Most interested in the Journal file. Could someone have a look?
At 02:13 AM 5/10/2016, Greg Moss imposter phished: http://219.234.6.206:8080/ Which produces: Web attack: Microsoft OleAut32 RCE CVE-2014-6332
http://219.234.6.206:8080/