MarkFed
Posts: 15 +0
Sirefef seems to be going around right now. Odd music played from the speakers for no reason, MSE stopped working, and on reinstalling it, Sirefef and Comroki were reported. The system is now in the "critical error, rebooting in 1 minute" loop.
System is Windows 7, 64-bit.
I booted into System Recovery Options from the Advanced Boot Options and ran FRST64 from a USB thumb drive. First half of log follows (other half in the next post):
Scan result of Farbar Recovery Scan Tool Version: 04-07-2012 01
Ran by SYSTEM at 05-07-2012 01:18:38
Running from E:\
Windows 7 Professional Service Pack 1 (X64) OS Language: English(US)
The current controlset is ControlSet001
========================== Registry (Whitelisted) =============
HKLM\...\Run: [VIAxHCUtl] C:\VIA_XHCI\usb3Monitor.exe [331776 2011-07-12] (VIA Technologies, Inc.)
HKLM\...\Run: [Launch LgDeviceAgent] "C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe" [415816 2010-08-03] (Logitech Inc.)
HKLM\...\Run: [Launch LCDMon] "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe" [2412616 2010-08-03] (Logitech Inc.)
HKLM\...\Run: [Launch LGDCore] "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE [4725320 2010-08-03] (Logitech Inc.)
HKLM\...\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1271168 2012-03-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r [4892272 2011-07-31] (VIA)
HKLM-x32\...\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [291608 2012-01-27] (Intel Corporation)
HKLM-x32\...\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2012-01-18] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-04-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59280 2012-05-30] (Apple Inc.)
HKLM-x32\...\Run: [UpdReg] C:\Windows\UpdReg.EXE [90112 2000-05-10] (Creative Technology Ltd.)
HKLM-x32\...\Run: [Sound Blaster Recon3D PCIe Control Panel] "C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel\SBRnPCIe.exe" /r [885760 2012-02-22] (Creative Technology Ltd)
HKLM-x32\...\Run: [DigidesignMMERefresh] C:\Program Files (x86)\Digidesign\Pro Tools\MMERefresh.exe [81920 2011-08-18] (Avid Technology, Inc.)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2012-04-18] (Apple Inc.)
HKLM-x32\...\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-09] (Hewlett-Packard)
HKLM-x32\...\Run: [] [x]
HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421776 2012-06-07] (Apple Inc.)
HKU\David\...\Run: [Google Update] "C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe" /c [116648 2012-05-05] (Google Inc.)
HKU\David\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3671872 2012-04-17] (DT Soft Ltd)
HKU\UpdatusUser\...\Run: [Google Update] "C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe" /c [116648 2012-05-05] (Google Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Startup: C:\Users\All Users\Start Menu\Programs\Startup\APC UPS Status.lnk
ShortcutTarget: APC UPS Status.lnk -> C:\Program Files (x86)\APC\APC PowerChute Personal Edition\Display.exe (American Power Conversion Corporation)
Startup: C:\Users\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
==================== Services (Whitelisted) ======
2 APC UPS Service; C:\Program Files (x86)\APC\APC PowerChute Personal Edition\mainserv.exe [176241 2004-07-21] (American Power Conversion Corporation)
2 CtHdaSvc; C:\Windows\sysWow64\CtHdaSvc.exe [105472 2012-04-26] (Creative Technology Ltd)
2 DigiRefresh; C:\Program Files (x86)\Digidesign\Pro Tools\MMERefresh.exe -s [81920 2011-08-18] (Avid Technology, Inc.)
3 digiSPTIService; "C:\Program Files (x86)\Digidesign\Pro Tools\digiSPTIService.exe" [159744 2011-08-18] (Avid Technology, Inc.)
2 FastTrackC600AudioDevMon; "C:\Program Files (x86)\M-Audio\Fast Track C600\AudioDevMon.exe" [2019632 2011-07-12] (M-Audio)
2 Intel(R) Capability Licensing Service Interface; "C:\Program Files\Intel\iCLS Client\HeciServer.exe" [607456 2011-12-08] (Intel(R) Corporation)
2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [12600 2012-03-26] (Microsoft Corporation)
2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" [2932224 2011-07-08] (PACE Anti-Piracy, Inc.)
2 UNS; "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" [363800 2011-12-16] (Intel Corporation)
2 VIAKaraokeService; C:\Windows\System32\viakaraokesrv.exe [27760 2011-07-12] (VIA Technologies, Inc.)
========================== Drivers (Whitelisted) =============
3 cthda; C:\Windows\System32\Drivers\cthda.sys [1271384 2012-04-26] (Creative Technology Ltd)
3 CtHDb; C:\Windows\System32\Drivers\CtHDb.sys [23640 2012-04-26] ()
1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [283200 2012-05-09] (DT Soft Ltd)
3 GOLDFINGER; C:\Windows\System32\DRIVERS\MAudioFastTrackC600.sys [486704 2011-07-12] (M-Audio)
3 GOLDFINGERDFU; C:\Windows\System32\DRIVERS\MAudioFastTrackC600_DFU.sys [30512 2011-07-12] (Avid)
3 iLokDrvr; C:\Windows\System32\Drivers\iLokDrvr.sys [25720 2010-11-03] ()
0 iusb3hcs; C:\Windows\System32\Drivers\iusb3hcs.sys [16152 2012-01-27] (Intel Corporation)
3 iusb3hub; C:\Windows\System32\Drivers\iusb3hub.sys [356120 2012-01-27] (Intel Corporation)
3 iusb3xhc; C:\Windows\System32\Drivers\iusb3xhc.sys [787736 2012-01-27] (Intel Corporation)
3 VUSB3HUB; C:\Windows\System32\DRIVERS\ViaHub3.sys [205312 2012-01-19] (VIA Technologies, Inc.)
3 xhcdrv; C:\Windows\System32\Drivers\xhcdrv.sys [254464 2012-01-19] (VIA Technologies, Inc.)
========================== NetSvcs (Whitelisted) ===========
============ One Month Created Files and Folders ==============
2012-07-05 01:18 - 2012-07-05 01:18 - 00000000 ____D C:\FRST
2012-07-04 21:11 - 2012-07-04 21:11 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.E5D767F866C73F1E
2012-07-04 21:11 - 2012-07-04 21:11 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\sqmlpmht.sys
2012-07-04 20:50 - 2012-07-04 20:50 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.07D5656F6256FC84
2012-07-04 20:47 - 2012-07-04 20:47 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B488A05635B97300
2012-07-04 20:44 - 2012-07-04 20:44 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2218E04F8EF619B9
2012-07-04 20:41 - 2012-07-04 20:41 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.A8C8C8E716A7FB82
2012-07-04 20:38 - 2012-07-04 20:38 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.02445B1375EECC89
2012-07-04 20:35 - 2012-07-04 20:35 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2A612E3BA982B32E
2012-07-04 20:32 - 2012-07-04 20:32 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.280B2A677D10B8E1
2012-07-04 20:29 - 2012-07-04 20:29 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.70C60FE01BE93077
2012-07-04 20:26 - 2012-07-04 20:26 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.EBBEDE0C635BF242
2012-07-04 20:17 - 2012-07-04 20:17 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B3FA430444E36C30
2012-07-04 20:14 - 2012-07-04 20:14 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.770D91DF8D7EF47D
2012-07-04 20:11 - 2012-07-04 20:11 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.86B3421457B36A35
2012-07-04 20:07 - 2012-07-04 20:07 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.92D85FBBCB6477EC
2012-07-04 20:01 - 2012-07-04 20:01 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-07-04 20:01 - 2012-07-04 20:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-07-04 19:59 - 2012-07-04 19:59 - 12621696 ____A (Microsoft Corporation) C:\Users\David\Downloads\mseinstall.exe
2012-07-04 13:42 - 2012-07-02 09:55 - 00060448 __RSH (Jeantech) C:\Users\David\AppData\Roaming\svchost.exe
2012-07-04 13:42 - 2012-07-02 09:55 - 00060448 __RSH (Jeantech) C:\Users\David\AppData\Roaming\rundll32.exe
2012-07-02 09:59 - 2012-07-02 09:59 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-19 04:49 - 2012-06-02 14:19 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-19 04:49 - 2012-06-02 14:19 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-19 04:49 - 2012-06-02 14:19 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-19 04:49 - 2012-06-02 14:19 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-19 04:49 - 2012-06-02 14:19 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-19 04:49 - 2012-06-02 14:15 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-19 04:49 - 2012-06-02 14:15 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-19 04:49 - 2012-06-02 11:19 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-19 04:49 - 2012-06-02 11:15 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-14 08:15 - 2012-06-14 08:15 - 00001783 ____A C:\Users\Public\Desktop\iTunes.lnk
2012-06-14 08:15 - 2012-06-14 08:15 - 00000000 ____D C:\Program Files\iTunes
2012-06-14 08:15 - 2012-06-14 08:15 - 00000000 ____D C:\Program Files\iPod
2012-06-14 08:15 - 2012-06-14 08:15 - 00000000 ____D C:\Program Files (x86)\iTunes
2012-06-13 12:16 - 2012-05-17 18:47 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-06-13 12:16 - 2012-05-17 18:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-06-13 12:16 - 2012-05-17 18:06 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-06-13 12:16 - 2012-05-17 17:59 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-06-13 12:16 - 2012-05-17 17:59 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-06-13 12:16 - 2012-05-17 17:58 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-06-13 12:16 - 2012-05-17 17:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-06-13 12:16 - 2012-05-17 17:56 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-06-13 12:16 - 2012-05-17 17:55 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-06-13 12:16 - 2012-05-17 17:55 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-06-13 12:16 - 2012-05-17 17:54 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-06-13 12:16 - 2012-05-17 17:51 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-06-13 12:16 - 2012-05-17 17:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-06-13 12:16 - 2012-05-17 17:47 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-06-13 12:16 - 2012-05-17 15:11 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-06-13 12:16 - 2012-05-17 14:48 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-06-13 12:16 - 2012-05-17 14:45 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-06-13 12:16 - 2012-05-17 14:36 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-06-13 12:16 - 2012-05-17 14:35 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-06-13 12:16 - 2012-05-17 14:35 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-06-13 12:16 - 2012-05-17 14:33 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-06-13 12:16 - 2012-05-17 14:31 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-06-13 12:16 - 2012-05-17 14:29 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-06-13 12:16 - 2012-05-17 14:29 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-06-13 12:16 - 2012-05-17 14:27 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-06-13 12:16 - 2012-05-17 14:25 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-06-13 12:16 - 2012-05-17 14:24 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-06-13 12:16 - 2012-05-17 14:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-06-13 12:15 - 2012-05-14 17:32 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-06-13 12:15 - 2012-05-04 03:06 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-06-13 12:15 - 2012-05-04 03:00 - 00366592 ____A (Microsoft Corporation) C:\Windows\System32\qdvd.dll
2012-06-13 12:15 - 2012-05-04 02:03 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-06-13 12:15 - 2012-05-04 02:03 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-06-13 12:15 - 2012-05-04 01:59 - 00514560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2012-06-13 12:15 - 2012-04-30 21:40 - 00209920 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-06-13 12:15 - 2012-04-27 19:55 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-06-13 12:15 - 2012-04-25 21:41 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-06-13 12:15 - 2012-04-25 21:41 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-06-13 12:15 - 2012-04-25 21:34 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-06-13 12:15 - 2012-04-23 21:37 - 01462272 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-06-13 12:15 - 2012-04-23 21:37 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-06-13 12:15 - 2012-04-23 21:37 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-06-13 12:15 - 2012-04-23 20:36 - 01158656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-06-13 12:15 - 2012-04-23 20:36 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-06-13 12:15 - 2012-04-23 20:36 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-06-13 12:15 - 2012-04-07 04:31 - 03216384 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-06-13 12:15 - 2012-04-07 03:26 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2012-06-11 09:30 - 2012-06-11 09:30 - 00000000 ____D C:\Users\David\AppData\Local\Macromedia
2012-06-07 13:25 - 2012-06-07 13:25 - 00000000 ____D C:\Users\David\dwhelper
2012-06-05 07:18 - 2012-06-05 08:05 - 00096256 ____A C:\Users\David\Downloads\QC_tracker052012 (1).xls
============ 3 Months Modified Files ========================
2012-07-04 21:11 - 2012-07-04 21:11 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.E5D767F866C73F1E
2012-07-04 21:11 - 2012-07-04 21:11 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\sqmlpmht.sys
2012-07-04 21:11 - 2009-07-13 21:13 - 00729514 ____A C:\Windows\System32\PerfStringBackup.INI
2012-07-04 20:54 - 2009-07-13 20:51 - 00069768 ____A C:\Windows\setupact.log
2012-07-04 20:52 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-07-04 20:50 - 2012-07-04 20:50 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.07D5656F6256FC84
2012-07-04 20:47 - 2012-07-04 20:47 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B488A05635B97300
2012-07-04 20:44 - 2012-07-04 20:44 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2218E04F8EF619B9
2012-07-04 20:42 - 2012-05-05 13:37 - 00000908 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3843675497-3458838942-3677381282-1000UA.job
2012-07-04 20:41 - 2012-07-04 20:41 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.A8C8C8E716A7FB82
2012-07-04 20:38 - 2012-07-04 20:38 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.02445B1375EECC89
2012-07-04 20:35 - 2012-07-04 20:35 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2A612E3BA982B32E
2012-07-04 20:32 - 2012-07-04 20:32 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.280B2A677D10B8E1
2012-07-04 20:29 - 2012-07-04 20:29 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.70C60FE01BE93077
2012-07-04 20:26 - 2012-07-04 20:26 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.EBBEDE0C635BF242
2012-07-04 20:17 - 2012-07-04 20:17 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B3FA430444E36C30
2012-07-04 20:14 - 2012-07-04 20:14 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.770D91DF8D7EF47D
2012-07-04 20:11 - 2012-07-04 20:11 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.86B3421457B36A35
2012-07-04 20:07 - 2012-07-04 20:07 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.92D85FBBCB6477EC
2012-07-04 20:04 - 2009-07-13 20:45 - 00022096 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-07-04 20:04 - 2009-07-13 20:45 - 00022096 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-07-04 20:02 - 2012-05-04 15:59 - 01256012 ____A C:\Windows\WindowsUpdate.log
2012-07-04 20:01 - 2012-05-05 10:34 - 00742892 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-07-04 20:01 - 2012-05-05 10:34 - 00001945 ____A C:\Windows\epplauncher.mif
2012-07-04 19:59 - 2012-07-04 19:59 - 12621696 ____A (Microsoft Corporation) C:\Users\David\Downloads\mseinstall.exe
2012-07-04 18:42 - 2012-05-23 12:19 - 00000072 ____A C:\Users\Public\LMDebug.log
2012-07-03 13:42 - 2012-05-05 13:37 - 00000856 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3843675497-3458838942-3677381282-1000Core.job
2012-07-02 09:56 - 2012-05-05 10:31 - 00426184 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-07-02 09:56 - 2012-05-05 10:31 - 00070344 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-07-02 09:55 - 2012-07-04 13:42 - 00060448 __RSH (Jeantech) C:\Users\David\AppData\Roaming\svchost.exe
2012-07-02 09:55 - 2012-07-04 13:42 - 00060448 __RSH (Jeantech) C:\Users\David\AppData\Roaming\rundll32.exe
2012-07-01 11:43 - 2012-05-05 13:38 - 00002401 ____A C:\Users\David\Desktop\Google Chrome.lnk
2012-06-14 08:15 - 2012-06-14 08:15 - 00001783 ____A C:\Users\Public\Desktop\iTunes.lnk
2012-06-13 13:00 - 2009-07-13 20:45 - 00591464 ____A C:\Windows\System32\FNTCACHE.DAT
2012-06-13 12:20 - 2012-05-05 07:00 - 58957832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-06-05 08:05 - 2012-06-05 07:18 - 00096256 ____A C:\Users\David\Downloads\QC_tracker052012 (1).xls
2012-06-02 14:19 - 2012-06-19 04:49 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-02 14:19 - 2012-06-19 04:49 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-02 14:19 - 2012-06-19 04:49 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-02 14:19 - 2012-06-19 04:49 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-02 14:19 - 2012-06-19 04:49 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-02 14:15 - 2012-06-19 04:49 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-02 14:15 - 2012-06-19 04:49 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-02 12:22 - 2012-06-02 12:18 - 111063040 ____A (Relic Entertainment) C:\Users\David\Downloads\EN_100_140_Patch.exe
2012-06-02 11:19 - 2012-06-19 04:49 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-02 11:15 - 2012-06-19 04:49 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-05-24 19:19 - 2012-05-24 16:04 - 00089600 ____A C:\Users\David\Downloads\QC_tracker052012.xls
2012-05-23 10:57 - 2012-05-05 09:09 - 00168416 ____A C:\Users\David\AppData\Local\GDIPFONTCACHEV1.DAT
2012-05-22 14:54 - 2012-05-22 14:49 - 168454136 ____A (NVIDIA Corporation) C:\Users\David\Downloads\301.42-desktop-win7-winvista-64bit-english-whql.exe
2012-05-21 15:01 - 2012-05-21 15:01 - 00288348 ____A C:\Windows\msxml4-KB973688-enu.LOG
2012-05-20 08:14 - 2012-05-20 08:14 - 00289088 ____A C:\Windows\msxml4-KB954430-enu.LOG
2012-05-19 09:05 - 2012-05-19 09:05 - 00001004 ____A C:\Users\David\AppData\Roaming\ConvAPIPlugin.log
2012-05-19 09:05 - 2012-05-19 08:55 - 00228980 ____A C:\Windows\hpwins23.dat
2012-05-19 09:05 - 2012-05-19 08:55 - 00000903 ____A C:\Users\All Users\hpzinstall.log
2012-05-19 09:05 - 2009-07-13 18:34 - 00000513 ____A C:\Windows\win.ini
2012-05-19 08:58 - 2012-05-19 08:58 - 00001315 ____A C:\Users\Public\Desktop\HP Solution Center.lnk
2012-05-19 08:57 - 2012-05-19 08:57 - 00010584 ____A C:\Windows\DPINST.LOG
2012-05-19 08:52 - 2010-11-20 19:47 - 00015928 ____A C:\Windows\PFRO.log
2012-05-18 23:31 - 2012-05-18 23:31 - 00000983 ____A C:\Users\Public\Desktop\Winamp.lnk
2012-05-18 15:36 - 2012-05-18 15:26 - 348640976 ____A C:\Users\David\Downloads\OJ6500vE709_Full_14.exe
2012-05-18 10:03 - 2012-05-18 10:02 - 18737618 ____A C:\Users\David\Downloads\TOJam_ImmortalCombat_FinalBuild.rar
2012-05-17 18:47 - 2012-06-13 12:16 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-05-17 18:16 - 2012-06-13 12:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-05-17 18:06 - 2012-06-13 12:16 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-05-17 17:59 - 2012-06-13 12:16 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-05-17 17:59 - 2012-06-13 12:16 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-05-17 17:58 - 2012-06-13 12:16 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-05-17 17:58 - 2012-06-13 12:16 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-05-17 17:56 - 2012-06-13 12:16 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-05-17 17:55 - 2012-06-13 12:16 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-05-17 17:55 - 2012-06-13 12:16 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-05-17 17:54 - 2012-06-13 12:16 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-05-17 17:51 - 2012-06-13 12:16 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-05-17 17:51 - 2012-06-13 12:16 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-05-17 17:47 - 2012-06-13 12:16 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-05-17 15:11 - 2012-06-13 12:16 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-05-17 14:48 - 2012-06-13 12:16 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-05-17 14:45 - 2012-06-13 12:16 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-05-17 14:36 - 2012-06-13 12:16 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-05-17 14:35 - 2012-06-13 12:16 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-05-17 14:35 - 2012-06-13 12:16 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-05-17 14:33 - 2012-06-13 12:16 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-05-17 14:31 - 2012-06-13 12:16 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-05-17 14:29 - 2012-06-13 12:16 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-05-17 14:29 - 2012-06-13 12:16 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-05-17 14:27 - 2012-06-13 12:16 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-05-17 14:25 - 2012-06-13 12:16 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-05-17 14:24 - 2012-06-13 12:16 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-05-17 14:20 - 2012-06-13 12:16 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-05-17 07:54 - 2012-05-17 07:54 - 00001845 ____A C:\Users\Public\Desktop\QuickTime Player.lnk
2012-05-16 22:03 - 2012-05-16 22:03 - 00000000 ___AH C:\Users\David\Documents\Default.rdp
2012-05-14 17:32 - 2012-06-13 12:15 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-05-11 15:20 - 2012-05-11 15:20 - 640699183 ____A C:\Windows\MEMORY.DMP
2012-05-11 15:20 - 2012-05-11 15:20 - 00330704 ____A C:\Windows\Minidump\051112-17409-01.dmp
2012-05-10 23:52 - 2012-05-10 23:52 - 02806495 ____A C:\Users\David\Downloads\tb_peach_1_3.zip
2012-05-10 23:51 - 2012-05-10 23:51 - 01885664 ____A C:\Users\David\Downloads\tb_toad_1_3.zip
2012-05-10 23:48 - 2012-05-10 23:48 - 01019936 ____A C:\Users\David\Downloads\tb_triforce_1_7.zip
2012-05-10 22:13 - 2012-05-10 22:13 - 00007597 ____A C:\Users\David\AppData\Local\Resmon.ResmonCfg
2012-05-10 21:48 - 2012-05-10 21:19 - 367584216 ____A (Cakewalk Music Software ) C:\Users\David\Downloads\ProducerX1cPatch.exe
2012-05-10 21:24 - 2012-05-10 21:20 - 129040024 ____A (Cakewalk Music Software ) C:\Users\David\Downloads\ProducerX1dPatch.exe
2012-05-10 17:13 - 2012-05-10 17:13 - 00120158 ____A C:\Users\David\Downloads\shell2vst.zip
2012-05-09 20:45 - 2012-05-09 20:45 - 00001066 ____A C:\Users\Public\Desktop\Dimension Pro x64.lnk
2012-05-09 20:15 - 2012-05-09 20:15 - 00001044 ____A C:\Users\Public\Desktop\Guitar Rig 4.lnk
2012-05-09 20:10 - 2012-05-09 20:10 - 00001908 ____A C:\Users\Public\Desktop\SONAR X1 Producer (x64).lnk
2012-05-09 19:10 - 2012-05-09 18:01 - 00001998 ____A C:\Users\Public\Desktop\Pro Tools M-Powered.lnk
2012-05-09 19:00 - 2012-05-09 18:59 - 56646656 ____A (PACE Anti-Piracy) C:\Users\David\Downloads\DriverSetup.exe
2012-05-09 18:57 - 2012-05-09 18:26 - 1104415574 ____A C:\Users\David\Downloads\Pro_Tools_MP_905_Updater_72829.zip
2012-05-09 18:44 - 2012-05-09 18:41 - 29347840 ____A (PACE Anti-Piracy) C:\Users\David\Downloads\iLokClientHelperSetup.exe
2012-05-09 18:20 - 2012-05-09 18:20 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_iLokDrvr_01007.Wdf
2012-05-09 17:14 - 2012-05-09 17:13 - 20918576 ____A (M-Audio) C:\Users\David\Downloads\Fast Track C600 Installer 1_0_1_Driver 5_10_0_6016.exe
2012-05-09 13:49 - 2012-05-09 13:49 - 00001954 ____A C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2012-05-09 13:48 - 2012-05-09 13:48 - 00283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2012-05-09 12:44 - 2012-05-09 12:44 - 00000728 ____A C:\Users\UpdatusUser\Desktop\Pegasus Mail.LNK
2012-05-09 12:44 - 2012-05-09 12:44 - 00000728 ____A C:\Users\David\Desktop\Pegasus Mail.LNK
2012-05-09 11:44 - 2012-05-09 11:44 - 01528184 ____A (Microsoft Corporation) C:\Users\David\Downloads\GenuineCheck.exe
2012-05-09 10:09 - 2012-05-09 10:08 - 14229744 ____A (DT Soft Ltd) C:\Users\David\Downloads\DTLite4454-0315.exe
2012-05-08 19:36 - 2012-05-05 14:27 - 00071206 ____A C:\Windows\DirectX.log
2012-05-07 11:40 - 2012-05-07 08:48 - 00466520 ____A (Creative Labs) C:\Windows\System32\wrap_oal.dll
2012-05-07 11:40 - 2012-05-07 08:48 - 00445016 ____A (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2012-05-07 11:40 - 2012-05-07 08:48 - 00123480 ____A (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\System32\OpenAL32.dll
2012-05-07 11:40 - 2012-05-07 08:48 - 00109144 ____A (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2012-05-07 11:40 - 2012-05-07 08:47 - 00001063 ____A C:\Windows\NLSDownlevelMapping.log
2012-05-07 11:39 - 2012-05-07 08:44 - 00000078 __RAH C:\Windows\ctfile.rfc
2012-05-05 20:13 - 2012-05-05 20:13 - 00001720 ____A C:\Users\Public\Desktop\Play League of Legends.lnk
2012-05-05 16:22 - 2012-05-05 16:22 - 00001921 ____A C:\Users\Public\Desktop\World of Goo.lnk
2012-05-05 15:55 - 2012-05-05 15:55 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_point64_01009.Wdf
2012-05-05 15:46 - 2012-05-05 15:46 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_dc3d_01009.Wdf
2012-05-05 14:49 - 2012-05-05 15:40 - 00002951 ____A C:\Users\David\Desktop\Microsoft Excel 2010.lnk
2012-05-05 14:49 - 2012-05-05 15:39 - 00003021 ____A C:\Users\David\Desktop\Microsoft Word 2010.lnk
2012-05-05 14:32 - 2012-05-05 14:32 - 00000020 ____A C:\Windows\`øœ
2012-05-05 14:23 - 2012-05-05 14:23 - 00000947 ____A C:\Users\Public\Desktop\µTorrent.lnk
2012-05-05 14:20 - 2012-05-05 14:20 - 00002515 ____A C:\Users\Public\Desktop\Skype.lnk
2012-05-05 14:17 - 2012-05-05 14:17 - 00001317 ____A C:\Users\Public\Desktop\Plants vs. Zombies.lnk
2012-05-05 14:09 - 2012-05-05 14:09 - 00001204 ____A C:\Users\Public\Desktop\PDFArchitect.lnk
2012-05-05 14:09 - 2012-05-05 14:09 - 00001035 ____A C:\Users\Public\Desktop\PDFCreator.lnk
2012-05-05 14:02 - 2012-05-05 14:02 - 00001130 ____A C:\Users\Public\Desktop\Foxit Reader 5.1.lnk
2012-05-05 14:01 - 2012-05-05 14:01 - 00001039 ____A C:\Users\David\Desktop\Dropbox.lnk
2012-05-05 13:59 - 2012-05-05 13:59 - 00001107 ____A C:\Users\Public\Desktop\And Yet It Moves.lnk
2012-05-05 13:57 - 2012-05-05 13:57 - 00000221 ____A C:\Users\David\Desktop\Sanctum.url
2012-05-05 13:55 - 2012-05-05 13:55 - 00000219 ____A C:\Users\David\Desktop\Portal.url
2012-05-05 13:49 - 2012-05-05 13:49 - 00000917 ____A C:\Users\Public\Desktop\Steam.lnk
2012-05-05 13:37 - 2012-05-05 13:37 - 00001134 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk
2012-05-05 13:21 - 2012-05-05 13:21 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_lgSSQVGA_01_00_00.Wdf
2012-05-05 13:21 - 2012-05-05 13:21 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_lgSSBW_01_00_00.Wdf
2012-05-05 10:34 - 2012-05-05 10:34 - 00001915 ____A C:\Users\Public\Desktop\Microsoft Security Essentials.lnk
2012-05-05 10:33 - 2012-05-05 10:33 - 00476960 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\npdeployJava1.dll
2012-05-05 10:33 - 2012-05-05 10:33 - 00472864 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\deployJava1.dll
2012-05-05 10:33 - 2012-05-05 10:33 - 00157472 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaws.exe
2012-05-05 10:33 - 2012-05-05 10:33 - 00149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaw.exe
2012-05-05 10:33 - 2012-05-05 10:33 - 00149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe
2012-05-05 09:37 - 2012-05-05 09:37 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2012-05-05 08:44 - 2012-05-05 08:44 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2012-05-05 08:38 - 2012-05-05 08:38 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xhcdrv_01009.Wdf
2012-05-05 08:38 - 2012-05-05 08:38 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_ViaHub3_01009.Wdf
2012-05-05 08:28 - 2012-05-05 08:28 - 00001206 ____A C:\Users\Public\Desktop\HD VDeck.lnk
2012-05-05 07:04 - 2012-05-05 07:02 - 00003397 ____A C:\Windows\IE9_main.log
2012-05-05 07:03 - 2012-05-05 07:03 - 03695416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2012-05-05 07:03 - 2012-05-05 07:03 - 03695416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat
2012-05-05 07:03 - 2012-05-05 07:03 - 00697344 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00603648 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00580608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00534528 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00452608 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00448512 ____A (Microsoft Corporation) C:\Windows\System32\html.iec
2012-05-05 07:03 - 2012-05-05 07:03 - 00434176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00403248 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00367104 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2012-05-05 07:03 - 2012-05-05 07:03 - 00353792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00353584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00282112 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00267776 ____A (Microsoft Corporation) C:\Windows\System32\ieaksie.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00249344 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00227840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00223232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00222208 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00203776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00165888 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00163840 ____A (Microsoft Corporation) C:\Windows\System32\ieakui.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00162304 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00161792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00160256 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00160256 ____A (Microsoft Corporation) C:\Windows\System32\ieakeng.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00152064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00145920 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00135168 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00130560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00123392 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00118784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00114176 ____A (Microsoft Corporation) C:\Windows\System32\admparse.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00111616 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00103936 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00101888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00091648 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00086528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00082432 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00078848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00076800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00076800 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx
2012-05-05 07:03 - 2012-05-05 07:03 - 00074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00074240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00066048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00065024 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00063488 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2012-05-05 07:03 - 2012-05-05 07:03 - 00055296 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00054272 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00049664 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00041472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00035840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00031744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00023552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00012288 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00010752 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2012-05-05 06:40 - 2012-05-05 06:40 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2012-05-04 19:54 - 2009-07-13 21:38 - 00025600 __ASH C:\Windows\System32\config\BCD-Template.LOG
2012-05-04 19:54 - 2009-07-13 21:32 - 00028672 ____A C:\Windows\System32\config\BCD-Template
2012-05-04 18:57 - 2009-07-13 21:01 - 00041450 ____A C:\Windows\SysWOW64\license.rtf
2012-05-04 18:57 - 2009-07-13 21:01 - 00041450 ____A C:\Windows\System32\license.rtf
2012-05-04 18:56 - 2012-05-04 18:56 - 00001355 ____A C:\Windows\TSSysprep.log
2012-05-04 18:56 - 2009-07-13 20:46 - 00002790 ____A C:\Windows\DtcInstall.log
2012-05-04 15:59 - 2012-05-04 15:59 - 00000020 ___SH C:\Users\David\ntuser.ini
2012-05-04 03:06 - 2012-06-13 12:15 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-05-04 03:00 - 2012-06-13 12:15 - 00366592 ____A (Microsoft Corporation) C:\Windows\System32\qdvd.dll
2012-05-04 02:03 - 2012-06-13 12:15 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-05-04 02:03 - 2012-06-13 12:15 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-05-04 01:59 - 2012-06-13 12:15 - 00514560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2012-04-30 21:40 - 2012-06-13 12:15 - 00209920 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-04-30 13:15 - 2012-05-05 05:58 - 01287528 ____A (Microsoft Corporation) C:\Users\David\Downloads\wlsetup-web.exe
2012-04-30 12:31 - 2012-05-05 05:58 - 11766024 ____A (EASEUS ) C:\Users\David\Downloads\epm.exe
2012-04-30 10:42 - 2012-05-05 05:58 - 04832923 ____A ( ) C:\Users\David\Downloads\IZArc4.1.6.exe
2012-04-30 10:40 - 2012-05-05 05:58 - 00879984 ____A (BitTorrent, Inc.) C:\Users\David\Downloads\uTorrent.exe
2012-04-30 09:25 - 2012-05-05 05:58 - 12327040 ____A (Nullsoft, Inc.) C:\Users\David\Downloads\winamp5623_full_emusic-7plus_en-us.exe
2012-04-30 08:26 - 2012-05-05 05:58 - 02320896 ____A C:\Users\David\Downloads\LeagueofLegends.exe
2012-04-30 08:20 - 2012-05-05 05:58 - 12939448 ____A C:\Users\David\Downloads\w32-463.exe
2012-04-29 21:02 - 2012-05-05 05:58 - 18154528 ____A (Dropbox, Inc.) C:\Users\David\Downloads\Dropbox 1.4.0.exe
2012-04-29 20:54 - 2012-05-05 05:58 - 00591456 ____A (Unity Technologies ApS) C:\Users\David\Downloads\UnityWebPlayer.exe
2012-04-29 20:48 - 2012-05-05 05:58 - 01606656 ____A C:\Users\David\Downloads\SteamInstall.msi
2012-04-29 20:36 - 2012-05-05 05:58 - 76763504 ____A (Apple Inc.) C:\Users\David\Downloads\iTunes64Setup.exe
2012-04-29 20:31 - 2012-05-05 05:58 - 22259528 ____A C:\Users\David\Downloads\vlc-2.0.1-win32.exe
2012-04-29 20:11 - 2012-05-05 05:58 - 00944264 ____A (Skype Technologies S.A.) C:\Users\David\Downloads\SkypeSetup.exe
2012-04-29 20:10 - 2012-05-05 05:58 - 14524632 ____A (Foxit Corporation ) C:\Users\David\Downloads\FoxitReader514.0104_enu_Setup.exe
2012-04-29 20:05 - 2012-05-05 05:58 - 17825480 ____A (pdfforge GbR) C:\Users\David\Downloads\PDFCreator-1_3_2_setup.exe
2012-04-29 19:56 - 2012-05-05 05:58 - 02941072 ____A (Code Sector ) C:\Users\David\Downloads\teracopy.exe
2012-04-27 19:55 - 2012-06-13 12:15 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-04-27 06:28 - 2012-05-05 05:58 - 166448312 ____A (NVIDIA Corporation) C:\Users\David\Downloads\296.10-desktop-win7-winvista-64bit-english-whql.exe
2012-04-26 22:02 - 2012-04-26 22:02 - 00023640 ____A C:\Windows\System32\Drivers\cthdb.sys
2012-04-26 22:01 - 2012-04-26 22:01 - 01271384 ____A (Creative Technology Ltd) C:\Windows\System32\Drivers\cthda.sys
2012-04-26 21:57 - 2012-04-26 21:57 - 00572928 ____A (Creative Technology Ltd) C:\Windows\System32\CtHdaC64.dll
2012-04-26 21:57 - 2012-04-26 21:57 - 00112128 ____A (Creative Technology Ltd) C:\Windows\System32\CtHdaS64.exe
2012-04-26 21:56 - 2012-04-26 21:56 - 00469504 ____A (Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaCtl.dll
2012-04-26 21:56 - 2012-04-26 21:56 - 00105472 ____A (Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaSvc.exe
2012-04-26 21:55 - 2012-04-26 21:55 - 00024581 ____A C:\Windows\System32\CtHda.ini
2012-04-25 21:41 - 2012-06-13 12:15 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-04-25 21:41 - 2012-06-13 12:15 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-04-25 21:34 - 2012-06-13 12:15 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-04-23 21:37 - 2012-06-13 12:15 - 01462272 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-04-23 21:37 - 2012-06-13 12:15 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-04-23 21:37 - 2012-06-13 12:15 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-04-23 20:36 - 2012-06-13 12:15 - 01158656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-04-23 20:36 - 2012-06-13 12:15 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-04-23 20:36 - 2012-06-13 12:15 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-04-18 16:56 - 2012-04-18 16:56 - 00094208 ____A (Apple Inc.) C:\Windows\SysWOW64\QuickTimeVR.qtx
2012-04-18 16:56 - 2012-04-18 16:56 - 00069632 ____A (Apple Inc.) C:\Windows\SysWOW64\QuickTime.qts
2012-04-07 04:31 - 2012-06-13 12:15 - 03216384 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-04-07 03:26 - 2012-06-13 12:15 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
ZeroAccess:
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\@
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\L
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\n
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U\00000001.@
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U\800000cb.@
ZeroAccess:
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\@
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\L
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U\00000001.@
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U\800000cb.@
System is Windows 7, 64-bit.
I booted into System Recovery Options from the Advanced Boot Options and ran FRST64 from a USB thumb drive. First half of log follows (other half in the next post):
Scan result of Farbar Recovery Scan Tool Version: 04-07-2012 01
Ran by SYSTEM at 05-07-2012 01:18:38
Running from E:\
Windows 7 Professional Service Pack 1 (X64) OS Language: English(US)
The current controlset is ControlSet001
========================== Registry (Whitelisted) =============
HKLM\...\Run: [VIAxHCUtl] C:\VIA_XHCI\usb3Monitor.exe [331776 2011-07-12] (VIA Technologies, Inc.)
HKLM\...\Run: [Launch LgDeviceAgent] "C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe" [415816 2010-08-03] (Logitech Inc.)
HKLM\...\Run: [Launch LCDMon] "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe" [2412616 2010-08-03] (Logitech Inc.)
HKLM\...\Run: [Launch LGDCore] "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE [4725320 2010-08-03] (Logitech Inc.)
HKLM\...\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1271168 2012-03-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r [4892272 2011-07-31] (VIA)
HKLM-x32\...\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [291608 2012-01-27] (Intel Corporation)
HKLM-x32\...\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2012-01-18] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-04-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59280 2012-05-30] (Apple Inc.)
HKLM-x32\...\Run: [UpdReg] C:\Windows\UpdReg.EXE [90112 2000-05-10] (Creative Technology Ltd.)
HKLM-x32\...\Run: [Sound Blaster Recon3D PCIe Control Panel] "C:\Program Files (x86)\Creative\Sound Blaster Recon3D PCIe\Sound Blaster Recon3D PCIe Control Panel\SBRnPCIe.exe" /r [885760 2012-02-22] (Creative Technology Ltd)
HKLM-x32\...\Run: [DigidesignMMERefresh] C:\Program Files (x86)\Digidesign\Pro Tools\MMERefresh.exe [81920 2011-08-18] (Avid Technology, Inc.)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2012-04-18] (Apple Inc.)
HKLM-x32\...\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-09] (Hewlett-Packard)
HKLM-x32\...\Run: [] [x]
HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421776 2012-06-07] (Apple Inc.)
HKU\David\...\Run: [Google Update] "C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe" /c [116648 2012-05-05] (Google Inc.)
HKU\David\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3671872 2012-04-17] (DT Soft Ltd)
HKU\UpdatusUser\...\Run: [Google Update] "C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe" /c [116648 2012-05-05] (Google Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Startup: C:\Users\All Users\Start Menu\Programs\Startup\APC UPS Status.lnk
ShortcutTarget: APC UPS Status.lnk -> C:\Program Files (x86)\APC\APC PowerChute Personal Edition\Display.exe (American Power Conversion Corporation)
Startup: C:\Users\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
==================== Services (Whitelisted) ======
2 APC UPS Service; C:\Program Files (x86)\APC\APC PowerChute Personal Edition\mainserv.exe [176241 2004-07-21] (American Power Conversion Corporation)
2 CtHdaSvc; C:\Windows\sysWow64\CtHdaSvc.exe [105472 2012-04-26] (Creative Technology Ltd)
2 DigiRefresh; C:\Program Files (x86)\Digidesign\Pro Tools\MMERefresh.exe -s [81920 2011-08-18] (Avid Technology, Inc.)
3 digiSPTIService; "C:\Program Files (x86)\Digidesign\Pro Tools\digiSPTIService.exe" [159744 2011-08-18] (Avid Technology, Inc.)
2 FastTrackC600AudioDevMon; "C:\Program Files (x86)\M-Audio\Fast Track C600\AudioDevMon.exe" [2019632 2011-07-12] (M-Audio)
2 Intel(R) Capability Licensing Service Interface; "C:\Program Files\Intel\iCLS Client\HeciServer.exe" [607456 2011-12-08] (Intel(R) Corporation)
2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [12600 2012-03-26] (Microsoft Corporation)
2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" [2932224 2011-07-08] (PACE Anti-Piracy, Inc.)
2 UNS; "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" [363800 2011-12-16] (Intel Corporation)
2 VIAKaraokeService; C:\Windows\System32\viakaraokesrv.exe [27760 2011-07-12] (VIA Technologies, Inc.)
========================== Drivers (Whitelisted) =============
3 cthda; C:\Windows\System32\Drivers\cthda.sys [1271384 2012-04-26] (Creative Technology Ltd)
3 CtHDb; C:\Windows\System32\Drivers\CtHDb.sys [23640 2012-04-26] ()
1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [283200 2012-05-09] (DT Soft Ltd)
3 GOLDFINGER; C:\Windows\System32\DRIVERS\MAudioFastTrackC600.sys [486704 2011-07-12] (M-Audio)
3 GOLDFINGERDFU; C:\Windows\System32\DRIVERS\MAudioFastTrackC600_DFU.sys [30512 2011-07-12] (Avid)
3 iLokDrvr; C:\Windows\System32\Drivers\iLokDrvr.sys [25720 2010-11-03] ()
0 iusb3hcs; C:\Windows\System32\Drivers\iusb3hcs.sys [16152 2012-01-27] (Intel Corporation)
3 iusb3hub; C:\Windows\System32\Drivers\iusb3hub.sys [356120 2012-01-27] (Intel Corporation)
3 iusb3xhc; C:\Windows\System32\Drivers\iusb3xhc.sys [787736 2012-01-27] (Intel Corporation)
3 VUSB3HUB; C:\Windows\System32\DRIVERS\ViaHub3.sys [205312 2012-01-19] (VIA Technologies, Inc.)
3 xhcdrv; C:\Windows\System32\Drivers\xhcdrv.sys [254464 2012-01-19] (VIA Technologies, Inc.)
========================== NetSvcs (Whitelisted) ===========
============ One Month Created Files and Folders ==============
2012-07-05 01:18 - 2012-07-05 01:18 - 00000000 ____D C:\FRST
2012-07-04 21:11 - 2012-07-04 21:11 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.E5D767F866C73F1E
2012-07-04 21:11 - 2012-07-04 21:11 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\sqmlpmht.sys
2012-07-04 20:50 - 2012-07-04 20:50 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.07D5656F6256FC84
2012-07-04 20:47 - 2012-07-04 20:47 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B488A05635B97300
2012-07-04 20:44 - 2012-07-04 20:44 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2218E04F8EF619B9
2012-07-04 20:41 - 2012-07-04 20:41 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.A8C8C8E716A7FB82
2012-07-04 20:38 - 2012-07-04 20:38 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.02445B1375EECC89
2012-07-04 20:35 - 2012-07-04 20:35 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2A612E3BA982B32E
2012-07-04 20:32 - 2012-07-04 20:32 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.280B2A677D10B8E1
2012-07-04 20:29 - 2012-07-04 20:29 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.70C60FE01BE93077
2012-07-04 20:26 - 2012-07-04 20:26 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.EBBEDE0C635BF242
2012-07-04 20:17 - 2012-07-04 20:17 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B3FA430444E36C30
2012-07-04 20:14 - 2012-07-04 20:14 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.770D91DF8D7EF47D
2012-07-04 20:11 - 2012-07-04 20:11 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.86B3421457B36A35
2012-07-04 20:07 - 2012-07-04 20:07 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.92D85FBBCB6477EC
2012-07-04 20:01 - 2012-07-04 20:01 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-07-04 20:01 - 2012-07-04 20:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-07-04 19:59 - 2012-07-04 19:59 - 12621696 ____A (Microsoft Corporation) C:\Users\David\Downloads\mseinstall.exe
2012-07-04 13:42 - 2012-07-02 09:55 - 00060448 __RSH (Jeantech) C:\Users\David\AppData\Roaming\svchost.exe
2012-07-04 13:42 - 2012-07-02 09:55 - 00060448 __RSH (Jeantech) C:\Users\David\AppData\Roaming\rundll32.exe
2012-07-02 09:59 - 2012-07-02 09:59 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-19 04:49 - 2012-06-02 14:19 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-19 04:49 - 2012-06-02 14:19 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-19 04:49 - 2012-06-02 14:19 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-19 04:49 - 2012-06-02 14:19 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-19 04:49 - 2012-06-02 14:19 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-19 04:49 - 2012-06-02 14:15 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-19 04:49 - 2012-06-02 14:15 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-19 04:49 - 2012-06-02 11:19 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-19 04:49 - 2012-06-02 11:15 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-14 08:15 - 2012-06-14 08:15 - 00001783 ____A C:\Users\Public\Desktop\iTunes.lnk
2012-06-14 08:15 - 2012-06-14 08:15 - 00000000 ____D C:\Program Files\iTunes
2012-06-14 08:15 - 2012-06-14 08:15 - 00000000 ____D C:\Program Files\iPod
2012-06-14 08:15 - 2012-06-14 08:15 - 00000000 ____D C:\Program Files (x86)\iTunes
2012-06-13 12:16 - 2012-05-17 18:47 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-06-13 12:16 - 2012-05-17 18:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-06-13 12:16 - 2012-05-17 18:06 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-06-13 12:16 - 2012-05-17 17:59 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-06-13 12:16 - 2012-05-17 17:59 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-06-13 12:16 - 2012-05-17 17:58 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-06-13 12:16 - 2012-05-17 17:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-06-13 12:16 - 2012-05-17 17:56 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-06-13 12:16 - 2012-05-17 17:55 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-06-13 12:16 - 2012-05-17 17:55 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-06-13 12:16 - 2012-05-17 17:54 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-06-13 12:16 - 2012-05-17 17:51 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-06-13 12:16 - 2012-05-17 17:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-06-13 12:16 - 2012-05-17 17:47 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-06-13 12:16 - 2012-05-17 15:11 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-06-13 12:16 - 2012-05-17 14:48 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-06-13 12:16 - 2012-05-17 14:45 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-06-13 12:16 - 2012-05-17 14:36 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-06-13 12:16 - 2012-05-17 14:35 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-06-13 12:16 - 2012-05-17 14:35 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-06-13 12:16 - 2012-05-17 14:33 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-06-13 12:16 - 2012-05-17 14:31 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-06-13 12:16 - 2012-05-17 14:29 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-06-13 12:16 - 2012-05-17 14:29 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-06-13 12:16 - 2012-05-17 14:27 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-06-13 12:16 - 2012-05-17 14:25 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-06-13 12:16 - 2012-05-17 14:24 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-06-13 12:16 - 2012-05-17 14:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-06-13 12:15 - 2012-05-14 17:32 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-06-13 12:15 - 2012-05-04 03:06 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-06-13 12:15 - 2012-05-04 03:00 - 00366592 ____A (Microsoft Corporation) C:\Windows\System32\qdvd.dll
2012-06-13 12:15 - 2012-05-04 02:03 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-06-13 12:15 - 2012-05-04 02:03 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-06-13 12:15 - 2012-05-04 01:59 - 00514560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2012-06-13 12:15 - 2012-04-30 21:40 - 00209920 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-06-13 12:15 - 2012-04-27 19:55 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-06-13 12:15 - 2012-04-25 21:41 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-06-13 12:15 - 2012-04-25 21:41 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-06-13 12:15 - 2012-04-25 21:34 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-06-13 12:15 - 2012-04-23 21:37 - 01462272 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-06-13 12:15 - 2012-04-23 21:37 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-06-13 12:15 - 2012-04-23 21:37 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-06-13 12:15 - 2012-04-23 20:36 - 01158656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-06-13 12:15 - 2012-04-23 20:36 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-06-13 12:15 - 2012-04-23 20:36 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-06-13 12:15 - 2012-04-07 04:31 - 03216384 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-06-13 12:15 - 2012-04-07 03:26 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2012-06-11 09:30 - 2012-06-11 09:30 - 00000000 ____D C:\Users\David\AppData\Local\Macromedia
2012-06-07 13:25 - 2012-06-07 13:25 - 00000000 ____D C:\Users\David\dwhelper
2012-06-05 07:18 - 2012-06-05 08:05 - 00096256 ____A C:\Users\David\Downloads\QC_tracker052012 (1).xls
============ 3 Months Modified Files ========================
2012-07-04 21:11 - 2012-07-04 21:11 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.E5D767F866C73F1E
2012-07-04 21:11 - 2012-07-04 21:11 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\sqmlpmht.sys
2012-07-04 21:11 - 2009-07-13 21:13 - 00729514 ____A C:\Windows\System32\PerfStringBackup.INI
2012-07-04 20:54 - 2009-07-13 20:51 - 00069768 ____A C:\Windows\setupact.log
2012-07-04 20:52 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-07-04 20:50 - 2012-07-04 20:50 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.07D5656F6256FC84
2012-07-04 20:47 - 2012-07-04 20:47 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B488A05635B97300
2012-07-04 20:44 - 2012-07-04 20:44 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2218E04F8EF619B9
2012-07-04 20:42 - 2012-05-05 13:37 - 00000908 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3843675497-3458838942-3677381282-1000UA.job
2012-07-04 20:41 - 2012-07-04 20:41 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.A8C8C8E716A7FB82
2012-07-04 20:38 - 2012-07-04 20:38 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.02445B1375EECC89
2012-07-04 20:35 - 2012-07-04 20:35 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2A612E3BA982B32E
2012-07-04 20:32 - 2012-07-04 20:32 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.280B2A677D10B8E1
2012-07-04 20:29 - 2012-07-04 20:29 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.70C60FE01BE93077
2012-07-04 20:26 - 2012-07-04 20:26 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.EBBEDE0C635BF242
2012-07-04 20:17 - 2012-07-04 20:17 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B3FA430444E36C30
2012-07-04 20:14 - 2012-07-04 20:14 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.770D91DF8D7EF47D
2012-07-04 20:11 - 2012-07-04 20:11 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.86B3421457B36A35
2012-07-04 20:07 - 2012-07-04 20:07 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.92D85FBBCB6477EC
2012-07-04 20:04 - 2009-07-13 20:45 - 00022096 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-07-04 20:04 - 2009-07-13 20:45 - 00022096 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-07-04 20:02 - 2012-05-04 15:59 - 01256012 ____A C:\Windows\WindowsUpdate.log
2012-07-04 20:01 - 2012-05-05 10:34 - 00742892 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-07-04 20:01 - 2012-05-05 10:34 - 00001945 ____A C:\Windows\epplauncher.mif
2012-07-04 19:59 - 2012-07-04 19:59 - 12621696 ____A (Microsoft Corporation) C:\Users\David\Downloads\mseinstall.exe
2012-07-04 18:42 - 2012-05-23 12:19 - 00000072 ____A C:\Users\Public\LMDebug.log
2012-07-03 13:42 - 2012-05-05 13:37 - 00000856 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3843675497-3458838942-3677381282-1000Core.job
2012-07-02 09:56 - 2012-05-05 10:31 - 00426184 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-07-02 09:56 - 2012-05-05 10:31 - 00070344 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-07-02 09:55 - 2012-07-04 13:42 - 00060448 __RSH (Jeantech) C:\Users\David\AppData\Roaming\svchost.exe
2012-07-02 09:55 - 2012-07-04 13:42 - 00060448 __RSH (Jeantech) C:\Users\David\AppData\Roaming\rundll32.exe
2012-07-01 11:43 - 2012-05-05 13:38 - 00002401 ____A C:\Users\David\Desktop\Google Chrome.lnk
2012-06-14 08:15 - 2012-06-14 08:15 - 00001783 ____A C:\Users\Public\Desktop\iTunes.lnk
2012-06-13 13:00 - 2009-07-13 20:45 - 00591464 ____A C:\Windows\System32\FNTCACHE.DAT
2012-06-13 12:20 - 2012-05-05 07:00 - 58957832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-06-05 08:05 - 2012-06-05 07:18 - 00096256 ____A C:\Users\David\Downloads\QC_tracker052012 (1).xls
2012-06-02 14:19 - 2012-06-19 04:49 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-02 14:19 - 2012-06-19 04:49 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-02 14:19 - 2012-06-19 04:49 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-02 14:19 - 2012-06-19 04:49 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-02 14:19 - 2012-06-19 04:49 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-02 14:15 - 2012-06-19 04:49 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-02 14:15 - 2012-06-19 04:49 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-02 12:22 - 2012-06-02 12:18 - 111063040 ____A (Relic Entertainment) C:\Users\David\Downloads\EN_100_140_Patch.exe
2012-06-02 11:19 - 2012-06-19 04:49 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-02 11:15 - 2012-06-19 04:49 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-05-24 19:19 - 2012-05-24 16:04 - 00089600 ____A C:\Users\David\Downloads\QC_tracker052012.xls
2012-05-23 10:57 - 2012-05-05 09:09 - 00168416 ____A C:\Users\David\AppData\Local\GDIPFONTCACHEV1.DAT
2012-05-22 14:54 - 2012-05-22 14:49 - 168454136 ____A (NVIDIA Corporation) C:\Users\David\Downloads\301.42-desktop-win7-winvista-64bit-english-whql.exe
2012-05-21 15:01 - 2012-05-21 15:01 - 00288348 ____A C:\Windows\msxml4-KB973688-enu.LOG
2012-05-20 08:14 - 2012-05-20 08:14 - 00289088 ____A C:\Windows\msxml4-KB954430-enu.LOG
2012-05-19 09:05 - 2012-05-19 09:05 - 00001004 ____A C:\Users\David\AppData\Roaming\ConvAPIPlugin.log
2012-05-19 09:05 - 2012-05-19 08:55 - 00228980 ____A C:\Windows\hpwins23.dat
2012-05-19 09:05 - 2012-05-19 08:55 - 00000903 ____A C:\Users\All Users\hpzinstall.log
2012-05-19 09:05 - 2009-07-13 18:34 - 00000513 ____A C:\Windows\win.ini
2012-05-19 08:58 - 2012-05-19 08:58 - 00001315 ____A C:\Users\Public\Desktop\HP Solution Center.lnk
2012-05-19 08:57 - 2012-05-19 08:57 - 00010584 ____A C:\Windows\DPINST.LOG
2012-05-19 08:52 - 2010-11-20 19:47 - 00015928 ____A C:\Windows\PFRO.log
2012-05-18 23:31 - 2012-05-18 23:31 - 00000983 ____A C:\Users\Public\Desktop\Winamp.lnk
2012-05-18 15:36 - 2012-05-18 15:26 - 348640976 ____A C:\Users\David\Downloads\OJ6500vE709_Full_14.exe
2012-05-18 10:03 - 2012-05-18 10:02 - 18737618 ____A C:\Users\David\Downloads\TOJam_ImmortalCombat_FinalBuild.rar
2012-05-17 18:47 - 2012-06-13 12:16 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-05-17 18:16 - 2012-06-13 12:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-05-17 18:06 - 2012-06-13 12:16 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-05-17 17:59 - 2012-06-13 12:16 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-05-17 17:59 - 2012-06-13 12:16 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-05-17 17:58 - 2012-06-13 12:16 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-05-17 17:58 - 2012-06-13 12:16 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-05-17 17:56 - 2012-06-13 12:16 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-05-17 17:55 - 2012-06-13 12:16 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-05-17 17:55 - 2012-06-13 12:16 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-05-17 17:54 - 2012-06-13 12:16 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-05-17 17:51 - 2012-06-13 12:16 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-05-17 17:51 - 2012-06-13 12:16 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-05-17 17:47 - 2012-06-13 12:16 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-05-17 15:11 - 2012-06-13 12:16 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-05-17 14:48 - 2012-06-13 12:16 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-05-17 14:45 - 2012-06-13 12:16 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-05-17 14:36 - 2012-06-13 12:16 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-05-17 14:35 - 2012-06-13 12:16 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-05-17 14:35 - 2012-06-13 12:16 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-05-17 14:33 - 2012-06-13 12:16 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-05-17 14:31 - 2012-06-13 12:16 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-05-17 14:29 - 2012-06-13 12:16 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-05-17 14:29 - 2012-06-13 12:16 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-05-17 14:27 - 2012-06-13 12:16 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-05-17 14:25 - 2012-06-13 12:16 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-05-17 14:24 - 2012-06-13 12:16 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-05-17 14:20 - 2012-06-13 12:16 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-05-17 07:54 - 2012-05-17 07:54 - 00001845 ____A C:\Users\Public\Desktop\QuickTime Player.lnk
2012-05-16 22:03 - 2012-05-16 22:03 - 00000000 ___AH C:\Users\David\Documents\Default.rdp
2012-05-14 17:32 - 2012-06-13 12:15 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-05-11 15:20 - 2012-05-11 15:20 - 640699183 ____A C:\Windows\MEMORY.DMP
2012-05-11 15:20 - 2012-05-11 15:20 - 00330704 ____A C:\Windows\Minidump\051112-17409-01.dmp
2012-05-10 23:52 - 2012-05-10 23:52 - 02806495 ____A C:\Users\David\Downloads\tb_peach_1_3.zip
2012-05-10 23:51 - 2012-05-10 23:51 - 01885664 ____A C:\Users\David\Downloads\tb_toad_1_3.zip
2012-05-10 23:48 - 2012-05-10 23:48 - 01019936 ____A C:\Users\David\Downloads\tb_triforce_1_7.zip
2012-05-10 22:13 - 2012-05-10 22:13 - 00007597 ____A C:\Users\David\AppData\Local\Resmon.ResmonCfg
2012-05-10 21:48 - 2012-05-10 21:19 - 367584216 ____A (Cakewalk Music Software ) C:\Users\David\Downloads\ProducerX1cPatch.exe
2012-05-10 21:24 - 2012-05-10 21:20 - 129040024 ____A (Cakewalk Music Software ) C:\Users\David\Downloads\ProducerX1dPatch.exe
2012-05-10 17:13 - 2012-05-10 17:13 - 00120158 ____A C:\Users\David\Downloads\shell2vst.zip
2012-05-09 20:45 - 2012-05-09 20:45 - 00001066 ____A C:\Users\Public\Desktop\Dimension Pro x64.lnk
2012-05-09 20:15 - 2012-05-09 20:15 - 00001044 ____A C:\Users\Public\Desktop\Guitar Rig 4.lnk
2012-05-09 20:10 - 2012-05-09 20:10 - 00001908 ____A C:\Users\Public\Desktop\SONAR X1 Producer (x64).lnk
2012-05-09 19:10 - 2012-05-09 18:01 - 00001998 ____A C:\Users\Public\Desktop\Pro Tools M-Powered.lnk
2012-05-09 19:00 - 2012-05-09 18:59 - 56646656 ____A (PACE Anti-Piracy) C:\Users\David\Downloads\DriverSetup.exe
2012-05-09 18:57 - 2012-05-09 18:26 - 1104415574 ____A C:\Users\David\Downloads\Pro_Tools_MP_905_Updater_72829.zip
2012-05-09 18:44 - 2012-05-09 18:41 - 29347840 ____A (PACE Anti-Piracy) C:\Users\David\Downloads\iLokClientHelperSetup.exe
2012-05-09 18:20 - 2012-05-09 18:20 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_iLokDrvr_01007.Wdf
2012-05-09 17:14 - 2012-05-09 17:13 - 20918576 ____A (M-Audio) C:\Users\David\Downloads\Fast Track C600 Installer 1_0_1_Driver 5_10_0_6016.exe
2012-05-09 13:49 - 2012-05-09 13:49 - 00001954 ____A C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2012-05-09 13:48 - 2012-05-09 13:48 - 00283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2012-05-09 12:44 - 2012-05-09 12:44 - 00000728 ____A C:\Users\UpdatusUser\Desktop\Pegasus Mail.LNK
2012-05-09 12:44 - 2012-05-09 12:44 - 00000728 ____A C:\Users\David\Desktop\Pegasus Mail.LNK
2012-05-09 11:44 - 2012-05-09 11:44 - 01528184 ____A (Microsoft Corporation) C:\Users\David\Downloads\GenuineCheck.exe
2012-05-09 10:09 - 2012-05-09 10:08 - 14229744 ____A (DT Soft Ltd) C:\Users\David\Downloads\DTLite4454-0315.exe
2012-05-08 19:36 - 2012-05-05 14:27 - 00071206 ____A C:\Windows\DirectX.log
2012-05-07 11:40 - 2012-05-07 08:48 - 00466520 ____A (Creative Labs) C:\Windows\System32\wrap_oal.dll
2012-05-07 11:40 - 2012-05-07 08:48 - 00445016 ____A (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2012-05-07 11:40 - 2012-05-07 08:48 - 00123480 ____A (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\System32\OpenAL32.dll
2012-05-07 11:40 - 2012-05-07 08:48 - 00109144 ____A (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2012-05-07 11:40 - 2012-05-07 08:47 - 00001063 ____A C:\Windows\NLSDownlevelMapping.log
2012-05-07 11:39 - 2012-05-07 08:44 - 00000078 __RAH C:\Windows\ctfile.rfc
2012-05-05 20:13 - 2012-05-05 20:13 - 00001720 ____A C:\Users\Public\Desktop\Play League of Legends.lnk
2012-05-05 16:22 - 2012-05-05 16:22 - 00001921 ____A C:\Users\Public\Desktop\World of Goo.lnk
2012-05-05 15:55 - 2012-05-05 15:55 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_point64_01009.Wdf
2012-05-05 15:46 - 2012-05-05 15:46 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_dc3d_01009.Wdf
2012-05-05 14:49 - 2012-05-05 15:40 - 00002951 ____A C:\Users\David\Desktop\Microsoft Excel 2010.lnk
2012-05-05 14:49 - 2012-05-05 15:39 - 00003021 ____A C:\Users\David\Desktop\Microsoft Word 2010.lnk
2012-05-05 14:32 - 2012-05-05 14:32 - 00000020 ____A C:\Windows\`øœ
2012-05-05 14:23 - 2012-05-05 14:23 - 00000947 ____A C:\Users\Public\Desktop\µTorrent.lnk
2012-05-05 14:20 - 2012-05-05 14:20 - 00002515 ____A C:\Users\Public\Desktop\Skype.lnk
2012-05-05 14:17 - 2012-05-05 14:17 - 00001317 ____A C:\Users\Public\Desktop\Plants vs. Zombies.lnk
2012-05-05 14:09 - 2012-05-05 14:09 - 00001204 ____A C:\Users\Public\Desktop\PDFArchitect.lnk
2012-05-05 14:09 - 2012-05-05 14:09 - 00001035 ____A C:\Users\Public\Desktop\PDFCreator.lnk
2012-05-05 14:02 - 2012-05-05 14:02 - 00001130 ____A C:\Users\Public\Desktop\Foxit Reader 5.1.lnk
2012-05-05 14:01 - 2012-05-05 14:01 - 00001039 ____A C:\Users\David\Desktop\Dropbox.lnk
2012-05-05 13:59 - 2012-05-05 13:59 - 00001107 ____A C:\Users\Public\Desktop\And Yet It Moves.lnk
2012-05-05 13:57 - 2012-05-05 13:57 - 00000221 ____A C:\Users\David\Desktop\Sanctum.url
2012-05-05 13:55 - 2012-05-05 13:55 - 00000219 ____A C:\Users\David\Desktop\Portal.url
2012-05-05 13:49 - 2012-05-05 13:49 - 00000917 ____A C:\Users\Public\Desktop\Steam.lnk
2012-05-05 13:37 - 2012-05-05 13:37 - 00001134 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk
2012-05-05 13:21 - 2012-05-05 13:21 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_lgSSQVGA_01_00_00.Wdf
2012-05-05 13:21 - 2012-05-05 13:21 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_lgSSBW_01_00_00.Wdf
2012-05-05 10:34 - 2012-05-05 10:34 - 00001915 ____A C:\Users\Public\Desktop\Microsoft Security Essentials.lnk
2012-05-05 10:33 - 2012-05-05 10:33 - 00476960 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\npdeployJava1.dll
2012-05-05 10:33 - 2012-05-05 10:33 - 00472864 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\deployJava1.dll
2012-05-05 10:33 - 2012-05-05 10:33 - 00157472 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaws.exe
2012-05-05 10:33 - 2012-05-05 10:33 - 00149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaw.exe
2012-05-05 10:33 - 2012-05-05 10:33 - 00149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe
2012-05-05 09:37 - 2012-05-05 09:37 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2012-05-05 08:44 - 2012-05-05 08:44 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2012-05-05 08:38 - 2012-05-05 08:38 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xhcdrv_01009.Wdf
2012-05-05 08:38 - 2012-05-05 08:38 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_ViaHub3_01009.Wdf
2012-05-05 08:28 - 2012-05-05 08:28 - 00001206 ____A C:\Users\Public\Desktop\HD VDeck.lnk
2012-05-05 07:04 - 2012-05-05 07:02 - 00003397 ____A C:\Windows\IE9_main.log
2012-05-05 07:03 - 2012-05-05 07:03 - 03695416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2012-05-05 07:03 - 2012-05-05 07:03 - 03695416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat
2012-05-05 07:03 - 2012-05-05 07:03 - 00697344 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00603648 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00580608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00534528 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00452608 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00448512 ____A (Microsoft Corporation) C:\Windows\System32\html.iec
2012-05-05 07:03 - 2012-05-05 07:03 - 00434176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00403248 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00367104 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2012-05-05 07:03 - 2012-05-05 07:03 - 00353792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00353584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00282112 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00267776 ____A (Microsoft Corporation) C:\Windows\System32\ieaksie.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00249344 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00227840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00223232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00222208 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00203776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00165888 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00163840 ____A (Microsoft Corporation) C:\Windows\System32\ieakui.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00162304 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00161792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00160256 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00160256 ____A (Microsoft Corporation) C:\Windows\System32\ieakeng.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00152064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00145920 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00135168 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00130560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00123392 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00118784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00114176 ____A (Microsoft Corporation) C:\Windows\System32\admparse.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00111616 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00103936 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00101888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00091648 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00086528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00082432 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00078848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00076800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00076800 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx
2012-05-05 07:03 - 2012-05-05 07:03 - 00074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00074240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00066048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00065024 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00063488 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2012-05-05 07:03 - 2012-05-05 07:03 - 00055296 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00054272 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00049664 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00041472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00035840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00031744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00023552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2012-05-05 07:03 - 2012-05-05 07:03 - 00012288 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2012-05-05 07:03 - 2012-05-05 07:03 - 00010752 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2012-05-05 06:40 - 2012-05-05 06:40 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2012-05-04 19:54 - 2009-07-13 21:38 - 00025600 __ASH C:\Windows\System32\config\BCD-Template.LOG
2012-05-04 19:54 - 2009-07-13 21:32 - 00028672 ____A C:\Windows\System32\config\BCD-Template
2012-05-04 18:57 - 2009-07-13 21:01 - 00041450 ____A C:\Windows\SysWOW64\license.rtf
2012-05-04 18:57 - 2009-07-13 21:01 - 00041450 ____A C:\Windows\System32\license.rtf
2012-05-04 18:56 - 2012-05-04 18:56 - 00001355 ____A C:\Windows\TSSysprep.log
2012-05-04 18:56 - 2009-07-13 20:46 - 00002790 ____A C:\Windows\DtcInstall.log
2012-05-04 15:59 - 2012-05-04 15:59 - 00000020 ___SH C:\Users\David\ntuser.ini
2012-05-04 03:06 - 2012-06-13 12:15 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-05-04 03:00 - 2012-06-13 12:15 - 00366592 ____A (Microsoft Corporation) C:\Windows\System32\qdvd.dll
2012-05-04 02:03 - 2012-06-13 12:15 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-05-04 02:03 - 2012-06-13 12:15 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-05-04 01:59 - 2012-06-13 12:15 - 00514560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2012-04-30 21:40 - 2012-06-13 12:15 - 00209920 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-04-30 13:15 - 2012-05-05 05:58 - 01287528 ____A (Microsoft Corporation) C:\Users\David\Downloads\wlsetup-web.exe
2012-04-30 12:31 - 2012-05-05 05:58 - 11766024 ____A (EASEUS ) C:\Users\David\Downloads\epm.exe
2012-04-30 10:42 - 2012-05-05 05:58 - 04832923 ____A ( ) C:\Users\David\Downloads\IZArc4.1.6.exe
2012-04-30 10:40 - 2012-05-05 05:58 - 00879984 ____A (BitTorrent, Inc.) C:\Users\David\Downloads\uTorrent.exe
2012-04-30 09:25 - 2012-05-05 05:58 - 12327040 ____A (Nullsoft, Inc.) C:\Users\David\Downloads\winamp5623_full_emusic-7plus_en-us.exe
2012-04-30 08:26 - 2012-05-05 05:58 - 02320896 ____A C:\Users\David\Downloads\LeagueofLegends.exe
2012-04-30 08:20 - 2012-05-05 05:58 - 12939448 ____A C:\Users\David\Downloads\w32-463.exe
2012-04-29 21:02 - 2012-05-05 05:58 - 18154528 ____A (Dropbox, Inc.) C:\Users\David\Downloads\Dropbox 1.4.0.exe
2012-04-29 20:54 - 2012-05-05 05:58 - 00591456 ____A (Unity Technologies ApS) C:\Users\David\Downloads\UnityWebPlayer.exe
2012-04-29 20:48 - 2012-05-05 05:58 - 01606656 ____A C:\Users\David\Downloads\SteamInstall.msi
2012-04-29 20:36 - 2012-05-05 05:58 - 76763504 ____A (Apple Inc.) C:\Users\David\Downloads\iTunes64Setup.exe
2012-04-29 20:31 - 2012-05-05 05:58 - 22259528 ____A C:\Users\David\Downloads\vlc-2.0.1-win32.exe
2012-04-29 20:11 - 2012-05-05 05:58 - 00944264 ____A (Skype Technologies S.A.) C:\Users\David\Downloads\SkypeSetup.exe
2012-04-29 20:10 - 2012-05-05 05:58 - 14524632 ____A (Foxit Corporation ) C:\Users\David\Downloads\FoxitReader514.0104_enu_Setup.exe
2012-04-29 20:05 - 2012-05-05 05:58 - 17825480 ____A (pdfforge GbR) C:\Users\David\Downloads\PDFCreator-1_3_2_setup.exe
2012-04-29 19:56 - 2012-05-05 05:58 - 02941072 ____A (Code Sector ) C:\Users\David\Downloads\teracopy.exe
2012-04-27 19:55 - 2012-06-13 12:15 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-04-27 06:28 - 2012-05-05 05:58 - 166448312 ____A (NVIDIA Corporation) C:\Users\David\Downloads\296.10-desktop-win7-winvista-64bit-english-whql.exe
2012-04-26 22:02 - 2012-04-26 22:02 - 00023640 ____A C:\Windows\System32\Drivers\cthdb.sys
2012-04-26 22:01 - 2012-04-26 22:01 - 01271384 ____A (Creative Technology Ltd) C:\Windows\System32\Drivers\cthda.sys
2012-04-26 21:57 - 2012-04-26 21:57 - 00572928 ____A (Creative Technology Ltd) C:\Windows\System32\CtHdaC64.dll
2012-04-26 21:57 - 2012-04-26 21:57 - 00112128 ____A (Creative Technology Ltd) C:\Windows\System32\CtHdaS64.exe
2012-04-26 21:56 - 2012-04-26 21:56 - 00469504 ____A (Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaCtl.dll
2012-04-26 21:56 - 2012-04-26 21:56 - 00105472 ____A (Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaSvc.exe
2012-04-26 21:55 - 2012-04-26 21:55 - 00024581 ____A C:\Windows\System32\CtHda.ini
2012-04-25 21:41 - 2012-06-13 12:15 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-04-25 21:41 - 2012-06-13 12:15 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-04-25 21:34 - 2012-06-13 12:15 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-04-23 21:37 - 2012-06-13 12:15 - 01462272 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-04-23 21:37 - 2012-06-13 12:15 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-04-23 21:37 - 2012-06-13 12:15 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-04-23 20:36 - 2012-06-13 12:15 - 01158656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-04-23 20:36 - 2012-06-13 12:15 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-04-23 20:36 - 2012-06-13 12:15 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-04-18 16:56 - 2012-04-18 16:56 - 00094208 ____A (Apple Inc.) C:\Windows\SysWOW64\QuickTimeVR.qtx
2012-04-18 16:56 - 2012-04-18 16:56 - 00069632 ____A (Apple Inc.) C:\Windows\SysWOW64\QuickTime.qts
2012-04-07 04:31 - 2012-06-13 12:15 - 03216384 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-04-07 03:26 - 2012-06-13 12:15 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
ZeroAccess:
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\@
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\L
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\n
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U\00000001.@
C:\Windows\Installer\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U\800000cb.@
ZeroAccess:
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\@
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\L
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U\00000001.@
C:\Users\David\AppData\Local\{97ec65b2-bcc8-85df-fd1a-09236495653b}\U\800000cb.@