidate..X-Content-Type-Options: nosniff..Server: adclick_
server..Content-Length: 42..X-XSS-Protection: 1; mode=block..Alternate
-Protocol: 80:quic,p=0.002..GIF89a.............!.......,...........D.;
..


GET /plugins/like_box.php?app_id=&channel=http://static.ak.facebook.com/connect/xd_arbiter/7r8gQb8MIqE.js?version=41#cb=f21c76821e32918&domain=VVV.tuneup.de&origin=http%3A%2F%2FVVV.tuneup.de%2Ff28d04c9bd6046c&relation=parent.parent&color_scheme=light&header=false&href=http://VVV.facebook.com/tuneuputilities&locale=de_DE&sdk=joey&show_border=false&show_faces=false&stream=false&width=300 HTTP/1.1
Accept: text/html, application/xhtml xml, */*
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.facebook.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 302 Found
Location: hXXps://VVV.facebook.com/plugins/like_box.php?app_id&channel=http://static.ak.facebook.com/connect/xd_arbiter/7r8gQb8MIqE.js?version=41#cb=f21c76821e32918&domain=VVV.tuneup.de&origin=http%3A%2F%2FVVV.tuneup.de%2Ff28d04c9bd6046c&relation=parent.parent&color_scheme=light&header=false&href=http://VVV.facebook.com/tuneuputilities&locale=de_DE&sdk=joey&show_border=false&show_faces=false&stream=false&width=300
X-Content-Type-Options: nosniff
X-UA-Compatible: IE=edge
Content-Type: text/html; charset=utf-8
X-FB-Debug: xCg2hc7dmQ5DEAcl9 i OpA1UMfUcM7YL9hibWk9A6yQoTpNKTgPcIuxzrZKTqDgxN1oSFVybscncM6hfPqTVA==
Date: Mon, 05 Jan 2015 17:15:48 GMT
Connection: keep-alive
Content-Length: 0
HTTP/1.1 302 Found..Location: hXXps://VVV.facebook.com/plugins/like_bo
x.php?app_id&channel=http://static.ak.facebook.com/connect/x
d_arbiter/7r8gQb8MIqE.js?version=41#cb=f21c76821e32918&dom
ain=VVV.tuneup.de&origin=http%3A%2F%2FVVV.tuneup.de%2Ff2
8d04c9bd6046c&relation=parent.parent&color_scheme=light&header=fal
se&href=http://VVV.facebook.com/tuneuputilities&locale=de_DE&s
dk=joey&show_border=false&show_faces=false&stream=false&width=300..X-C
ontent-Type-Options: nosniff..X-UA-Compatible: IE=edge..Content-Type:
text/html; charset=utf-8..X-FB-Debug: xCg2hc7dmQ5DEAcl9 i OpA1UMfUcM7Y
L9hibWk9A6yQoTpNKTgPcIuxzrZKTqDgxN1oSFVybscncM6hfPqTVA==..Date: Mon, 0
5 Jan 2015 17:15:48 GMT..Connection: keep-alive..Content-Length: 0..

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/msvcr9/msvc9rt.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:16 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1113240
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:16 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ/xkCfyHfJr7GQ6M658NRZ4SHo/AQUCPVR6Pv+PT1kNnxoz1t4qN+5xTcCEGC2x6sSmevembHfY1acIZk= HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.verisign.com


HTTP/1.1 200 OK
Server: nginx/1.4.7
Content-Type: application/ocsp-response
Content-Length: 1697
content-transfer-encoding: binary
Cache-Control: max-age=554688, public, no-transform, must-revalidate
Last-Modified: Mon, 5 Jan 2015 03:19:06 GMT
Expires: Mon, 12 Jan 2015 03:19:06 GMT
Date: Mon, 05 Jan 2015 17:18:58 GMT
Connection: keep-alive
0..........0..... .....0......0...0...A0?1=0;..U...4VeriSign Class 3 C
ode Signing 2004 CA OCSP Responder..20150105031906Z0s0q0I0... ........
[email protected].!......Q...==d6|h.[x....7..`..........cV.!.....201501
05031906Z....20150112031906Z0...*.H..............S.X.....3d*L....._.u.
.M...U...#..kf.?yG$Z...g#..=.R.~..#...S=<.;..K..,.......G..%eUb..'.
..K.vBd..u8`..H..4..\..2.........1.....J........N.......'|....}.xq...9
Y..l.f.[..q)DfS%;.}I......tm>O;.......b.0..(DZ.....x{]..\[...%.D...
. ..NM........5..V.;t.l..2........0...0...0..{.........[..I|.....Zm..0
...*.H........0..1.0...U....US1.0...U....VeriSign, Inc.1.0...U....Veri
Sign Trust Network1;09..U...2Terms of use at hXXps://VVV.verisign.com/
rpa (c)041.0,..U...%VeriSign Class 3 Code Signing 2004 CA0...140428000
000Z..150729235959Z0?1=0;..U...4VeriSign Class 3 Code Signing 2004 CA
OCSP Responder0.."0...*.H.............0.........Y....h..@..>.....%.
-.....O...' y.........x..Gw.xF.....?..Z..u,.X.&..........3C..H.l.....f
..;]s!.\"v...|....][email protected]/1.1 200 OK..Server: nginx/
1.4.7..Content-Type: application/ocsp-response..Content-Length: 1697..
content-transfer-encoding: binary..Cache-Control: max-age=554688, publ
ic, no-transform, must-revalidate..Last-Modified: Mon, 5 Jan 2015 03:1
9:06 GMT..Expires: Mon, 12 Jan 2015 03:19:06 GMT..Date: Mon, 05 Jan 20
15 17:18:58 GMT..Connection: keep-alive..0..........0..... .....0.....
.0...0...A0?1=0;..U...4VeriSign Class 3 Code Signing 2004 CA OCSP Resp
onder..20150105031906Z0s0q0I0... [email protected].!......Q

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/parcon/AOLParconLink.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:38 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 58696
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:38 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


HEAD /clients/bush/waol/0.4343.19.1/comps/tb/tbsetup.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:47 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 417240
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:47 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /?accepted_ind=1&clientv=103&csk=12586259620818734781-11775504302967998912&dpix=96&dpiy=96&inst_id=60635&language=en,en&lst=0&max=2&method=track_offer_result&mstime=36.442&offer_id=3596&offer_shown_secs=12.64&olang=en&opt_shown_count=0&os=WIN6.1SP1-64&pos=2&product_key=b37b25f3ccc49015eceda3b5d0db7760&ready=2&session_key=2afe7a0b83df4567c38d830b988dc6b9&tm=2015-01-05 17:14:15.963&v=1.0&wlss=11.076&signature=412a9f326c9fd84e4e7bdf2251f3ad5d HTTP/1.1
Cache-Control: no-cache
Connection: Keep-Alive
Pragma: no-cache
Accept: */*
Host: api.opencandy.com


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:39 GMT
Server: Apache
X-Robots-Tag: noindex
Last-Modified: Mon, 05 Jan 2015 17:14:39 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Transfer-Encoding: chunked
Content-Type: text/xml
5e..<?xml version="1.0"?><track_offer_result><operation
>Completed</operation></track_offer_result>..0..


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpchk.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:57 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 15144
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:57 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpgc.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:39 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 62248
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:39 GMT
Keep-Alive: timeout=2, max=90
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$............c...c..
.c...o...c...o...c...o...c...o...c...k...c..(k...c...c..pc..%t...c...k
...c..(k...c..%t...c..Gh...c..%t...c..Rich.c..................PE..L...
.}.H.................`...p.......g.......p....@.......................
..........~...........................................................
........([email protected]
...............................text...._.......`.................. ..`
.rdata...G...p...P...p..............@[email protected].....................
[email protected]...............................@..@....................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
..................................................................

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/acs/gui.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:15:59 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 472912
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:25:59 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /fas/stat.php?sid=1&tt=1&iid=24&pid=86638&tid=1&st=:49:50:51: HTTP/1.0
Host: mediahelper.co
User-Agent: NSISDL/1.2 (Mozilla)
Accept: */*


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:14:40 GMT
Server: Apache/2.2.25 (Amazon)
X-Powered-By: PHP/5.3.28
Content-Length: 0
Connection: close
Content-Type: text/html; charset=UTF-8


GET /pagead/conversion.js HTTP/1.1
Accept: application/javascript, */*;q=0.8
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.googleadservices.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 200 OK
P3P: policyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
Content-Type: text/javascript; charset=UTF-8
ETag: 9603012329940890601
Date: Mon, 05 Jan 2015 13:32:52 GMT
Expires: Tue, 06 Jan 2015 13:32:52 GMT
X-Content-Type-Options: nosniff
Content-Disposition: attachment; filename="f.txt"
Content-Encoding: gzip
Server: cafe
Content-Length: 4017
X-XSS-Protection: 1; mode=block
Age: 13376
Cache-Control: public, max-age=86400
Alternate-Protocol: 80:quic,p=0.002
...........Z.r.......PS.1b(..3..aU..8g.;'q&g..u.$D2.H.II.-..v....g.j.\
..h4.@_....W...q...5O:s..A.....U........n.s.....d.1.B.x....4...l.....D
d.$".......Br..m.<.STc..Y.s.Y.5K..3...0.T`.4.|."[email protected]...&..\.-.V
.[$.(.d.".2..#.... ...V..2...T/(..Iv.!=..".v......(a.>..R..../.m..7
..I%.U)T.<..0.......:.$.....h...*..Jq.;y.a...)....p..w.........H...
.8.....u8}dD>O/7..|..)....l.X.....|..tW.TM...40.X6.......{..Q.1H3..
d......5.....;.....Mp...Q........xX.i.'66u?p]....e".....G....f|..rc#..
..G.a..}.x&.[n,....z.D.l.....q(...LlF.Z.q|.y...P..UG..=uz=...1....l.
.HG.....awM.k....l.xD7..j..............n.W...P....e..X.k.4.V.......pE.
...me..Jw;....`N....s......'..=.yV.. .....n....z.'.1W.6l...1|E..3.7...
...d.......lnD|.x<...\..~.a..U*......7......D..N...3B..o.K.....-...
..%.%'..>......>.U...g-.>}.p.#..G...mL.._...Y.1...-O.F .e....
..SR..|...m.h{I....6...^on`..EV.,'.k..0F...[8..X..[g.P.d}=...}M.Y.j.tk
.....\..d..n.5..;.Gl.K'.|...Av=......Z..5...6.O.h..f...1.......s...H,Q
F....O. .y|.O..J'*....ARM....Q#"1l6.Y..3H.E...Pw.O<9Q.'r.>q.~..j
...........Q(Gi.;.Sp'...2......C....I...0.h.....O<...C.Xh4. .5.(Z.@
....../"..|...|%..fRK...I..Ylx".".....H5.Z.y..l...x.j....5.>.....O%
e...W.....Y...aZ.q\Y....K.....c....*...v;..-X......q4.8......{......8L
....O..... [...r.KUvt.[..........H......1..i......-.8....*....^..5.a..
Y%......8L...m.[.m..0N......n..d~..<...|..[.....Qx.F.].I.O..e. ....
..,^..k.......m..,..?.........A.fs.../..`..{.a...T..R.."[email protected]
...-.1..4.....;...Rd).Y.1v.*..A.......K.F[./.....A.-...F..S.>..

<<< skipped >>>

GET /pagead/conversion/1017626827/?random=1420478124985&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.googleadservices.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 302 Found
P3P: policyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1017626827/?random=167188712&cv=7&fst=1420478124985&num=1&fmt=3&value=0&label=EiJhCI2B-gIQy4Gf5QM&bg=ffffff&hl=en&guid=ON&eid=317150504&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;....



GET /pagead/conversion/1026731593/?random=1420478125201&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1 HTTP/1.1

Accept: image/png, image/svg xml, image/*;q=0.8, */*;q=0.5
Referer: hXXp://VVV.tuneup.de/services/whats-new/tuu2014/
Accept-Language: en-US
User-Agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)
Accept-Encoding: gzip, deflate
Host: VVV.googleadservices.com
DNT: 1
Connection: Keep-Alive


HTTP/1.1 302 Found
P3P: policyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
Date: Mon, 05 Jan 2015 17:15:48 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location: hXXp://googleads.g.doubleclick.net/pagead/viewthroughconversion/1026731593/?random=1330786953&cv=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=http://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAAAB0CAAAA&ct_cookie_present=false&convclickts=0
Content-Type: image/gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 80:quic,p=0.002
GIF89a.............!.......,...........D.;HTTP/1.1 302 Found..P3P: pol
icyref="hXXp://VVV.googleadservices.com/pagead/p3p.xml", CP="NOI DEV P
SA PSD IVA IVD OTP OUR OTR IND OTC"..Date: Mon, 05 Jan 2015 17:15:48 G
MT..Pragma: no-cache..Expires: Fri, 01 Jan 1990 00:00:00 GMT..Cache-Co
ntrol: no-cache, must-revalidate..Location: hXXp://googleads.g.doublec
lick.net/pagead/viewthroughconversion/1026731593/?random=1330786953&cv
=7&fst=1420478124985&num=3&fmt=3&value=0&label=9oTNCLnGmAIQydzK6QM&bg=
ffffff&hl=de&guid=ON&eid=317150503&u_h=901&u_w=1716&u_ah=857&u_aw=1716
&u_cd=24&u_his=1&u_tz=120&u_java=true&u_nplug=0&u_nmime=0&frm=0&url=ht
tp://VVV.tuneup.de/services/whats-new/tuu2014/&vis=1&ctc_id=CAIVAgAA
AB0CAAAA&ct_cookie_present=false&convclickts=0..Content-Type: image/gi
f..X-Content-Type-Options: nosniff..Server: cafe..Content-Length: 42..
X-XSS-Protection: 1; mode=block..Alternate-Protocol: 80:quic,p=0.002..
GIF89a.............!.......,...........D.;..

<<< skipped >>>

HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/ocpgc.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:39 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 62248
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:39 GMT
Keep-Alive: timeout=2, max=99
Connection: Keep-Alive
Content-Type: application/x-msdownload


HEAD /clients/bush/waol/0.4343.19.1/comps/acs/comps/acscore.exe HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:30 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 1480288
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:30 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload


GET /pki/crl/products/MicCodSigPCA_08-31-2010.crl HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.microsoft.com


HTTP/1.1 200 OK
Content-Type: application/pkix-crl
Last-Modified: Thu, 13 Nov 2014 06:02:42 GMT
Accept-Ranges: bytes
ETag: "88cab6f7ffcf1:0"
Server: Microsoft-IIS/8.5
VTag: 791936916300000000
P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI"
X-Powered-By: ASP.NET
Content-Length: 554
Cache-Control: max-age=900
Date: Mon, 05 Jan 2015 17:15:14 GMT
Connection: keep-alive
0..&0......0...*.H........0y1.0...U....US1.0...U....Washington1.0...U.
...Redmond1.0...U....Microsoft Corporation1#0!..U....Microsoft Code Si
gning PCA..141112173206Z..150211055206Z.a0_0...U.#..0..........X..7.3.
..L...0... .....7.........0...U......W0... .....7......150210174206Z0.
..*.H................].`...D..9.>LO.ey...Qx%.^.P.& ...D.......b}.K.
.[.....5.m....).....H..6R....G/ju.........:..A.#.9!......D5...|".w.x..
=.u..X6.7{..).XN....g......B.8.!&...........<7fS$..........t<X)%
.b([email protected]... ,...K\....U1cp).........y.T..?rm.t..Y.}.E..
[email protected]/1.1 200 OK..Content-Type: application/pkix-crl..Last-Modified:
Thu, 13 Nov 2014 06:02:42 GMT..Accept-Ranges: bytes..ETag: "88cab6f7f
fcf1:0"..Server: Microsoft-IIS/8.5..VTag: 791936916300000000..P3P: CP=
"ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo
CNT COM INT NAV ONL PHY PRE PUR UNI"..X-Powered-By: ASP.NET..Content-
Length: 554..Cache-Control: max-age=900..Date: Mon, 05 Jan 2015 17:15:
14 GMT..Connection: keep-alive..0..&0......0...*.H........0y1.0...U...
.US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corpora
tion1#0!..U....Microsoft Code Signing PCA..141112173206Z..150211055206
Z.a0_0...U.#..0..........X..7.3...L...0... .....7.........0...U......W
0... .....7......150210174206Z0...*.H................].`...D..9.>LO
.ey...Qx%.^.P.& ...D.......b}.K..[.....5.m....).....H..6R....G/ju.....
....:..A.#.9!......D5...|".w.x..=.u..X6.7{..).XN....g......B.8.!&.....
......<7fS$..........t<X)%.b([email protected]... ,...K\.

<<< skipped >>>

GET /clients/bush/waol/0.4343.19.1/comps/acs/instph.dll HTTP/1.1
Host: download.newaol.com:80
User-Agent: Roadie
Connection: close


HTTP/1.1 200 OK
Date: Mon, 05 Jan 2015 17:16:19 GMT
Server: Apache
Accept-Ranges: bytes
Content-Length: 94032
Cache-Control: max-age=600
Expires: Mon, 05 Jan 2015 17:26:19 GMT
Keep-Alive: timeout=2, max=100
Connection: Keep-Alive
Content-Type: application/x-msdownload
MZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$..........oSp.<S
p.<Sp.<V|.<Hp.<V|.<2p.<@x.<Qp.<.x.<Up.<.
S.<Pp.<Sp.<?p.<V|.<@p.<V|.<Rp.<.{.<Rp.<V
|.<Rp.<RichSp.<........................PE..L...'..E..........
.!................ag..................................................
............................P....@.. ...x....................Z..P.....
..l.......................................H...........................
.................text............................... ..`.rdata..0e....
...f..................@[email protected][email protected]
c................B..............@[email protected]............
[email protected]................................................................
......................................................................
......................................................................
......................................................................
..............................................U........h..........P..l
...h..........P.........p.........Ph.\....t.....V.t$......P..:....Yt.F
....u.3.@^.3.^.U..QQ.E...M..e..SV3.W.|..C;[email protected]..
u.3..E..u...F.>.u.F;.r.f.}..v.h.\..j.j..u...h....u...:..Y_^[..U....
$...SV3.W.u..u..E...........u..r;..P.s9..YY..\..S.E.h..........P.u...`
.....f................u...d...............;..M.s.....E.V..;..P..9...e.
..}..Y..Y.}.~..E. ...:..u/.E..M.@9M.|..E..}..t..e...u..u.V..:..f;E

<<< skipped >>>

The Trojan connects to the servers at the folowing location(s):

du340b.exe_3960:

`.rsrc
</te<\ta<.ue
t?<%u8
8%uEP3
PSSh[9'
j%Xf;
FTPQ
tGHt.Ht&
t.Nt Nt
<Ot:Ot.Ot#Ot
1.2.5
inflate 1.2.5 Copyright 1995-2010 Mark Adler
kernel32.dll
Please contact the application's support team for more information.
- Attempt to initialize the CRT more than once.
- CRT not initialized
- floating point support not loaded
operator
GetProcessWindowStation
USER32.DLL
N%s:%d
WARNING: failed to save cookies in %s
About to connect() to %s%s port %ld (#%ld)
Connected to %s (%s) port %ld (#%ld)
Protocol %s not supported or disabled in libcurl
<url> malformed
:]://%[^
[^:]:%[^
http_proxy
%5[^:@]:%5[^@]
:%5[^@]
Port number too large: %lu
%s://%s%s%s:%hu%s%s%s
;type=%c
[%*45[0123456789abcdefABCDEF:.]%c
Couldn't find host %s in the _netrc file; using defaults
[email protected]
Couldn't resolve host '%s'
Couldn't resolve proxy '%s'
User-Agent: %s
Re-using existing connection! (#%ld) with host %s
%s://%s
Connection #%ld to host %s left intact
operation aborted by callback
ioctl callback returned error %d
the ioctl callback returned %d
seek callback returned error %d
Received problem %d in the chunky parser
HTTP server doesn't seem to support byte ranges. Cannot resume.
Excess found in a non pipelined read: excess = %zu, size = %lld, maxdownload = %lld, bytecount = %lld
Rewinding stream by : %zu bytes on url %s (size = %lld, maxdownload = %lld, bytecount = %lld, nread = %zd)
Operation timed out after %ld milliseconds with %lld bytes received
Operation timed out after %ld milliseconds with %lld out of %lld bytes received
No URL set!
[^?&/:]://%c
Violate RFC 2616/10.3.2 and switch from POST to GET
Violate RFC 2616/10.3.3 and switch from POST to GET
Disables POST, goes with %s
Issue another request to this URL: '%s'
unspecified error %d
%s cookie %s="%s" for domain %s, path %s, expire %lld
#HttpOnly_
httponly
I99[^;
skipped cookie with bad tailmatch domain: %s
skipped cookie with illegal dotcount domain: %s
23[^;=]=I99[^;
%s%s%s
# Fatal libcurl error
# Netscape HTTP Cookie File
# hXXp://curl.haxx.se/rfc/cookie_spec.html
# This file was generated by libcurl! Edit at your own risk.
[%s %s %s]
Send failure: %s
Recv failure: %s
bind failed with errno %d: %s
Local port: %hu
getsockname() failed with errno %d: %s
Bind to local port %hu failed, trying next
Couldn't bind to '%s'
Name '%s' family %i resolved to '%s' family %i
Local Interface %s is ip %s using address family %i
ssloc inet_ntop() failed with errno %d: %s
ssrem inet_ntop() failed with errno %d: %s
getpeername() failed with errno %d: %s
TCP_NODELAY set
Could not set TCP_NODELAY: %s
Failed to connect to %s: %s
Trying %s...
Failed connect to %s:%ld; %s
%d.%d.%d.%d
Could not resolve host: %s; %s
Could not resolve proxy: %s; %s
getaddrinfo() failed for %s:%d; %s
init_resolve_thread() failed for %s; %s
SMTP
LOGIN
EHLO %s
HELO %s
AUTH %s %s
AUTH %s
STARTTLS denied. %c
Access denied: %d
%s xxxxxxxxxxxxxxxx
Authentication failed: %d
MAIL FROM:%s
RCPT TO:<%s>
RCPT TO:%s
Got unexpected smtp-server response: %d
SMTPS not supported!
USER %s
PASS %s
Access denied. %c
RETR %s
LIST %s
POP3S not supported!
%s LOGIN %s %s
%s SELECT %s
%s FETCH 1 BODY[TEXT]
%s STARTTLS
%s LOGOUT
IMAPS not supported!
%sAuthorization: Basic %s
%s:%s
%s auth using %s with user '%s'
HTTP/
Avoided giant realloc for header (max is %d)!
The requested URL returned error: %d
If-Unmodified-Since: %s
Last-Modified: %s
If-Modified-Since: %s
%s, d %s M d:d:d GMT
Failed sending HTTP POST request
Content-Type: application/x-www-form-urlencoded
Internal HTTP POST error!
Failed sending HTTP request
%s%s=%s
%s HTTP/%s
%s%s%s%s%s%s%s%s%s%s
PTF://%s:%s@%s
Content-Range: bytes %s/%lld
Content-Range: bytes %s%lld/%lld
Range: bytes=%s
PTF://
Host: %s%s%s:%hu
Host: %s%s%s
Chunky upload is not supported by HTTP 1.0
Accept-Encoding: %s
Referer: %s
HTTP/1.0 connection set to keep alive!
HTTP/1.1 proxy connection set close!
HTTP/1.0 proxy connection set to keep alive!
HTTP 1.0, assume close after body
RTSP/%d.%d =
HTTP =
HTTP/%d.%d =
Received HTTP code %d from proxy after CONNECT
HTTP/1.%d %d
CONNECT %s:%hu HTTP/%s
%s%s%s%s
Host: %s
%s:%hu
Establish HTTP proxy tunnel to %s:%hu
Internal error removing splay node = %d
Internal error clearing splay node = %d
%p is at send pipe head!
%p is at send pipe head B!
Pipe broke: handle 0x%p, url = %s
Can't complete SOCKS4 connection to %d.%d.%d.%d:%d. (%d), request rejected or failed.
Can't complete SOCKS4 connection to %d.%d.%d.%d:%d. (%d), request rejected because SOCKS server cannot connect to identd on the client.
Can't complete SOCKS4 connection to %d.%d.%d.%d:%d. (%d), request rejected because the client program and identd report different user-ids.
Can't complete SOCKS4 connection to %d.%d.%d.%d:%d. (%d), Unknown.
Failed to resolve "%s" for SOCKS4 connect.
No authentication method was acceptable. (It is quite likely that the SOCKS5 server wanted a username/password, since none was supplied to the server on this connection.)
SOCKS5 GSSAPI per-message authentication is not supported.
Can't complete SOCKS5 connection to %d.%d.%d.%d:%d. (%d)
Failed to resolve "%s" for SOCKS5 connect.
User was rejected by the SOCKS5 server (%d %d).
--:--:--
%3lld %s %3lld %s %3lld %s %s %s %s %s %s %s
password
login
Operation too slow. Less than %ld bytes/sec transfered the last %ld seconds
%s, algorithm="%s"
%s, opaque="%s"
%sAuthorization: Digest username="%s", realm="%s", nonce="%s", uri="%s", response="%s"
%sAuthorization: Digest username="%s", realm="%s", nonce="%s", uri="%s", cnonce="%s", nc=x, qop="%s", response="%s"
%s:%s:x:%s:%s:%s
%s:%.*s
%s:%s:%s
Unable to parse FTP file list
Error in the SSH layer
Caller must register CURLOPT_CONV_ callback options
TFTP: No such user
TFTP: Unknown transfer ID
TFTP: Illegal operation
TFTP: Access Violation
TFTP: File Not Found
Login denied
Issuer check against peer certificate failed
Invalid LDAP URL
Unrecognized HTTP Content-Encoding
Problem with the SSL CA cert (path? access rights?)
Peer certificate cannot be authenticated with known CA certificates
Problem with the local SSL certificate
SSL peer certificate or SSH remote key was not OK
A libcurl function was given a bad argument
Operation was aborted by an application callback
FTP: command REST failed
FTP: command PORT failed
HTTP response code said error
FTP: couldn't retrieve (RETR failed) the specified file
FTP: couldn't set file type
FTP: can't figure out the host in the PASV response
FTP: unknown 227 response format
FTP: unknown PASV reply
FTP: unknown PASS reply
FTP: The server did not accept the PRET command.
FTP: weird server reply
URL using bad/illegal format or missing URL
Unsupported protocol
Winsock version not supported
Protocol family not supported
Address family not supported
Operation not supported
Socket is unsupported
Protocol is unsupported
Protocol option is unsupported
Unknown error %d (%#x)
d:d:d
0123456789
FTP response reading failed
%c%c==
%c%c%c=
%c%c%c%c
.jpeg
.html
--%s--
Content-Type: %s
; filename="%s"
Content-Disposition: attachment; filename="%s"
Content-Type: multipart/mixed, boundary=%s
%s; boundary=%s
Visual C   CRT: Not enough memory to complete call to strerror.
Broken pipe
Inappropriate I/O control operation
Operation not permitted
OCExecuteOffer
OCExecuteOffer called before get_offers completed. Not good.
OCCleanupProduct(sProductKey)
ScriptPass
/PASSIVEINSTALL
/NOOCCMD
/DLMGR2NOCMD
/LAUNCHFROMREGISTRYSUBKEY
/LAUNCHEXEROOT
/LAUNCHEXEPATH
package_url
icon_url
eula_url
CMDLINE
OFFERCMDLINE
/OCMD5
Software\Microsoft\Windows\CurrentVersion\RunOnce
Software\Microsoft\Windows\CurrentVersion\Run
curl_easy_init failed. Last error:
Curl _wsopen_s failed. Last error:
hXXp://
%d,%d
%dx%d
hXXp://stats.opencandy.com/
&partner_key=
%d%/%3s%/%d %d:%d:%d
display.primary.x
display.primary.y
display.monitors
windowsFirewallOn
zcÁ
.?AV?$CAtlExeModuleT@VCOCSetupModule@@@ATL@@
.?AVOCUrlGetFile@@
3yY.rzr
GetProcessHeap
PeekNamedPipe
GetConsoleOutputCP
GetCPInfo
RegOpenKeyExW
RegDeleteKeyW
RegQueryInfoKeyW
RegEnumKeyW
RegDeleteKeyA
RegCreateKeyExW
RegEnumKeyExW
RegCloseKey
CertCloseStore
CertFreeCertificateContext
CertGetCertificateContextProperty
CertFindCertificateInStore
CryptMsgGetParam
CryptMsgClose
ShellExecuteW
URLDownloadToFileW
UnhookWindowsHookEx
SetWindowsHookExW
%%5###57 
## # #<_3#0
.text
`.rdata
@.data
.rsrc
@.reloc
stdole2.tlbWWW
LvbValidationPassedWWd
Created by MIDL version 7.00.0555 at Tue Dec 16 15:43:25 2014
762NSQL
**(%xxv
-('"#('#
.((%#11-
&&#"&&# //,
972.MJE^spi
<8.CZXPr
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><assemblyIdentity version="1.0.0.0" processorArchitecture="X86" name="OpenCandy.OCSetupHlp" type="win32"></assemblyIdentity><description>SDK Helper DLL</description><dependency><dependentAssembly><assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="X86" publicKeyToken="6595b64144ccf1df" language="*"></assemblyIdentity></dependentAssembly></dependency><trustInfo xmlns="urn:schemas-microsoft-com:asm.v3"><security><requestedPrivileges><requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel></requestedPrivileges></security></trustInfo></assembly>P
<assemblyIdentity version="1.0.0.0" processorArchitecture="X86" name="OpenCandy.OCSetupHlp" type="win32"/>
<assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="X86" publicKeyToken="6595b64144ccf1df" language="*" />
KERNEL32.DLL
ADVAPI32.dll
CRYPT32.dll
GDI32.dll
ole32.dll
OLEAUT32.dll
PSAPI.DLL
SHELL32.dll
SHLWAPI.dll
urlmon.dll
USER32.dll
WININET.dll
WS2_32.dll
mscoree.dll
api.opencandy.com
product_key
session_key
/D76E8A95-F14F-4C17-BF3E-61D5757838BC
"%s" %s /ProcId=%d /RandomWindowClassName=%s %s
{C4C4058A-7FF1-45AD-B9D1-255E2F92F06D}
OCExecuteOffer called before get_offers completed. Not good
76FC5137-E9E5-48D3-A1CB-B60F7C296BCD
8E4BFA41-160F-4805-A4EA-DB15C4647E23
85426876-4F81-491C-848D-C7BA755E6DFA
<track><method>%s</method><mstime>%s</mstime></track>
47A647BD-4905-48C7-9539-A95F199019A4
AD04695C-64CE-4494-8717-94F7D5C7E705
995D92B2-4ED9-43A7-9338-8CC7D1746F96
<offer id="%s" product_id="%s" />
Msg_ConnectionInterrupted
Msg_DownloadComplete
Msg_PauseDownload
Msg_CancelInstall
Msg_WindowTitleLabel
Msg_HeaderReadyLabel
Msg_DownloadLabel
Msg_Downloading
Msg_PercentComplete
Msg_InstallButtonText
Msg_ClickToInstall
Msg_CheckCancel
Msg_DownloadPaused
Msg_CriticalFailure
Msg_ResumeDownload
Msg_ExitDownloadManager
Msg_InstallNowButtonText
Msg_HeaderLabel
Msg_TitleReadyLabel
Msg_RemindMe1HourButtonText
Msg_RemindMe1DayButtonText
Msg_RemindMeStartupButtonText
Msg_RemindMeHeaderText
Msg_RemindMeButtonText
Msg_ConfirmCancelTitle
Msg_ConfirmCancelText
Msg_PauseText
Msg_MenuItemPause
Msg_PausedText
Msg_ResumeText
Msg_MenuItemInstall
Msg_MenuItemResume
Msg_MenuItemCancel
Msg_PleaseChooseDlgMsg
Msg_InstallOptMsg
Msg_DontInstallOptMsg
Msg_SelectOptMsg
Msg_Installing
Msg_InstallationFailed
Msg_CloseButtonText
Msg_DownloadSuccessful
Msg_InstallationSuccessful
Msg_TitleLabel
Msg_InstallationSuccessfulReboot
Msg_LaunchButtonText
Msg_ReminderTitle
Msg_ReminderInstalledUnused
Msg_ReminderPromptNotTried
Msg_TryButtonText
Msg_StartButtonText
Msg_RemindMeLaterButtonText
Msg_ConfirmCloseReminderTitle
Msg_ConfirmCloseReminderText
Msg_ConfirmCloseRemindLaterCheckbox
Msg_ConfirmCloseReminderOKButton
Msg_ConfirmCloseReminderCancelButton
Msg_BrowserNeedsRestart
Msg_BrowserRestartTimer
Msg_BrowserNeedsRestartButOK
Msg_BrowserNeedsRestartButCancel
Msg_BrowserAddonRunAfterRestart
Msg_BrowserAddonRunAfterRestartButOK
Msg_BrowserAddonRunAfterRestartButCancel
Msg_DlgTitleLaunchBrowser
Msg_DlgLaunchMsgButOK
Msg_DlgLaunchMsgButCancel
Msg_ApplicationNeedsRestart
Msg_ApplicationNeedsRestartButOK
Msg_ApplicationNeedsRestartButCancel
Msg_ApplicationAddonRunAfterRestart
Msg_ApplicationAddonRunAfterRestartButOK
Msg_ApplicationAddonRunAfterRestartButCancel
Msg_ApplicationMsgLaunch
Msg_ApplicationLaunchMsgButOK
Msg_ApplicationLaunchMsgButCancel
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_CURRENT_CONFIG
sOffer install return code bad result: %d. Command line %s
Last erorr %d
nCurl return code %d
Error fileGet.OCFileGet failed
error code %d
rmsg.wParam: %d
LoadDialogUI() CreateDirectory failed. Error %d
Icon get URL:
Error in MainLoop OCGetUrlData
Global\223CEB62-A2BC-4E33-BA9B-FCAC6DAAB1BE
<offer offerId="%s" productKey="%s" productName="%s" publisherName="%s" secret="%s" sessionId="%s" trackingPriority="%d" showLargeIcon="%s" maxOCReminderStatsRetries="%d" />
<language Msg_ReminderTitle="%s" Msg_ReminderInstalledUnused="%s" Msg_ReminderPromptNotTried="%s" Msg_TryButtonText="%s"
Msg_LaunchButtonText="%s" Msg_RemindMeLaterButtonText="%s" Msg_ConfirmCloseReminderTitle="%s" Msg_ConfirmCloseReminderText="%s" Msg_ConfirmCloseRemindLaterCheckbox="%s"
Msg_ConfirmCloseReminderOKButton="%s" Msg_ConfirmCloseReminderCancelButton="%s" />
0A057FB3-B2CA-490B-85A2-ABD5CAB6A7F1
OCReminder.exe
<offer offerId="%s" productKey="%s" productName="%s" publisherName="%s" showLargeIcon="%s" sessionId="%s" />
<language Msg_WindowTitleLabel="%s" Msg_BrowserNeedsRestart="%s" Msg_BrowserRestartTimer="%s" Msg_BrowserNeedsRestartButOK="%s" Msg_BrowserNeedsRestartButCancel="%s" Msg_BrowserAddonRunAfterRestart="%s" Msg_BrowserAddonRunAfterRestartButOK="%s" Msg_BrowserAddonRunAfterRestartButCancel="%s" Msg_DlgTitleLaunchBrowser="%s" Msg_DlgLaunchMsgButOK="%s" Msg_DlgLaunchMsgButCancel="%s"
Msg_ApplicationNeedsRestart="%s" Msg_ApplicationNeedsRestartButOK="%s" Msg_ApplicationNeedsRestartButCancel="%s" Msg_ApplicationAddonRunAfterRestart="%s" Msg_ApplicationAddonRunAfterRestartButOK="%s" Msg_ApplicationAddonRunAfterRestartButCancel="%s" Msg_ApplicationMsgLaunch="%s" Msg_ApplicationLaunchMsgButOK="%s" Msg_ApplicationLaunchMsgButCancel="%s" />
EBB77268-338F-4C6A-8590-AD88FED26F4A
Engine doesn't support IActiveScriptParse.
Line %d, position %d
/232273B9-AAAD-476C-95A4-7023B0818CCA
.ForceRemove
.NoRemove
.Delete
.AppID
Global\426F00E8-A1B3-4EB2-8FF8-0950920F5D6E
Global\71C6E2D5-E762-40BC-9CB6-B3C757FD699C
EDCBC0BF-44ED-466F-AF2F-47802E05BDE6
hXXps://
LoadExeAsStdUser is empty
{BBA978CE-C269-4DA2-B45C-EBDCE222B480}
Error CreateRunonceOCReminderTask error was 0x%x
Error LoadExeAsStdUser CreateProcess failed was 0x%x
%Y-%m-%dT%H:%M:%S
GetOCDownloadDirectoryWide SHGetFolderPath error HRESULT: %d
GetOCDownloadDirectoryWide CreateDirectory last error %d
C:\temp
explorer.exe
OCExclude.dat
\\,
windows defender
Global\6953A262-2E58-404F-9608-9C9D2A2DE767
Global\6860B75D-437B-427D-B26D-0C46EE91B937
All tests have passed.
%d test has failed. Please review the error messages.
%d tests have failed. Please review the error messages.
OpenCandy Developer Mode Download Manager Test Report
OpenCandy Developer Mode Test Report
<clientv>%s</clientv>
<sessionid>%s</sessionid>
<ProductID>%s</ProductID>
<cltzone>%s</cltzone>
<oslang>%s</oslang>
HKEY_DYN_DATA
HKEY_PERFORMANCE_DATA
Mscoree.dll
OLEAUT32.DLL
{ECC65569-E9B8-4689-B41F-277CFC382B59}
okernel32.dll
PassSelected
OfferCMDLine
InstallerCmdLine
m_passive_install
m_strRegLaunchSubKeyPath
m_ocstrLaunchExeFullPath
m_bShowRebootMsgAfterInstall
B8DCC36F-4F05-445F-B1EE-FD8FC38CBBDA
|EXCL|Version=1|Tags=%s|OfferID=%s|Expiry=%I64d|
http=
jsproxy.dll
%USERPROFILE%
%CommonProgramFiles%
%CommonProgramW6432%
%CommonProgramFiles(x86)%
FIDL_Windows
SOFTWARE\Microsoft\Windows\CurrentVersion
WINDOWS
shell32.dll
(api.opencandy.com
C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\du340b.exe
OpenCandy Download Manager Developer Mode Report
3.2.5.340
IHelper.exe

du340b.exe_3960_rwx_00261000_000B9000:

</te<\ta<.ue
t?<%u8
8%uEP3
PSSh[9'
j%Xf;
FTPQ
tGHt.Ht&
t.Nt Nt
<Ot:Ot.Ot#Ot
1.2.5
inflate 1.2.5 Copyright 1995-2010 Mark Adler
kernel32.dll
Please contact the application's support team for more information.
- Attempt to initialize the CRT more than once.
- CRT not initialized
- floating point support not loaded
operator
GetProcessWindowStation
USER32.DLL
N%s:%d
WARNING: failed to save cookies in %s
About to connect() to %s%s port %ld (#%ld)
Connected to %s (%s) port %ld (#%ld)
Protocol %s not supported or disabled in libcurl
<url> malformed
:]://%[^
[^:]:%[^
http_proxy
%5[^:@]:%5[^@]
:%5[^@]
Port number too large: %lu
%s://%s%s%s:%hu%s%s%s
;type=%c
[%*45[0123456789abcdefABCDEF:.]%c
Couldn't find host %s in the _netrc file; using defaults
[email protected]
Couldn't resolve host '%s'
Couldn't resolve proxy '%s'
User-Agent: %s
Re-using existing connection! (#%ld) with host %s
%s://%s
Connection #%ld to host %s left intact
operation aborted by callback
ioctl callback returned error %d
the ioctl callback returned %d
seek callback returned error %d
Received problem %d in the chunky parser
HTTP server doesn't seem to support byte ranges. Cannot resume.
Excess found in a non pipelined read: excess = %zu, size = %lld, maxdownload = %lld, bytecount = %lld
Rewinding stream by : %zu bytes on url %s (size = %lld, maxdownload = %lld, bytecount = %lld, nread = %zd)
Operation timed out after %ld milliseconds with %lld bytes received
Operation timed out after %ld milliseconds with %lld out of %lld bytes received
No URL set!
[^?&/:]://%c
Violate RFC 2616/10.3.2 and switch from POST to GET
Violate RFC 2616/10.3.3 and switch from POST to GET
Disables POST, goes with %s
Issue another request to this URL: '%s'
unspecified error %d
%s cookie %s="%s" for domain %s, path %s, expire %lld
#HttpOnly_
httponly
I99[^;
skipped cookie with bad tailmatch domain: %s
skipped cookie with illegal dotcount domain: %s
23[^;=]=I99[^;
%s%s%s
# Fatal libcurl error
# Netscape HTTP Cookie File
# hXXp://curl.haxx.se/rfc/cookie_spec.html
# This file was generated by libcurl! Edit at your own risk.
[%s %s %s]
Send failure: %s
Recv failure: %s
bind failed with errno %d: %s
Local port: %hu
getsockname() failed with errno %d: %s
Bind to local port %hu failed, trying next
Couldn't bind to '%s'
Name '%s' family %i resolved to '%s' family %i
Local Interface %s is ip %s using address family %i
ssloc inet_ntop() failed with errno %d: %s
ssrem inet_ntop() failed with errno %d: %s
getpeername() failed with errno %d: %s
TCP_NODELAY set
Could not set TCP_NODELAY: %s
Failed to connect to %s: %s
Trying %s...
Failed connect to %s:%ld; %s
%d.%d.%d.%d
Could not resolve host: %s; %s
Could not resolve proxy: %s; %s
getaddrinfo() failed for %s:%d; %s
init_resolve_thread() failed for %s; %s
SMTP
LOGIN
EHLO %s
HELO %s
AUTH %s %s
AUTH %s
STARTTLS denied. %c
Access denied: %d
%s xxxxxxxxxxxxxxxx
Authentication failed: %d
MAIL FROM:%s
RCPT TO:<%s>
RCPT TO:%s
Got unexpected smtp-server response: %d
SMTPS not supported!
USER %s
PASS %s
Access denied. %c
RETR %s
LIST %s
POP3S not supported!
%s LOGIN %s %s
%s SELECT %s
%s FETCH 1 BODY[TEXT]
%s STARTTLS
%s LOGOUT
IMAPS not supported!
%sAuthorization: Basic %s
%s:%s
%s auth using %s with user '%s'
HTTP/
Avoided giant realloc for header (max is %d)!
The requested URL returned error: %d
If-Unmodified-Since: %s
Last-Modified: %s
If-Modified-Since: %s
%s, d %s M d:d:d GMT
Failed sending HTTP POST request
Content-Type: application/x-www-form-urlencoded
Internal HTTP POST error!
Failed sending HTTP request
%s%s=%s
%s HTTP/%s
%s%s%s%s%s%s%s%s%s%s
PTF://%s:%s@%s
Content-Range: bytes %s/%lld
Content-Range: bytes %s%lld/%lld
Range: bytes=%s
PTF://
Host: %s%s%s:%hu
Host: %s%s%s
Chunky upload is not supported by HTTP 1.0
Accept-Encoding: %s
Referer: %s
HTTP/1.0 connection set to keep alive!
HTTP/1.1 proxy connection set close!
HTTP/1.0 proxy connection set to keep alive!
HTTP 1.0, assume close after body
RTSP/%d.%d =
HTTP =
HTTP/%d.%d =
Received HTTP code %d from proxy after CONNECT
HTTP/1.%d %d
CONNECT %s:%hu HTTP/%s
%s%s%s%s
Host: %s
%s:%hu
Establish HTTP proxy tunnel to %s:%hu
Internal error removing splay node = %d
Internal error clearing splay node = %d
%p is at send pipe head!
%p is at send pipe head B!
Pipe broke: handle 0x%p, url = %s
Can't complete SOCKS4 connection to %d.%d.%d.%d:%d. (%d), request rejected or failed.
Can't complete SOCKS4 connection to %d.%d.%d.%d:%d. (%d), request rejected because SOCKS server cannot connect to identd on the client.
Can't complete SOCKS4 connection to %d.%d.%d.%d:%d. (%d), request rejected because the client program and identd report different user-ids.
Can't complete SOCKS4 connection to %d.%d.%d.%d:%d. (%d), Unknown.
Failed to resolve "%s" for SOCKS4 connect.
No authentication method was acceptable. (It is quite likely that the SOCKS5 server wanted a username/password, since none was supplied to the server on this connection.)
SOCKS5 GSSAPI per-message authentication is not supported.
Can't complete SOCKS5 connection to %d.%d.%d.%d:%d. (%d)
Failed to resolve "%s" for SOCKS5 connect.
User was rejected by the SOCKS5 server (%d %d).
--:--:--
%3lld %s %3lld %s %3lld %s %s %s %s %s %s %s
password
login
Operation too slow. Less than %ld bytes/sec transfered the last %ld seconds
%s, algorithm="%s"
%s, opaque="%s"
%sAuthorization: Digest username="%s", realm="%s", nonce="%s", uri="%s", response="%s"
%sAuthorization: Digest username="%s", realm="%s", nonce="%s", uri="%s", cnonce="%s", nc=x, qop="%s", response="%s"
%s:%s:x:%s:%s:%s
%s:%.*s
%s:%s:%s
Unable to parse FTP file list
Error in the SSH layer
Caller must register CURLOPT_CONV_ callback options
TFTP: No such user
TFTP: Unknown transfer ID
TFTP: Illegal operation
TFTP: Access Violation
TFTP: File Not Found
Login denied
Issuer check against peer certificate failed
Invalid LDAP URL
Unrecognized HTTP Content-Encoding
Problem with the SSL CA cert (path? access rights?)
Peer certificate cannot be authenticated with known CA certificates
Problem with the local SSL certificate
SSL peer certificate or SSH remote key was not OK
A libcurl function was given a bad argument
Operation was aborted by an application callback
FTP: command REST failed
FTP: command PORT failed
HTTP response code said error
FTP: couldn't retrieve (RETR failed) the specified file
FTP: couldn't set file type
FTP: can't figure out the host in the PASV response
FTP: unknown 227 response format
FTP: unknown PASV reply
FTP: unknown PASS reply
FTP: The server did not accept the PRET command.
FTP: weird server reply
URL using bad/illegal format or missing URL
Unsupported protocol
Winsock version not supported
Protocol family not supported
Address family not supported
Operation not supported
Socket is unsupported
Protocol is unsupported
Protocol option is unsupported
Unknown error %d (%#x)
d:d:d
0123456789
FTP response reading failed
%c%c==
%c%c%c=
%c%c%c%c
.jpeg
.html
--%s--
Content-Type: %s
; filename="%s"
Content-Disposition: attachment; filename="%s"
Content-Type: multipart/mixed, boundary=%s
%s; boundary=%s
Visual C   CRT: Not enough memory to complete call to strerror.
Broken pipe
Inappropriate I/O control operation
Operation not permitted
OCExecuteOffer
OCExecuteOffer called before get_offers completed. Not good.
OCCleanupProduct(sProductKey)
ScriptPass
/PASSIVEINSTALL
/NOOCCMD
/DLMGR2NOCMD
/LAUNCHFROMREGISTRYSUBKEY
/LAUNCHEXEROOT
/LAUNCHEXEPATH
package_url
icon_url
eula_url
CMDLINE
OFFERCMDLINE
/OCMD5
Software\Microsoft\Windows\CurrentVersion\RunOnce
Software\Microsoft\Windows\CurrentVersion\Run
curl_easy_init failed. Last error:
Curl _wsopen_s failed. Last error:
hXXp://
%d,%d
%dx%d
hXXp://stats.opencandy.com/
&partner_key=
%d%/%3s%/%d %d:%d:%d
display.primary.x
display.primary.y
display.monitors
windowsFirewallOn
zcÁ
.?AV?$CAtlExeModuleT@VCOCSetupModule@@@ATL@@
.?AVOCUrlGetFile@@
3yY.rzr
GetProcessHeap
PeekNamedPipe
GetConsoleOutputCP
GetCPInfo
RegOpenKeyExW
RegDeleteKeyW
RegQueryInfoKeyW
RegEnumKeyW
RegDeleteKeyA
RegCreateKeyExW
RegEnumKeyExW
RegCloseKey
CertCloseStore
CertFreeCertificateContext
CertGetCertificateContextProperty
CertFindCertificateInStore
CryptMsgGetParam
CryptMsgClose
ShellExecuteW
URLDownloadToFileW
UnhookWindowsHookEx
SetWindowsHookExW
%%5###57 
## # #<_3#0
.text
`.rdata
@.data
.rsrc
@.reloc
KERNEL32.DLL
mscoree.dll
api.opencandy.com
product_key
session_key
/D76E8A95-F14F-4C17-BF3E-61D5757838BC
"%s" %s /ProcId=%d /RandomWindowClassName=%s %s
{C4C4058A-7FF1-45AD-B9D1-255E2F92F06D}
OCExecuteOffer called before get_offers completed. Not good
76FC5137-E9E5-48D3-A1CB-B60F7C296BCD
8E4BFA41-160F-4805-A4EA-DB15C4647E23
85426876-4F81-491C-848D-C7BA755E6DFA
<track><method>%s</method><mstime>%s</mstime></track>
47A647BD-4905-48C7-9539-A95F199019A4
AD04695C-64CE-4494-8717-94F7D5C7E705
995D92B2-4ED9-43A7-9338-8CC7D1746F96
<offer id="%s" product_id="%s" />
Msg_ConnectionInterrupted
Msg_DownloadComplete
Msg_PauseDownload
Msg_CancelInstall
Msg_WindowTitleLabel
Msg_HeaderReadyLabel
Msg_DownloadLabel
Msg_Downloading
Msg_PercentComplete
Msg_InstallButtonText
Msg_ClickToInstall
Msg_CheckCancel
Msg_DownloadPaused
Msg_CriticalFailure
Msg_ResumeDownload
Msg_ExitDownloadManager
Msg_InstallNowButtonText
Msg_HeaderLabel
Msg_TitleReadyLabel
Msg_RemindMe1HourButtonText
Msg_RemindMe1DayButtonText
Msg_RemindMeStartupButtonText
Msg_RemindMeHeaderText
Msg_RemindMeButtonText
Msg_ConfirmCancelTitle
Msg_ConfirmCancelText
Msg_PauseText
Msg_MenuItemPause
Msg_PausedText
Msg_ResumeText
Msg_MenuItemInstall
Msg_MenuItemResume
Msg_MenuItemCancel
Msg_PleaseChooseDlgMsg
Msg_InstallOptMsg
Msg_DontInstallOptMsg
Msg_SelectOptMsg
Msg_Installing
Msg_InstallationFailed
Msg_CloseButtonText
Msg_DownloadSuccessful
Msg_InstallationSuccessful
Msg_TitleLabel
Msg_InstallationSuccessfulReboot
Msg_LaunchButtonText
Msg_ReminderTitle
Msg_ReminderInstalledUnused
Msg_ReminderPromptNotTried
Msg_TryButtonText
Msg_StartButtonText
Msg_RemindMeLaterButtonText
Msg_ConfirmCloseReminderTitle
Msg_ConfirmCloseReminderText
Msg_ConfirmCloseRemindLaterCheckbox
Msg_ConfirmCloseReminderOKButton
Msg_ConfirmCloseReminderCancelButton
Msg_BrowserNeedsRestart
Msg_BrowserRestartTimer
Msg_BrowserNeedsRestartButOK
Msg_BrowserNeedsRestartButCancel
Msg_BrowserAddonRunAfterRestart
Msg_BrowserAddonRunAfterRestartButOK
Msg_BrowserAddonRunAfterRestartButCancel
Msg_DlgTitleLaunchBrowser
Msg_DlgLaunchMsgButOK
Msg_DlgLaunchMsgButCancel
Msg_ApplicationNeedsRestart
Msg_ApplicationNeedsRestartButOK
Msg_ApplicationNeedsRestartButCancel
Msg_ApplicationAddonRunAfterRestart
Msg_ApplicationAddonRunAfterRestartButOK
Msg_ApplicationAddonRunAfterRestartButCancel
Msg_ApplicationMsgLaunch
Msg_ApplicationLaunchMsgButOK
Msg_ApplicationLaunchMsgButCancel
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_CURRENT_CONFIG
sOffer install return code bad result: %d. Command line %s
Last erorr %d
nCurl return code %d
Error fileGet.OCFileGet failed
error code %d
rmsg.wParam: %d
LoadDialogUI() CreateDirectory failed. Error %d
Icon get URL:
Error in MainLoop OCGetUrlData
Global\223CEB62-A2BC-4E33-BA9B-FCAC6DAAB1BE
<offer offerId="%s" productKey="%s" productName="%s" publisherName="%s" secret="%s" sessionId="%s" trackingPriority="%d" showLargeIcon="%s" maxOCReminderStatsRetries="%d" />
<language Msg_ReminderTitle="%s" Msg_ReminderInstalledUnused="%s" Msg_ReminderPromptNotTried="%s" Msg_TryButtonText="%s"
Msg_LaunchButtonText="%s" Msg_RemindMeLaterButtonText="%s" Msg_ConfirmCloseReminderTitle="%s" Msg_ConfirmCloseReminderText="%s" Msg_ConfirmCloseRemindLaterCheckbox="%s"
Msg_ConfirmCloseReminderOKButton="%s" Msg_ConfirmCloseReminderCancelButton="%s" />
0A057FB3-B2CA-490B-85A2-ABD5CAB6A7F1
OCReminder.exe
<offer offerId="%s" productKey="%s" productName="%s" publisherName="%s" showLargeIcon="%s" sessionId="%s" />
<language Msg_WindowTitleLabel="%s" Msg_BrowserNeedsRestart="%s" Msg_BrowserRestartTimer="%s" Msg_BrowserNeedsRestartButOK="%s" Msg_BrowserNeedsRestartButCancel="%s" Msg_BrowserAddonRunAfterRestart="%s" Msg_BrowserAddonRunAfterRestartButOK="%s" Msg_BrowserAddonRunAfterRestartButCancel="%s" Msg_DlgTitleLaunchBrowser="%s" Msg_DlgLaunchMsgButOK="%s" Msg_DlgLaunchMsgButCancel="%s"
Msg_ApplicationNeedsRestart="%s" Msg_ApplicationNeedsRestartButOK="%s" Msg_ApplicationNeedsRestartButCancel="%s" Msg_ApplicationAddonRunAfterRestart="%s" Msg_ApplicationAddonRunAfterRestartButOK="%s" Msg_ApplicationAddonRunAfterRestartButCancel="%s" Msg_ApplicationMsgLaunch="%s" Msg_ApplicationLaunchMsgButOK="%s" Msg_ApplicationLaunchMsgButCancel="%s" />
EBB77268-338F-4C6A-8590-AD88FED26F4A
Engine doesn't support IActiveScriptParse.
Line %d, position %d
/232273B9-AAAD-476C-95A4-7023B0818CCA
.ForceRemove
.NoRemove
.Delete
.AppID
Global\426F00E8-A1B3-4EB2-8FF8-0950920F5D6E
Global\71C6E2D5-E762-40BC-9CB6-B3C757FD699C
EDCBC0BF-44ED-466F-AF2F-47802E05BDE6
hXXps://
LoadExeAsStdUser is empty
{BBA978CE-C269-4DA2-B45C-EBDCE222B480}
Error CreateRunonceOCReminderTask error was 0x%x
Error LoadExeAsStdUser CreateProcess failed was 0x%x
%Y-%m-%dT%H:%M:%S
GetOCDownloadDirectoryWide SHGetFolderPath error HRESULT: %d
GetOCDownloadDirectoryWide CreateDirectory last error %d
C:\temp
explorer.exe
OCExclude.dat
\\,
windows defender
Global\6953A262-2E58-404F-9608-9C9D2A2DE767
Global\6860B75D-437B-427D-B26D-0C46EE91B937
All tests have passed.
%d test has failed. Please review the error messages.
%d tests have failed. Please review the error messages.
OpenCandy Developer Mode Download Manager Test Report
OpenCandy Developer Mode Test Report
<clientv>%s</clientv>
<sessionid>%s</sessionid>
<ProductID>%s</ProductID>
<cltzone>%s</cltzone>
<oslang>%s</oslang>
HKEY_DYN_DATA
HKEY_PERFORMANCE_DATA
Mscoree.dll
OLEAUT32.DLL
{ECC65569-E9B8-4689-B41F-277CFC382B59}
okernel32.dll
PassSelected
OfferCMDLine
InstallerCmdLine
m_passive_install
m_strRegLaunchSubKeyPath
m_ocstrLaunchExeFullPath
m_bShowRebootMsgAfterInstall
B8DCC36F-4F05-445F-B1EE-FD8FC38CBBDA
|EXCL|Version=1|Tags=%s|OfferID=%s|Expiry=%I64d|
http=
jsproxy.dll
%USERPROFILE%
%CommonProgramFiles%
%CommonProgramW6432%
%CommonProgramFiles(x86)%
FIDL_Windows
SOFTWARE\Microsoft\Windows\CurrentVersion
WINDOWS
shell32.dll
(api.opencandy.com
C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\du340b.exe
OpenCandy Download Manager Developer Mode Report

IEXPLORE.EXE_3116:

.text
`.data
.idata
.rsrc
@.reloc
u\j.Xf9
j.Xf9
USER32.dll
api-ms-win-downlevel-shell32-l1-1-0.dll
IEFRAME.dll
SHELL32.dll
iexplore.pdb
api-ms-win-downlevel-shlwapi-l1-1-0.dll
iertutil.dll
api-ms-win-downlevel-advapi32-l1-1-0.dll
KERNEL32.dll
msvcrt.dll
_wcmdln
_amsg_exit
RegOpenKeyExW
RegCloseKey
<!-- Note: This manifest needs to be kept in sync with iexplore.exe.manifest -->
<assemblyIdentity version="5.1.0.0"
name="Microsoft.InternetExplorer"
<windowsSettings>
<dpiAware xmlns="hXXp://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>
</windowsSettings>
<!--The ID below indicates application support for Windows 8 -->
<supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"/>
KEYW
.ENNNG.
a.ry.v
l.igM4
?1%SGf
xh.JW^
.97777"7" " " !
3.... )) 
8888888888888
8888888888
.lPV)
úW1
.ApX/
H.ZAf
ð[U
%s!FK
1YYYY1YY9GEAA=77YRNNNW:.VT1
888777777
Y.hilkRROMLK=C,
..(((($$
3...((((%
3....(.''$
3.2...((((%
33.2....(,'
55323222...
(%&'00443445?
00.,,,4(
000.,,9(
0020..9(
003200;(
(#'( (''''!'!
Microsoft.InternetExplorer.Default
Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iexplore.exe
{28fb17e0-d393-439d-9a21-9474a070473a}
imm32.dll
Software\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}
Kernel32.dll
"%s" %s
kernel32.dll
IEXPLORE.EXE
{00000000-0000-0000-0000-000000000000}
\\?\Volume
Imaging_CreateWebPagePreview_Perftrack
Browseui_Tabs_Tearoff_BetweenWindows
Browseui_Tabs_Tearoff_BetweenWindows_TabProc
Frame_URLEntered
Imaging_CreateWebPagePreview
WS_ExecuteQuery
Shdocvw_BaseBrowser_FireEvent_WindowStateChanged
IdleTask_Execution_Time
Shdocvw_BaseBrowser_FireEvent_BeforeScriptExecute
IMTravelLogMVC_TravelURL
10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)
Windows
10.00.9200.16521

waol-0.4343.19.1.exe_3636:

.text
`.rdata
@.data
.rsrc
t9It.It#It
PSSSSSSh
~,.tM
tGHt.Ht&
%s (%s:%d)
C:\PROGRA~1\MICROS~1.0\VC\ATLMFC\INCLUDE\afxwin1.inl
-v %s
sShortDate
%s\%s
%s\*.*
%d.%d%c
Disk.cpp
KERNEL32.dll
install.ini
comps.ini
media.ini
Update movie file %s
Flash initialized, Version %d.%d
CLSID\%s\InProcServer32
USER32.DLL
iexplore.exe
C:\PROGRA~1\MICROS~1.0\VC\ATLMFC\INCLUDE\afxwin2.inl
--:--:--
%ld.%ld,%s
Unknown ErrorCode:%d ExitCode:%d
Directory path contains waol.exe client
Windows must reboot to complete install
{D27CDB6E-AE6D-11cf-96B8-444553540000}
[ERRORUnsupportedToken]
kernel32.dll
Windows 2000
Windows Server 2003
Windows XP
Windows Home Server
Windows Server 2008
Windows Vista
Windows Server 2008 R2
Windows 7
Windows 8
Older than Windows 2000
installOmniture.loc
installOmniture.ini
%s\idb\SNmaster.idx
%s|%s*%s
%s*%s
Found build = %d.%d%c
Client is %s version -- %s
%s,%d,%d
DBGetClientInfo Path = %s ,szScreenName=%s , Version = %s
successfully wrote %d bytes...
writing %d bytes...
Writing component to %s...
CComponent::Write() - Resource size = %d
CComponent::Write() - Finding resource %d ...
%s%s%s
CScript::Execute() -- CreateProcess() failed for file %s
"%s" %s
CScript:Execute() - CreateProcess() creating script process
install.log
webregError
webregSN
AOL Software.Exe Running Path - %s
"%s\aolsoftware.exe"
progress.dll
%s\%s.lnk
%s.lnk
Install : CreateProcess = Inside %s%
Install : CreateProcess = %s%
GL*.TMP
launcher.dll
instph.dll
install.dll
deleting ProgUpd.dll
Location of client to upgrade '%s'
Upgrading from Client Version '%s' (Codebase '%s')
%s\win.ini
Software\Microsoft\Windows\CurrentVersion
%c:\%s
SystemChecks() : Insufficient HD space. Size of component resources = %d ( 1MB), Available space (%s) = %d
triggering windows restart...
d-d-d d.d.d
Running client -> %s
<invoke name="setInstallProgress" returntype="xml"><arguments><string>100</string><string>%s</string></arguments></invoke>
Launching client ... %s
waolinstallgui.cpp
%s\AOLFirewallMgr.ini
%s\AOLFirewallMgr.dll
%s\AOLInstallerFW.dll
gScript.Execute returned RESULT_ERROR
gScript.Execute returned RESULT_NOT_NT_ADMIN.
gScript.Execute returned RESULT_FILES_IN_USE
gScript.Execute returned RESULT_MISSINGCOMPS
gScript.Execute returned RESULT_NOMINBROWSER
gScript.Execute returned RESULT_DISKSPACEERROR
gScript.Execute returned RESULT_CANCEL_NOGUI
gScript.Execute returned RESULT_CANCEL
gScript.Execute returned RESULT_INCORRECTOS
gScript.Execute returned RESULT_SUCCESS
ERROR: gScript.Execute returned an unexpected code. Verify processing.
ERROR: gScript.Execute returned RESULT_NOT_NT_ADMIN.
ERROR: gScript.Execute returned RESULT_FILES_IN_USE.
gScript.Execute returned RESULT_NOMINBROWSER.
progupd.dll
\\.\Pipe\AOLINST
<invoke name="setInstallDirectory" returntype="xml"><arguments><string>%s</string></arguments></invoke>
Last Error: %ld-%s
ASSERT FAILED in %s line %d -->> '%s'
SUDSUpdate.ini
Software\MyWebSearch\OEHosts
\StringFileInfo\%s\%s
Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
shell32.dll
shfolder.dll
%s\appdata.ini
AOLSearchAsDefaultForFireFox
Kernel32.DLL
AOL.EXE
KERNEL32.DLL
StatusKey
Loading advapi32.dll - Service Beginning
advapi32.dll
Advapi32.dll
DeCon.exe
Software\Microsoft\Windows\CurrentVersion\RunOnce
%s\aolreboot
SENSAPI.DLL
\AOL.cfg
UpdateTrustedAdobeClients STarted... %s
\waol.exe
sIni.lpszDestDir = %s
CASADIL.phx
\*.lnk
csafe.vxd
Exit Flash Installation %d
"%s\%s" %s
"%s\%s" %s %s
10.1.53.64
waol.exe
FunWebProuct
-r"%s:%s"
%s\$Recycle.bin
%s\Recycler
%s\Recycled
CLSID\{645FF040-5081-101B-9F08-00AA002F954E}
INSTEXE
DOSETCERT2KEYS
CERTPSWD
CERTNUMBER
Comparing...installer primary language=0x%x, installer sub-language=0x%x
Checking languages : OS primary language=0x%x, sub-language=0x%x
MozillaUIWindowClass
MozillaWindowClass
%s\%s\%s\
netapi32.dll
wtsapi32.dll
\\.\Pipe\AOL
%s - %d%%
<invoke name="setInstallProgress" returntype="xml"><arguments><string>%d</string><string>%s</string></arguments></invoke>
[Installer] - setWelcomeFocus - %s
<invoke name="setEnterKey" returntype="xml"></invoke>
GUI: Main - WM_INITPROGRESS, %d
GUI: Main - WM_SHOWPROGRESS, %d
GUI: Stop Timer = %d
GUI: Main - WM_UPDATEPROGRESS, %d
GUI: Secondary - WM_UPDATEPROGRESS, %d
<invoke name="setCompsInstallProgress" returntype="xml"><arguments><string>%d</string></arguments></invoke>
Available Space on Install Drive (%c:): %dK
Required Space on Install Drive (%c:): %dK
Available Space on System Drive (%c:): %dK
Required Space on System Drive (%c:): %dK
<invoke name="setInstallProgress" returntype="xml"><arguments><string>1</string><string>%s</string></arguments></invoke>
<string>%s,%ld.%ld MB,%ld.%ld MB</string>
<string>%s,%ld.%ld GB,%ld.%ld MB</string>
[Installer] - getClientList - ReturnValue - %s
<string>%s</string>
\gecko\usr\registry.dat
Mozilla\registry.dat
Users/%s
\nsreg.dat
Common/Profiles/%s
\cookies.txt
<%s>%s</%s>
POST %s HTTP/1.1
Host: %s
Content-Length: %d
hXXp://aol.com
uaid_%s
IPH.PH
%sd
Software\Microsoft\Windows\CurrentVersion\Internet Settings
CNotSupportedException
comctl32.dll
comdlg32.dll
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\filecore.cpp
hhctrl.ocx
commctrl_DragListMsg
CCmdTarget
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer
Software\Microsoft\Windows\CurrentVersion\Policies\Network
Software\Microsoft\Windows\CurrentVersion\Policies\Comdlg32
ntdll.dll
%s%s.dll
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\appcore.cpp
RICHED20.DLL
mfcm90.dll
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\auxdata.cpp
user32.dll
ole32.dll
Please contact the application's support team for more information.
- Attempt to initialize the CRT more than once.
- CRT not initialized
- floating point support not loaded
operator
GetProcessWindowStation
OLEACC.dll
WININET.dll
GetProcessHeap
WinExec
GetWindowsDirectoryA
CreateNamedPipeA
DisconnectNamedPipe
ConnectNamedPipe
WaitNamedPipeA
GetCPInfo
PeekNamedPipe
GetConsoleOutputCP
ExitWindowsEx
UnhookWindowsHookEx
GetKeyState
SetWindowsHookExA
CreateDialogIndirectParamA
USER32.dll
GetViewportExtEx
SetViewportOrgEx
OffsetViewportOrgEx
SetViewportExtEx
ScaleViewportExtEx
GDI32.dll
MSIMG32.dll
COMDLG32.dll
WINSPOOL.DRV
RegCloseKey
RegOpenKeyExA
RegOpenKeyA
RegCreateKeyExA
RegDeleteKeyA
RegEnumKeyExA
RegQueryInfoKeyA
RegEnumKeyA
ADVAPI32.dll
ShellExecuteA
SHFileOperationA
SHELL32.dll
SHLWAPI.dll
oledlg.dll
OLEAUT32.dll
VERSION.dll
WS2_32.dll
setup.exe
_NR_RegAddKey@16
_NR_RegAddKeyRaw@16
_NR_RegDeleteKey@12
_NR_RegDeleteKeyRaw@12
_NR_RegEnumSubkeys@24
_NR_RegGetKey@16
_NR_RegGetKeyRaw@16
_VR_UninstallDeleteSharedFilesKey@4
.PAVCException@@
.?AVCCmdTarget@@
.?AVCCmdLineInfo@@
.?AVCAOLInstCmdLine@@
.?AVCMozillaCookie@@
\mozregistry.dat
%s #%d
.PAVCOleException@@
.PAVCObject@@
.PAVCMemoryException@@
.PAVCSimpleException@@
.PAVCNotSupportedException@@
.PAVCInvalidArgException@@
.?AVCNotSupportedException@@
.PAVCResourceException@@
.PAVCUserException@@
.?AVCTestCmdUI@@
.?AVCCmdUI@@
.PAVCFileException@@
.PAVCArchiveException@@
.?AV?$CFixedStringT@V?$CStringT@_WV?$StrTraitMFC@_WV?$ChTraitsCRT@_W@ATL@@@@@ATL@@$0BAA@@ATL@@
.?AV?$CStringT@_WV?$StrTraitMFC@_WV?$ChTraitsCRT@_W@ATL@@@@@ATL@@
.PAVCOleDispatchException@@
zcÁ
hXXp://free.aol.com/tryaolfree/
instlxml1.sa.aol.com
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\installOmniture.ini
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\installOmniture.loc
%Program Files% (x86)\AOL Desktop 9.7
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\waol-0.4343.19.1.exe
C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comp01.000
C:\IPH.PH
7'&&&$($($$
)NaQ.SaI
@.reloc
YYSShh
PSVSSShli
ProgUpd Error: Failed to notify Launcher that progress received for '%s'
UpdateProgress(): Progress value of %d%% received for '%s' is out of valid range of 0% to 100%.
ProgUpd Error: Progress value of %d%% received for '%s' is out of valid range of 0% to 100%.
ProgUpd Error: Invalid progress value received for '%s'.
UpdateProgress(): Invalid progress value of '%d' received for '%s'.
ProgUpd: Repeat of previous progress value received for '%s'.
ProgUpd: First valid progress update received from '%s'
.\AppInfo.cpp
_AOL_INSTEVENT_%s
ProgUpd: Looking for synchronization event named '%s'...
ProgUpd Error: No synchronization event for '%s'.
.\Event.cpp
ProgUpd Error: Could not set event named '%s'.
ProgUpd: Logfile section set to '%s' - Ret Code = %d
ProgUpd Error: Logging Error in '%s' at line %d
%s:d
.\IPH.cpp
%s:%ld
UpdateProgress(): AppID not given with '%d%%' progress update
ProgUpd: AppID truncated to '%s'.
UpdateProgress(): AppID '%s' is too long -- Must be no more than 6 characters.
UpdateProgress(): AppID contains illegal characters. AppID = '%s'.
ProgUpd Error: AppID contains illegal characters. AppID = '%s'.
`~!@#$%^&*()= {}[]\|:;"'<>,./?
.\ProgUpd.cpp
ProgUpd: AppID passed in with '%d%%' progress update is NULL.
ProgUpd: Sending reboot request message for '%s'...
ProgUpd: AppID passed in = '%s'.
SetReboot(): AppID '%s' is too long -- Must be no more than 6 characters.
ProgUpd - SetReboot called with AppID '%s'.
SOFTWARE\America Online\Products\%s\%s
SOFTWARE\America Online\Products\%s\%s\Shortcuts
SOFTWARE\America Online\Products\%s\%s\EmptyFolders
SOFTWARE\America Online\Products\%s\%s\UninstPlugins
Software\America Online\Installs\%s
%s_%s
%s\References
%s_%i
%s_backup
Software\America Online\Products\%s\%s
%s\Components
Software\America Online\Products\%s
%s,%s
SOFTWARE\America Online\Installs\%s
SHDeleteKeyA
RegCreateKeyA
ProgUpd.dll
<requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
;-;6;?;`;
3 3@3\3`3|3
hXXp://ocsp.verisign.com0
"hXXp://crl.verisign.com/tss-ca.crl0
Thawte Certification1
0hXXp://crl.verisign.com/ThawteTimestampingCA.crl0
2Terms of use at hXXps://VVV.verisign.com/rpa (c)09100.
3hXXp://csc3-2009-2-crl.verisign.com/CSC3-2009-2.crl0D
hXXps://VVV.verisign.com/rpa0
hXXp://ocsp.verisign.com0?
3hXXp://csc3-2009-2-aia.verisign.com/CSC3-2009-2.cer0
.Class 3 Public Primary Certification Authority0
hXXps://VVV.verisign.com/cps0*
#hXXp://logo.verisign.com/vslogo.gif0
hXXp://ocsp.verisign.com01
hXXp://crl.verisign.com/pca3.crl0)
VVV.aol.com 0
accKeyboardShortcut
mscoree.dll
ekernel32.dll
!"#$%&'()* 
9.07.000
1, 0, 1, 0
,****** AOL Desktop 9.7 Starts at : %s ****** ****** AOL Desktop 9.7 Ends: at : %s ******
RBM.exe
<You currently have no unnecessary files in your Recycle Bin.DYou currently have %.2f MB of unnecessary files in your Recycle Bin.KYou currently have less than 1 MB of unnecessary files in your Recycle Bin.
When you're ready to continue, click OK.RClick the 'Empty Recycle Bin' button to delete these files and free up this space.dYour computer is low on resources.
Please close any running programs and click 'Retry' to continue.JAn error occurred while attempting to install the America Online Software.
7Windows must be restarted to complete the installation.
AOL Desktop 9.7 Install@Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
Drive %c:
We recommend that you shut down any open applications before installing AOL.When you're ready to continue, click OK.hAdobe
We cannot install AOL Desktop 9.7 because we did not find a version of AOL installed in the %s directory. Please select another directory.
In order to continue the installation Windows will need to be restarted.
Would you like to restart Windows now?
Please download and reinstall the AOL Desktop software. To Download, visit this link: hXXp://daol.aol.com/software and then click the Download Now button. If this still does not fix the problem please call 1-800-827-6364 for assistance.
explorer.exe
main.idx
SNMaster.idx
%s, last used %s , %s
%s, never used , %s
aol.exe
aoltray.exe
%s, most recently used %s, %s
%s, most recently used , %s
Please download a compatible version of the AOL Desktop software. To Download, visit this link: hXXp://daol.aol.com/software/90vr and then click the Download Now button. If this still does not fix the problem please call 1-800-827-6364 for assistance.
It looks like the AOL Desktop software is already running on user account "%s".
xThe directory path you provided already contains AOL Desktop software. Please select another directory path to continue.XThis copy of AOL cannot be installed because an installation file is missing or damaged.
Page %d
We're sorry, this version of AOL is not compatible with the version of Windows you are running.
Your computer does not have the minimum required operating system. You must be using Windows XP, Windows Vista, or Windows 7 to install this version of AOL
To get the best possible performance with this version of AOL, we recommend using a computer with a %s or better processor.
We were not able to detect a %s or better processor on your computer.
8You currently do not have enough disk space on drive %c.?You currently do not have enough disk space on drive %c and %c.@You now have enough disk space to install AOL. Click 'Continue'.tYour hard drive now has enough free disk space to install the AOL software. Click 'Next' to resume the installation.
AOL Quick Reference Guide.txt.Text Files (*.txt)|*.txt|All Files (*.*)|*.*||
Click OK to finish this installation. You will be able to connect using TCP/IP only.
Location: hXXp://VVV.microsoft.com/windows/ie/downloads/default.mspx.
Your computer does not have the minimum required Service Pack. You must be using Windows 2000 with Service Pack 3 (SP3) or later to install this version of AOL
The current drive selected for installation does not have enough space for the required components. If there is another drive attached to your system that has enough space, please select it from the 'Drive' list below.mPlease wait while we initialize the installation. This may take a few minutes. Thank you for your patience.
Installation for AOL Desktop 9.7 cannot proceed because the executable file (waol.exe) is missing. Please select another directory path to continue.
`You currently have less than 1 MB of temporary files that have not been used in at least 1 week.4You currently have no old temporary files to delete.YYou currently have %.2f MB of temporary files that have not been used in at least 1 week.jClick the 'Delete Temp Files' button to delete these files and free up this space (some files may remain).
00|01|06
Replace%Select the entire document


Remove it with Ad-Aware

  1. Click (here) to download and install Ad-Aware Free Antivirus.
  2. Update the definition files.
  3. Run a full scan of your computer.


Manual removal*

  1. Terminate malicious process(es) (How to End a Process With the Task Manager):

    syesubc3_p2v3.exe:2396
    noneCodesignFilesBundle.exe:3540
    TPAutoConnSvc.exe:1776
    du340b.exe:4088
    du340b.exe:3620
    du340b.exe:1192
    TuneUpUtilitiesApp64.exe:3696
    TuneUpUtilities2014WORLDW1D_en-US.exe:4020
    SkypeSetupFull.exe:3324
    MsiExec.exe:2648
    MsiExec.exe:3304
    MsiExec.exe:3172
    MsiExec.exe:1872
    roadie.exe:3992
    TUInstallHelper.exe:3452
    TUInstallHelper.exe:2552
    TUInstallHelper.exe:1992
    TUInstallHelper.exe:1188
    TUInstallHelper.exe:3888
    TUInstallHelper.exe:1680
    TUInstallHelper.exe:1112
    TUInstallHelper.exe:1660
    ProcessManager64.exe:2980
    waol-0.4343.19.1.exe:3636
    aol-desktop-9.7 Rev 4343.19.exe:1188
    regsvr32.exe:208
    regsvr32.exe:1728
    regsvr32.exe:2348
    regsvr32.exe:3212
    regsvr32.exe:2612
    %original file name%.exe:3852
    TuneUpSystemStatusCheck.exe:2400
    TuneUpUtilitiesService64.exe:3612
    TuneUpUtilitiesService64.exe:1828
    flashax.exe:3716

  2. Delete the original Trojan file.
  3. Delete or disinfect the following files created/modified by the Trojan:

    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsjBF78.tmp\SkypeSetupFull.exe (2608075 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7QBP14P\SkypeSetupFull[1].exe (2451641 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsjBF78.tmp\inetc.dll (53 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tpspd\Dacldll.dll (1568 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\marketing.xml (5 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\style.xml (953 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comp01.000 (339445 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\rbm.bin (13 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\backup.ini (2 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\AOLVPChk.dll (1568 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\muinst\muinst.exe (14600 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\txt\PRIVACY.txt (12 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\Vwpt.exe (61190 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\txt\EULA.txt (26 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps.ini (7 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\sysinfo\SiNdInst.dll (1568 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\VMPCache.mtz (8 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\default.xml (1 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\VPPrePop.exe (1568 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\vwpt\AOLTheme.mtx (387 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\installer.swf (7168 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\progress.xml (2 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tb\tbinst.dll (1568 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\flash\flashax.exe (39122 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\gui.ini (8 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\txt\CLIENTDETAILS.txt (2 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\installOmniture.ini (56 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\setup.ini (2 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\message.xml (2 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\media.ini (128 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\installOmniture.loc (1 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\screens.xml (3 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\txt\TOS.txt (27 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\media\xml\error.xml (361 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tpspd\tsverchk.dll (1568 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\7861.ico (64 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\syesubc3_p2v3.exe (5013 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\47A647BD-4905-48C7-9539-A95F199019A4 (117 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\B8DCC36F-4F05-445F-B1EE-FD8FC38CBBDA (4 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\3596.ico (64 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\TuneUpUtilities2014WORLDW1D_en-US.exe (1145153 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\B8DCC36F-4F05-445F-B1EE-FD8FC38CBBDA (5 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\47A647BD-4905-48C7-9539-A95F199019A4 (117 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM7A13.tmp (2 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM6C3A.tmp (94 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\Lang_en-US.msi (3 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities\AvgRep.xml (371 bytes)
    C:\ProgramData\TuneUp Software\TUU2014\TUInstallLog_2015-01-05_17-15-02.log (105619 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM6C6B.tmp (357 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\AvgRep.xml (316 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM6C3B.tmp (1170 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\tuneupmsi.7z (13861 bytes)
    C:\ProgramData\Common Files\D66CD7FF-5B94-2BEF-EE5D-155F17BE19A5.dat (184 bytes)
    C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}\Base.msi (12814 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\TUM6C1A.tmp (104 bytes)
    C:\Windows\MSIDBOPEN_READONLY (100 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7396C420A8E1BC1DA97F1AF0D10BAD21 (554 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Cookies\ELTD7C7O.txt (127 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7396C420A8E1BC1DA97F1AF0D10BAD21 (1056 bytes)
    C:\ProgramData\Skype\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\Skype.msi (353229 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\49DAFB5193B14860B2BA2D886B3F0B0E\du340b.exe (20815 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\RHEng\B19BA457E14747968A14C0B4457B82F5\du340b.exe (20815 bytes)
    C:\Windows\Installer\MSI86EE.tmp (634 bytes)
    C:\Windows\Installer\MSI873D.tmp (634 bytes)
    C:\Windows\Installer\MSI44CC.tmp (167 bytes)
    C:\Windows\Installer\MSI455B.tmp (167 bytes)
    C:\Windows\Installer\MSI48D9.tmp (167 bytes)
    C:\ProgramData\Skype\SKY4568.tmp (5572 bytes)
    C:\Windows\Installer\MSI52A0.tmp (167 bytes)
    C:\Windows\Installer\MSI453A.tmp (167 bytes)
    C:\Windows\Installer\MSI457B.tmp (167 bytes)
    C:\Windows\Installer\MSI46E5.tmp (167 bytes)
    C:\Windows\Installer\MSI5175.tmp (167 bytes)
    C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_DBEBBB72D7CF896A67503824FF19F0BB (1 bytes)
    C:\Windows\Installer\MSI50F7.tmp (155 bytes)
    C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6 (1504 bytes)
    C:\Windows\Installer\MSI505A.tmp (167 bytes)
    C:\Windows\Installer\MSI48E9.tmp (167 bytes)
    C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6 (1 bytes)
    C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_DBEBBB72D7CF896A67503824FF19F0BB (1504 bytes)
    C:\Windows\Installer\MSI5136.tmp (167 bytes)
    C:\Windows\Installer\MSI8970.tmp (634 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ROWYV75Q\errorPageStrings[1] (2 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acscore.exe (158874 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\noneCodesignFilesBundle.exe (3757313 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\~rD7F6.tmp (3176 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpgc.exe (7776 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\waol-0.4343.19.1.exe (173242 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpchk.dll (680 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\postproc.exe (4712 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT (672 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\instSup.dll (10208 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\783GTYVS\background_gradient[1] (453 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\783GTYVS\httpErrorPagesScripts[1] (8 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\setup.exe (22520 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\046C1ZNT\ErrorPageTemplate[1] (2 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\AcsInstA.dll (6592 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\ocpinst.exe (518183 bytes)
    C:\Windows\nsreg.dat (732 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\browser\aolbwsrlp.exe (12992 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acslang.exe (185689 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7QBP14P\info_48[1] (4 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\instSup.dll (10208 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC (1504 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tb\tbsetup.exe (53004 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\search\aolSearchInstaller.exe (1924 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acsrollb.exe (18800 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_F9BDF410D651FF0504A529F7A107038D (1 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\browser\aolbwsrinst.exe (129423 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\046C1ZNT\bullet[1] (447 bytes)
    C:\Users\"%CurrentUserName%"\Desktop\Retry AOL Desktop 9.7 Download.lnk (1 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\gui.dll (61584 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_F9BDF410D651FF0504A529F7A107038D (1536 bytes)
    C:\IPH.PH (3490 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\AcsInstA.dll (6592 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acslaeu.exe (126020 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\instph.dll (12076 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ROWYV75Q\down[1] (748 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\sysinfo\SinfInst.exe (90632 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\tpspd\wbsetup.exe (71832 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\msvcr9\msvc9rt.exe (130583 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC (1 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\toolbar\aol_toolbar.exe (472904 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\ecuinst.exe (34008 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F7QBP14P\dnserrordiagoff_webOC[1] (6 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\acsshutd.exe (1928 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Mozilla\registry.dat (732 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157 (680 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\ecuchk.dll (392 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\acs\comps\AcsInstC.dll (5572 bytes)
    C:\ProgramData\AOL Downloads\waol\0.4343.19.1\comps\parcon\AOLParconLink.exe (7336 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-lb.png (469 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Opera_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_9_16x16.png (789 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_check_16.png (998 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_22_16x16.png (404 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ras_modem.ico (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Unneeded_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TUProduct.db (8 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DiskSpaceExplorer_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_KillServiceTimeout_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg8_16x16.png (349 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\bar_system.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderView_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\balloon_close.png (296 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegistryDefrag_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\shredder.avi (13 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\status.js (8 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ocm_status_background.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Save2_16x16.png (587 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_TTL_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MUICache_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ExeFiles_16x16.png (811 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_bl.png (147 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\so_bg_small.jpg (800 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_economy_active.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SitePreferences_16x16.png (680 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_questionMark.ico (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_JumpToKey_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_17_16x16.png (351 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SearchFile_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskBarButtonAppearance_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_activate_hov.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Messenger_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Services_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\delete_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_6_16x16.png (621 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GoogleEarth_16x16.png (949 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_3_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NetPlaces_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_oneclick_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_balloon_standard.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\glyph_down.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_EnergyOptions_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_mr.png (119 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates4_16x16.png (236 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_bm.png (298 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_UserInfo_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TUDiskCleaner.dat (11 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Privacy_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uninstall_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Refresh_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_mm.png (115 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyComputer_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_balloon_turbo.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LastURL_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Favorites_16x16.png (732 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\classic_windowsvista.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Tip_16x16.png (750 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_repeat_16x16.png (951 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyComputer_16x16.png (622 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_left.png (220 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Effects_16x16.png (742 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_explorergroup_expanded_16x16.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Button.Pressed.png (486 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegCleaner_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Animation_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-ml.png (160 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BalloonTooltip_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_28_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\hint_l.gif (850 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_rating_activation_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_snaptobutton_32x32.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_bm.png (292 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_mr.png (221 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DLLFile_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-bm.png (167 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_14_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\info.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_tm.png (115 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_mr.png (127 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-hover-full.png (970 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Integrator_16x16.png (778 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\tuinstallhelper.log (980 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_RescueCenterProtection_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_left.png (178 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\icon_change_appearance.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DetailPanel_24x24.png (845 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cache_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-bm.png (762 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SoftwareSection_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_mr.png (131 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_tm.png (124 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TTL_32x32.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_20_16x16.png (309 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-rb.png (619 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwapFile_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VisualStyles_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\header_repeat.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_bm.png (181 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_liveoptimizer_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-tl.png (312 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProgramUpdate_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\info-progress-segment.png (783 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_user_male_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_bm.png (134 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_scan_left.png (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OpenOffice_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\questionMark.png (10 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Box.Yellow.png (438 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon3.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Animation_16x16.png (585 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_mm.png (181 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-tl.png (753 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TaskScheduling_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\main.html (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_1_16x16.png (150 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback5.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il11_16x16.png (637 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ScreenSaver_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_turbomode_128x128.png (20 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PictureFaxViewer_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RAM2_16x16.png (324 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_explorergroup_collapsed_16x16.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\divider.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_bl.png (152 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Nero_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_bm.png (164 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\button_icon_scan.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\header.css (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_12_16x16.png (548 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_title.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Cont.NoFtr.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legend_icon_win.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ScreenRes_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_KillAppTimeout_16x16.png (604 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_fixeddrive_64x64.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_WindowsDefender_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\dropdown_arrow.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_ml.png (121 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_tl.png (216 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Display.png (18 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ChatProtocols_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Protection_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_mm.png (111 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_RWIN_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Refresh2_16x16.png (832 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shredder_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg2_16x16.png (523 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16.png (691 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il4_16x16.png (639 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il9_16x16.png (536 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentFileList_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_bar.png (926 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_tl.png (390 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Fetch_48x48.png (8 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckMarkGreen_16x16.png (529 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CopyUserSettings_16x16.png (886 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_balloon_economy.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_directx_il_0_16x16.png (376 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-lb.png (761 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il7_16x16.png (654 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PDIntroduction_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SavedPasswords_16x16.png (770 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckOK_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_deactivate_hov.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DumpFiles_16x16.png (865 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_15_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_0_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_economy_hover.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_tr.png (222 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Effects_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Cleaning_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\box_background_green.png (223 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Information_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_logonui_create_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\arrow-top.png (625 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_details_watermark.png (9 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates5_16x16.png (185 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_right_clear.png (243 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\bullet.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_0_16x16.png (144 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Background.Big.Left.Seperator.png (149 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SecurityCenter_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\hint_x.png (207 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_mr.png (198 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_mr.png (122 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_bm.png (154 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Score_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\logo.png (8 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shares_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_13_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_ml.png (317 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_tl.png (186 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\format4js.js (23 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_10_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Background.Wizard.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_shutdownwin7_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rating_preview.png (10 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FontsFolder_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_10_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.color.js (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_bar_standard.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentDocs_16x16.png (934 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\starrating.png (484 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Cookies_16x16.png (693 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_3_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FixedDisk_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\integrator_loading.jpg (2415 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TUTemplate.wim (29822 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_bg.gif (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wrench_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_20_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_16x16.ico (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il8_16x16.png (824 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Print_24x24.png (478 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_standard_mode_progress.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_DesktopBackground_16x16.png (677 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ODBC_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_br.png (220 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_ml.png (310 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemCache_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ACDSee_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\button_deactivate_hov.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IE_16x16.png (895 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-br.png (788 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il3_16x16.png (675 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OperaSpeedDialSearch_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_ShortcutCleaner_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_12_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Objects_16x16.png (781 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-tm.png (156 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_left_vista.png (136 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ShortcutCleaner_24x24.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\VistaLogo.png (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il10_16x16.png (717 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_disk_doctor_24x24.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckMarkGreen_128x128.png (24 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Delayed_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_standard_pressed.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_mr.png (271 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SecurityCenter_16x16.png (787 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg6_16x16.png (361 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il13_16x16.png (682 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PicturePreview_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.countdown.js (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Systemdevices.png (12 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_tl.png (211 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderBar_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_ml.png (156 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_GooglePicasa_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Googledesktop_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_bl.png (191 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_File_16x16.png (457 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Hint_16x16.png (745 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates0_16x16.png (727 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\hint_arr_tl.png (187 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Overview.png (29 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shutdown_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_3_16x16.png (663 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_t.gif (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FontSmoothing_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Camera_16x16.png (753 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_6_16x16.png (533 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder32_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\file_icon_other.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devicemanager_16x16.png (640 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LogOff_16x16.png (931 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.ico_alpha_processmanagerdetails_6_16x16.png (563 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_web-search_24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyComputer_64x64.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewFolder_16x16.png (559 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_5_32x32.png (567 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_LightBulb_16x16.png (723 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_ml.png (313 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_10_16x16.png (600 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_grey_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_turbo_pressed.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_warning_hover.png (14 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FormData_32x32.png (649 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TUFileIdentification.db (5210 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_2_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-rt.png (625 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Keyboard_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_tr.png (235 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\gadget.xml (664 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_br.png (231 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Google_16x16.png (799 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_9_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_tm.png (246 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_exclamationmark_red_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_ml.png (131 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IniFile_16x16.png (649 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\button_activate_hov.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Properties_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Refresh_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Alexa_32x32.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_16x16.png (903 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Chrome_disabled.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-bl.png (787 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\h3_separator.gif (45 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ws_logo.jpg (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_MTU_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Green.png (331 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_4_16x16.png (152 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_pic.png (33 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_InternetCache_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg4_16x16.png (804 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_mbg_left.png (502 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Silverlight_32x32.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-rm.png (770 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_9_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\dashboard_modes_bg_sprite.png (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il4_16x16.png (786 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_tempfiles_16x16.png (562 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_4_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FontsFolder_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_rating_activation_16x16.png (684 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_1_16x16.png (364 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon4.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_tm.png (259 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\texture.jpg (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Mouse_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\bar_selection.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LogonScreen_Create_16x16.png (997 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_no_internet.ico (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback_bg.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\button_icon_remove.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_warning.png (14 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\window_minimize.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateW7_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Messenger_16x16.png (756 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_br.png (227 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_9_16x16.png (139 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Chrome_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\js\debug.js (35 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_24_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LostCluster_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\um_sidebar.XP.css (174 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility_uiVista.css (148 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\ico_alpha_reportcenter_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_KillServiceTimeout_16x16.png (987 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileSelection_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_11_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_mm.png (135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_mr.png (122 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_bl.png (201 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inputdevices_ilhover_1_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\loading.gif (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Windows7Default.tls (1135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rd_wait_1.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NTFSOptions_32x32.png (870 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Delayed_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_sel_tile.png (241 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_integration_32x32.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Button.Active.png (455 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_7_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\ratingInfohintSeparator.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_QuickLaunchBar_16x16.png (724 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_bl.png (182 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CleanHardDisk_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_2_16x16.png (538 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\css\oem.css (35 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_btn_clean_left.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Disk_Doctor_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_tm.png (135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_tl.gif (104 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Content_m.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\com.js (744 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\window_close.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\js\duplicatefilefinder.js (35 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\nag-auto-resize.js (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Windows.png (24 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-rt.png (830 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\bar_mask.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap.switch-1.8.js (13 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_diskspaceexplorer.png (15 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_mm.png (224 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\tfi_rating_optional.png (575 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TimeSync_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_red.png (194 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_unknown_16x16.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-bm.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap.switch-1.8.min.js (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il1_16x16.png (294 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IEPictureToolbar_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legend_icon_shutdown.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MUICache_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_bar_vista_blue.png (929 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_tm.png (374 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_tm.png (163 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_8_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_16_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_folderup_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\empty.gif (807 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_def_right.png (816 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_WindowsFunctions_16x16.png (709 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Database_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sound_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_8_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-rm.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_5_16x16.png (151 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_m.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderPreview_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\classic_windows7.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_bottom_middle.png (195 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_drivedefrag_analysereport.png (14 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SavedPasswords_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_bl.png (157 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ResetCategories_16x16.png (896 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Failed_72x72.png (9 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_PerformanceAdvisor_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherMozillaData_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartUp_Deactivate_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-cleanup-analyze.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Performance_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_lan_corporate.ico (19 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_header_bottom_middle.jpg (387 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\js\integrator.js (32 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg1_16x16.png (391 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BackupCopy_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\graph_icon_shutdown.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_7_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TaskScheduling_16x16.png (759 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_tr.png (204 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_hover_r.png (432 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_bl.png (231 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_14_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap-2.3.2.min.js (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il15_16x16.png (768 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon8.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_7_16x16.png (615 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_lostclusters_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devices_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_table_tm.gif (152 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_2_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_UPnP_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_UAC_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FilesAndFolders_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NetConnectionPerm_16x16.png (684 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\jquery.js (1135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Help_16x16.png (790 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AutoPlay_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rc_di_unknown.tico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_eco_mode_progress.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ICS_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_firefox_tabcolor_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuwizardservices.dat (696 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Help_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateVista_16x16.png (967 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Footer_r.png (286 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\glyph_up.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_tr.png (266 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CheckmarkGreen_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uninstallmanager_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.js (55 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_liveOptimizer_40x40.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inputdevices_ilhover_3_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_firefox_tabwidth_32x32.png (909 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback1.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ColorCount_16x16.png (785 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\OverviewFontStyle_uiVista.css (127 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Manual_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon1.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_noSSLwarn_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_10_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NotNeededLanguagePacks_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_mm.png (115 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_8_16x16.png (145 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateW7_16x16.png (999 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il14_16x16.png (461 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Proxy_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilSmall_0_16x16.png (549 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_mr.png (341 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_container.png (753 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_3_16x16.png (737 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AeroGlass_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Info_Small_16x16.png (563 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LastDownloadLocation_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ActiveWndTracking_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Small.Green.png (362 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckMarkGreen_2_16x16.png (782 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\list_glyph_roll_out.png (858 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Arrow.Grey.png (192 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_W7_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback3.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\play-icon.png (645 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RCArrow_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\WizPic-bg.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-fix-process.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_right.png (146 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ColorDepth_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\so_detail_background.jpg (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_undelete.png (28 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_ml.png (163 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_disabled.png (628 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_invalidkey_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_l.png (326 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_4_16x16.png (695 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Background.Content.png (13 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentlyUsedList_16x16.png (721 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_mr.png (227 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_ProgramDeactivator_24x24.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_gainDiskSpace_40x40.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\report.htm (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Information_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_12_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_header_top_left.jpg (392 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_1_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_hover_m.png (305 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GooglePicasa_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Properties_16x16.png (474 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_MTU_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Safari.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_mr.png (162 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskBarJumpLists_16x16.png (711 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwapFile_16x16.png (696 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_QuickClean_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_scan_right.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_tl.png (189 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\cm_diskspace9x.png (12 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg5_16x16.png (392 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_PCICard_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sidebar_32x32.png (996 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap-2.3.2.js (12 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\commandlinks.css (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_SearchIndex_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_bar_vista_red.png (926 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Nav_Down_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HelpFile_16x16.png (687 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rt_li_unknown.tico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\switch-off.png (659 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_5_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg0_16x16.png (616 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_details_pnl_bg.gif (855 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NotNeededLanguagePacks_32_32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_br.png (181 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_r.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskBarJumpLists_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ConfirmDelete_32x32.png (558 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cache_16x16.png (721 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_3_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_10_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXP_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\css\main.css (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_filetype_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-tm.png (890 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SYNAttacks_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\chevrons_collapse.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_maintenance_40x40.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SharedFolder_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\bg_align.gif (521 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates6_16x16.png (177 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_mm.png (197 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_left.png (281 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_selection.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_popup_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_foldersearch_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Cube_16x16.png (971 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_windowsmessanger_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_br.png (117 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover.png (722 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_16x16.png (747 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_standard_active.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-br.png (410 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il8_16x16.png (780 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TUEnergyOptRating.xml (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OpenWith_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_critical_hover.png (15 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DriveDefrag_180x180.png (25 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_bm.png (119 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateW7_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_pipelining_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\css\integrator.css (34 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\minimize_hover.png (340 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il2_16x16.png (692 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_1_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_ml.png (305 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_tl.png (184 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\window_like.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentDocument_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_icon_shutdown.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Alexa_48x48.png (8 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwapFile_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il6_16x16.png (562 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Flash_disabled.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\visual-counter-bg.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_12_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inet_conn.ico (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsFirewall_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsFirewall_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Fetch_32x32.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_special_elements_16x16.png (592 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IconDisplay_16x16.png (728 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Silverlight.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-tr.png (451 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VisualStyles_24x24.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Boot_16x16.png (700 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VistaOrb_Create_16x16.png (981 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_1_16x16.png (711 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_tl.png (147 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Services_16x16.png (773 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AutoLogon_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_bl.gif (104 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_mm.png (115 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wrench_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Mail_16x16.png (608 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_4_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VisualStyles_16x16.png (790 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Disk_Doctor_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Opera.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegistryEditor_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16_small_grey.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_r.png (222 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ZoomIn_16x16.png (650 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap-2.3.2.css (1135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sidebar_16x16.png (643 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_1_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_m.png (307 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Information2_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_regwizard2_72x72.png (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OpenWith_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_11_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_bm.png (164 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ScanDisk_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wrench_16x16.png (862 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_22_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegistryDefrag_24x24.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_header_topic_separator.png (148 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_bm.png (164 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legende_dot_blue.png (212 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_r.png (419 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\impactgraphinfo.js (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Rename_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Logon_16x16.png (809 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_bg.gif (126 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_filetype_16x16.png (614 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Nav_Up_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentFileList_16x16.png (716 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_KillServiceTimeout_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\icon_modify_settings.png (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_18_16x16.png (439 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_tr.png (235 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Move_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecyclerFull_16x16.png (928 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_bm.png (154 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_21_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_br.png (135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_8_16x16.png (551 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\regwiz_privacy.diz (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uninstallmanager_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Firewall_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il17_16x16.png (755 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Footer_m.png (150 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_hibernation_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TUSysinfo_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RemoteRegistry_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\BrowserCleaner_128.png (18 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_InternetCache_16x16.png (908 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_21_16x16.png (248 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_13_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LastDownloadLocation_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_bm.png (121 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16_small.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DesktopShortcuts_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\css\pillar_problem_details.css (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devicemanager_W7_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemControl_24x24.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_InternetSettings_16x16.png (684 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ExplorerDetails_16x16.png (644 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\bootstrap-2.3.2.min.css (1135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_br.png (181 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_home_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_check_22_overlay.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-hover-empty.png (970 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IE_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_system.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AppPaths_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_8_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Codec_32x32.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewFolder_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Help_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\tfi_rating_necessary.png (583 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MinWinArrangement_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\loading_blue.gif (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_bl.png (181 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_middle_vista.png (151 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_wms_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_tr.png (203 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_RWIN_16x16.png (998 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_winrestorepoints_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_mr.png (168 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ecomodeconfig_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\button_deactivate_hov.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinStarted_16x16.png (560 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ToolBarBg_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-bm.png (180 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-optimize-registry.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_W7_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-bl.png (611 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Properties_24x24.png (792 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_bl.png (147 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\bg_button.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherOperaData_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Content_l.png (298 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Box_16x16.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentlyUsedStartMenu_16x16.png (803 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ActionCenter_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_bl.png (247 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_4_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_RWIN_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\back_icon.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-gray.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_updatewizard_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il0_16x16.png (442 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Line.Horizontal.png (269 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Run_16x16.png (564 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemRestore_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_Opened_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inputdevices_ilhover_2_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility_ui2000XP.css (138 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\switch-on.png (562 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_tr.png (117 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DocShortcut_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_9_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_7_16x16.png (454 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Drive_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\css\avg.css (14 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilSmall_2_16x16.png (692 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_turbo_active.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXP_16x16.png (605 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ThumbnailView_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\services.tico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_type.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_bm.png (164 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il12_16x16.png (717 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_activate.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_middle.png (181 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PicturePreview_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_24_16x16.png (504 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-gray-light.png (179 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop_16x16.png (531 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MemoryUsage_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuShowDelay_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_def_left.png (324 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherWebsiteData_16x16.png (960 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-lt.png (722 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_History_16x16.png (727 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ColumnCheck_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\window_settings.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_JavaScript_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_bm.png (163 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_7_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\button_icons.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_tm.png (120 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_5_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_StartUp_Manager_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LogOff_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\blank.gif (43 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_10_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_23_16x16.png (325 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_5_16x16.png (577 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_mr.png (119 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Keys_16x16.png (657 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\h3_separator.gif (45 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Background.Nav.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop2_16x16.png (769 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback4.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_tl.png (238 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Software_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg7_16x16.png (703 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_ml.png (179 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\pillar_problem_details.htm (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_6_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SpeedOptimizer_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_mm.png (396 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OpenOffice_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_br.png (147 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\hdr_app_right.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_2_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupoptimizer_24x24.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Session_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Button.Deactivated.png (381 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\overlay_03.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_11_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates10_16x16.png (676 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_15_16x16.ico (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_regwizard_128x128.png (36 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_tm.png (115 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\hdr_app_tile.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_tr.png (567 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Uninstall_Manager_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HelpFile_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\prototype-1.7.1.mod.js (12 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ocm_impact_medium_64x64.png (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_ProgramDeactivator_32.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legend_selection.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_ml.png (285 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\VistaDefault.tls (1135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_scan_mid.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\VistaDefault.tla (1135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_ml.png (256 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\empty_vista.ico (15 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SynAttacks_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_inputdevices_ilhover_0_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_EnergyOptions_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_bar_turbo.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_safari_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\button_deactivate.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TempSetupData_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_bl.png (207 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_header_top_right.jpg (413 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\sum_sidebody.htm (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_edge_bottom_left.png (343 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GettingStarted_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NetConnections_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_0_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\shortcut_cleaner_16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GoArrow_16x16.png (629 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_tr.png (202 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileShortCut_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Undo_16x16.png (594 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_mm.png (142 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SitePreferences_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_opera_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_turbo_default.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_6_16x16.png (392 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_mbg_right.png (528 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\minimize_pressed.png (298 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_br.png (159 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_tl.png (171 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MissingTypeLib_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates9_16x16.png (186 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legend_reduction.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_shares_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ocm_warning_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Nero_16x16.png (925 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Star_12x12.png (570 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_12_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_tr.png (189 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_bm.png (278 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_5_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\progress_bar_economy.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Info_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ACDSee_16x16.png (929 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_bl.png (117 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Symbols_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devicemanager_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_satellite.ico (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_RAM_16x16.png (144 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_1_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_19_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WebUpload_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartUp_Activate_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinStyler_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Taskbar_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Replace_16x16.png (897 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates7_16x16.png (150 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_3_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_bm.png (121 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_0_16x16.png (524 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\graph_icon_startup.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_KillAppTimeout_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ExtractSymbolPackage_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_economy_default.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ActionCenter_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileType_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates3_16x16.png (619 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpControl_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_9_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Keys_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-gray-small.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_8_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentDocs_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_ml.png (199 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_tm.png (131 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_selected_m.png (294 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Session_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_br.png (147 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_tl.png (363 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\picture_16.png (547 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_icon_win.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CheckBoxChecked_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_MTU_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Hibernation_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.focus.js (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Cookies_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_mr.png (160 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_bm.png (123 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uac_W7_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_2_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il3_16x16.png (490 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-tl.png (552 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_br.png (117 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Messenger_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_public_network.ico (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_UndeleteTo_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Caption.Grey.png (543 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_TTL_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-rb.png (865 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\video_16.png (737 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\empty.gif (807 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_programDeactivator_40x40.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_13_16x16.png (764 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_3_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Red.png (355 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_tm.png (133 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_ProgramDeactivator_16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BHO_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery-1.4.2.js (1205 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\um_sidebar.css (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_RAM_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_br.png (173 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\cog_icons_sprite.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FireFox_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_11_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ControlPanel_W7_16x16.png (804 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Taskbar_16x16.png (860 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\symbol_error.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HelpFile_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\box_background_yellow.png (237 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AeroGlass_16x16.png (753 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\logotu.png (36 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\FileSearch.avi (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TuneUpOnline_16x16.png (880 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_web-search_16.png (963 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_History_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\bar_arrow.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RestartError_16x16.png (788 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\flight_mode_airplane_large.png (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FixedDisk_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegistryEditor_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\bar_active.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewFolder_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\footer_repeat.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\button_activate.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\system-restore-point_add_16x16.png (934 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Database_16x16.png (975 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\Overview.css (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_selected_r.png (429 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_mm.png (161 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_14_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_left_clear.png (232 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Effects_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_vista_start_logo_16x16.png (883 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_1_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_9_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_tr.gif (103 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_8_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_2_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_StartUp_Manager_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Windows_Circle_16x16.png (946 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\list_glyph_roll_in.png (849 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DocShortcut_16x16.png (649 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ocm_ok_32x32.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Hdr.png (498 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_11_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Help_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OutlookMinToTray_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Key_16x16.png (702 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_IODevices.png (15 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_tr.png (220 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_bm.png (115 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_16x16.png (547 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_tr.png (221 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\serverdownload.avi (61 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_7_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_right.png (240 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_tl.png (304 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_zerobytefiles_16x16.png (763 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_mm.png (197 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MissingKey_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_border_right.png (139 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\button_arrow.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates1_16x16.png (509 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Yellow.png (359 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_tr.png (184 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\filter.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CHMHelp_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Hibernation_16x16.png (930 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_tl.png (188 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rt_li_risky.tico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sound_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_folderup_16x16.png (625 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Footer_l.png (275 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_disabled_l.png (310 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legend_system.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_header_bottom_right.jpg (402 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_16_16x16.png (292 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwapMouseButtons_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\eula_country.diz (294 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BackupCopy_16x16.png (703 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\envelope_128x128.png (10 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LightBulb_16x16.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-tm.png (562 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Flash.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SearchIndex_16x16.png (742 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_registrydefrag_135x128.png (25 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewApp_16x16.png (490 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_ml.png (232 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-tl.png (218 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXP_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-lm.png (962 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_down_oldstyle.bmp (194 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_def_tile.png (257 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\airplaine.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_tr.png (252 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_middle.png (172 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_4_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_edge_bottom_right.png (365 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MRU_16x16.png (713 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_registrycleaner_128x128.png (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_tl.png (237 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartUp_Manager_24x24.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Ftr.Dark.png (433 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg10_16x16.png (783 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_0_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_btn_clean_middle.png (324 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CLSID_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\bg_gadget.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ChatProtocols_16x16.png (727 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Protection_16x16.png (503 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_VisualStyles_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\arrow-top.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_home_16x16.png (717 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AeroGlass_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\cm_weroff.jpg (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_mm.png (147 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\delete_files_128.png (15 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_Hidden_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_10_16x16.png (130 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\um_sidebar_body.htm (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\button_activate.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_economy_turbo_mode_24x24.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\header.jpg (27 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\sprintf.js (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_br.png (217 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_7_16x16.png (153 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon2.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\impactgraphinfo.css (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_drive_ssd_16.png (482 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\cm_tools.png (526 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TUProgramManager.dat (248 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_economy_pressed.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\loading.gif (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_br.png (176 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Mozilla.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_directx_190x66.png (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OpenOffice_16x16.png (807 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-optimize-systemload.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_5_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Memory_16x16.png (642 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\cm_privacy.gif (997 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_mr.png (183 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery-2.0.2.min.js (1135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo.png (23 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Mail_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-tail-tr.png (689 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LastURL_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Favorites_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Delete_16x16.png (739 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FontsFolder_16x16.png (827 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Boot_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_7_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il1_16x16.png (479 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dwn_br.png (181 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_firefox_tabclose_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_UAC_W7_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BootScreen_Create_16x16.png (780 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_27_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DuplicateFinder_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_bl.png (180 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_disabled_r.png (404 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\divider_gradient_overlay.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_mr.png (279 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_shredder_128x128.png (30 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\status-icons.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_bm.png (128 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_4_16x16.png (430 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility.js (9 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_hot_br.png (242 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AppPaths_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_PCICard_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_User_16x16.png (888 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_IE_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_fiberoptic.ico (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Nav_Right_16x16.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ErrorNotify_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuResponsiveness_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Save_16x16.png (683 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_opera_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HiddenDrive_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TCPIP_3D_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_devicemanager_W7_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentlyUsedList_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_btn_clean_right.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_gaindiskspace_24x24.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuFile_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\icon_computer.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FixedDisk_16x16.png (417 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\sm_sidebar.css (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MultipleDrives_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-cleanup-gds.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legend_icon_startup.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ControlPanel_16x16.png (705 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Views_24x24.png (520 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Drive_16x16.png (345 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_multiple_selection.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IniFile_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_ml.png (187 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shield_W7_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_nav_left_24x24.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.easing.js (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_bm.png (115 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_top100_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Keyboard_16x16.png (330 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-tm.png (173 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyDocuments_W7_16x16.png (819 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Move_16x16.png (572 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Ftr.Norm.png (431 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_tl.png (117 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderOptions_16x16.png (592 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_ml.png (119 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_4_16x16.png (273 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_16x16.png (423 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RemoteRegistry_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_report.html (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\AppIcon_32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon5.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_EnergyOptions_16x16.png (846 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_foldersearch_16x16.png (590 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\cm_weroff_W7.jpg (44 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_6_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_OperaSpeedDial_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_4_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FireFox_16x16.png (947 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility_base.htm (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_table_tr.gif (347 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_recyclebin_16x16.png (795 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewApp_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon6.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_bl.png (197 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LostCluster_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16_small_ani1.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_bm.png (131 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\tuneup.js (20 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_blue.png (193 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HomePage_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SecurityCenter_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileAndFolder_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_nav_right_24x24.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\sum_sidebody.htm (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SoftwareSection_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rc_di_suggest_remove.tico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\classic_windowsxp.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\arrow_left.png (189 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\tw_tuning_possibility.css (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SharedFile_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\css\duplicatefilefinder.css (18 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\delete_browser_16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wer_16x16.png (985 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Icon_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Fetch_16x16.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_disabled_m.png (302 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherWebsiteData_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\dropdown_checkmark.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_icon_startup.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_JumpToKey_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyComputer_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_hover_l.png (336 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\js\pillar_problem_details.js (9 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\dashboard_statuses_icons.png (38 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\arrow_right.png (197 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_tm.png (133 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_liveoptimizer_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_empty_16x16.png (173 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_14_16x16.png (569 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\SimpleQuestionMark_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\tfi_rating_unknown.png (565 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_Opened_16x16.png (559 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Defrag_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RCBackupRestore_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MFUPrograms_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_critical.png (14 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Folder_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_timeserver_il2_32x32.png (772 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_14_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\SysteamHealth_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\button_deactivate_grey.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AutoComplete_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CopyFile_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\close_pressed.png (458 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Chrome.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_bl.png (196 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsMail_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_check_32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_br.png (220 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Uninstall_16x16.png (610 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DeactivateAll_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_mm.png (221 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shield_W7_16x16.png (899 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_bg_light.gif (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_tm.png (131 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_tm.png (160 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\sign_ok.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Battery.png (378 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_ml.png (239 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_30_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_header_bottom_left.jpg (375 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_tm.png (263 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SendTo_16x16.png (777 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\throbber_ani_alpha_12.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery.layerbutton.js (14 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentlyUsedStartMenu_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Office_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Button.Hover.png (491 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\song_16.png (536 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\cm_report_noui_nodebug.jpg (12 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_ml.png (121 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Warning_16x16.png (627 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_2_16x16.png (151 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Delayed_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\3rdPartyCredits.html (1205 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_noSSLwarn_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Settings_48x48.png (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_WindowsDefender_16x16.png (334 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Update_Wizard_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_passwordsaving_32x32.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_AddToList_16x16.png (622 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Critical_16x16.png (732 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Profile_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsSearchTerms_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuResponsiveness_16x16.png (642 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\dse_table_base.css (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\header.jpg (57 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\index.html (8 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_listitem_check.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Opera_disabled.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_bl.png (189 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Favorites_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-tr.png (318 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Update_Wizard_128x128.png (21 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_logo.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_23_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Settings_24x24.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_tl.png (183 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_tasksymbol_32x32.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\js\main.js (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Mouse_16x16.png (817 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HideUser_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_InternetHistory_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_ml.png (127 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IconDisplay_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherMozillaData_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TempSetupData_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_bg2.gif (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_standard_hover.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXPtrue_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RASConnection_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Application_32x32.png (993 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_uac_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_oneclick_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ScreenRes_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_11_16x16.png (536 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_standard_default.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\button_deactivate.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\special-status_con-faild-16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Protection_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\update.avi (29 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_ml.png (119 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuXP_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Images.xml (2415 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_turbo_mode_progress.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_1_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_31_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TerminateProcess_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_JumpToKey_16x16.png (709 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_bl.png (191 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_br.gif (104 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_repair_16x16.png (524 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-tr.png (396 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_tl.png (174 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\resize_icon.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Googledesktop_16x16.png (947 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IEContextMenu_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il5_16x16.png (737 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_SystemSettings2_16x16.png (646 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Explorer.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_14_16x16.png (410 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\so_bg.jpg (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_25_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_mm.png (145 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_1_16x16.png (351 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_tl.png (163 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\hdr_app_left.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_devicemanager_W7_16x16.png (696 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\bgPDIntroductionWindow.png (17 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_0_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_New_16x16.png (774 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_bl.png (117 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Taskbar_and_Desktop_16x16.png (753 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\bg_error.png (8 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\graph_icon_win.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_br.png (249 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_ImportantServices_16x16.png (872 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Header_m.png (149 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Small.Red.png (340 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_activate_grey.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Arrow.Black.png (228 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_bm.gif (44 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\allfunctions_icon7.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Small.Yellow.png (326 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_3_16x16.png (153 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\OCM_FirstStart_background.jpg (15 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Communication.png (23 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_reduction.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il16_16x16.png (829 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_lan_private.ico (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Silverlight_disabled.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\sc_RepairWizard.png (25 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_tm.png (155 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_tl.png (238 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_tr.png (221 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_double_transparent.png (155 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuResponsiveness_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\UninstallManager\h3_separator.gif (45 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\checkmark_blue.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_3_16x16.png (750 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg3_16x16.png (425 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_bl.png (162 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_update_wizard_32x32.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MenuBar_16x16.png (714 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_tl.png (188 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateVista_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_0_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CompSpeak_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_128x128.png (14 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tusigdata.tudb (1205 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecentDocs_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TUProgramManager.db (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilimg9_16x16.png (611 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shutdown_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Shortcut_16x16.png (719 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_arrowrightgreen_16x16.png (681 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Seperator.png (189 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Info_16x16.png (636 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-mr.png (173 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemExtensions_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_6_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_5_16x16.png (256 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_29_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Taskbar_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rt_li_dangerous.tico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_def_bl.png (226 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_tr.png (720 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_browser_settings_16x16.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_bm.png (270 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il0_16x16.png (701 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_mbg_middle.png (167 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\empty.gif (807 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_BrowserCacheCleared_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ImageList1_2_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_tl.png (177 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_tr.png (145 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_tm.png (362 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\browser_base.css (555 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IconPackageNew_16x16.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\integrator.html (49 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_edge_tm.gif (50 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Power.png (471 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Services_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_tr.png (778 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IniFile_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Windows_Circle_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Windows_Orb_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\special-status_loading-16x16.gif (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupoptimizer_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_chartbar_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dis_tm.png (262 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_ml.png (206 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderSave_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinFlag_16x16.png (859 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MouseWheel_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_normal.png (722 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_8_16x16.png (303 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_tabs.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_26_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ODBC_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_4_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_o_mm.png (142 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_9_16x16.png (235 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_12_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_turbomode_32x32.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_safari_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\empty.gif (807 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\windows-functions_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\close_normal.png (476 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rt_li_trusted.tico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_PCICard_16x16.png (604 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ocm_header_background.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_bl.png (257 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_middle.png (162 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-blue.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DriveDefrag_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\button_turbo_hover.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Office_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CheckMarkGreen_2_72x72.png (8 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\pom_infobox.htm (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_gaindiskspace_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Googledesktop_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_24x24.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MinToTray_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Boot2_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManagerCPUTray_6_16x16.png (153 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilSmall_1_16x16.png (364 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-ml.png (144 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_mm.png (187 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Flash_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DesktopShortcuts_16x16.png (731 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_arrowright_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_2_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_winrestorepoints_16x16.png (885 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskBarButtonFlash_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Content_r.png (269 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legende_dop_red.png (212 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_x_button.bmp (476 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Delete_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_wms_32x32.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\footer.jpg (23 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Undo_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsUpdateVista_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SwitchWindows_16x16.png (586 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_0_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RecyclerFull_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Settings_32x32.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Sidebar_W7_16x16.png (671 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\button_activate_hov.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_5_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dwn_tm.png (164 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_deactivate_grey.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Explorer_disabled.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Functions_16x16.png (634 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\close_hover.png (485 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Manual_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_19_16x16.png (245 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IEMediaBar_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_br.png (169 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-lt.png (488 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_vista_start_logo_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_tl.png (175 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_StartUp_Manager_16x16.png (564 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_HistoryNavigation_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\chevrons_expand.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_DesktopBackground_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_bl.png (141 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Unneeded_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Chart_128x128.png (27 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\panel-fix-windows.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Users_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_devicemanager_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\button_deactivate.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_background_right_vista.png (135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ocm_impact_high_64x64.png (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\Logo.png (9 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_18_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_good_hover.png (16 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_tr.png (186 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_c_tr.png (658 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_6_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_TCP_TTL_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_mr.png (232 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Unneeded_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MyDocuments_16x16.png (785 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\button_activate_grey.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cddrives_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_6_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FileAndFolder_16x16.png (814 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowTitle_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_bm.png (133 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_lostclusters_16x16.png (958 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\nav_background_l.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_mm.png (337 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SharedFile_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Header_l.png (278 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\path_arrow.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Clock_32x32.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemExtensions_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_StartMenuConfig_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_11_16x16.png (407 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_turbomodeconfig_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_Styler_CreatePackage_128x128.png (25 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\list_blue_line_left.png (290 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\delete_files_16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProcessManager_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\empty.gif (807 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WindowsSearchTerms_16x16.png (859 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Software_16x16.png (601 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il7_16x16.png (360 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_3_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ApplicationHeader\first_tab_selected_l.png (360 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_tr.png (177 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_stat_tm.png (178 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MTU_32x32.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ocm_impact_none_64x64.png (8 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\jquery-2.0.2.js (2555 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ufrmSysOpt_ilIcons_2_16x16.png (632 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OrangeArrow_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMediaPlayer_W7_16x16.png (848 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_hot_ml.png (163 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_multiple_selection_detail.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-mr.png (157 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MailBlockAttachments_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_autorumsettings_ilSmall_13_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DumpFiles_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_def_tr.png (117 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_activationwizard_128x128.png (13 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Services_Manual_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RescueCenter_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\logo_diskdoctor_128x128.png (21 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_sel_left.png (306 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_tr.png (166 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DocShortcut_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DriveDefrag_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_mr.png (193 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TCPIP_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IconPackageAdd_16x16.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_tempfiles_32x32.png (839 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_IEHTMLEditor_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-br.png (331 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_styler_24x24.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_2_16x16.png (337 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CopyUserSettings.png (25 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilSmall_3_16x16.png (551 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Delete_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SystemDrive_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rc_di_dont_touch.tico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Nav_Left_16x16.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\VistaDefault.tbs (15 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_systemDrive_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_mr.png (360 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_6_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_0_16x16.png (555 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_15_16x16.png (339 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_cmDisplayStartmenuForm_il_13_32x32.ico (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GoogleEarth_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tab_web_sel_right.png (924 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_13_16x16.png (687 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\deinstallation_turboMode_40x40.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\minimize_normal.png (324 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_def_br.png (180 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_hover_mm.png (178 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Rating.Big.Line.Vertical.png (276 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\shortcut-cleaner_128.png (12 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_logonui_create_16x16.png (955 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\special-status_not-allowed-16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ColorDepth_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_tm.png (338 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_mr.png (336 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legende_overlay.png (308 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Memory_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Desktop2_24x24.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-lm.png (619 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_l.png (219 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_TaskScheduling_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Wer_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_table_tl.gif (344 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_10_16x16.png (248 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_border_left.png (134 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CLSID_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\DuplicateFileFinder\images\window_icons.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-tail-br.png (702 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_RAM_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\SystemInfo_Side_Windows_W7.png (26 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_SearchIndex_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_w_c_tl.png (456 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CHMHelp_16x16.png (947 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Animation_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\sm_sidebar.js (740 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\empty.ico (766 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\task_topic.png (268 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\js\proxy.js (7 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_no_conn.ico (22 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dis_tl.png (117 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CommandPrompt_32x32.png (610 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Rename_16x16.png (379 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\sm_sidebar.js (738 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\btn-grip.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rc_main_header_b.gif (45 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_4_16x16.png (551 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\TuneUpUtilities.gadget\images\status_good.png (16 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_4_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\nav_b_o_tm.png (259 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_specialfolders_il5_16x16.png (573 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates2_16x16.png (669 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\feedback2.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_16_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FormData_16x16.png (375 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Mozilla_disabled.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_zerobytefiles_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Network_16x16.png (537 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_bm.png (156 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Grid.Cont.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_2_16x16.png (549 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\RndBox_Header_r.png (314 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_win7header_dwn_br.png (153 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Uninstall_Manager_48x48.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Drive_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_notification_32x32.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ProgramUpdate_16x16.png (752 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_timeserver_il1_32x32.png (748 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_FolderPreview_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_dis_bl.png (174 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\default.css (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\box_header_top_middle.jpg (388 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_user_female_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\legend_active.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_DLLFile_32x32.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_5_16x16.png (303 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_MultipleDrives.ico (15 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\switch.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_LiveMsgr_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Information_16x16.png (763 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\intro.htm (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_DesktopBackground_48x48.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_right.png (290 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_CPU_16x16.png (605 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Print_16x16.png (477 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_rating_deactivation_16x16.png (767 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Modem_16x16.png (625 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_unknown_16x16.ico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tfi_rc_di_you_decide.tico (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-seven-back-bl.png (386 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Software_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\OverviewFontStyle_ui2000XP.css (117 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Score_16x16.png (594 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_WinMessenger_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_KillAppTimeout_48x48.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilDriveIcons_12_16x16.png (586 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Error_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_hot_mm.png (217 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Firefox_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_WindowsDefender_48x48.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_ResetCategory_16x16.png (783 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_SystemProblemsSolved_24x24.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\exportregistry.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_copyusersettings_il2_16x16.png (643 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\tuballoon-light-back-bl.png (318 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\EnergyOptimizer\TU.IMG.EnergyOpt.Logo.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_opera_16x16.png (870 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NewApp_24x24.png (883 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_12x12.png (499 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_SysInfo_Unit1_ilInfoStates8_16x16.png (222 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_OtherOperaData_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_RegCleaner_24x24.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Uninstall_Manager_16x16.png (605 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_def_mr.png (344 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star_dark-grey_small.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\rd_wait_2.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Exclamation_16x16_small.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_NetConnections_16x16.png (379 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\tfi_rating_unnecessary.png (578 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_light_hot_mm.png (158 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_startupmanager_il_0_16x16.png (807 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Integrator\images\throbber_ani_alpha_12.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\visual-counter-full.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_web_dis_br.png (207 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_GooglePicasa_16x16.png (882 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\bar_bg.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\impactgraphinfo_body.htm (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_InternetHistory_16x16.png (825 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_registryeditor_il_17_16x16.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\PerformanceOptimizer\sign_bulb.png (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_middle_clear.png (135 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\btn_buy_dwn_br.png (227 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Framework\command_link_selected_tm.png (122 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\pgb_glyph_yellow.png (146 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_folder_64x64.png (4 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Office_16x16.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BrowserCleaner_Safari_disabled.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_chartbar_16x16.png (682 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\Ico_alpha_Nero_48x48.png (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_BootAndError_32x32.png (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\icon_ProgramDeactivator_64.png (6 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\CommunityRating\star-blue-light.png (179 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ico_alpha_Search_16x16_small_ani2.ico (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\regwiz_country.diz (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\StartUpManager\sm_sidebar.css (5 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\data\ProgramDeactivator\legend_active.png (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\vcl120.bpl (49 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\MSI_D6.bpl (659 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\SysControls.bpl (69 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\VisControls.bpl (425 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\cefcomponent.bpl (155 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities 2014\TUReportData.10.tudb (428 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUShredder.bpl (110 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\xmlrtl120.bpl (954 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TuApplications.bpl (49 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\dxCoreD12.bpl (45 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\tulic.dll (634 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TuneUpRPC32.dll (225 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUKernel.bpl (614 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUShell.bpl (77 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\vclx120.bpl (208 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUCompression.bpl (335 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\ntrtl60.bpl (307 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUBasic.bpl (155 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUIECacheClass.bpl (69 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUIcoEngineerDirTree.bpl (147 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\MainControls.bpl (823 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\dxThemeD12.bpl (57 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\dxGDIPlusD12.bpl (73 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\TuneUp Software\TuneUp Utilities 2014\Log\CDB11BBC2AB64E8AAD5D785922A6466A (3 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\PerlRegEx.bpl (163 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\avgreplibx.dll (585 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUApps.bpl (94 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\PowerManager.bpl (458 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\dxBarD12.bpl (49 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\rtl120.bpl (49 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\AppInitialization.bpl (282 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\Html.bpl (495 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities 2014\TUReportData.10.tudb-journal (6156 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\Traces.bpl (491 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUDiskCleanerClass.bpl (634 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\CommonForms.bpl (143 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUBase.bpl (36 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TURar.bpl (45 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUSafariClass.bpl (45 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUSqlDB32.dll (610 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\DEC.bpl (307 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\SysInfo.bpl (471 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUTransl.bpl (122 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\XMLComponents.bpl (212 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\VirtualTreesR.bpl (610 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUParams.dll (262 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\GR32_D6.bpl (450 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\vclimg120.bpl (270 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\cxLibraryD12.bpl (856 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\ProgramRating.bpl (217 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\dxComnD12.bpl (16 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUOperaClass.bpl (86 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\SchedAgent_2007.bpl (131 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Update Wizard.lnk (2 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\9ZET84BIVDLS7DAQHAVH.temp (1924 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\DiskExplorer.exe (450 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Uninstall Manager.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\ShortcutCleaner.exe (118 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Program Deactivator.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Disk Space Explorer.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Shortcut Cleaner.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\Shredder.exe (167 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\DuplicateFinder.exe (749 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Registry Cleaner.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Economy Mode.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\Integrator.exe (49 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\SystemInformation.exe (290 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Disk Cleaner.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Shredder.lnk (2 bytes)
    C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\Styler.exe (921 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\RegistryDefrag.exe (159 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Undelete.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Setting Center.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Optimization Report.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\EnergyOptimizer.exe (303 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Duplicate Finder.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\RegistryCleaner.exe (315 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\ProgramDeactivator.exe (352 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\RescueCenter.exe (208 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp 1-Click Maintenance.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Styler.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\RegistryEditor.exe (339 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\TuneUp Utilities Help.lnk (1 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\DiskCleaner.exe (471 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\UpdateWizard.exe (253 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\TuneUp Utilities - Start Center.lnk (1 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Browser Cleaner.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\SystemControl.exe (1 bytes)
    C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\OneClick.exe (462 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Repair Wizard.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp StartUp Manager.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\BrowserCleaner.exe (122 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\StartUpManager.exe (327 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\Report.exe (147 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\RepairWizard.exe (167 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Disk Doctor.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp System Control.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp System Information.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\StartupOptimizer.exe (278 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Rescue Center.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\Undelete.exe (225 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\SettingCenter.exe (335 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Registry Editor.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\TuneUp Software Website.url (48 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\TuneUp Utilities 2014.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\DriveDefrag.exe (196 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\ProcessManager.exe (380 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Live Optimization.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\UninstallManager.exe (270 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\DiskDoctor.exe (167 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Registry Defrag.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp StartUp Optimizer.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Drive Defrag.lnk (2 bytes)
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014\All functions\TuneUp Process Manager.lnk (2 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUAnalyzeInfo.dll (200 bytes)
    C:\Windows\SysWOW64\authuitu.dll (25 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\authuitu-x86.dll (28 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUTuningIndex.dll (716 bytes)
    C:\Windows\System32\TURegOpt.exe (40 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\DseShExt-x86.dll (32 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\SDShelEx-win32.dll (32 bytes)
    C:\Users\Public\Desktop\AOL Desktop 9.7 Install.lnk (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\message.js (277 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsuBD96.tmp\System.dll (21 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Progress.htm (804 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\roadie.exe (7392 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\roadie.bin (4 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Preparing.htm (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\NoFiles.htm (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\dlgui.dll (25824 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsuBD96.tmp\CertHelper.dll (1913 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\FailedLaunch.htm (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\NoQualify.htm (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Error.htm (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Cancelled.htm (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\dlgui.ini (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\NoConn.htm (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Grats.htm (792 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\DownloadError.htm (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nsuBD95.tmp (20605 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\Cancelling.htm (987 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\html\CancelConfirm.htm (993 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\roadie.ini (606 bytes)
    C:\Windows\System32\authuitu.dll (29 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\authuitu-x64.dll (32 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\SDShelEx-x64.dll (32 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\DseShExt-x64.dll (28 bytes)
    %Program Files% (x86)\TuneUp Utilities 2014\TUAnalyzeInfo64.dll (258 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\button.bmp (2 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\OCSetupHlp.dll (29135 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\nsisdl.dll (31 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\rmi\aol-desktop-9.7 Rev 4343.19.exe (18976 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\System.dll (23 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\skinnedbutton.dll (13 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nse279D.tmp (18798 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\nso27DC.tmp\nsDialogs.dll (21 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_turbo.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_good.png (16 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_pressed.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\logotu.png (36 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\css\main.css (5 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_pressed.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_pressed.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_active.png (2 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\main.js (7 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\blank.gif (43 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_warning_hover.png (14 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_good_hover.png (16 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_warning.png (14 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\css\main.css (5 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_warning_hover.png (14 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_economy.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_critical.png (14 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_active.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_pressed.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_standard.png (2 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_standard.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_good.png (16 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_button.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\logo.png (8 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_active.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_active.png (2 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_default.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\main.html (3 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_default.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\gadget.xml (664 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\main.html (3 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\logo.png (8 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_critical_hover.png (15 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_hover.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\logotu.png (36 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_default.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_hover.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_standard.png (2 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\gadget.xml (664 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_hover.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_hover.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_error.png (8 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\jquery.js (601 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\status.js (8 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\blank.gif (43 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_default.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_gadget.png (5 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\jquery.js (601 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_turbo.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_warning.png (14 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_pressed.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\main.js (7 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_active.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\status.js (8 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_hover.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_critical_hover.png (15 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_active.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_economy.png (2 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_standard.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_gadget.png (5 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_economy.png (2 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_turbo.png (2 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_bar_economy.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_critical.png (14 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_standard_pressed.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_error.png (8 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_hover.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\bg_button.png (1 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\com.js (744 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_economy_default.png (1 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\com.js (744 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\progress_balloon_turbo.png (2 bytes)
    %Program Files%\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\sprintf.js (6 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\js\sprintf.js (6 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\status_good_hover.png (16 bytes)
    %Program Files% (x86)\Windows Sidebar\Shared Gadgets\TuneUpUtilities.gadget\images\button_turbo_default.png (1 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities\TUProgMan.10.tudb (34063 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities\TUTuningIndex.10.2.tudb-journal (29886 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities\TUProgMan.10.tudb-journal (85394 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities\TUProgManagerCache.10.tudb-journal (31886 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities\TUUtilitiesSvc.13.tudb-journal (38210 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities\Program Statistics\ProgramStatistics.2013.tudb-journal (73912 bytes)
    C:\ProgramData\TuneUp Software\TuneUp Utilities\Program Statistics\ProgramStatistics.2013.tudb-mjCA02AE900 (107 bytes)
    C:\Windows\Temp\etilqs_Q5hOgLg9rm0fou9 (251 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\capsLock.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\msa-logos-135x25.png (903 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\exclamation_20x20.png (513 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (331 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\uk.js (1235 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-arabic.eot (2068 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-greek.eot (29 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\retina\login.css (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\nl.js (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-cyrillic.ttf (1924 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27 (1360 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\backgroundNoCloud.png (4 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\pt.js (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (884 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\da.js (181 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\tr.js (1339 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (588 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1DAF2884EC4DFA96BA4A58D4DBC9C406 (1764 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1768 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\et.js (1611 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (620 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (578 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\arrow_up_20x20.png (436 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\exclamation_20x20.png (720 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\connection.png (865 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\button-right-35x35.png (691 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\platform\mac.css (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-xbox-25x25.png (965 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (10 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (374 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\exclamation_20x20.png (515 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\skype-logo-136x60.png (4 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (908 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\046C1ZNT\externalSettings[1].js (77 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\loader_15fps.gif (6 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-skype-25x25.png (822 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (620 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-greek.woff (1983 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\no.js (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-latin.woff (2033 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-win-25x25.png (533 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_33A0493B3756EC93EB52782457685E27 (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\lt.js (10 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (743 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\el.js (1024 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\loader.png (3 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\skype-logo-136x60.png (5 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (370 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\dropdown_hover_32x32.png (267 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ru.js (1550 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\capslock_20x20.png (380 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-hebrew.eot (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\back_20x20-inverted.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-greek.ttf (2950 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-latin.eot (2281 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\caret_right.png (1175 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\ticked_not_10x10.png (191 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1 (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-hebrew.woff (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\cs.js (11 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\capslock_20x20.png (380 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-greek.eot (1760 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (344 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (200 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-office-25x25.png (783 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\picture.jpg (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\platform\win.css (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\es.js (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (345 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (759 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\loader.gif (1086 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\BE4SQDQ82ES91AFRPXC1.temp (893 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (201 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\platform\unix.css (6 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (391 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (201 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\fi.js (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (331 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-latin.ttf (6389 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-darker-left-35x35.png (545 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\icons.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-hebrew.eot (6 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-cyrillic.eot (1030 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-office-25x25.png (722 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\messageTop.png (265 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-latin.woff (3950 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\msAccountOverlay.png (93 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ar.js (991 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\arrow_up_20x20_8bit.png (220 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\FXE3XPHPHO9T2HVSOQ68.temp (893 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\caret_left.png (1690 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1DAF2884EC4DFA96BA4A58D4DBC9C406 (2 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\msDefaultPicture.png (584 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\bg.js (483 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\msa-logos-135x25.png (3 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (560 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-arabic.ttf (2813 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ko.js (13 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-arabic.eot (891 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared_dynco\dc.db (285114 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\button-right-35x35.png (469 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\loader_30fps.gif (1520 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-greek.ttf (3150 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (578 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (97 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\inputfields.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (792 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-xbox-25x25.png (956 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\dropdown_hover_32x32.png (256 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\it.js (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\facebook.png (315 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\back_20x20-inverted.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (900 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-cyrillic.eot (1145 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\dropdown_32x32.png (269 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\de.js (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (581 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4309200C3DBAD0F6F0DFACE9165FD092 (944 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-right-35x35.png (475 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (423 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-latin.eot (3125 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (753 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-darker-middle-35x35.png (233 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-greek.woff (242 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (201 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Cookies\BNIPP64G.txt (585 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-hebrew.eot (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-skype-25x25.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\js\login.js (4742 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\caret_left.png (998 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\css\login.css (902 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\zh-hant.js (1322 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\buttons.png (4 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (2 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\skypelogo.png (1428 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-skype-25x25.png (815 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\V25WNQADQITZW301LAO0.temp (893 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ja.js (1581 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\messageBottomShort.png (279 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (796 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-cyrillic.woff (317 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (97 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (132 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (2 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\button-middle-35x35.png (230 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\he.js (1103 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-win-25x25.png (558 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\skypeicon.png (618 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\capsLockShort.png (327 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\button-left-35x35.png (469 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\back_20x20-inverted.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-cyrillic.woff (1077 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (7 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\sl.js (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\vi.js (14 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\hu.js (335 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\index.html (18 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\AC9005F5466BD463DF06D711B370595F (1152 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (375 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-greek.ttf (1929 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\id.js (7 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\ticked_not_10x10.png (191 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (924 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-cyrillic.ttf (1250 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-hebrew.ttf (16 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-cloud-35x25.png (837 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-arabic.woff (2921 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login.md5 (34 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-latin.ttf (4726 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared_httpfe\queue.db (9692 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\AC9005F5466BD463DF06D711B370595F (70 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\fr.js (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\skype-logo-136x60.png (4 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\M2COED01VGD6EJUYTH6Y.temp (893 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\ticked_10x10.png (284 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\messageTopShort.png (256 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (781 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-cyrillic.woff (354 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\ticked_10x10.png (256 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (685 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\zh-hans.js (11 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-hebrew.woff (754 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\checkbox.png (551 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-cloud-35x25.png (839 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (7 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (7 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-latin.eot (2669 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\msAccount.png (93 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\en.js (7 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (698 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\background.png (13 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\back_20x20.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\logoanim.gif (14 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (799 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\dropdown_hover_32x32.png (270 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (609 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\arrow_up_20x20.png (514 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (597 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\logo-win-25x25.png (519 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\skype.png (697 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-darker-right-35x35.png (542 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\dropdown_32x32.png (256 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\msa-logos-135x25.png (3 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Cookies\C9EF3M8G.txt (345 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (380 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (6 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\capslock_20x20.png (466 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared.tmp (3532 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ro.js (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05EC48341C277FE5110E7DFAA91377DC_39AA32012A618D407F0206C60DD48EA1 (1456 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (905 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (911 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\DataRv\offline-storage-ecs.data (24 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-hebrew.ttf (1417 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\sk.js (770 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (609 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (405 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\caret_right.png (995 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Microsoft\Windows\Cookies\N9RR4UNZ.txt (123 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-arabic.ttf (3449 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-arabic.woff (2314 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-hebrew.ttf (1680 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\arrow_up_20x20.png (436 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\back_20x20.png (399 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-cyrillic.ttf (1782 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\dropdown_32x32.png (267 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (477 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-arabic.eot (515 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (345 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\ticked_10x10.png (257 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\msAccountColour.png (118 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-hebrew.woff (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-arabic.woff (2080 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\button-left-35x35.png (492 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\pt-br.js (1858 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (794 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (334 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-regular-greek.eot (1044 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (582 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\th.js (243 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (379 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\messageBottom.png (301 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (7 bytes)
    C:\Users\"%CurrentUserName%"\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4309200C3DBAD0F6F0DFACE9165FD092 (727 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-latin.ttf (5307 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared_httpfe\queue.db-journal (22756 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-cloud-35x25.png (924 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\logo-xbox-25x25.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\sr-latn.js (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (792 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\back_20x20.png (452 bytes)
    %Program Files% (x86)\Skype\Updater\Updater.dll (102 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\[email protected] (829 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\plus.png (605 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\logo-office-25x25.png (718 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\dropdown.png (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-left-35x35.png (489 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-latin.woff (3756 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\shared_dynco\dc.db-journal (443887 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\ticked_not_10x10.png (191 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\pl.js (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\sv.js (8 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (630 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\black-on-white\[email protected] (1 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login.js (5 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-arabic.ttf (3167 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\[email protected] (335 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Roaming\Skype\DataRv\offline-storage.data (90586 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\hr.js (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\normal\button-middle-35x35.png (233 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\ca.js (9 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-light-greek.woff (1118 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\white-on-black\button-middle-35x35.png (230 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\images\retina\[email protected] (2 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\fonts\segoe-ui-semibold-cyrillic.eot (1950 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Skype\Apps\login\languages\lv.js (466 bytes)
    C:\Windows\SysWOW64\Macromed\Flash\Flash10h.ocx (732 bytes)
    C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.dll (311 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\F9A9.tmp (626 bytes)
    C:\Users\"%CurrentUserName%"\AppData\Local\Temp\F9AA.tmp (464 bytes)
    C:\Windows\SysWOW64\Macromed\Flash\FlashInstall.log (1 bytes)
    C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10h_ActiveX.exe (464 bytes)

  4. Delete the following value(s) in the autorun key (How to Work with System Registry):

    [HKCU\Software\Microsoft\Windows\CurrentVersion\Run]
    "Skype" = "%Program Files% (x86)\Skype\Phone\Skype.exe /minimized /regrun"

  5. Clean the Temporary Internet Files folder, which may contain infected files (How to clean Temporary Internet Files folder).
  6. Reboot the computer.

*Manual removal may cause unexpected system behaviour and should be performed at your own risk.

No votes yet

x

Our best antivirus yet!

Fresh new look. Faster scanning. Better protection.

Enjoy unique new features, lightning fast scans and a simple yet beautiful new look in our best antivirus yet!

For a quicker, lighter and more secure experience, download the all new adaware antivirus 12 now!

Download adaware antivirus 12
No thanks, continue to lavasoft.com
close x

Discover the new adaware antivirus 12

Our best antivirus yet

Download Now