Hello, my computer, running on Windows 7, has been infected with the sirefef virus, and I currently have no way of downloading any of the programs necessary to produce the log files, as the computer restarts after 2 minutes. As such, I have enclosed an FRST log here...
Scan result of Farbar Recovery Scan Tool Version: 25-06-2012
Ran by SYSTEM at 26-06-2012 15:05:58
Running from Q:\
Windows 7 Ultimate Service Pack 1 (X64) OS Language: 0404
The current controlset is ControlSet001
========================== Registry (Whitelisted) =============
HKLM\...\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice [2918656 2011-01-13] (ESET)
HKLM\...\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1271168 2012-03-27] (Microsoft Corporation)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2012-02-21] (Apple Inc.)
HKLM-x32\...\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe" [1104440 2012-06-12] ()
HKLM-x32\...\Run: [ROC_roc_dec12] "C:\Program Files (x86)\AVG Secure Search\ROC_roc_dec12.exe" /PROMPT /CMPID=roc_dec12 [928096 2012-02-27] ()
HKLM-x32\...\Run: [iTunesHelper] "D:\A-media\iTunes\iTunesHelper.exe" [x]
HKLM-x32\...\Run: [Anti-phishing Domain Advisor] "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe" [232616 2012-01-18] (Visicom Media Inc. (Powered by Panda Security))
HKU\Jeffery\...\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3077528 2011-07-25] ()
HKU\Jeffery\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [4280184 2012-03-09] (Microsoft Corporation)
HKU\Jeffery\...\Run: [Advanced SystemCare 5] "C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCTray.exe" /AutoStart [1647448 2011-11-12] (IObit)
HKU\Jeffery\...\Run: [Google Update] "C:\Users\Jeffery\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2011-10-15] (Google Inc.)
HKU\Jeffery\...\Run: [DS3 Tool] G:\Jeffery\Games\PLAYSTATION\MotioninJoy\ds3\DS3_Tool.exe -mini [x]
HKU\Jeffery\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3671872 2012-04-17] (DT Soft Ltd)
Winlogon\Notify\igfxcui: igfxdev.dll (Intel Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Startup: C:\Users\All Users\Start Menu\Programs\Startup\檔案管理-Total Commander 32.lnk
ShortcutTarget: 檔案管理-Total Commander 32.lnk -> C:\WINCMD\TOTALCMD.EXE (Ghisler Software GmbH)
==================== Services (Whitelisted) ======
2 AdvancedSystemCareService5; C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe [490840 2011-11-11] (IObit)
2 BBSvc; C:\Program Files (x86)\Microsoft\BingBar\7.1.364.0\BBSvc.exe [193816 2012-02-20] (Microsoft Corporation.)
3 BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.364.0\SeaPort.exe [240408 2012-02-20] (Microsoft Corporation.)
3 EhttpSrv; "C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe" [42360 2011-01-13] (ESET)
2 ekrn; "C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe" [810144 2011-01-13] (ESET)
2 KMService; C:\Windows\SysWow64\srvany.exe [8192 2011-05-05] ()
2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [12600 2012-03-27] (Microsoft Corporation)
2 vToolbarUpdater11.1.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.1.0\ToolbarUpdater.exe [935480 2012-06-12] ()
2 CLHNServiceForPowerDVD; C:\A-media\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [x]
2 CyberLink PowerDVD 11.0 Monitor Service; "C:\A-media\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe" [x]
2 CyberLink PowerDVD 11.0 Service; "C:\A-media\CyberLink\PowerDVD11\Common\MediaServer\CLMSServer.exe" [x]
2 IMFservice; C:\A-www\IObit Malware Fighter\IMFsrv.exe [x]
========================== Drivers (Whitelisted) =============
3 cpudrv64; \??\C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2009-12-18] ()
1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [283200 2012-05-14] (DT Soft Ltd)
2 eamonm; C:\Windows\System32\Drivers\eamonm.sys [170640 2010-12-22] (ESET)
1 ehdrv; C:\Windows\System32\Drivers\ehdrv.sys [141264 2010-12-22] (ESET)
2 epfw; C:\Windows\System32\Drivers\epfw.sys [170640 2010-12-22] (ESET)
3 Epfwndis; C:\Windows\System32\Drivers\Epfwndis.sys [34144 2010-12-22] (ESET)
2 epfwwfp; C:\Windows\System32\Drivers\epfwwfp.sys [50624 2010-12-22] (ESET)
3 netr28ux; C:\Windows\System32\Drivers\netr28ux.sys [867328 2009-06-11] (Ralink Technology Corp.)
0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [18232 2011-02-24] ()
3 cpuz135; [x]
3 dump_wmimmc; [x]
4 ERSvc; [x]
1 idkwjgbd; \??\C:\Windows\system32\drivers\idkwjgbd.sys [x]
3 NPPTNT2; \??\C:\Windows\system32\npptNT2.sys [x]
2 ntk_PowerDVD; \??\D:\A-media\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD_64.sys [x]
3 VGPU; [x]
2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; \??\D:\A-media\CyberLink\PowerDVD11\Common\NavFilter\000.fcl [x]
========================== NetSvcs (Whitelisted) ===========
============ One Month Created Files and Folders ==============
2012-06-26 23:30 - 2012-06-26 23:30 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-26 23:30 - 2012-06-26 23:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-26 23:24 - 2012-06-26 23:25 - 12621696 ____A (Microsoft Corporation) C:\Users\Public\Desktop\mseinstall.exe
2012-06-26 22:43 - 2012-06-26 22:43 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{C4D6F55E-F4F7-40E3-BC7B-92B6D5FCB52F}
2012-06-26 22:43 - 2012-06-26 22:43 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{28D69BF8-0A52-4325-AD90-C236A965E0A2}
2012-06-26 15:05 - 2012-06-26 15:06 - 00000000 ____D C:\FRST
2012-06-26 11:07 - 2012-06-26 11:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2BEA565A-45AD-4AAD-AC8E-F17D3C8C286B}
2012-06-25 23:07 - 2012-06-25 23:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7514C88C-9B34-48B8-A1F2-E517B7CC3AE6}
2012-06-25 23:07 - 2012-06-25 23:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1E15E48E-6792-40E6-8213-D497D20B8166}
2012-06-25 11:06 - 2012-06-25 11:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5757C6B8-3532-4AB4-97DD-E0828B0910EF}
2012-06-24 23:06 - 2012-06-25 11:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FAF37296-9157-4E2A-812A-5F203B6E84E8}
2012-06-24 23:06 - 2012-06-24 23:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B4162938-D7DF-4596-BDF9-8BF13B3C9A9F}
2012-06-24 11:05 - 2012-06-24 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A1B6E7D3-6235-4846-A12B-1F43D498803C}
2012-06-23 23:06 - 2012-06-03 06:19 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-23 23:06 - 2012-06-03 06:19 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-23 23:06 - 2012-06-03 06:19 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-23 23:06 - 2012-06-03 06:19 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-23 23:06 - 2012-06-03 06:19 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-23 23:06 - 2012-06-03 06:15 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-23 23:06 - 2012-06-03 06:15 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-23 23:06 - 2012-06-03 03:19 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-23 23:06 - 2012-06-03 03:15 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-23 23:04 - 2012-06-24 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3B223EED-CE3B-4852-AF82-08FA27CFF327}
2012-06-23 23:04 - 2012-06-23 23:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{01207C5C-7344-49BB-8641-79C30D24BC99}
2012-06-23 10:57 - 2012-06-23 10:58 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B2E3F918-315E-4879-BC5B-739FA63D36B8}
2012-06-22 22:57 - 2012-06-23 10:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{EA367037-E514-4447-ADBF-A0E07D4DB999}
2012-06-22 22:57 - 2012-06-22 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{68499900-6038-4AC3-9E85-0446FDB7EE38}
2012-06-22 11:11 - 2012-06-22 11:11 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-21 22:56 - 2012-06-21 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{29774224-5E2B-4D4D-9A41-EDEF23CCF170}
2012-06-21 22:56 - 2012-06-21 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3FA1AE99-A833-464F-87B8-FFC15D7568CF}
2012-06-21 09:51 - 2012-06-21 09:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{23A57A80-5F8E-4833-A5F5-2157E17D2C83}
2012-06-20 21:50 - 2012-06-21 09:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7D90CC2A-A404-485C-8156-6C397A11AE15}
2012-06-20 21:50 - 2012-06-20 21:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5EB02097-10B2-4812-8BD9-691FAFEE19F2}
2012-06-20 00:27 - 2012-06-20 00:27 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{AE615E9E-0114-40C5-9929-FD164B860985}
2012-06-20 00:27 - 2012-06-20 00:27 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A27E2966-D641-4DC7-ACCD-6A38FC9723CC}
2012-06-19 12:26 - 2012-06-19 12:26 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{232E81B1-21A9-43CC-8529-C63571FEDC60}
2012-06-19 00:26 - 2012-06-19 12:26 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{55AFAAFC-2AA1-4152-AB9F-EC521B2D56D0}
2012-06-18 07:25 - 2012-06-18 07:25 - 00000193 ____A C:\Windows\WORDPAD.INI
2012-06-18 00:25 - 2012-06-18 12:25 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CF3AED8B-6387-42A0-8BE1-815D71287A12}
2012-06-17 00:24 - 2012-06-17 12:25 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{42A1F61A-8CB8-4B95-9C42-C383C7B37476}
2012-06-16 00:24 - 2012-06-16 12:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{52D08118-63E4-4814-A462-A12FBCC9131F}
2012-06-15 00:23 - 2012-06-15 12:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{438C34EC-B366-4A16-84B8-9737D8A05C62}
2012-06-15 00:23 - 2012-06-15 00:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5516CD33-F259-4B22-A169-C3E633FF857E}
2012-06-14 15:01 - 2012-05-18 10:47 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-06-14 15:01 - 2012-05-18 10:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-06-14 15:01 - 2012-05-18 10:06 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-06-14 15:01 - 2012-05-18 09:59 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-06-14 15:01 - 2012-05-18 09:59 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-06-14 15:01 - 2012-05-18 09:58 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-06-14 15:01 - 2012-05-18 09:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-06-14 15:01 - 2012-05-18 09:56 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-06-14 15:01 - 2012-05-18 09:55 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-06-14 15:01 - 2012-05-18 09:55 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-06-14 15:01 - 2012-05-18 09:54 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-06-14 15:01 - 2012-05-18 09:51 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-06-14 15:01 - 2012-05-18 09:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-06-14 15:01 - 2012-05-18 09:47 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-06-14 15:01 - 2012-05-18 07:11 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-06-14 15:01 - 2012-05-18 06:45 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-06-14 15:01 - 2012-05-18 06:36 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-06-14 15:01 - 2012-05-18 06:35 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-06-14 15:01 - 2012-05-18 06:35 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-06-14 15:01 - 2012-05-18 06:33 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-06-14 15:01 - 2012-05-18 06:31 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-06-14 15:01 - 2012-05-18 06:29 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-06-14 15:01 - 2012-05-18 06:29 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-06-14 15:01 - 2012-05-18 06:27 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-06-14 15:01 - 2012-05-18 06:25 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-06-14 15:01 - 2012-05-18 06:24 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-06-14 15:01 - 2012-05-18 06:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-06-14 15:00 - 2012-05-18 06:48 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-06-14 12:23 - 2012-06-14 12:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{23B2A6F8-4D93-4588-A0D3-65A3C1F8B7E3}
2012-06-14 11:55 - 2012-05-15 09:32 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-06-14 11:55 - 2012-05-04 19:06 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-06-14 11:55 - 2012-05-04 18:03 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-06-14 11:55 - 2012-05-04 18:03 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-06-14 11:55 - 2012-05-01 13:40 - 00209920 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-06-14 11:55 - 2012-04-28 13:32 - 01112064 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll
2012-06-14 11:55 - 2012-04-28 11:55 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-06-14 11:55 - 2012-04-26 13:41 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-06-14 11:55 - 2012-04-26 13:41 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-06-14 11:55 - 2012-04-26 13:34 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-06-14 11:55 - 2012-04-24 13:37 - 01462272 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-06-14 11:55 - 2012-04-24 13:37 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-06-14 11:55 - 2012-04-24 13:37 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-06-14 11:55 - 2012-04-24 12:36 - 01158656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-06-14 11:55 - 2012-04-24 12:36 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-06-14 11:55 - 2012-04-24 12:36 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-06-14 11:55 - 2012-04-07 20:31 - 03216384 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-06-14 11:55 - 2012-04-07 19:26 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2012-06-14 00:22 - 2012-06-14 12:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2B7167AF-3557-4B87-A619-F102272BB782}
2012-06-14 00:22 - 2012-06-14 00:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{844628A1-641C-412C-A5DF-7AF525FC34F2}
2012-06-13 12:22 - 2012-06-13 12:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3DEF93F7-704B-4416-9AAB-74B01D5CC678}
2012-06-13 00:21 - 2012-06-13 12:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E2082479-13DD-4E6C-BE1C-421AEDADFA6B}
2012-06-13 00:21 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\AVG Secure Search
2012-06-13 00:21 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{30FBF2DC-B1B7-4450-B674-D5AD624A06B8}
2012-06-12 04:07 - 2012-06-12 04:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CECF9AAC-D106-4B9B-9929-6CB80360516D}
2012-06-12 04:07 - 2012-06-12 04:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5374AD78-5984-4CED-805E-7B13E61FEDDA}
2012-06-11 12:50 - 2012-06-11 12:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5D03C2F8-7DB7-461B-9834-481E8C9D8488}
2012-06-11 00:50 - 2012-06-11 12:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{168BEEC7-A21F-4A3D-AFB0-0784926B88D9}
2012-06-11 00:50 - 2012-06-11 00:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B87DB652-909A-4DE9-9108-78DB5B838644}
2012-06-10 12:49 - 2012-06-10 12:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DB3D3B24-BC14-468B-AC7F-941D485B530B}
2012-06-10 07:42 - 2012-06-10 07:42 - 00000065 ____A C:\Windows\.ini
2012-06-10 00:49 - 2012-06-10 12:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7368AAF3-1551-4BF2-92AA-531EB6CC31E8}
2012-06-10 00:49 - 2012-06-10 00:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7B71C9C6-58A2-4E57-B4AA-AF6CDC80E63D}
2012-06-09 12:48 - 2012-06-09 12:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E7AADB7E-ABDA-4573-94C5-57CE76FCFC03}
2012-06-09 00:48 - 2012-06-09 12:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{55BDB168-3743-4C5A-95EB-5E8665C2A9F3}
2012-06-09 00:48 - 2012-06-09 00:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6AA53459-1755-4A73-B115-CD9261F2DF12}
2012-06-08 12:47 - 2012-06-08 12:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{680FA72D-05AE-4EF9-B917-CF5D157BAC55}
2012-06-08 07:18 - 2012-06-08 07:18 - 00000000 ____D C:\Users\Public\Desktop\Solution Manual - College Physics 7th Edition - Serway
2012-06-08 00:46 - 2012-06-08 12:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7B6E633A-EF44-48F0-9A50-675370EA5415}
2012-06-08 00:46 - 2012-06-08 00:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E8BEEA8D-5E9E-4E66-A84B-86CF998118C6}
2012-06-07 11:05 - 2012-06-07 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{34D6D826-E094-4972-92B4-66BED691C696}
2012-06-06 23:04 - 2012-06-07 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B5B3E639-7B68-4844-9515-BCDD7115780E}
2012-06-06 23:04 - 2012-06-06 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{82772CE8-4360-44B6-9964-A3A8B3991178}
2012-06-06 09:53 - 2012-06-06 09:53 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{87954C51-914B-4547-AC01-E65D85789EB8}
2012-06-06 09:52 - 2012-06-06 09:53 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{0453B17B-ACAB-4D6A-BC42-CABFEF543FC2}
2012-06-05 21:52 - 2012-06-05 21:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{D7567517-BDA0-42A8-9CCD-9C7ABDADDD8E}
2012-06-05 21:52 - 2012-06-05 21:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{934D49A9-2E46-424C-9680-024E89F4825B}
2012-06-05 06:51 - 2012-06-05 06:51 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\YCanPDF
2012-06-05 02:42 - 2012-06-05 02:42 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9D603707-857C-4308-93AA-03E8E88F59AA}
2012-06-05 02:42 - 2012-06-05 02:42 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5043AE95-9B93-46F6-BE5D-C76EAD9CC988}
2012-06-04 06:07 - 2012-06-04 06:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1462E041-DB56-4111-B19C-C998DE97FCB3}
2012-06-04 06:06 - 2012-06-04 06:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{449E7849-5DD4-4181-98EF-3AEAB890A09C}
2012-06-02 10:17 - 2012-06-02 10:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B1A1FE1A-8EAF-4C51-9310-39741B2396EF}
2012-06-01 22:16 - 2012-06-02 10:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3E741CC7-1F2C-4809-93A0-ECF76870C0BE}
2012-06-01 22:16 - 2012-06-01 22:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7453935B-040A-465A-8E9D-E64A6E2C4520}
2012-06-01 10:16 - 2012-06-01 10:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F5092756-8D9A-4AAC-8C86-693DA5ECF799}
2012-05-31 22:15 - 2012-06-01 10:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BE66D834-ECC6-4D2A-AA38-ACAFD4C935C1}
2012-05-31 22:15 - 2012-05-31 22:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CF2B90F6-A7DC-4517-BDBC-5E269DB07B2C}
2012-05-31 10:15 - 2012-05-31 10:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F53DF2F8-0CB1-46E3-9051-261F5073351F}
2012-05-30 22:14 - 2012-05-31 10:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6429AB73-FC24-4A93-AA1A-833920CCE398}
2012-05-30 22:14 - 2012-05-30 22:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{83149F39-4E01-4C1E-93F7-A39A5A31264C}
2012-05-30 09:46 - 2012-05-30 09:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F69A0680-6348-4F57-9DEE-DEE39AF272AB}
2012-05-29 21:46 - 2012-05-30 09:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{8A871B0A-C699-4B05-9657-903CC7D72190}
2012-05-29 21:46 - 2012-05-29 21:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5341A8D8-CBAA-4292-A7D6-727443EB7CAD}
2012-05-29 09:32 - 2012-05-29 09:33 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{70A55B94-ECA4-4810-A3AC-D55623494C9A}
2012-05-28 21:32 - 2012-05-29 09:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BA00A6D4-7308-4421-9C04-FC84D758A237}
2012-05-28 21:32 - 2012-05-28 21:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BC5E6D51-4C7D-40D5-8712-1A086685E277}
2012-05-28 02:48 - 2012-05-28 02:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{C3D8739B-F167-486A-85F1-98E9FB43229C}
2012-05-28 02:48 - 2012-05-28 02:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{4D2E5BAF-0852-4785-B1B6-C064C0E39A32}
2012-05-27 11:32 - 2012-05-27 11:33 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{12C0FC94-78E0-4B8B-9EED-D2D1120ADE79}
============ 3 Months Modified Files and Folders =============
2012-06-27 01:21 - 2012-05-22 09:00 - 00000000 ____D C:\Users\All Users\Anti-phishing Domain Advisor
2012-06-27 01:21 - 2012-03-06 11:02 - 00000476 ____A C:\Windows\Tasks\SDMsgUpdate (TE).job
2012-06-27 01:21 - 2011-07-25 09:38 - 00000000 ____D C:\Users\Jeffery\AppData\Local\PMB Files
2012-06-27 01:21 - 2011-07-24 14:54 - 00000406 ____A C:\Windows\Tasks\FixCleaner Startup.job
2012-06-27 01:21 - 2011-07-24 14:27 - 01501459 ____A C:\Windows\WindowsUpdate.log
2012-06-27 01:21 - 2011-07-22 14:30 - 00000000 ____D C:\Users\Jeffery\Tracing
2012-06-27 01:21 - 2011-05-06 02:33 - 00000540 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2012-06-27 01:19 - 2012-05-13 10:59 - 00006776 ____A C:\Windows\setupact.log
2012-06-27 01:19 - 2009-07-14 13:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-06-27 01:17 - 2011-05-06 02:33 - 00000544 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2012-06-27 01:14 - 2012-01-07 05:56 - 00000560 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-351645184-3812066956-3475953073-1000UA.job
2012-06-27 01:02 - 2011-07-22 07:36 - 00002244 ____A C:\Windows\epplauncher.mif
2012-06-27 00:19 - 2012-01-11 09:53 - 00000000 __SHD C:\Users\Jeffery\AppData\Local\{046ef7ab-6d50-9b6c-7f28-970fac8da374}
2012-06-27 00:19 - 2011-07-24 13:28 - 00000000 ____D C:\Users\Public\Desktop\Install
2012-06-27 00:10 - 2009-07-14 12:45 - 00026576 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-06-27 00:10 - 2009-07-14 12:45 - 00026576 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-06-27 00:04 - 2012-05-22 13:50 - 00001662 ____A C:\Windows\PFRO.log
2012-06-27 00:00 - 2011-07-24 14:54 - 00000422 ____A C:\Windows\Tasks\FixCleaner Scan.job
2012-06-26 23:58 - 2011-08-11 10:01 - 00000000 ____D C:\SG Interactive
2012-06-26 23:58 - 2011-07-22 10:21 - 00000000 ____D C:\Program Files (x86)\ESET
2012-06-26 23:30 - 2012-06-26 23:30 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-26 23:30 - 2012-06-26 23:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-26 23:30 - 2011-07-22 07:38 - 01242390 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-06-26 23:30 - 2010-11-22 03:22 - 00390376 ____A C:\Windows\System32\prfh0404.dat
2012-06-26 23:30 - 2010-11-22 03:22 - 00108284 ____A C:\Windows\System32\prfc0404.dat
2012-06-26 23:28 - 2012-05-05 11:45 - 00000000 ____D C:\Program Files (x86)\1ClickDownload
2012-06-26 23:25 - 2012-06-26 23:24 - 12621696 ____A (Microsoft Corporation) C:\Users\Public\Desktop\mseinstall.exe
2012-06-26 22:44 - 2011-07-22 13:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\Windows Live
2012-06-26 22:43 - 2012-06-26 22:43 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{C4D6F55E-F4F7-40E3-BC7B-92B6D5FCB52F}
2012-06-26 22:43 - 2012-06-26 22:43 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{28D69BF8-0A52-4325-AD90-C236A965E0A2}
2012-06-26 15:06 - 2012-06-26 15:05 - 00000000 ____D C:\FRST
2012-06-26 12:15 - 2011-07-24 11:50 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\Mozilla
2012-06-26 11:07 - 2012-06-26 11:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2BEA565A-45AD-4AAD-AC8E-F17D3C8C286B}
2012-06-26 03:14 - 2012-01-07 05:56 - 00000508 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-351645184-3812066956-3475953073-1000Core.job
2012-06-25 23:07 - 2012-06-25 23:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7514C88C-9B34-48B8-A1F2-E517B7CC3AE6}
2012-06-25 23:07 - 2012-06-25 23:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1E15E48E-6792-40E6-8213-D497D20B8166}
2012-06-25 11:06 - 2012-06-25 11:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5757C6B8-3532-4AB4-97DD-E0828B0910EF}
2012-06-25 11:06 - 2012-06-24 23:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FAF37296-9157-4E2A-812A-5F203B6E84E8}
2012-06-25 07:27 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\rescache
2012-06-24 23:06 - 2012-06-24 23:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B4162938-D7DF-4596-BDF9-8BF13B3C9A9F}
2012-06-24 11:05 - 2012-06-24 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A1B6E7D3-6235-4846-A12B-1F43D498803C}
2012-06-24 11:05 - 2012-06-23 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3B223EED-CE3B-4852-AF82-08FA27CFF327}
2012-06-23 23:05 - 2012-06-23 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{01207C5C-7344-49BB-8641-79C30D24BC99}
2012-06-23 12:13 - 2011-07-22 16:59 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\TeraCopy
2012-06-23 10:58 - 2012-06-23 10:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B2E3F918-315E-4879-BC5B-739FA63D36B8}
2012-06-23 10:57 - 2012-06-22 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{EA367037-E514-4447-ADBF-A0E07D4DB999}
2012-06-22 22:57 - 2012-06-22 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{68499900-6038-4AC3-9E85-0446FDB7EE38}
2012-06-22 11:11 - 2012-06-22 11:11 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-21 22:57 - 2012-06-21 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{29774224-5E2B-4D4D-9A41-EDEF23CCF170}
2012-06-21 22:56 - 2012-06-21 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3FA1AE99-A833-464F-87B8-FFC15D7568CF}
2012-06-21 09:51 - 2012-06-21 09:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{23A57A80-5F8E-4833-A5F5-2157E17D2C83}
2012-06-21 09:51 - 2012-06-20 21:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7D90CC2A-A404-485C-8156-6C397A11AE15}
2012-06-21 09:09 - 2011-10-08 08:43 - 00000056 ____A C:\Windows\kgt2k.INI
2012-06-20 21:50 - 2012-06-20 21:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5EB02097-10B2-4812-8BD9-691FAFEE19F2}
2012-06-20 00:27 - 2012-06-20 00:27 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{AE615E9E-0114-40C5-9929-FD164B860985}
2012-06-20 00:27 - 2012-06-20 00:27 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A27E2966-D641-4DC7-ACCD-6A38FC9723CC}
2012-06-19 12:26 - 2012-06-19 12:26 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{232E81B1-21A9-43CC-8529-C63571FEDC60}
2012-06-19 12:26 - 2012-06-19 00:26 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{55AFAAFC-2AA1-4152-AB9F-EC521B2D56D0}
2012-06-18 12:25 - 2012-06-18 00:25 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CF3AED8B-6387-42A0-8BE1-815D71287A12}
2012-06-18 07:25 - 2012-06-18 07:25 - 00000193 ____A C:\Windows\WORDPAD.INI
2012-06-17 12:25 - 2012-06-17 00:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{42A1F61A-8CB8-4B95-9C42-C383C7B37476}
2012-06-16 12:24 - 2012-06-16 00:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{52D08118-63E4-4814-A462-A12FBCC9131F}
2012-06-15 12:24 - 2012-06-15 00:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{438C34EC-B366-4A16-84B8-9737D8A05C62}
2012-06-15 00:23 - 2012-06-15 00:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5516CD33-F259-4B22-A169-C3E633FF857E}
2012-06-14 21:52 - 2012-05-13 22:36 - 04973008 ____A C:\Windows\System32\FNTCACHE.DAT
2012-06-14 15:16 - 2011-05-05 13:51 - 00000000 ____D C:\Users\All Users\Microsoft Help
2012-06-14 15:14 - 2009-07-14 13:13 - 01243956 ____A C:\Windows\System32\PerfStringBackup.INI
2012-06-14 15:07 - 2011-05-05 13:34 - 58957832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-06-14 12:23 - 2012-06-14 12:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{23B2A6F8-4D93-4588-A0D3-65A3C1F8B7E3}
2012-06-14 12:23 - 2012-06-14 00:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2B7167AF-3557-4B87-A619-F102272BB782}
2012-06-14 00:22 - 2012-06-14 00:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{844628A1-641C-412C-A5DF-7AF525FC34F2}
2012-06-13 12:22 - 2012-06-13 12:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3DEF93F7-704B-4416-9AAB-74B01D5CC678}
2012-06-13 12:22 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E2082479-13DD-4E6C-BE1C-421AEDADFA6B}
2012-06-13 00:21 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\AVG Secure Search
2012-06-13 00:21 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{30FBF2DC-B1B7-4450-B674-D5AD624A06B8}
2012-06-12 08:57 - 2012-02-26 08:25 - 00000000 ____D C:\Users\All Users\AVG Secure Search
2012-06-12 08:57 - 2012-02-26 08:25 - 00000000 ____D C:\Program Files (x86)\AVG Secure Search
2012-06-12 04:07 - 2012-06-12 04:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CECF9AAC-D106-4B9B-9929-6CB80360516D}
2012-06-12 04:07 - 2012-06-12 04:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5374AD78-5984-4CED-805E-7B13E61FEDDA}
2012-06-11 12:51 - 2012-06-11 12:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5D03C2F8-7DB7-461B-9834-481E8C9D8488}
2012-06-11 12:50 - 2012-06-11 00:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{168BEEC7-A21F-4A3D-AFB0-0784926B88D9}
2012-06-11 00:50 - 2012-06-11 00:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B87DB652-909A-4DE9-9108-78DB5B838644}
2012-06-10 12:49 - 2012-06-10 12:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DB3D3B24-BC14-468B-AC7F-941D485B530B}
2012-06-10 12:49 - 2012-06-10 00:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7368AAF3-1551-4BF2-92AA-531EB6CC31E8}
2012-06-10 07:42 - 2012-06-10 07:42 - 00000065 ____A C:\Windows\.ini
2012-06-10 00:49 - 2012-06-10 00:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7B71C9C6-58A2-4E57-B4AA-AF6CDC80E63D}
2012-06-09 12:48 - 2012-06-09 12:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E7AADB7E-ABDA-4573-94C5-57CE76FCFC03}
2012-06-09 12:48 - 2012-06-09 00:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{55BDB168-3743-4C5A-95EB-5E8665C2A9F3}
2012-06-09 00:48 - 2012-06-09 00:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6AA53459-1755-4A73-B115-CD9261F2DF12}
2012-06-08 12:47 - 2012-06-08 12:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{680FA72D-05AE-4EF9-B917-CF5D157BAC55}
2012-06-08 12:47 - 2012-06-08 00:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7B6E633A-EF44-48F0-9A50-675370EA5415}
2012-06-08 07:18 - 2012-06-08 07:18 - 00000000 ____D C:\Users\Public\Desktop\Solution Manual - College Physics 7th Edition - Serway
2012-06-08 00:47 - 2012-06-08 00:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E8BEEA8D-5E9E-4E66-A84B-86CF998118C6}
2012-06-07 11:05 - 2012-06-07 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{34D6D826-E094-4972-92B4-66BED691C696}
2012-06-07 11:05 - 2012-06-06 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B5B3E639-7B68-4844-9515-BCDD7115780E}
2012-06-06 23:04 - 2012-06-06 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{82772CE8-4360-44B6-9964-A3A8B3991178}
2012-06-06 09:53 - 2012-06-06 09:53 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{87954C51-914B-4547-AC01-E65D85789EB8}
2012-06-06 09:53 - 2012-06-06 09:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{0453B17B-ACAB-4D6A-BC42-CABFEF543FC2}
2012-06-05 21:52 - 2012-06-05 21:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{D7567517-BDA0-42A8-9CCD-9C7ABDADDD8E}
2012-06-05 21:52 - 2012-06-05 21:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{934D49A9-2E46-424C-9680-024E89F4825B}
2012-06-05 06:51 - 2012-06-05 06:51 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\YCanPDF
2012-06-05 02:42 - 2012-06-05 02:42 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9D603707-857C-4308-93AA-03E8E88F59AA}
2012-06-05 02:42 - 2012-06-05 02:42 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5043AE95-9B93-46F6-BE5D-C76EAD9CC988}
2012-06-04 06:07 - 2012-06-04 06:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1462E041-DB56-4111-B19C-C998DE97FCB3}
2012-06-04 06:07 - 2012-06-04 06:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{449E7849-5DD4-4181-98EF-3AEAB890A09C}
2012-06-03 06:19 - 2012-06-23 23:06 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-03 06:19 - 2012-06-23 23:06 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-03 06:19 - 2012-06-23 23:06 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-03 06:19 - 2012-06-23 23:06 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-03 06:19 - 2012-06-23 23:06 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-03 06:15 - 2012-06-23 23:06 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-03 06:15 - 2012-06-23 23:06 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-03 03:19 - 2012-06-23 23:06 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-03 03:15 - 2012-06-23 23:06 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-02 10:17 - 2012-06-02 10:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B1A1FE1A-8EAF-4C51-9310-39741B2396EF}
2012-06-02 10:17 - 2012-06-01 22:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3E741CC7-1F2C-4809-93A0-ECF76870C0BE}
2012-06-01 22:16 - 2012-06-01 22:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7453935B-040A-465A-8E9D-E64A6E2C4520}
2012-06-01 10:16 - 2012-06-01 10:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F5092756-8D9A-4AAC-8C86-693DA5ECF799}
2012-06-01 10:16 - 2012-05-31 22:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BE66D834-ECC6-4D2A-AA38-ACAFD4C935C1}
2012-05-31 22:15 - 2012-05-31 22:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CF2B90F6-A7DC-4517-BDBC-5E269DB07B2C}
2012-05-31 10:15 - 2012-05-31 10:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F53DF2F8-0CB1-46E3-9051-261F5073351F}
2012-05-31 10:15 - 2012-05-30 22:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6429AB73-FC24-4A93-AA1A-833920CCE398}
2012-05-30 22:14 - 2012-05-30 22:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{83149F39-4E01-4C1E-93F7-A39A5A31264C}
2012-05-30 09:47 - 2012-05-30 09:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F69A0680-6348-4F57-9DEE-DEE39AF272AB}
2012-05-30 09:46 - 2012-05-29 21:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{8A871B0A-C699-4B05-9657-903CC7D72190}
2012-05-29 21:46 - 2012-05-29 21:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5341A8D8-CBAA-4292-A7D6-727443EB7CAD}
2012-05-29 09:33 - 2012-05-29 09:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{70A55B94-ECA4-4810-A3AC-D55623494C9A}
2012-05-29 09:32 - 2012-05-28 21:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BA00A6D4-7308-4421-9C04-FC84D758A237}
2012-05-28 21:32 - 2012-05-28 21:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BC5E6D51-4C7D-40D5-8712-1A086685E277}
2012-05-28 02:54 - 2011-07-22 16:54 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\IObit
2012-05-28 02:48 - 2012-05-28 02:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{C3D8739B-F167-486A-85F1-98E9FB43229C}
2012-05-28 02:48 - 2012-05-28 02:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{4D2E5BAF-0852-4785-B1B6-C064C0E39A32}
2012-05-27 11:33 - 2012-05-27 11:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{12C0FC94-78E0-4B8B-9EED-D2D1120ADE79}
2012-05-27 11:32 - 2012-05-26 23:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6B792C03-34D2-4249-99CC-1C1C1B9FC365}
2012-05-26 23:32 - 2012-05-26 23:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9081CCCB-B0A9-46D9-9302-FB54EF4718F2}
2012-05-26 11:32 - 2012-05-26 11:31 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{764DDFBF-2C5A-4143-8C8F-ED189FD4210F}
2012-05-26 11:31 - 2012-05-25 23:31 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BD8C9414-2107-421D-B435-B090834166F7}
2012-05-26 02:26 - 2012-05-26 02:22 - 185102462 ____A C:\Users\Public\Desktop\[FAKKU]_Tentacle_and_Witches_Vol.3_[37F62DC4].mkv
2012-05-25 23:31 - 2012-05-25 23:31 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2F25C68B-5EE6-4ABD-9AFF-8044E6BFFE63}
2012-05-25 22:59 - 2011-07-22 16:53 - 00000304 ___AH C:\Windows\Tasks\DefragExpress.job
2012-05-25 11:30 - 2012-05-25 11:30 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1A7D2288-AEA3-4E40-9051-61599B303DD0}
2012-05-25 11:30 - 2012-05-24 23:30 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DCC36833-E7E8-4AD8-A249-1C11D077E982}
2012-05-24 23:30 - 2012-05-24 23:30 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3BE15252-C617-4E92-92F5-A56C730101D7}
2012-05-24 11:19 - 2012-05-24 11:19 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{8CB47B23-6EE5-4F7B-A399-256313A698F8}
2012-05-24 11:19 - 2012-05-23 23:18 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{940DB520-C1E9-43FC-8E1F-95C4400CDD88}
2012-05-23 23:19 - 2012-05-23 23:18 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{723C48AD-7278-4D6D-AC3F-E6D85B3B9DEA}
2012-05-23 11:18 - 2012-05-23 11:18 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6268F9A8-0321-42E7-9B9C-3D67C9039406}
2012-05-23 11:18 - 2012-05-22 23:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{82A27A03-8A83-4C83-B350-772979D80CF9}
2012-05-22 23:18 - 2012-05-22 23:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{48F2D138-E307-4BBD-8F37-264B7615E033}
2012-05-22 11:17 - 2012-05-22 11:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{43A94398-F09B-4E37-AB63-4ADB15895AFD}
2012-05-22 11:17 - 2012-05-22 11:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{11892EDF-01DA-4D65-A9BB-F7BCFA5817D0}
2012-05-22 10:40 - 2012-05-22 10:40 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\com.adobe.dmp.contentviewer
2012-05-22 10:34 - 2012-05-22 10:34 - 00000000 ____D C:\Users\Public\Desktop\Ranma
2012-05-22 10:32 - 2012-05-22 10:32 - 00001063 ____A C:\Users\Public\Desktop\TuneUp Companion.lnk
2012-05-22 10:32 - 2012-05-22 10:32 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\TuneUpMedia
2012-05-22 10:32 - 2012-05-22 10:32 - 00000000 ____D C:\Users\All Users\TuneUpMedia
2012-05-22 10:32 - 2012-05-22 10:32 - 00000000 ____D C:\Program Files (x86)\TuneUpMedia
2012-05-22 10:27 - 2012-05-22 10:27 - 00000125 ____A C:\Windows\FlashDecompiler.INI
2012-05-22 09:35 - 2012-05-22 09:35 - 00000000 ____D C:\Users\Jeffery\AppData\Local\SourceTec
2012-05-22 09:10 - 2012-05-22 09:10 - 00000000 ____D C:\Users\All Users\AutoUpdate
2012-05-22 09:09 - 2011-07-22 14:58 - 00414368 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-05-22 09:00 - 2012-05-22 09:00 - 00000000 ____D C:\Users\Jeffery\AppData\Local\blekkotb
2012-05-22 08:59 - 2010-11-22 03:32 - 00000000 ____D C:\Windows\ShellNew
2012-05-22 03:28 - 2012-05-13 22:40 - 00109232 ____A C:\Users\Jeffery\AppData\Local\GDIPFONTCACHEV1.DAT
2012-05-21 23:16 - 2012-05-21 23:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{854B5CC7-55DE-4843-9D4E-42B6868F103D}
2012-05-21 23:16 - 2012-05-21 23:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{51C93703-A7C0-4CF8-9087-443ABBB96A4D}
2012-05-21 11:16 - 2012-05-21 11:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E3281268-84C9-49D4-BBE4-6001DAE23924}
2012-05-21 11:15 - 2012-05-20 23:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9B7CC2CD-B7CB-4728-9038-B7C5FD51FB94}
2012-05-21 09:54 - 2012-05-21 09:54 - 00060327 ____A C:\Users\Public\Desktop\uninst.exe
2012-05-20 23:15 - 2012-05-20 23:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1C592B87-E596-493E-9799-9E437E63C6AD}
2012-05-20 11:15 - 2012-05-20 11:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FEF651D0-DA87-4430-BE42-B35F81468F32}
2012-05-20 11:14 - 2012-05-19 23:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{4EC55FB3-CD9A-4547-9077-CC604F669E43}
2012-05-19 23:14 - 2012-05-19 23:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{03BF51BA-C07D-41C3-B9AC-E8C9FF070580}
2012-05-19 23:00 - 2012-02-26 08:25 - 00000000 ____D C:\Program Files (x86)\FixCleaner
2012-05-19 23:00 - 2011-07-24 14:54 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\FixCleaner
2012-05-19 11:13 - 2012-05-19 11:13 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{0320924A-2AEF-4717-91AE-F4E651EB7B54}
2012-05-19 11:13 - 2012-05-18 23:13 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9082A3B1-CBAA-439D-9B8E-11BA0FC243FA}
2012-05-19 00:12 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\System32\NDF
2012-05-18 23:55 - 2012-02-04 06:50 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\Media Player Classic
2012-05-18 23:02 - 2012-05-18 23:02 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FB958796-8662-4420-939B-3BA30122B04A}
2012-05-18 22:59 - 2012-05-18 22:59 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F6BC9968-FC86-4D15-82C3-D475CA8324C4}
2012-05-18 10:59 - 2012-05-18 10:59 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{550E0D01-487B-4248-8A9E-B6CD38AB945F}
2012-05-18 10:59 - 2012-05-18 10:58 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2355609C-A69E-457A-916B-E691FA45812D}
2012-05-18 10:47 - 2012-06-14 15:01 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-05-18 10:16 - 2012-06-14 15:01 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-05-18 10:06 - 2012-06-14 15:01 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-05-18 09:59 - 2012-06-14 15:01 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-05-18 09:59 - 2012-06-14 15:01 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-05-18 09:58 - 2012-06-14 15:01 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-05-18 09:58 - 2012-06-14 15:01 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-05-18 09:56 - 2012-06-14 15:01 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-05-18 09:55 - 2012-06-14 15:01 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-05-18 09:55 - 2012-06-14 15:01 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-05-18 09:54 - 2012-06-14 15:01 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-05-18 09:51 - 2012-06-14 15:01 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-05-18 09:51 - 2012-06-14 15:01 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-05-18 09:47 - 2012-06-14 15:01 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-05-18 07:11 - 2012-06-14 15:01 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-05-18 06:48 - 2012-06-14 15:00 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-05-18 06:45 - 2012-06-14 15:01 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-05-18 06:36 - 2012-06-14 15:01 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-05-18 06:35 - 2012-06-14 15:01 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-05-18 06:35 - 2012-06-14 15:01 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-05-18 06:33 - 2012-06-14 15:01 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-05-18 06:31 - 2012-06-14 15:01 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-05-18 06:29 - 2012-06-14 15:01 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-05-18 06:29 - 2012-06-14 15:01 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-05-18 06:27 - 2012-06-14 15:01 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-05-18 06:25 - 2012-06-14 15:01 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-05-18 06:24 - 2012-06-14 15:01 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-05-18 06:20 - 2012-06-14 15:01 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-05-17 22:58 - 2012-05-17 22:58 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FC11CC35-DD8E-46D5-BCD7-CC006AD9E22B}
2012-05-17 22:58 - 2012-05-17 22:58 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B3688C38-6625-4106-9B2B-D307FBF0B888}
2012-05-17 10:58 - 2012-05-17 10:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{D47B7F60-75B8-468F-9C31-175B42A9F182}
2012-05-17 10:57 - 2012-05-16 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{78B9FBC2-F86B-4CA6-B9C3-6668CBB12D9F}
2012-05-16 22:57 - 2012-05-16 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{52F8896E-2FFA-4BE5-9E15-6B75E67BF524}
2012-05-16 13:21 - 2012-05-16 13:21 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2012-05-16 13:21 - 2012-05-16 13:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-05-16 10:58 - 2012-05-08 08:18 - 00018062 ____A C:\Users\Public\Desktop\Cold calling Summer 2012.xlsx
2012-05-16 10:57 - 2012-05-16 10:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{096F39FA-EF13-4C42-A173-4D0647031AE3}
2012-05-16 10:56 - 2012-05-15 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A86DA7A6-8A59-4290-9180-2F233F24FF57}
2012-05-15 22:56 - 2012-05-15 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DD103EAE-0E74-4DBA-9178-DB07136E2F77}
2012-05-15 10:56 - 2012-05-15 10:55 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{50A3D9EF-49CC-4DAE-A319-2342AA6857A9}
2012-05-15 10:55 - 2012-05-14 22:55 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{65ABBF3C-B7F7-4346-9630-17C5EB491625}
2012-05-15 09:32 - 2012-06-14 11:55 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-05-14 22:55 - 2012-05-14 22:55 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{75C132BA-5A43-4297-B48E-6F5B861F94CA}
2012-05-14 11:38 - 2012-05-14 11:37 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\DAEMON Tools Lite
2012-05-14 11:38 - 2012-05-14 11:34 - 00000000 ____D C:\Users\All Users\DAEMON Tools Lite
2012-05-14 11:37 - 2012-05-14 11:37 - 00283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2012-05-14 11:37 - 2012-05-14 11:37 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2012-05-14 10:55 - 2012-05-14 10:54 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{77BC9DD6-C559-47F2-91A2-55859DBA9E75}
2012-05-14 10:54 - 2012-05-13 22:54 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{10E191C4-1476-4982-BCE5-834F12712CE8}
2012-05-13 22:54 - 2012-05-13 22:54 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{4B0ABF56-18AC-4397-A171-715077D36542}
2012-05-13 22:52 - 2009-07-14 13:08 - 00032688 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-05-13 22:47 - 2011-10-20 13:49 - 00000712 ____A C:\Users\Public\Desktop\IObit Malware Fighter.lnk
2012-05-13 22:41 - 2012-05-13 22:41 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DE377655-D983-4C1B-A7C5-45492DB5A0B1}
2012-05-13 10:59 - 2012-05-13 10:59 - 00000000 ____A C:\Windows\setuperr.log
2012-05-13 10:08 - 2011-11-02 07:43 - 00000000 ____D C:\Program Files\Bonjour
2012-05-13 09:35 - 2012-05-11 08:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\Windows Live Writer
2012-05-13 09:35 - 2012-03-06 11:01 - 00000000 ____D C:\Program Files (x86)\SmartDraw 2012
Scan result of Farbar Recovery Scan Tool Version: 25-06-2012
Ran by SYSTEM at 26-06-2012 15:05:58
Running from Q:\
Windows 7 Ultimate Service Pack 1 (X64) OS Language: 0404
The current controlset is ControlSet001
========================== Registry (Whitelisted) =============
HKLM\...\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice [2918656 2011-01-13] (ESET)
HKLM\...\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1271168 2012-03-27] (Microsoft Corporation)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2012-02-21] (Apple Inc.)
HKLM-x32\...\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe" [1104440 2012-06-12] ()
HKLM-x32\...\Run: [ROC_roc_dec12] "C:\Program Files (x86)\AVG Secure Search\ROC_roc_dec12.exe" /PROMPT /CMPID=roc_dec12 [928096 2012-02-27] ()
HKLM-x32\...\Run: [iTunesHelper] "D:\A-media\iTunes\iTunesHelper.exe" [x]
HKLM-x32\...\Run: [Anti-phishing Domain Advisor] "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe" [232616 2012-01-18] (Visicom Media Inc. (Powered by Panda Security))
HKU\Jeffery\...\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3077528 2011-07-25] ()
HKU\Jeffery\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [4280184 2012-03-09] (Microsoft Corporation)
HKU\Jeffery\...\Run: [Advanced SystemCare 5] "C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCTray.exe" /AutoStart [1647448 2011-11-12] (IObit)
HKU\Jeffery\...\Run: [Google Update] "C:\Users\Jeffery\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2011-10-15] (Google Inc.)
HKU\Jeffery\...\Run: [DS3 Tool] G:\Jeffery\Games\PLAYSTATION\MotioninJoy\ds3\DS3_Tool.exe -mini [x]
HKU\Jeffery\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3671872 2012-04-17] (DT Soft Ltd)
Winlogon\Notify\igfxcui: igfxdev.dll (Intel Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Startup: C:\Users\All Users\Start Menu\Programs\Startup\檔案管理-Total Commander 32.lnk
ShortcutTarget: 檔案管理-Total Commander 32.lnk -> C:\WINCMD\TOTALCMD.EXE (Ghisler Software GmbH)
==================== Services (Whitelisted) ======
2 AdvancedSystemCareService5; C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe [490840 2011-11-11] (IObit)
2 BBSvc; C:\Program Files (x86)\Microsoft\BingBar\7.1.364.0\BBSvc.exe [193816 2012-02-20] (Microsoft Corporation.)
3 BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.364.0\SeaPort.exe [240408 2012-02-20] (Microsoft Corporation.)
3 EhttpSrv; "C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe" [42360 2011-01-13] (ESET)
2 ekrn; "C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe" [810144 2011-01-13] (ESET)
2 KMService; C:\Windows\SysWow64\srvany.exe [8192 2011-05-05] ()
2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [12600 2012-03-27] (Microsoft Corporation)
2 vToolbarUpdater11.1.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.1.0\ToolbarUpdater.exe [935480 2012-06-12] ()
2 CLHNServiceForPowerDVD; C:\A-media\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [x]
2 CyberLink PowerDVD 11.0 Monitor Service; "C:\A-media\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe" [x]
2 CyberLink PowerDVD 11.0 Service; "C:\A-media\CyberLink\PowerDVD11\Common\MediaServer\CLMSServer.exe" [x]
2 IMFservice; C:\A-www\IObit Malware Fighter\IMFsrv.exe [x]
========================== Drivers (Whitelisted) =============
3 cpudrv64; \??\C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2009-12-18] ()
1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [283200 2012-05-14] (DT Soft Ltd)
2 eamonm; C:\Windows\System32\Drivers\eamonm.sys [170640 2010-12-22] (ESET)
1 ehdrv; C:\Windows\System32\Drivers\ehdrv.sys [141264 2010-12-22] (ESET)
2 epfw; C:\Windows\System32\Drivers\epfw.sys [170640 2010-12-22] (ESET)
3 Epfwndis; C:\Windows\System32\Drivers\Epfwndis.sys [34144 2010-12-22] (ESET)
2 epfwwfp; C:\Windows\System32\Drivers\epfwwfp.sys [50624 2010-12-22] (ESET)
3 netr28ux; C:\Windows\System32\Drivers\netr28ux.sys [867328 2009-06-11] (Ralink Technology Corp.)
0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [18232 2011-02-24] ()
3 cpuz135; [x]
3 dump_wmimmc; [x]
4 ERSvc; [x]
1 idkwjgbd; \??\C:\Windows\system32\drivers\idkwjgbd.sys [x]
3 NPPTNT2; \??\C:\Windows\system32\npptNT2.sys [x]
2 ntk_PowerDVD; \??\D:\A-media\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD_64.sys [x]
3 VGPU; [x]
2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; \??\D:\A-media\CyberLink\PowerDVD11\Common\NavFilter\000.fcl [x]
========================== NetSvcs (Whitelisted) ===========
============ One Month Created Files and Folders ==============
2012-06-26 23:30 - 2012-06-26 23:30 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-26 23:30 - 2012-06-26 23:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-26 23:24 - 2012-06-26 23:25 - 12621696 ____A (Microsoft Corporation) C:\Users\Public\Desktop\mseinstall.exe
2012-06-26 22:43 - 2012-06-26 22:43 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{C4D6F55E-F4F7-40E3-BC7B-92B6D5FCB52F}
2012-06-26 22:43 - 2012-06-26 22:43 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{28D69BF8-0A52-4325-AD90-C236A965E0A2}
2012-06-26 15:05 - 2012-06-26 15:06 - 00000000 ____D C:\FRST
2012-06-26 11:07 - 2012-06-26 11:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2BEA565A-45AD-4AAD-AC8E-F17D3C8C286B}
2012-06-25 23:07 - 2012-06-25 23:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7514C88C-9B34-48B8-A1F2-E517B7CC3AE6}
2012-06-25 23:07 - 2012-06-25 23:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1E15E48E-6792-40E6-8213-D497D20B8166}
2012-06-25 11:06 - 2012-06-25 11:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5757C6B8-3532-4AB4-97DD-E0828B0910EF}
2012-06-24 23:06 - 2012-06-25 11:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FAF37296-9157-4E2A-812A-5F203B6E84E8}
2012-06-24 23:06 - 2012-06-24 23:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B4162938-D7DF-4596-BDF9-8BF13B3C9A9F}
2012-06-24 11:05 - 2012-06-24 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A1B6E7D3-6235-4846-A12B-1F43D498803C}
2012-06-23 23:06 - 2012-06-03 06:19 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-23 23:06 - 2012-06-03 06:19 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-23 23:06 - 2012-06-03 06:19 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-23 23:06 - 2012-06-03 06:19 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-23 23:06 - 2012-06-03 06:19 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-23 23:06 - 2012-06-03 06:15 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-23 23:06 - 2012-06-03 06:15 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-23 23:06 - 2012-06-03 03:19 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-23 23:06 - 2012-06-03 03:15 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-23 23:04 - 2012-06-24 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3B223EED-CE3B-4852-AF82-08FA27CFF327}
2012-06-23 23:04 - 2012-06-23 23:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{01207C5C-7344-49BB-8641-79C30D24BC99}
2012-06-23 10:57 - 2012-06-23 10:58 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B2E3F918-315E-4879-BC5B-739FA63D36B8}
2012-06-22 22:57 - 2012-06-23 10:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{EA367037-E514-4447-ADBF-A0E07D4DB999}
2012-06-22 22:57 - 2012-06-22 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{68499900-6038-4AC3-9E85-0446FDB7EE38}
2012-06-22 11:11 - 2012-06-22 11:11 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-21 22:56 - 2012-06-21 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{29774224-5E2B-4D4D-9A41-EDEF23CCF170}
2012-06-21 22:56 - 2012-06-21 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3FA1AE99-A833-464F-87B8-FFC15D7568CF}
2012-06-21 09:51 - 2012-06-21 09:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{23A57A80-5F8E-4833-A5F5-2157E17D2C83}
2012-06-20 21:50 - 2012-06-21 09:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7D90CC2A-A404-485C-8156-6C397A11AE15}
2012-06-20 21:50 - 2012-06-20 21:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5EB02097-10B2-4812-8BD9-691FAFEE19F2}
2012-06-20 00:27 - 2012-06-20 00:27 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{AE615E9E-0114-40C5-9929-FD164B860985}
2012-06-20 00:27 - 2012-06-20 00:27 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A27E2966-D641-4DC7-ACCD-6A38FC9723CC}
2012-06-19 12:26 - 2012-06-19 12:26 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{232E81B1-21A9-43CC-8529-C63571FEDC60}
2012-06-19 00:26 - 2012-06-19 12:26 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{55AFAAFC-2AA1-4152-AB9F-EC521B2D56D0}
2012-06-18 07:25 - 2012-06-18 07:25 - 00000193 ____A C:\Windows\WORDPAD.INI
2012-06-18 00:25 - 2012-06-18 12:25 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CF3AED8B-6387-42A0-8BE1-815D71287A12}
2012-06-17 00:24 - 2012-06-17 12:25 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{42A1F61A-8CB8-4B95-9C42-C383C7B37476}
2012-06-16 00:24 - 2012-06-16 12:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{52D08118-63E4-4814-A462-A12FBCC9131F}
2012-06-15 00:23 - 2012-06-15 12:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{438C34EC-B366-4A16-84B8-9737D8A05C62}
2012-06-15 00:23 - 2012-06-15 00:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5516CD33-F259-4B22-A169-C3E633FF857E}
2012-06-14 15:01 - 2012-05-18 10:47 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-06-14 15:01 - 2012-05-18 10:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-06-14 15:01 - 2012-05-18 10:06 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-06-14 15:01 - 2012-05-18 09:59 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-06-14 15:01 - 2012-05-18 09:59 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-06-14 15:01 - 2012-05-18 09:58 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-06-14 15:01 - 2012-05-18 09:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-06-14 15:01 - 2012-05-18 09:56 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-06-14 15:01 - 2012-05-18 09:55 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-06-14 15:01 - 2012-05-18 09:55 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-06-14 15:01 - 2012-05-18 09:54 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-06-14 15:01 - 2012-05-18 09:51 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-06-14 15:01 - 2012-05-18 09:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-06-14 15:01 - 2012-05-18 09:47 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-06-14 15:01 - 2012-05-18 07:11 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-06-14 15:01 - 2012-05-18 06:45 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-06-14 15:01 - 2012-05-18 06:36 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-06-14 15:01 - 2012-05-18 06:35 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-06-14 15:01 - 2012-05-18 06:35 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-06-14 15:01 - 2012-05-18 06:33 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-06-14 15:01 - 2012-05-18 06:31 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-06-14 15:01 - 2012-05-18 06:29 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-06-14 15:01 - 2012-05-18 06:29 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-06-14 15:01 - 2012-05-18 06:27 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-06-14 15:01 - 2012-05-18 06:25 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-06-14 15:01 - 2012-05-18 06:24 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-06-14 15:01 - 2012-05-18 06:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-06-14 15:00 - 2012-05-18 06:48 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-06-14 12:23 - 2012-06-14 12:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{23B2A6F8-4D93-4588-A0D3-65A3C1F8B7E3}
2012-06-14 11:55 - 2012-05-15 09:32 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-06-14 11:55 - 2012-05-04 19:06 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-06-14 11:55 - 2012-05-04 18:03 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-06-14 11:55 - 2012-05-04 18:03 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-06-14 11:55 - 2012-05-01 13:40 - 00209920 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-06-14 11:55 - 2012-04-28 13:32 - 01112064 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll
2012-06-14 11:55 - 2012-04-28 11:55 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-06-14 11:55 - 2012-04-26 13:41 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-06-14 11:55 - 2012-04-26 13:41 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-06-14 11:55 - 2012-04-26 13:34 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-06-14 11:55 - 2012-04-24 13:37 - 01462272 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-06-14 11:55 - 2012-04-24 13:37 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-06-14 11:55 - 2012-04-24 13:37 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-06-14 11:55 - 2012-04-24 12:36 - 01158656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-06-14 11:55 - 2012-04-24 12:36 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-06-14 11:55 - 2012-04-24 12:36 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-06-14 11:55 - 2012-04-07 20:31 - 03216384 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-06-14 11:55 - 2012-04-07 19:26 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2012-06-14 00:22 - 2012-06-14 12:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2B7167AF-3557-4B87-A619-F102272BB782}
2012-06-14 00:22 - 2012-06-14 00:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{844628A1-641C-412C-A5DF-7AF525FC34F2}
2012-06-13 12:22 - 2012-06-13 12:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3DEF93F7-704B-4416-9AAB-74B01D5CC678}
2012-06-13 00:21 - 2012-06-13 12:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E2082479-13DD-4E6C-BE1C-421AEDADFA6B}
2012-06-13 00:21 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\AVG Secure Search
2012-06-13 00:21 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{30FBF2DC-B1B7-4450-B674-D5AD624A06B8}
2012-06-12 04:07 - 2012-06-12 04:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CECF9AAC-D106-4B9B-9929-6CB80360516D}
2012-06-12 04:07 - 2012-06-12 04:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5374AD78-5984-4CED-805E-7B13E61FEDDA}
2012-06-11 12:50 - 2012-06-11 12:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5D03C2F8-7DB7-461B-9834-481E8C9D8488}
2012-06-11 00:50 - 2012-06-11 12:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{168BEEC7-A21F-4A3D-AFB0-0784926B88D9}
2012-06-11 00:50 - 2012-06-11 00:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B87DB652-909A-4DE9-9108-78DB5B838644}
2012-06-10 12:49 - 2012-06-10 12:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DB3D3B24-BC14-468B-AC7F-941D485B530B}
2012-06-10 07:42 - 2012-06-10 07:42 - 00000065 ____A C:\Windows\.ini
2012-06-10 00:49 - 2012-06-10 12:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7368AAF3-1551-4BF2-92AA-531EB6CC31E8}
2012-06-10 00:49 - 2012-06-10 00:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7B71C9C6-58A2-4E57-B4AA-AF6CDC80E63D}
2012-06-09 12:48 - 2012-06-09 12:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E7AADB7E-ABDA-4573-94C5-57CE76FCFC03}
2012-06-09 00:48 - 2012-06-09 12:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{55BDB168-3743-4C5A-95EB-5E8665C2A9F3}
2012-06-09 00:48 - 2012-06-09 00:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6AA53459-1755-4A73-B115-CD9261F2DF12}
2012-06-08 12:47 - 2012-06-08 12:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{680FA72D-05AE-4EF9-B917-CF5D157BAC55}
2012-06-08 07:18 - 2012-06-08 07:18 - 00000000 ____D C:\Users\Public\Desktop\Solution Manual - College Physics 7th Edition - Serway
2012-06-08 00:46 - 2012-06-08 12:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7B6E633A-EF44-48F0-9A50-675370EA5415}
2012-06-08 00:46 - 2012-06-08 00:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E8BEEA8D-5E9E-4E66-A84B-86CF998118C6}
2012-06-07 11:05 - 2012-06-07 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{34D6D826-E094-4972-92B4-66BED691C696}
2012-06-06 23:04 - 2012-06-07 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B5B3E639-7B68-4844-9515-BCDD7115780E}
2012-06-06 23:04 - 2012-06-06 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{82772CE8-4360-44B6-9964-A3A8B3991178}
2012-06-06 09:53 - 2012-06-06 09:53 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{87954C51-914B-4547-AC01-E65D85789EB8}
2012-06-06 09:52 - 2012-06-06 09:53 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{0453B17B-ACAB-4D6A-BC42-CABFEF543FC2}
2012-06-05 21:52 - 2012-06-05 21:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{D7567517-BDA0-42A8-9CCD-9C7ABDADDD8E}
2012-06-05 21:52 - 2012-06-05 21:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{934D49A9-2E46-424C-9680-024E89F4825B}
2012-06-05 06:51 - 2012-06-05 06:51 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\YCanPDF
2012-06-05 02:42 - 2012-06-05 02:42 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9D603707-857C-4308-93AA-03E8E88F59AA}
2012-06-05 02:42 - 2012-06-05 02:42 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5043AE95-9B93-46F6-BE5D-C76EAD9CC988}
2012-06-04 06:07 - 2012-06-04 06:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1462E041-DB56-4111-B19C-C998DE97FCB3}
2012-06-04 06:06 - 2012-06-04 06:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{449E7849-5DD4-4181-98EF-3AEAB890A09C}
2012-06-02 10:17 - 2012-06-02 10:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B1A1FE1A-8EAF-4C51-9310-39741B2396EF}
2012-06-01 22:16 - 2012-06-02 10:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3E741CC7-1F2C-4809-93A0-ECF76870C0BE}
2012-06-01 22:16 - 2012-06-01 22:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7453935B-040A-465A-8E9D-E64A6E2C4520}
2012-06-01 10:16 - 2012-06-01 10:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F5092756-8D9A-4AAC-8C86-693DA5ECF799}
2012-05-31 22:15 - 2012-06-01 10:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BE66D834-ECC6-4D2A-AA38-ACAFD4C935C1}
2012-05-31 22:15 - 2012-05-31 22:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CF2B90F6-A7DC-4517-BDBC-5E269DB07B2C}
2012-05-31 10:15 - 2012-05-31 10:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F53DF2F8-0CB1-46E3-9051-261F5073351F}
2012-05-30 22:14 - 2012-05-31 10:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6429AB73-FC24-4A93-AA1A-833920CCE398}
2012-05-30 22:14 - 2012-05-30 22:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{83149F39-4E01-4C1E-93F7-A39A5A31264C}
2012-05-30 09:46 - 2012-05-30 09:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F69A0680-6348-4F57-9DEE-DEE39AF272AB}
2012-05-29 21:46 - 2012-05-30 09:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{8A871B0A-C699-4B05-9657-903CC7D72190}
2012-05-29 21:46 - 2012-05-29 21:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5341A8D8-CBAA-4292-A7D6-727443EB7CAD}
2012-05-29 09:32 - 2012-05-29 09:33 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{70A55B94-ECA4-4810-A3AC-D55623494C9A}
2012-05-28 21:32 - 2012-05-29 09:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BA00A6D4-7308-4421-9C04-FC84D758A237}
2012-05-28 21:32 - 2012-05-28 21:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BC5E6D51-4C7D-40D5-8712-1A086685E277}
2012-05-28 02:48 - 2012-05-28 02:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{C3D8739B-F167-486A-85F1-98E9FB43229C}
2012-05-28 02:48 - 2012-05-28 02:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{4D2E5BAF-0852-4785-B1B6-C064C0E39A32}
2012-05-27 11:32 - 2012-05-27 11:33 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{12C0FC94-78E0-4B8B-9EED-D2D1120ADE79}
============ 3 Months Modified Files and Folders =============
2012-06-27 01:21 - 2012-05-22 09:00 - 00000000 ____D C:\Users\All Users\Anti-phishing Domain Advisor
2012-06-27 01:21 - 2012-03-06 11:02 - 00000476 ____A C:\Windows\Tasks\SDMsgUpdate (TE).job
2012-06-27 01:21 - 2011-07-25 09:38 - 00000000 ____D C:\Users\Jeffery\AppData\Local\PMB Files
2012-06-27 01:21 - 2011-07-24 14:54 - 00000406 ____A C:\Windows\Tasks\FixCleaner Startup.job
2012-06-27 01:21 - 2011-07-24 14:27 - 01501459 ____A C:\Windows\WindowsUpdate.log
2012-06-27 01:21 - 2011-07-22 14:30 - 00000000 ____D C:\Users\Jeffery\Tracing
2012-06-27 01:21 - 2011-05-06 02:33 - 00000540 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2012-06-27 01:19 - 2012-05-13 10:59 - 00006776 ____A C:\Windows\setupact.log
2012-06-27 01:19 - 2009-07-14 13:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-06-27 01:17 - 2011-05-06 02:33 - 00000544 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2012-06-27 01:14 - 2012-01-07 05:56 - 00000560 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-351645184-3812066956-3475953073-1000UA.job
2012-06-27 01:02 - 2011-07-22 07:36 - 00002244 ____A C:\Windows\epplauncher.mif
2012-06-27 00:19 - 2012-01-11 09:53 - 00000000 __SHD C:\Users\Jeffery\AppData\Local\{046ef7ab-6d50-9b6c-7f28-970fac8da374}
2012-06-27 00:19 - 2011-07-24 13:28 - 00000000 ____D C:\Users\Public\Desktop\Install
2012-06-27 00:10 - 2009-07-14 12:45 - 00026576 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-06-27 00:10 - 2009-07-14 12:45 - 00026576 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-06-27 00:04 - 2012-05-22 13:50 - 00001662 ____A C:\Windows\PFRO.log
2012-06-27 00:00 - 2011-07-24 14:54 - 00000422 ____A C:\Windows\Tasks\FixCleaner Scan.job
2012-06-26 23:58 - 2011-08-11 10:01 - 00000000 ____D C:\SG Interactive
2012-06-26 23:58 - 2011-07-22 10:21 - 00000000 ____D C:\Program Files (x86)\ESET
2012-06-26 23:30 - 2012-06-26 23:30 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-26 23:30 - 2012-06-26 23:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-26 23:30 - 2011-07-22 07:38 - 01242390 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-06-26 23:30 - 2010-11-22 03:22 - 00390376 ____A C:\Windows\System32\prfh0404.dat
2012-06-26 23:30 - 2010-11-22 03:22 - 00108284 ____A C:\Windows\System32\prfc0404.dat
2012-06-26 23:28 - 2012-05-05 11:45 - 00000000 ____D C:\Program Files (x86)\1ClickDownload
2012-06-26 23:25 - 2012-06-26 23:24 - 12621696 ____A (Microsoft Corporation) C:\Users\Public\Desktop\mseinstall.exe
2012-06-26 22:44 - 2011-07-22 13:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\Windows Live
2012-06-26 22:43 - 2012-06-26 22:43 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{C4D6F55E-F4F7-40E3-BC7B-92B6D5FCB52F}
2012-06-26 22:43 - 2012-06-26 22:43 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{28D69BF8-0A52-4325-AD90-C236A965E0A2}
2012-06-26 15:06 - 2012-06-26 15:05 - 00000000 ____D C:\FRST
2012-06-26 12:15 - 2011-07-24 11:50 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\Mozilla
2012-06-26 11:07 - 2012-06-26 11:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2BEA565A-45AD-4AAD-AC8E-F17D3C8C286B}
2012-06-26 03:14 - 2012-01-07 05:56 - 00000508 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-351645184-3812066956-3475953073-1000Core.job
2012-06-25 23:07 - 2012-06-25 23:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7514C88C-9B34-48B8-A1F2-E517B7CC3AE6}
2012-06-25 23:07 - 2012-06-25 23:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1E15E48E-6792-40E6-8213-D497D20B8166}
2012-06-25 11:06 - 2012-06-25 11:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5757C6B8-3532-4AB4-97DD-E0828B0910EF}
2012-06-25 11:06 - 2012-06-24 23:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FAF37296-9157-4E2A-812A-5F203B6E84E8}
2012-06-25 07:27 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\rescache
2012-06-24 23:06 - 2012-06-24 23:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B4162938-D7DF-4596-BDF9-8BF13B3C9A9F}
2012-06-24 11:05 - 2012-06-24 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A1B6E7D3-6235-4846-A12B-1F43D498803C}
2012-06-24 11:05 - 2012-06-23 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3B223EED-CE3B-4852-AF82-08FA27CFF327}
2012-06-23 23:05 - 2012-06-23 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{01207C5C-7344-49BB-8641-79C30D24BC99}
2012-06-23 12:13 - 2011-07-22 16:59 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\TeraCopy
2012-06-23 10:58 - 2012-06-23 10:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B2E3F918-315E-4879-BC5B-739FA63D36B8}
2012-06-23 10:57 - 2012-06-22 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{EA367037-E514-4447-ADBF-A0E07D4DB999}
2012-06-22 22:57 - 2012-06-22 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{68499900-6038-4AC3-9E85-0446FDB7EE38}
2012-06-22 11:11 - 2012-06-22 11:11 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-21 22:57 - 2012-06-21 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{29774224-5E2B-4D4D-9A41-EDEF23CCF170}
2012-06-21 22:56 - 2012-06-21 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3FA1AE99-A833-464F-87B8-FFC15D7568CF}
2012-06-21 09:51 - 2012-06-21 09:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{23A57A80-5F8E-4833-A5F5-2157E17D2C83}
2012-06-21 09:51 - 2012-06-20 21:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7D90CC2A-A404-485C-8156-6C397A11AE15}
2012-06-21 09:09 - 2011-10-08 08:43 - 00000056 ____A C:\Windows\kgt2k.INI
2012-06-20 21:50 - 2012-06-20 21:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5EB02097-10B2-4812-8BD9-691FAFEE19F2}
2012-06-20 00:27 - 2012-06-20 00:27 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{AE615E9E-0114-40C5-9929-FD164B860985}
2012-06-20 00:27 - 2012-06-20 00:27 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A27E2966-D641-4DC7-ACCD-6A38FC9723CC}
2012-06-19 12:26 - 2012-06-19 12:26 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{232E81B1-21A9-43CC-8529-C63571FEDC60}
2012-06-19 12:26 - 2012-06-19 00:26 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{55AFAAFC-2AA1-4152-AB9F-EC521B2D56D0}
2012-06-18 12:25 - 2012-06-18 00:25 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CF3AED8B-6387-42A0-8BE1-815D71287A12}
2012-06-18 07:25 - 2012-06-18 07:25 - 00000193 ____A C:\Windows\WORDPAD.INI
2012-06-17 12:25 - 2012-06-17 00:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{42A1F61A-8CB8-4B95-9C42-C383C7B37476}
2012-06-16 12:24 - 2012-06-16 00:24 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{52D08118-63E4-4814-A462-A12FBCC9131F}
2012-06-15 12:24 - 2012-06-15 00:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{438C34EC-B366-4A16-84B8-9737D8A05C62}
2012-06-15 00:23 - 2012-06-15 00:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5516CD33-F259-4B22-A169-C3E633FF857E}
2012-06-14 21:52 - 2012-05-13 22:36 - 04973008 ____A C:\Windows\System32\FNTCACHE.DAT
2012-06-14 15:16 - 2011-05-05 13:51 - 00000000 ____D C:\Users\All Users\Microsoft Help
2012-06-14 15:14 - 2009-07-14 13:13 - 01243956 ____A C:\Windows\System32\PerfStringBackup.INI
2012-06-14 15:07 - 2011-05-05 13:34 - 58957832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-06-14 12:23 - 2012-06-14 12:23 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{23B2A6F8-4D93-4588-A0D3-65A3C1F8B7E3}
2012-06-14 12:23 - 2012-06-14 00:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2B7167AF-3557-4B87-A619-F102272BB782}
2012-06-14 00:22 - 2012-06-14 00:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{844628A1-641C-412C-A5DF-7AF525FC34F2}
2012-06-13 12:22 - 2012-06-13 12:22 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3DEF93F7-704B-4416-9AAB-74B01D5CC678}
2012-06-13 12:22 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E2082479-13DD-4E6C-BE1C-421AEDADFA6B}
2012-06-13 00:21 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\AVG Secure Search
2012-06-13 00:21 - 2012-06-13 00:21 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{30FBF2DC-B1B7-4450-B674-D5AD624A06B8}
2012-06-12 08:57 - 2012-02-26 08:25 - 00000000 ____D C:\Users\All Users\AVG Secure Search
2012-06-12 08:57 - 2012-02-26 08:25 - 00000000 ____D C:\Program Files (x86)\AVG Secure Search
2012-06-12 04:07 - 2012-06-12 04:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CECF9AAC-D106-4B9B-9929-6CB80360516D}
2012-06-12 04:07 - 2012-06-12 04:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5374AD78-5984-4CED-805E-7B13E61FEDDA}
2012-06-11 12:51 - 2012-06-11 12:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5D03C2F8-7DB7-461B-9834-481E8C9D8488}
2012-06-11 12:50 - 2012-06-11 00:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{168BEEC7-A21F-4A3D-AFB0-0784926B88D9}
2012-06-11 00:50 - 2012-06-11 00:50 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B87DB652-909A-4DE9-9108-78DB5B838644}
2012-06-10 12:49 - 2012-06-10 12:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DB3D3B24-BC14-468B-AC7F-941D485B530B}
2012-06-10 12:49 - 2012-06-10 00:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7368AAF3-1551-4BF2-92AA-531EB6CC31E8}
2012-06-10 07:42 - 2012-06-10 07:42 - 00000065 ____A C:\Windows\.ini
2012-06-10 00:49 - 2012-06-10 00:49 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7B71C9C6-58A2-4E57-B4AA-AF6CDC80E63D}
2012-06-09 12:48 - 2012-06-09 12:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E7AADB7E-ABDA-4573-94C5-57CE76FCFC03}
2012-06-09 12:48 - 2012-06-09 00:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{55BDB168-3743-4C5A-95EB-5E8665C2A9F3}
2012-06-09 00:48 - 2012-06-09 00:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6AA53459-1755-4A73-B115-CD9261F2DF12}
2012-06-08 12:47 - 2012-06-08 12:47 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{680FA72D-05AE-4EF9-B917-CF5D157BAC55}
2012-06-08 12:47 - 2012-06-08 00:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7B6E633A-EF44-48F0-9A50-675370EA5415}
2012-06-08 07:18 - 2012-06-08 07:18 - 00000000 ____D C:\Users\Public\Desktop\Solution Manual - College Physics 7th Edition - Serway
2012-06-08 00:47 - 2012-06-08 00:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E8BEEA8D-5E9E-4E66-A84B-86CF998118C6}
2012-06-07 11:05 - 2012-06-07 11:05 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{34D6D826-E094-4972-92B4-66BED691C696}
2012-06-07 11:05 - 2012-06-06 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B5B3E639-7B68-4844-9515-BCDD7115780E}
2012-06-06 23:04 - 2012-06-06 23:04 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{82772CE8-4360-44B6-9964-A3A8B3991178}
2012-06-06 09:53 - 2012-06-06 09:53 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{87954C51-914B-4547-AC01-E65D85789EB8}
2012-06-06 09:53 - 2012-06-06 09:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{0453B17B-ACAB-4D6A-BC42-CABFEF543FC2}
2012-06-05 21:52 - 2012-06-05 21:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{D7567517-BDA0-42A8-9CCD-9C7ABDADDD8E}
2012-06-05 21:52 - 2012-06-05 21:52 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{934D49A9-2E46-424C-9680-024E89F4825B}
2012-06-05 06:51 - 2012-06-05 06:51 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\YCanPDF
2012-06-05 02:42 - 2012-06-05 02:42 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9D603707-857C-4308-93AA-03E8E88F59AA}
2012-06-05 02:42 - 2012-06-05 02:42 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5043AE95-9B93-46F6-BE5D-C76EAD9CC988}
2012-06-04 06:07 - 2012-06-04 06:07 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1462E041-DB56-4111-B19C-C998DE97FCB3}
2012-06-04 06:07 - 2012-06-04 06:06 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{449E7849-5DD4-4181-98EF-3AEAB890A09C}
2012-06-03 06:19 - 2012-06-23 23:06 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-03 06:19 - 2012-06-23 23:06 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-03 06:19 - 2012-06-23 23:06 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-03 06:19 - 2012-06-23 23:06 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-03 06:19 - 2012-06-23 23:06 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-03 06:15 - 2012-06-23 23:06 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-03 06:15 - 2012-06-23 23:06 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-03 03:19 - 2012-06-23 23:06 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-03 03:15 - 2012-06-23 23:06 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-02 10:17 - 2012-06-02 10:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B1A1FE1A-8EAF-4C51-9310-39741B2396EF}
2012-06-02 10:17 - 2012-06-01 22:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3E741CC7-1F2C-4809-93A0-ECF76870C0BE}
2012-06-01 22:16 - 2012-06-01 22:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{7453935B-040A-465A-8E9D-E64A6E2C4520}
2012-06-01 10:16 - 2012-06-01 10:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F5092756-8D9A-4AAC-8C86-693DA5ECF799}
2012-06-01 10:16 - 2012-05-31 22:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BE66D834-ECC6-4D2A-AA38-ACAFD4C935C1}
2012-05-31 22:15 - 2012-05-31 22:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{CF2B90F6-A7DC-4517-BDBC-5E269DB07B2C}
2012-05-31 10:15 - 2012-05-31 10:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F53DF2F8-0CB1-46E3-9051-261F5073351F}
2012-05-31 10:15 - 2012-05-30 22:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6429AB73-FC24-4A93-AA1A-833920CCE398}
2012-05-30 22:14 - 2012-05-30 22:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{83149F39-4E01-4C1E-93F7-A39A5A31264C}
2012-05-30 09:47 - 2012-05-30 09:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F69A0680-6348-4F57-9DEE-DEE39AF272AB}
2012-05-30 09:46 - 2012-05-29 21:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{8A871B0A-C699-4B05-9657-903CC7D72190}
2012-05-29 21:46 - 2012-05-29 21:46 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{5341A8D8-CBAA-4292-A7D6-727443EB7CAD}
2012-05-29 09:33 - 2012-05-29 09:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{70A55B94-ECA4-4810-A3AC-D55623494C9A}
2012-05-29 09:32 - 2012-05-28 21:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BA00A6D4-7308-4421-9C04-FC84D758A237}
2012-05-28 21:32 - 2012-05-28 21:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BC5E6D51-4C7D-40D5-8712-1A086685E277}
2012-05-28 02:54 - 2011-07-22 16:54 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\IObit
2012-05-28 02:48 - 2012-05-28 02:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{C3D8739B-F167-486A-85F1-98E9FB43229C}
2012-05-28 02:48 - 2012-05-28 02:48 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{4D2E5BAF-0852-4785-B1B6-C064C0E39A32}
2012-05-27 11:33 - 2012-05-27 11:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{12C0FC94-78E0-4B8B-9EED-D2D1120ADE79}
2012-05-27 11:32 - 2012-05-26 23:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6B792C03-34D2-4249-99CC-1C1C1B9FC365}
2012-05-26 23:32 - 2012-05-26 23:32 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9081CCCB-B0A9-46D9-9302-FB54EF4718F2}
2012-05-26 11:32 - 2012-05-26 11:31 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{764DDFBF-2C5A-4143-8C8F-ED189FD4210F}
2012-05-26 11:31 - 2012-05-25 23:31 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{BD8C9414-2107-421D-B435-B090834166F7}
2012-05-26 02:26 - 2012-05-26 02:22 - 185102462 ____A C:\Users\Public\Desktop\[FAKKU]_Tentacle_and_Witches_Vol.3_[37F62DC4].mkv
2012-05-25 23:31 - 2012-05-25 23:31 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2F25C68B-5EE6-4ABD-9AFF-8044E6BFFE63}
2012-05-25 22:59 - 2011-07-22 16:53 - 00000304 ___AH C:\Windows\Tasks\DefragExpress.job
2012-05-25 11:30 - 2012-05-25 11:30 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1A7D2288-AEA3-4E40-9051-61599B303DD0}
2012-05-25 11:30 - 2012-05-24 23:30 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DCC36833-E7E8-4AD8-A249-1C11D077E982}
2012-05-24 23:30 - 2012-05-24 23:30 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{3BE15252-C617-4E92-92F5-A56C730101D7}
2012-05-24 11:19 - 2012-05-24 11:19 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{8CB47B23-6EE5-4F7B-A399-256313A698F8}
2012-05-24 11:19 - 2012-05-23 23:18 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{940DB520-C1E9-43FC-8E1F-95C4400CDD88}
2012-05-23 23:19 - 2012-05-23 23:18 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{723C48AD-7278-4D6D-AC3F-E6D85B3B9DEA}
2012-05-23 11:18 - 2012-05-23 11:18 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{6268F9A8-0321-42E7-9B9C-3D67C9039406}
2012-05-23 11:18 - 2012-05-22 23:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{82A27A03-8A83-4C83-B350-772979D80CF9}
2012-05-22 23:18 - 2012-05-22 23:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{48F2D138-E307-4BBD-8F37-264B7615E033}
2012-05-22 11:17 - 2012-05-22 11:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{43A94398-F09B-4E37-AB63-4ADB15895AFD}
2012-05-22 11:17 - 2012-05-22 11:17 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{11892EDF-01DA-4D65-A9BB-F7BCFA5817D0}
2012-05-22 10:40 - 2012-05-22 10:40 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\com.adobe.dmp.contentviewer
2012-05-22 10:34 - 2012-05-22 10:34 - 00000000 ____D C:\Users\Public\Desktop\Ranma
2012-05-22 10:32 - 2012-05-22 10:32 - 00001063 ____A C:\Users\Public\Desktop\TuneUp Companion.lnk
2012-05-22 10:32 - 2012-05-22 10:32 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\TuneUpMedia
2012-05-22 10:32 - 2012-05-22 10:32 - 00000000 ____D C:\Users\All Users\TuneUpMedia
2012-05-22 10:32 - 2012-05-22 10:32 - 00000000 ____D C:\Program Files (x86)\TuneUpMedia
2012-05-22 10:27 - 2012-05-22 10:27 - 00000125 ____A C:\Windows\FlashDecompiler.INI
2012-05-22 09:35 - 2012-05-22 09:35 - 00000000 ____D C:\Users\Jeffery\AppData\Local\SourceTec
2012-05-22 09:10 - 2012-05-22 09:10 - 00000000 ____D C:\Users\All Users\AutoUpdate
2012-05-22 09:09 - 2011-07-22 14:58 - 00414368 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-05-22 09:00 - 2012-05-22 09:00 - 00000000 ____D C:\Users\Jeffery\AppData\Local\blekkotb
2012-05-22 08:59 - 2010-11-22 03:32 - 00000000 ____D C:\Windows\ShellNew
2012-05-22 03:28 - 2012-05-13 22:40 - 00109232 ____A C:\Users\Jeffery\AppData\Local\GDIPFONTCACHEV1.DAT
2012-05-21 23:16 - 2012-05-21 23:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{854B5CC7-55DE-4843-9D4E-42B6868F103D}
2012-05-21 23:16 - 2012-05-21 23:16 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{51C93703-A7C0-4CF8-9087-443ABBB96A4D}
2012-05-21 11:16 - 2012-05-21 11:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{E3281268-84C9-49D4-BBE4-6001DAE23924}
2012-05-21 11:15 - 2012-05-20 23:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9B7CC2CD-B7CB-4728-9038-B7C5FD51FB94}
2012-05-21 09:54 - 2012-05-21 09:54 - 00060327 ____A C:\Users\Public\Desktop\uninst.exe
2012-05-20 23:15 - 2012-05-20 23:15 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{1C592B87-E596-493E-9799-9E437E63C6AD}
2012-05-20 11:15 - 2012-05-20 11:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FEF651D0-DA87-4430-BE42-B35F81468F32}
2012-05-20 11:14 - 2012-05-19 23:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{4EC55FB3-CD9A-4547-9077-CC604F669E43}
2012-05-19 23:14 - 2012-05-19 23:14 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{03BF51BA-C07D-41C3-B9AC-E8C9FF070580}
2012-05-19 23:00 - 2012-02-26 08:25 - 00000000 ____D C:\Program Files (x86)\FixCleaner
2012-05-19 23:00 - 2011-07-24 14:54 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\FixCleaner
2012-05-19 11:13 - 2012-05-19 11:13 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{0320924A-2AEF-4717-91AE-F4E651EB7B54}
2012-05-19 11:13 - 2012-05-18 23:13 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{9082A3B1-CBAA-439D-9B8E-11BA0FC243FA}
2012-05-19 00:12 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\System32\NDF
2012-05-18 23:55 - 2012-02-04 06:50 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\Media Player Classic
2012-05-18 23:02 - 2012-05-18 23:02 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FB958796-8662-4420-939B-3BA30122B04A}
2012-05-18 22:59 - 2012-05-18 22:59 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{F6BC9968-FC86-4D15-82C3-D475CA8324C4}
2012-05-18 10:59 - 2012-05-18 10:59 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{550E0D01-487B-4248-8A9E-B6CD38AB945F}
2012-05-18 10:59 - 2012-05-18 10:58 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{2355609C-A69E-457A-916B-E691FA45812D}
2012-05-18 10:47 - 2012-06-14 15:01 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-05-18 10:16 - 2012-06-14 15:01 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-05-18 10:06 - 2012-06-14 15:01 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-05-18 09:59 - 2012-06-14 15:01 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-05-18 09:59 - 2012-06-14 15:01 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-05-18 09:58 - 2012-06-14 15:01 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-05-18 09:58 - 2012-06-14 15:01 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-05-18 09:56 - 2012-06-14 15:01 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-05-18 09:55 - 2012-06-14 15:01 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-05-18 09:55 - 2012-06-14 15:01 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-05-18 09:54 - 2012-06-14 15:01 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-05-18 09:51 - 2012-06-14 15:01 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-05-18 09:51 - 2012-06-14 15:01 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-05-18 09:47 - 2012-06-14 15:01 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-05-18 07:11 - 2012-06-14 15:01 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-05-18 06:48 - 2012-06-14 15:00 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-05-18 06:45 - 2012-06-14 15:01 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-05-18 06:36 - 2012-06-14 15:01 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-05-18 06:35 - 2012-06-14 15:01 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-05-18 06:35 - 2012-06-14 15:01 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-05-18 06:33 - 2012-06-14 15:01 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-05-18 06:31 - 2012-06-14 15:01 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-05-18 06:29 - 2012-06-14 15:01 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-05-18 06:29 - 2012-06-14 15:01 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-05-18 06:27 - 2012-06-14 15:01 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-05-18 06:25 - 2012-06-14 15:01 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-05-18 06:24 - 2012-06-14 15:01 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-05-18 06:20 - 2012-06-14 15:01 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-05-17 22:58 - 2012-05-17 22:58 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{FC11CC35-DD8E-46D5-BCD7-CC006AD9E22B}
2012-05-17 22:58 - 2012-05-17 22:58 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{B3688C38-6625-4106-9B2B-D307FBF0B888}
2012-05-17 10:58 - 2012-05-17 10:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{D47B7F60-75B8-468F-9C31-175B42A9F182}
2012-05-17 10:57 - 2012-05-16 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{78B9FBC2-F86B-4CA6-B9C3-6668CBB12D9F}
2012-05-16 22:57 - 2012-05-16 22:57 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{52F8896E-2FFA-4BE5-9E15-6B75E67BF524}
2012-05-16 13:21 - 2012-05-16 13:21 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2012-05-16 13:21 - 2012-05-16 13:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-05-16 10:58 - 2012-05-08 08:18 - 00018062 ____A C:\Users\Public\Desktop\Cold calling Summer 2012.xlsx
2012-05-16 10:57 - 2012-05-16 10:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{096F39FA-EF13-4C42-A173-4D0647031AE3}
2012-05-16 10:56 - 2012-05-15 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{A86DA7A6-8A59-4290-9180-2F233F24FF57}
2012-05-15 22:56 - 2012-05-15 22:56 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DD103EAE-0E74-4DBA-9178-DB07136E2F77}
2012-05-15 10:56 - 2012-05-15 10:55 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{50A3D9EF-49CC-4DAE-A319-2342AA6857A9}
2012-05-15 10:55 - 2012-05-14 22:55 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{65ABBF3C-B7F7-4346-9630-17C5EB491625}
2012-05-15 09:32 - 2012-06-14 11:55 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-05-14 22:55 - 2012-05-14 22:55 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{75C132BA-5A43-4297-B48E-6F5B861F94CA}
2012-05-14 11:38 - 2012-05-14 11:37 - 00000000 ____D C:\Users\Jeffery\AppData\Roaming\DAEMON Tools Lite
2012-05-14 11:38 - 2012-05-14 11:34 - 00000000 ____D C:\Users\All Users\DAEMON Tools Lite
2012-05-14 11:37 - 2012-05-14 11:37 - 00283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2012-05-14 11:37 - 2012-05-14 11:37 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2012-05-14 10:55 - 2012-05-14 10:54 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{77BC9DD6-C559-47F2-91A2-55859DBA9E75}
2012-05-14 10:54 - 2012-05-13 22:54 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{10E191C4-1476-4982-BCE5-834F12712CE8}
2012-05-13 22:54 - 2012-05-13 22:54 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{4B0ABF56-18AC-4397-A171-715077D36542}
2012-05-13 22:52 - 2009-07-14 13:08 - 00032688 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-05-13 22:47 - 2011-10-20 13:49 - 00000712 ____A C:\Users\Public\Desktop\IObit Malware Fighter.lnk
2012-05-13 22:41 - 2012-05-13 22:41 - 00000000 ____D C:\Users\Jeffery\AppData\Local\{DE377655-D983-4C1B-A7C5-45492DB5A0B1}
2012-05-13 10:59 - 2012-05-13 10:59 - 00000000 ____A C:\Windows\setuperr.log
2012-05-13 10:08 - 2011-11-02 07:43 - 00000000 ____D C:\Program Files\Bonjour
2012-05-13 09:35 - 2012-05-11 08:51 - 00000000 ____D C:\Users\Jeffery\AppData\Local\Windows Live Writer
2012-05-13 09:35 - 2012-03-06 11:01 - 00000000 ____D C:\Program Files (x86)\SmartDraw 2012