Once more unto the sirefef

Solved
By BobPage
Jun 21, 2012
  1. I'm having trouble with sirefef.Y and sirefef.W; both are detected by MSE and cause my PC to shut down after a minute if any action is taken to remove them. I shall paste the logs in order of operation (GMER produced no log). Thanks a bunch.

    Malwarebytes Anti-Malware 1.61.0.1400
    www.malwarebytes.org

    Database version: v2012.06.21.10

    Windows 7 x64 NTFS
    Internet Explorer 9.0.8112.16421
    Sam :: SAM-PC [administrator]

    21/06/2012 21:55:05
    mbam-log-2012-06-21 (21-55-05).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 207180
    Time elapsed: 5 minute(s), 43 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 2
    C:\Users\Sam\Downloads\SoftonicDownloader_for_m-u-g-e-n.exe (PUP.ToolbarDownloader) -> Quarantined and deleted successfully.
    C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U\800000cb.@ (Rootkit.0Access) -> Quarantined and deleted successfully.

    (end)
  2. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    .
    DDS (Ver_2011-08-26.01) - NTFSAMD64
    Internet Explorer: 9.0.8112.16421
    Run by Sam at 22:11:43 on 2012-06-21
    Microsoft Windows 7 Ultimate 6.1.7600.0.932.81.1033.18.6142.4595 [GMT 1:00]
    .
    AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
    .
    ============== Running Processes ===============
    .
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\svchost.exe -k RPCSS
    C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
    C:\Windows\system32\atiesrxx.exe
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\system32\atieclxx.exe
    C:\Windows\System32\spoolsv.exe
    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
    C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
    C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
    C:\Windows\SysWOW64\PnkBstrA.exe
    C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
    C:\Windows\system32\taskhost.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Windows\system32\svchost.exe -k imgsvc
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Program Files\Eraser\Eraser.exe
    C:\Program Files\Microsoft IntelliPoint\ipoint.exe
    C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
    C:\Program Files\Microsoft Security Client\msseces.exe
    C:\Users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe
    C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Program Files\Rainmeter\Rainmeter.exe
    C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
    C:\Program Files\Logitech\SetPointG\SetPointII.exe
    C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    C:\Program Files (x86)\DisplayFusion\AppHookx86.exe
    C:\Windows\servicing\TrustedInstaller.exe
    C:\Windows\system32\wuauclt.exe
    C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Windows\SysWOW64\cmd.exe
    C:\Windows\system32\conhost.exe
    C:\Windows\SysWOW64\cscript.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uInternet Settings,ProxyOverride = *.local
    mWinlogon: Userinit=userinit.exe,
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
    BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    uRun: [Google Update] "C:\Users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe" /c
    uRun: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
    uRun: [PeerBlock] C:\Program Files\PeerBlock\peerblock.exe
    uRun: [DisplayFusion] "C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe"
    uRun: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe
    uRun: [uTorrent] "C:\Users\Sam\Downloads\uTorrent.exe" /MINIMIZED
    uRun: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
    mRun: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
    mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
    mRun: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot
    StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\RAINME~1.LNK - C:\Program Files\Rainmeter\Rainmeter.exe
    mPolicies-explorer: NoActiveDesktop = 1 (0x1)
    mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
    mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
    mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
    mPolicies-system: EnableLUA = 0 (0x0)
    mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
    mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
    IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    LSP: %SystemRoot%\system32\PrxerDrv.dll
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab
    TCP: Interfaces\{A7405511-9D97-4A52-B803-3564DBEAB194} : DhcpNameServer = 192.168.1.1
    TCP: Interfaces\{A7405511-9D97-4A52-B803-3564DBEAB194}\E4564776561627 : DhcpNameServer = 192.168.1.1
    Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO-X64: AcroIEHelperStub - No File
    BHO-X64: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
    BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    BHO-X64: SkypeIEPluginBHO - No File
    BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    mRun-x64: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
    mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    mRun-x64: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
    mRun-x64: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot
    .
    ============= SERVICES / DRIVERS ===============
    .
    R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\system32\DRIVERS\dtsoftbus01.sys --> C:\Windows\system32\DRIVERS\dtsoftbus01.sys [?]
    R1 MpFilter;Microsoft Malware Protection Driver;C:\Windows\system32\DRIVERS\MpFilter.sys --> C:\Windows\system32\DRIVERS\MpFilter.sys [?]
    R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
    R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-1-3 63928]
    R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
    R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-2-28 2343816]
    R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2012-1-4 8704]
    R2 RadeonPro Support Service;RadeonPro Support Service;C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe [2012-1-13 12800]
    R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]
    R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
    R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\system32\drivers\AtihdW76.sys --> C:\Windows\system32\drivers\AtihdW76.sys [?]
    R3 netr28x;Ralink 802.11n Extensible Wireless Driver;C:\Windows\system32\DRIVERS\netr28x.sys --> C:\Windows\system32\DRIVERS\netr28x.sys [?]
    R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
    S3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;C:\Windows\system32\DRIVERS\MijXfilt.sys --> C:\Windows\system32\DRIVERS\MijXfilt.sys [?]
    S3 MpNWMon;Microsoft Malware Protection Network Driver;C:\Windows\system32\DRIVERS\MpNWMon.sys --> C:\Windows\system32\DRIVERS\MpNWMon.sys [?]
    S3 NisDrv;Microsoft Network Inspection System;C:\Windows\system32\DRIVERS\NisDrvWFP.sys --> C:\Windows\system32\DRIVERS\NisDrvWFP.sys [?]
    S3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-4-27 288272]
    S3 pbfilter;pbfilter;C:\Program Files\PeerBlock\pbfilter.sys [2011-12-10 24176]
    S3 SwitchBoard;SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
    S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
    .
    =============== Created Last 30 ================
    .
    2012-06-21 21:01:29--------d-----w-C:\Program Files (x86)\Microsoft Security Client
    2012-06-21 20:56:40--------d-----w-C:\Windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
    2012-06-21 20:54:27--------d-----w-C:\Users\Sam\AppData\Roaming\Malwarebytes
    2012-06-21 20:54:02--------d-----w-C:\ProgramData\Malwarebytes
    2012-06-21 20:54:0124904----a-w-C:\Windows\System32\drivers\mbam.sys
    2012-06-21 20:54:01--------d-----w-C:\Program Files (x86)\Malwarebytes' Anti-Malware
    2012-06-19 10:45:00--------d-sh--w-C:\found.000
    2012-06-19 01:50:2975264----a-w-C:\Windows\SysWow64\unacev2.dll
    2012-06-19 01:50:29153088----a-w-C:\Windows\SysWow64\UNRAR3.dll
    2012-06-19 01:50:28--------d-----w-C:\Users\Sam\AppData\Roaming\Simply Super Software
    2012-06-19 01:50:28--------d-----w-C:\ProgramData\Simply Super Software
    2012-06-19 01:50:28--------d-----w-C:\Program Files (x86)\Trojan Remover
    2012-06-18 18:52:59--------d-----w-C:\Program Files\Microsoft Security Client
    2012-06-18 11:29:02--------d-----w-C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
    2012-06-16 12:07:28--------d-----w-C:\Program Files\Web Assistant
    2012-06-14 21:07:06--------d-----w-C:\Users\Sam\AppData\Roaming\Rainmeter
    2012-06-14 21:07:04--------d-----w-C:\Program Files\Rainmeter
    2012-06-14 14:29:44--------d-----w-C:\FlvGrabber
    2012-06-14 14:25:22--------d-sh--w-C:\Windows\System32\%APPDATA%
    2012-06-14 14:20:28--------d-----w-C:\Program Files (x86)\WinPcap
    2012-06-13 22:52:039216----a-w-C:\Windows\System32\rdrmemptylst.exe
    2012-06-13 22:52:0376288----a-w-C:\Windows\System32\rdpwsx.dll
    2012-06-13 22:52:03149504----a-w-C:\Windows\System32\rdpcorekmts.dll
    2012-06-13 22:52:00208896----a-w-C:\Windows\System32\profsvc.dll
    2012-06-09 20:30:48--------d-----w-C:\Users\Sam\AppData\Local\ElevatedDiagnostics
    2012-06-07 22:58:33--------d-----w-C:\Users\Sam\AppData\Local\CAPCOM
    2012-06-07 22:48:09--------d-----w-C:\Program Files (x86)\CAPCOM
    2012-06-06 14:04:18--------d-----w-C:\mugen
    2012-06-06 13:52:02--------d-----w-C:\ProgramData\VirtuallTek
    2012-06-06 13:52:02--------d-----w-C:\Program Files (x86)\VirtuallTek
    2012-06-05 23:06:4840960----a-r-C:\Users\Sam\AppData\Roaming\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\NewShortcut1_9559F7CA5E344237A2D9D856464AD727.exe
    2012-06-05 23:06:4840960----a-r-C:\Users\Sam\AppData\Roaming\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\ARPPRODUCTICON.exe
    2012-06-05 23:06:46--------d-----w-C:\Program Files (x86)\Project64 1.6
    2012-06-03 00:46:30--------d--h--w-C:\Program Files (x86)\Common Files\EAInstaller
    2012-06-03 00:31:20--------d-----w-C:\Program Files (x86)\Battlefield 3
    2012-06-01 13:55:33--------d-----w-C:\Program Files (x86)\Black_Box
    2012-05-31 17:13:04--------d-----w-C:\Program Files (x86)\OMGWTFOTL
    2012-05-25 22:33:54--------d-----w-C:\Program Files (x86)\Combined Community Codec Pack
    2012-05-25 22:26:59--------d-----w-C:\Program Files (x86)\VideoLAN
    .
    ==================== Find3M ====================
    .
    2012-06-08 23:03:41281288----a-w-C:\Windows\SysWow64\PnkBstrB.xtr
    2012-06-08 23:03:41281288----a-w-C:\Windows\SysWow64\PnkBstrB.exe
    2012-06-08 22:36:46281288----a-w-C:\Windows\SysWow64\PnkBstrB.ex0
    2012-05-18 02:06:482311680----a-w-C:\Windows\System32\jscript9.dll
    2012-05-18 01:59:141392128----a-w-C:\Windows\System32\wininet.dll
    2012-05-18 01:58:391494528----a-w-C:\Windows\System32\inetcpl.cpl
    2012-05-18 01:55:22173056----a-w-C:\Windows\System32\ieUnatt.exe
    2012-05-18 01:51:302382848----a-w-C:\Windows\System32\mshtml.tlb
    2012-05-17 22:45:371800192----a-w-C:\Windows\SysWow64\jscript9.dll
    2012-05-17 22:35:471129472----a-w-C:\Windows\SysWow64\wininet.dll
    2012-05-17 22:35:391427968----a-w-C:\Windows\SysWow64\inetcpl.cpl
    2012-05-17 22:29:45142848----a-w-C:\Windows\SysWow64\ieUnatt.exe
    2012-05-17 22:24:452382848----a-w-C:\Windows\SysWow64\mshtml.tlb
    2012-05-15 01:32:203144192----a-w-C:\Windows\System32\win32k.sys
    2012-05-14 03:28:080----a-w-C:\Windows\ativpsrm.bin
    2012-05-08 00:03:0676888----a-w-C:\Windows\SysWow64\PnkBstrA.exe
    2012-05-05 19:34:48476960----a-w-C:\Windows\SysWow64\npdeployJava1.dll
    2012-05-05 19:34:48472864----a-w-C:\Windows\SysWow64\deployJava1.dll
    2012-05-04 10:52:225505392----a-w-C:\Windows\System32\ntoskrnl.exe
    2012-05-04 10:08:163958128----a-w-C:\Windows\SysWow64\ntkrnlpa.exe
    2012-05-04 10:08:153902320----a-w-C:\Windows\SysWow64\ntoskrnl.exe
    2012-04-28 03:50:40204800----a-w-C:\Windows\System32\drivers\rdpwd.sys
    2012-04-24 05:59:45182272----a-w-C:\Windows\System32\cryptsvc.dll
    2012-04-24 05:59:451460224----a-w-C:\Windows\System32\crypt32.dll
    2012-04-24 05:59:45140288----a-w-C:\Windows\System32\cryptnet.dll
    2012-04-24 04:47:04139264----a-w-C:\Windows\SysWow64\cryptsvc.dll
    2012-04-24 04:47:04103936----a-w-C:\Windows\SysWow64\cryptnet.dll
    2012-04-24 04:47:031156608----a-w-C:\Windows\SysWow64\crypt32.dll
    2012-04-07 12:18:363213824----a-w-C:\Windows\System32\msi.dll
    2012-04-07 11:34:372342400----a-w-C:\Windows\SysWow64\msi.dll
    2012-04-06 05:22:4011174400----a-w-C:\Windows\System32\drivers\atikmdag.sys
    2012-04-06 02:22:00159744----a-w-C:\Windows\System32\atiapfxx.exe
    2012-04-06 02:21:52909312----a-w-C:\Windows\SysWow64\aticfx32.dll
    2012-04-06 02:20:041067520----a-w-C:\Windows\System32\aticfx64.dll
    2012-04-06 02:16:52442368----a-w-C:\Windows\System32\ATIDEMGX.dll
    2012-04-06 02:16:46503808----a-w-C:\Windows\System32\atieclxx.exe
    2012-04-06 02:16:02236544----a-w-C:\Windows\System32\atiesrxx.exe
    2012-04-06 02:14:44120320----a-w-C:\Windows\System32\atitmm64.dll
    2012-04-06 02:14:3021504----a-w-C:\Windows\System32\atimuixx.dll
    2012-04-06 02:14:2659392----a-w-C:\Windows\System32\atiedu64.dll
    2012-04-06 02:14:2043520----a-w-C:\Windows\SysWow64\ati2edxx.dll
    2012-04-06 02:13:426800896----a-w-C:\Windows\SysWow64\atidxx32.dll
    2012-04-06 02:10:5026181632----a-w-C:\Windows\System32\atio6axx.dll
    2012-04-06 02:00:1064000----a-w-C:\Windows\System32\coinst.dll
    2012-04-06 01:54:467479296----a-w-C:\Windows\System32\atidxx64.dll
    2012-04-06 01:50:5619753984----a-w-C:\Windows\SysWow64\atioglxx.dll
    2012-04-06 01:35:241120768----a-w-C:\Windows\System32\atiumd6v.dll
    2012-04-06 01:34:501831424----a-w-C:\Windows\SysWow64\atiumdmv.dll
    2012-04-06 01:34:344731904----a-w-C:\Windows\System32\atiumd6a.dll
    2012-04-06 01:34:046203392----a-w-C:\Windows\SysWow64\atiumdag.dll
    2012-04-06 01:30:1651200----a-w-C:\Windows\System32\aticalrt64.dll
    2012-04-06 01:30:1446080----a-w-C:\Windows\SysWow64\aticalrt.dll
    2012-04-06 01:30:0844544----a-w-C:\Windows\System32\aticalcl64.dll
    2012-04-06 01:30:0644032----a-w-C:\Windows\SysWow64\aticalcl.dll
    2012-04-06 01:29:5416090624----a-w-C:\Windows\System32\aticaldd64.dll
    2012-04-06 01:25:3013764096----a-w-C:\Windows\SysWow64\aticaldd.dll
    2012-04-06 01:23:247431680----a-w-C:\Windows\System32\atiumd64.dll
    2012-04-06 01:22:544795904----a-w-C:\Windows\SysWow64\atiumdva.dll
    2012-04-06 01:11:28514560----a-w-C:\Windows\System32\atiadlxx.dll
    2012-04-06 01:11:20360448----a-w-C:\Windows\SysWow64\atiadlxy.dll
    2012-04-06 01:11:0617408----a-w-C:\Windows\System32\atig6pxx.dll
    2012-04-06 01:11:0414848----a-w-C:\Windows\SysWow64\atiglpxx.dll
    2012-04-06 01:11:0414848----a-w-C:\Windows\System32\atiglpxx.dll
    2012-04-06 01:11:0041984----a-w-C:\Windows\System32\atig6txx.dll
    2012-04-06 01:10:5233280----a-w-C:\Windows\SysWow64\atigktxx.dll
    2012-04-06 01:10:44343040----a-w-C:\Windows\System32\drivers\atikmpag.sys
    2012-04-06 01:09:5654784----a-w-C:\Windows\System32\atiuxp64.dll
    2012-04-06 01:09:4841984----a-w-C:\Windows\SysWow64\atiuxpag.dll
    2012-04-06 01:09:4244544----a-w-C:\Windows\System32\atiu9p64.dll
    2012-04-06 01:09:3432256----a-w-C:\Windows\SysWow64\atiu9pag.dll
    2012-04-06 01:09:0253248----a-w-C:\Windows\System32\drivers\ati2erec.dll
    2012-04-06 01:06:0854784----a-w-C:\Windows\System32\atimpc64.dll
    2012-04-06 01:06:0854784----a-w-C:\Windows\System32\amdpcom64.dll
    2012-04-06 01:06:0453760----a-w-C:\Windows\SysWow64\atimpc32.dll
    2012-04-06 01:06:0453760----a-w-C:\Windows\SysWow64\amdpcom32.dll
    2012-04-05 21:34:26187392----a-w-C:\Windows\System32\clinfo.exe
    2012-04-05 21:34:1074752----a-w-C:\Windows\System32\OpenVideo64.dll
    2012-04-05 21:34:0464512----a-w-C:\Windows\SysWow64\OpenVideo.dll
    2012-04-05 21:33:5663488----a-w-C:\Windows\System32\OVDecode64.dll
    2012-04-05 21:33:5256320----a-w-C:\Windows\SysWow64\OVDecode.dll
    2012-04-05 21:33:4416457216----a-w-C:\Windows\System32\amdocl64.dll
    2012-04-05 21:32:5613007872----a-w-C:\Windows\SysWow64\amdocl.dll
    2012-04-05 21:32:0854784----a-w-C:\Windows\System32\OpenCL.dll
    2012-04-05 21:32:0450176----a-w-C:\Windows\SysWow64\OpenCL.dll
    2012-03-30 11:09:531895280----a-w-C:\Windows\System32\drivers\tcpip.sys
    .
    ============= FINISH: 22:12:34.40 ===============
  3. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2011-08-26.01)
    .
    Microsoft Windows 7 Ultimate
    Boot Device: \Device\HarddiskVolume2
    Install Date: 11/11/2011 14:53:33
    System Uptime: 21/06/2012 22:03:12 (0 hours ago)
    .
    Motherboard: Gigabyte Technology Co., Ltd. | | X48T-DQ6
    Processor: Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz | Socket 775 | 2400/266mhz
    .
    ==== Disk Partitions =========================
    .
    A: is Removable
    C: is FIXED (NTFS) - 1397 GiB total, 421.421 GiB free.
    D: is CDROM (UDF)
    E: is FIXED (NTFS) - 1863 GiB total, 281.36 GiB free.
    F: is CDROM ()
    .
    ==== Disabled Device Manager Items =============
    .
    ==== System Restore Points ===================
    .
    RP313: 15/06/2012 20:06:20 - Scheduled Checkpoint
    RP314: 16/06/2012 03:00:10 - Windows Update
    RP315: 18/06/2012 12:32:07 - Windows Update
    RP316: 18/06/2012 13:15:19 - Windows Update
    RP317: 18/06/2012 19:21:19 - Windows Update
    RP318: 18/06/2012 19:53:24 - Windows Update
    RP319: 19/06/2012 03:01:48 - Windows Update
    RP320: 21/06/2012 21:55:34 - Windows Update
    .
    ==== Installed Programs ======================
    .
    Absolute Nature 2 for S.T.A.L.K.E.R - Clear Sky
    Absolute Structures for S.T.A.L.K.E.R - Clear Sky
    Ace of Spades
    Active@ ISO Burner
    Adobe AIR
    Adobe Community Help
    Adobe Download Assistant
    Adobe Flash Professional CS5.5
    Adobe Photoshop CS5.1
    Adobe Reader X (10.1.3)
    Adobe Shockwave Player 11.6
    APB Reloaded
    Apple Application Support
    Apple Software Update
    ArmA 2 Uninstall
    ARMA 2: Operation Arrowhead
    Audacity 1.3.14 (Unicode)
    Audiosurf
    AutoHotkey 1.1.07.03
    Batman Arkham City version 1.0
    Battlefield 3 Update 4
    Battlefield 3?
    BattlEye for OA Uninstall
    BattlEye Uninstall
    calibre
    Catalyst Control Center
    Catalyst Control Center - Branding
    Catalyst Control Center Graphics Previews Common
    Catalyst Control Center InstallProxy
    Catalyst Control Center Localization All
    CCC Help Chinese Standard
    CCC Help Chinese Traditional
    CCC Help Czech
    CCC Help Danish
    CCC Help Dutch
    CCC Help English
    CCC Help Finnish
    CCC Help French
    CCC Help German
    CCC Help Greek
    CCC Help Hungarian
    CCC Help Italian
    CCC Help Japanese
    CCC Help Korean
    CCC Help Norwegian
    CCC Help Polish
    CCC Help Portuguese
    CCC Help Russian
    CCC Help Spanish
    CCC Help Swedish
    CCC Help Thai
    CCC Help Turkish
    Combined Community Codec Pack 2011-11-11
    DAEMON Tools Lite
    Dead Island
    Deus Ex - HDTP
    Deus Ex: Game of the Year Edition
    DEVIL MAY CRY 4
    Dig-N-Rig version 1.0
    DisplayFusion 3.4.1
    Driver Sweeper version 3.2.0
    eReg
    Facade
    Fallen Earth
    Fighter Factory Ultimate
    File Splitter and Joiner (FFSJ v3.3)
    FileZilla Client 3.5.3
    Fotosizer 1.34
    Fraps (remove only)
    Frozen Synapse
    FXAA Post-Process Injector
    Garry's Mod
    Garry's Mod 13
    Geeks3D.com FurMark 1.9.2
    GIMP 2.6.11
    Google Chrome
    GTA San Andreas
    Half-Life 2
    Half-Life 2: Episode One
    Half-Life 2: Episode Two
    Heroes of Newerth
    Hi-Rez Studios Authenticate and Update Service
    HxD Hex Editor version 1.7.7.0
    Infernal
    IrfanView (remove only)
    Java Auto Updater
    Java(TM) 6 Update 32
    K-Lite Codec Pack 7.9.0 (Basic)
    Katawa Shoujo
    Killing Floor
    LAME v3.99.3 (for Windows)
    League of Legends
    Left 4 Dead 2
    Livestream Procaster
    LogMeIn Hamachi
    Magicka
    Malwarebytes Anti-Malware version 1.61.0.1400
    Max Payne 3
    Max Payne 3 version 1.02
    Microsoft AppLocale
    Microsoft Games for Windows - LIVE
    Microsoft Games for Windows - LIVE Redistributable
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    Microsoft WSE 3.0 Runtime
    Microsoft XNA Framework Redistributable 3.1
    Microsoft XNA Framework Redistributable 4.0
    Microsoft_VC80_ATL_x86
    Microsoft_VC80_CRT_x86
    Microsoft_VC80_MFC_x86
    Microsoft_VC80_MFCLOC_x86
    Microsoft_VC90_ATL_x86
    Microsoft_VC90_CRT_x86
    Microsoft_VC90_MFC_x86
    Microsoft_VC90_MFCLOC_x86
    Minecraft Texturepack Editor
    MISERY for S.T.A.L.K.E.R - Call of Pripyat
    Morrowind
    Mount & Blade: Warband
    MSVCRT Redists
    MTA:SA v1.3
    Need for Speed: Hot Pursuit
    Nexon Game Manager
    NVIDIA PhysX
    OMGWTFOTL 1.0E
    OpenOffice.org 3.3
    PCSX2 - Playstation 2 Emulator
    PDF Settings CS5
    Portal 2
    PowerMenu 1.51
    Project64 1.6
    Proxifier version 3.0
    PunkBuster Services
    Python 2.7.2
    QuickTime
    RadeonPro 1.0 (Build 1.1.0.6)
    Ragnarok Online
    Rainmeter
    Red Faction: Guerrilla
    RetroShare
    Revo Uninstaller 1.93
    Rockstar Games Social Club
    RPGƒcƒN[ƒ‹2000 ƒ‰ƒ“ƒ^ƒCƒ€ƒpƒbƒP[ƒW
    S.T.A.L.K.E.R.: Call of Pripyat
    S.T.A.L.K.E.R.: Clear Sky
    S.T.A.L.K.E.R.: Shadow of Chernobyl
    Saints Row 2
    Saints Row: The Third
    Sanctum
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
    Security Update for Microsoft .NET Framework 4 Extended (KB2416472)
    Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
    Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
    ShiftWindow 1.02
    Six Updater
    Sizer 3.33
    Skype Click to Call
    Skype? 5.5
    Source SDK Base 2007
    Steam
    swMSM
    Synergy
    TERA
    Terraria
    TES Construction Set
    The Sims? 3
    The Sims? 3 Ambitions
    The Sims? 3 Fast Lane Stuff
    The Sims? 3 Generations
    The Sims? 3 High-End Loft Stuff
    The Sims? 3 Late Night
    The Sims? 3 Outdoor Living Stuff
    The Sims? 3 Pets
    The Sims? 3 Town Life Stuff
    The Sims? 3 World Adventures
    Thief 3 Sneaky Upgrade version 1.1.0
    Thief: Deadly Shadows
    Tribes Ascend Closed Beta
    Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
    Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
    Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
    Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
    Update for Microsoft .NET Framework 4 Extended (KB2468871)
    Update for Microsoft .NET Framework 4 Extended (KB2533523)
    Update for Microsoft .NET Framework 4 Extended (KB2600217)
    Vindictus
    VLC media player 2.0.1
    Winamp
    Winamp Detector Plug-in
    WinPcap 4.1.1
    XChat-WDK (x86)
    Xvid Video Codec
    Youtube Downloader HD v. 2.9.2
    Yume Nikki 0.10 English
    ƒÊTorrent
    .
  4. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    ==== Event Viewer Messages From Past Week ========
    .
    21/06/2012 22:11:22, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
    21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiSpyware Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiSpyware Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiSpyware Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiSpyware Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
    21/06/2012 22:05:18, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
    21/06/2012 22:04:42, Error: Service Control Manager [7023] - The Function Discovery Resource Publication service terminated with the following error: %%-2147024891
    21/06/2012 22:04:42, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Resource Publication service which failed to start because of the following error: %%-2147024891
    21/06/2012 22:03:58, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: sptd
    21/06/2012 22:03:47, Error: Service Control Manager [7023] - The Computer Browser service terminated with the following error: The specified service does not exist as an installed service.
    21/06/2012 22:03:46, Error: Service Control Manager [7003] - The IPsec Policy Agent service depends the following service: BFE. This service might not be installed.
    21/06/2012 22:03:46, Error: Service Control Manager [7003] - The IKE and AuthIP IPsec Keying Modules service depends the following service: BFE. This service might not be installed.
    21/06/2012 22:02:09, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Microsoft Security Essentials Client Update Package - KB2691905.
    21/06/2012 22:02:07, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
    21/06/2012 22:01:08, Error: Service Control Manager [7023] - The Microsoft Antimalware Service service terminated with the following error: %%-2147017840
    21/06/2012 22:01:06, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    21/06/2012 21:52:55, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    21/06/2012 15:37:03, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    19/06/2012 03:37:31, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:536 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Remove Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2193.0, AS: 1.127.2193.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    19/06/2012 03:27:07, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    19/06/2012 03:13:47, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    19/06/2012 03:06:50, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    19/06/2012 03:00:30, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    19/06/2012 02:57:58, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
    19/06/2012 02:57:58, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    19/06/2012 02:57:53, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
    19/06/2012 02:57:28, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
    19/06/2012 02:57:28, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error %%-1073473535.
    19/06/2012 02:49:03, Error: Service Control Manager [7001] - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: The dependency service or group failed to start.
    19/06/2012 02:49:03, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
    19/06/2012 02:49:03, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
    19/06/2012 02:49:02, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
    19/06/2012 02:49:02, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
    19/06/2012 02:49:01, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    19/06/2012 02:48:56, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
    19/06/2012 02:48:10, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD CSC DfsC discache MpFilter NetBIOS NetBT nsiproxy Psched rdbss spldr sptd tdx vwififlt Wanarpv6 WfpLwf
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: A device attached to the system is not functioning.
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: A device attached to the system is not functioning.
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: A device attached to the system is not functioning.
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
    19/06/2012 02:48:10, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.
    19/06/2012 02:47:42, Error: sptd [4] - Driver detected an internal error in its data structures for .
    19/06/2012 02:17:47, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:540 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: Sam-PC\Sam Process Name: C:\Windows\system32\services.exe Action: Remove Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2193.0, AS: 1.127.2193.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    19/06/2012 02:17:47, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:540 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: Sam-PC\Sam Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2193.0, AS: 1.127.2193.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    19/06/2012 02:17:14, Error: Ntfs [55] - The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume \Device\HarddiskVolume3.
    19/06/2012 02:09:28, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    18/06/2012 20:18:30, Error: Service Control Manager [7038] - The WSearch service was unable to log on as NT AUTHORITY\SYSTEM with the currently configured password due to the following error: The security account manager (SAM) or local security authority (LSA) server was in the wrong state to perform the security operation. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
    18/06/2012 20:18:30, Error: Service Control Manager [7038] - The WdiServiceHost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
    18/06/2012 20:18:30, Error: Service Control Manager [7038] - The NisSrv service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
    18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not start due to a logon failure.
    18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Portable Device Enumerator Service service failed to start due to the following error: A system shutdown is in progress.
    18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Microsoft Network Inspection service failed to start due to the following error: The service did not start due to a logon failure.
    18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Human Interface Device Access service failed to start due to the following error: A system shutdown is in progress.
    18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Diagnostic Service Host service failed to start due to the following error: The service did not start due to a logon failure.
    18/06/2012 20:18:30, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Network Inspection System Error Code: 0x8007042d Error description: The service did not start due to a logon failure. Reason: The system is missing updates that are required for running Network Inspection System. Install the required updates and restart the computer.
    18/06/2012 20:18:30, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    18/06/2012 20:18:30, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1069" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
    18/06/2012 20:14:43, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    18/06/2012 20:07:12, Error: Service Control Manager [7000] - The Diagnostic System Host service failed to start due to the following error: A system shutdown is in progress.
    18/06/2012 20:07:12, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Network Inspection System Error Code: 0x8007042d Error description: The service did not start due to a logon failure. Reason: The system is missing updates that are required for running Network Inspection System. Install the required updates and restart the computer.
    18/06/2012 20:07:12, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    18/06/2012 20:07:11, Error: Service Control Manager [7038] - The WdiServiceHost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The security account manager (SAM) or local security authority (LSA) server was in the wrong state to perform the security operation. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
    18/06/2012 19:54:26, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: Real-time protection has stopped functioning for an unknown reason. Restart the service in order to recover.
    18/06/2012 19:54:24, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    18/06/2012 19:16:02, Error: Service Control Manager [7003] - The Microsoft Network Inspection System service depends the following service: BFE. This service might not be installed.
    18/06/2012 14:51:53, Error: Service Control Manager [7001] - The WinHTTP Web Proxy Auto-Discovery Service service depends on the DHCP Client service which failed to start because of the following error: The dependency service or group failed to start.
    18/06/2012 14:42:18, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:38:52, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:35:24, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
  5. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    18/06/2012 14:32:02, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:28:27, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:548 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:25:19, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:21:58, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:18:41, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:15:21, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:11:50, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:08:41, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:05:11, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 14:02:03, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:548 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:58:49, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:55:28, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:52:19, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:48:57, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:45:47, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:42:12, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:38:43, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:35:21, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:31:55, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:28:30, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 13:25:04, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:464 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 0.0.0.0 Engine Version: AM: 1.1.8403.0, NIS: 0.0.0.0
    18/06/2012 13:21:37, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:556 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 12:54:20, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\n;file:_C:\Windows\system32\services.exe->731;process:_pid:548 Detection Origin: Local machine Detection Type: Concrete Detection Source: Real-Time Protection User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 12:50:48, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\n;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: Real-Time Protection User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 12:50:45, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1726" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
    18/06/2012 12:50:45, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1726" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
    18/06/2012 12:50:45, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1726" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
    18/06/2012 12:50:34, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the RadeonPro Support Service service to connect.
    18/06/2012 12:50:34, Error: Service Control Manager [7000] - The RadeonPro Support Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    18/06/2012 12:47:27, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 12:44:06, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:548 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 12:40:32, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    18/06/2012 12:37:19, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:540 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
    16/06/2012 16:17:42, Error: Schannel [36888] - The following fatal alert was generated: 40. The internal error state is 107.
    16/06/2012 16:17:42, Error: Schannel [36874] - An SSL 3.0 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
    14/06/2012 15:17:04, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.
    .
    ==== End Of File ===========================
  6. Broni

    Broni Malware Annihilator Posts: 46,177   +251

    Welcome aboard [​IMG]

    Please, observe following rules:
    • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
    • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
    • Please refrain from running tools or applying updates other than those I suggest.
    • Never run more than one scan at a time.
    • Keep updating me regarding your computer behavior, good, or bad.
    • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
    • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
    • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

    ==========================================

    For x32 (x86) bit systems download Farbar Recovery Scan Tool 32-Bit and save it to a flash drive.
    For x64 bit systems download Farbar Recovery Scan Tool 64-Bit and save it to a flash drive.

    Plug the flashdrive into the infected PC.

    Enter System Recovery Options.

    To enter System Recovery Options from the Advanced Boot Options:
    • Restart the computer.
    • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
    • Use the arrow keys to select the Repair your computer menu item.
    • Select US as the keyboard language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account an click Next.

    To enter System Recovery Options by using Windows installation disc:
    • Insert the installation disc.
    • Restart your computer.
    • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
    • Click Repair your computer.
    • Select US as the keyboard language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account and click Next.

    On the System Recovery Options menu you will get the following options:

      • Startup Repair
        System Restore
        Windows Complete PC Restore
        Windows Memory Diagnostic Tool
        Command Prompt
    • Select Command Prompt
    • In the command window type in notepad and press Enter.
    • The notepad opens. Under File menu select Open.
    • Select "Computer" and find your flash drive letter and close the notepad.
    • In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
      Note: Replace letter e with the drive letter of your flash drive.
    • The tool will start to run.
    • When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.
  7. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    Scan result of Farbar Recovery Scan Tool Version: 21-06-2012 02
    Ran by SYSTEM at 22-06-2012 17:08:55
    Running from G:\
    Windows 7 Ultimate (X64) OS Language: English(US)
    The current controlset is ControlSet001

    ========================== Registry (Whitelisted) =============

    HKLM\...\Run: [Eraser] "c:\PROGRA~1\Eraser\Eraser.exe" --atRestart [980368 2011-11-05] (The Eraser Project)
    HKLM\...\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2417032 2011-08-01] (Microsoft Corporation)
    HKLM\...\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming [1744152 2011-10-07] (Logitech, Inc.)
    HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [499608 2011-03-15] (Adobe Systems Incorporated)
    HKLM\...\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1271168 2012-03-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin [1523360 2011-01-11] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-03] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2011-10-24] (Apple Inc.)
    HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [641664 2012-04-05] (Advanced Micro Devices, Inc.)
    HKLM-x32\...\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml [10752 2012-02-20] ()
    HKLM-x32\...\Run: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot [1240848 2012-06-18] (Simply Super Software)
    HKU\Sam\...\Run: [Google Update] "C:\Users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2011-11-11] (Google Inc.)
    HKU\Sam\...\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent [1242448 2011-11-13] (Valve Corporation)
    HKU\Sam\...\Run: [PeerBlock] C:\Program Files\PeerBlock\peerblock.exe [2646128 2010-11-06] (PeerBlock, LLC)
    HKU\Sam\...\Run: [DisplayFusion] "C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe" [2789280 2012-01-12] (Binary Fortress Software)
    HKU\Sam\...\Run: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe [8192 2011-01-17] ()
    HKU\Sam\...\Run: [uTorrent] "C:\Users\Sam\Downloads\uTorrent.exe" /MINIMIZED [880496 2012-05-12] (BitTorrent, Inc.)
    HKU\Sam\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3514176 2011-11-10] (DT Soft Ltd)
    Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
    Startup: C:\Users\All Users\Start Menu\Programs\Startup\Rainmeter.lnk
    ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()

    ==================== Services (Whitelisted) ======

    2 Hamachi2Svc; "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s [2343816 2012-02-28] (LogMeIn Inc.)
    2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [8704 2012-04-05] (Hi-Rez Studios)
    2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [12600 2012-03-26] (Microsoft Corporation)
    2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2012-05-07] ()
    2 RadeonPro Support Service; "C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe" [12800 2011-02-09] (Mr. John aka japamd)
    3 rpcapd; "C:\Program Files (x86)\WinPcap\rpcapd.exe" -d -f "C:\Program Files (x86)\WinPcap\rpcapd.ini" [x]

    ========================== Drivers (Whitelisted) =============

    1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [279616 2011-11-11] (DT Soft Ltd)
    3 hamachi; C:\Windows\System32\Drivers\hamachi.sys [33856 2009-03-18] (LogMeIn, Inc.)
    2 NPF; C:\Windows\System32\Drivers\NPF.sys [47632 2009-10-20] (CACE Technologies, Inc.)
    3 pbfilter; \??\C:\Program Files\PeerBlock\pbfilter.sys [24176 2010-11-06] ()
    3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x]
    3 GPU-Z; \??\C:\Users\Sam\AppData\Local\Temp\GPU-Z.sys [x]
    0 sptd; [x]

    ========================== NetSvcs (Whitelisted) ===========


    ============ One Month Created Files and Folders ==============

    2012-06-22 17:08 - 2012-06-22 17:09 - 00000000 ____D C:\FRST
    2012-06-22 07:50 - 2012-06-22 07:50 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.71AA2B530F37956C
    2012-06-22 07:50 - 2012-06-22 07:50 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdnaklxs.sys
    2012-06-22 07:46 - 2012-06-22 07:46 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.389A80A780DC0FE3
    2012-06-22 07:43 - 2012-06-22 07:43 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.F99EF225C3D55B0D
    2012-06-21 18:00 - 2012-06-21 18:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
    2012-06-21 13:11 - 2012-06-21 13:14 - 00000000 ____D C:\Users\Sam\Desktop\fix
    2012-06-21 12:56 - 2012-06-21 12:56 - 00000000 ____D C:\Windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
    2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Malwarebytes
    2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Users\All Users\Malwarebytes
    2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
    2012-06-21 12:54 - 2012-04-04 06:56 - 00024904 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
    2012-06-19 02:45 - 2012-06-19 02:45 - 00000000 __SHD C:\found.000
    2012-06-18 17:56 - 2012-06-22 07:48 - 00000616 ____A C:\Windows\setupact.log
    2012-06-18 17:56 - 2012-06-18 17:56 - 00000000 ____A C:\Windows\setuperr.log
    2012-06-18 17:55 - 2012-06-21 13:03 - 00001412 ____A C:\Windows\PFRO.log
    2012-06-18 17:52 - 2012-06-18 17:52 - 00000000 ____D C:\Users\Sam\Documents\Simply Super Software
    2012-06-18 17:50 - 2012-06-18 18:06 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
    2012-06-18 17:50 - 2012-06-18 17:50 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Simply Super Software
    2012-06-18 17:50 - 2012-06-18 17:50 - 00000000 ____D C:\Users\All Users\Simply Super Software
    2012-06-18 17:50 - 2003-02-02 10:06 - 00153088 ____A C:\Windows\SysWOW64\UNRAR3.dll
    2012-06-18 17:50 - 2002-03-05 15:00 - 00075264 ____A C:\Windows\SysWOW64\unacev2.dll
    2012-06-18 17:49 - 2012-06-18 17:49 - 00000000 ____D C:\Users\Sam\Desktop\KEY
    2012-06-18 17:49 - 2012-03-14 06:26 - 12137424 ____A (Simply Super Software ) C:\Users\Sam\Desktop\trjsetup683.exe
    2012-06-18 10:52 - 2012-06-21 18:01 - 00000000 ____D C:\Program Files\Microsoft Security Client
    2012-06-18 10:52 - 2012-06-18 10:52 - 00065536 __ASH C:\Windows\System32\config\components{64a78e57-6562-11e1-be22-001fd0a2a7fa}.TxR.blf
    2012-06-18 10:51 - 2012-06-18 10:52 - 12621696 ____A (Microsoft Corporation) C:\Users\Sam\Downloads\mseinstall (1).exe
    2012-06-18 10:30 - 2012-06-18 10:33 - 275611648 ____A C:\Users\Sam\Downloads\kav_rescue_10.iso
    2012-06-18 10:23 - 2012-06-18 10:23 - 03879304 ____A (AVG Technologies) C:\Users\Sam\Downloads\avg_free_stb_all_2012_2180_cnet.exe
    2012-06-18 03:29 - 2012-06-18 13:01 - 00000000 ____D C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
    2012-06-18 03:16 - 2012-06-18 03:17 - 00000000 ____D C:\Users\Sam\Downloads\Franz Schubert - Symphonies
    2012-06-17 23:23 - 2012-06-17 23:23 - 00337888 ____A C:\Users\Sam\Downloads\YKRCj.png
    2012-06-17 18:29 - 2012-06-17 18:29 - 00014113 ____A C:\Users\Sam\.recently-used.xbel
    2012-06-17 11:36 - 2012-06-17 11:36 - 00062112 ____A C:\Users\Sam\Downloads\1339961660558.png
    2012-06-17 11:30 - 2012-06-17 11:30 - 02023244 ____A C:\Users\Sam\Downloads\1339960561597.gif
    2012-06-17 11:18 - 2012-06-17 11:18 - 00354087 ____A C:\Users\Sam\Downloads\1339958589177.png
    2012-06-17 11:10 - 2012-06-17 11:10 - 00098614 ____A C:\Users\Sam\Downloads\1339958242815.png
    2012-06-17 11:07 - 2012-06-17 11:07 - 00472450 ____A C:\Users\Sam\Downloads\1339960014519.png
    2012-06-17 09:35 - 2012-06-17 09:35 - 00567033 ____A C:\Users\Sam\Downloads\b00Nf.png
    2012-06-17 07:54 - 2012-06-17 07:54 - 00445108 ____A C:\Users\Sam\Downloads\1339946400319.png
    2012-06-17 07:54 - 2012-06-17 07:54 - 00394915 ____A C:\Users\Sam\Downloads\1339945860675.png
    2012-06-17 07:31 - 2012-06-17 07:40 - 387071187 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_24_[h264-720p][583D3DBB].mkv
    2012-06-17 07:31 - 2012-06-17 07:31 - 00029942 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_24_[h264-720p][583D3DBB].mkv.torrent
    2012-06-17 07:15 - 2012-06-17 07:17 - 39882672 ____A C:\Users\Sam\Downloads\Bakemonogatari Hentai - Iromono go _01vita.mp4
    2012-06-17 07:15 - 2012-06-17 07:17 - 27789679 ____A C:\Users\Sam\Downloads\Bakemonogatari Hentai - Iromono go _02vita.mp4
    2012-06-17 06:59 - 2012-06-17 06:59 - 00371927 ____A C:\Users\Sam\Downloads\n4fdd44ecacbaf.png
    2012-06-17 06:43 - 2012-06-17 06:42 - 00559297 ____A C:\Users\Sam\Downloads\zpz7D.png
    2012-06-16 15:49 - 2012-06-16 16:54 - 111406435 ____A C:\Users\Sam\Documents\REESE.wmv
    2012-06-16 10:25 - 2012-06-16 10:25 - 00258268 ____A C:\Users\Sam\Downloads\t6TF9.png
    2012-06-16 04:07 - 2012-06-18 13:01 - 00000000 ____D C:\Program Files\Web Assistant
    2012-06-15 16:56 - 2012-06-15 16:57 - 20326756 ____A C:\Users\Sam\Downloads\Persona 4- Rise Joins The Team.mp3
    2012-06-15 15:24 - 2012-06-15 15:24 - 02357244 ____A C:\Users\Sam\Downloads\Nyans Birthday Surprise.rar
    2012-06-15 14:07 - 2012-06-15 14:07 - 06360088 ____A C:\Users\Sam\Documents\Reese Witherspoon Black Eye the song.Ray Sipe.Lady GaGa..avi
    2012-06-15 13:34 - 2012-06-15 13:40 - 183238098 ____A C:\Users\Sam\Downloads\Brodyquest-Tracks.zip
    2012-06-15 12:40 - 2012-06-15 12:40 - 19384518 ____A C:\Users\Sam\Documents\reese.wmv_(480p).avi
    2012-06-15 11:45 - 2012-06-15 11:49 - 00333064 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4.sfk
    2012-06-15 11:41 - 2012-06-15 11:43 - 52151891 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4
    2012-06-15 11:36 - 2012-06-15 11:37 - 24766486 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).avi
    2012-06-15 11:34 - 2012-06-15 11:34 - 00734849 ____A C:\Users\Sam\Downloads\n4fdb6d5d1ce06_large.gif
    2012-06-15 10:29 - 2012-06-15 10:30 - 00313528 ____A C:\Users\Sam\Downloads\Brodyquest.mp3.sfk
    2012-06-15 10:26 - 2012-06-15 10:26 - 01383850 ____A C:\Users\Sam\Downloads\Big Reese (Song).mp3
    2012-06-15 10:25 - 2012-06-15 10:25 - 05944542 ____A C:\Users\Sam\Documents\Big Reese (Song)_(360p).mp4
    2012-06-15 09:42 - 2012-06-17 14:08 - 00000000 ____D C:\Users\Sam\Desktop\REESEQUEST
    2012-06-15 09:37 - 2012-06-15 09:40 - 05467607 ____A C:\Users\Sam\Downloads\Brodyquest.mp3
    2012-06-15 08:12 - 2012-06-15 08:12 - 00149880 ____A C:\Users\Sam\Downloads\1339774832043.png
    2012-06-14 19:07 - 2012-06-14 19:07 - 00704668 ____A C:\Users\Sam\Downloads\1339729029003.png
    2012-06-14 19:00 - 2012-06-14 19:00 - 00013860 ____A C:\Users\Sam\Downloads\1339728996219.png
    2012-06-14 14:15 - 2012-06-14 14:15 - 00837430 ____A C:\Users\Sam\Downloads\PixelVision_1.8.3.zip
    2012-06-14 13:11 - 2012-06-14 13:11 - 01835947 ____A C:\Users\Sam\Downloads\Enigma3.1.rmskin
    2012-06-14 13:09 - 2012-06-14 13:09 - 00004186 ____A C:\Users\Sam\Downloads\segoeclock_for_rainmeter_by_mossydev-d4vdz3c.rmskin
    2012-06-14 13:07 - 2012-06-18 14:48 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Rainmeter
    2012-06-14 13:07 - 2012-06-14 13:11 - 00000000 ____D C:\Program Files\Rainmeter
    2012-06-14 13:07 - 2012-06-14 13:07 - 00000000 ____D C:\Users\Sam\Documents\Rainmeter
    2012-06-14 13:06 - 2012-06-14 13:06 - 01392000 ____A C:\Users\Sam\Downloads\Rainmeter-2.2.exe
    2012-06-14 12:41 - 2012-06-14 12:41 - 02220052 ____A C:\Users\Sam\Downloads\1339706463873.gif
    2012-06-14 12:25 - 2012-06-14 12:25 - 00356462 ____A C:\Users\Sam\Downloads\1339701294186.png
    2012-06-14 12:23 - 2012-06-14 12:23 - 00040185 ____A C:\Users\Sam\Downloads\1339700478683.png
    2012-06-14 08:15 - 2012-06-14 08:15 - 00189477 ____A C:\Users\Sam\Downloads\1339690338427.png
    2012-06-14 07:50 - 2012-06-14 07:50 - 00397485 ____A C:\Users\Sam\Downloads\1339688945912.png
    2012-06-14 07:46 - 2012-06-14 07:46 - 00199984 ____A C:\Users\Sam\Downloads\1339688670017.png
    2012-06-14 06:29 - 2012-06-14 06:33 - 00000000 ____D C:\FlvGrabber
    2012-06-14 06:25 - 2012-06-14 06:25 - 04083298 ____A ( ) C:\Users\Sam\Downloads\HiDownloadPlatinum.exe
    2012-06-14 06:25 - 2012-06-14 06:25 - 00000000 __SHD C:\Windows\System32\%APPDATA%
    2012-06-14 06:23 - 2012-06-14 06:27 - 00000000 ____D C:\Users\Sam\Documents\FlvGrabber
    2012-06-14 06:20 - 2012-06-14 06:20 - 00000000 ____D C:\Program Files (x86)\WinPcap
    2012-06-14 06:17 - 2012-06-14 06:17 - 04118700 ____A ( ) C:\Users\Sam\Downloads\flvgrabber.exe
    2012-06-14 06:17 - 2012-06-14 06:17 - 04118700 ____A ( ) C:\Users\Sam\Downloads\flvgrabber (1).exe
    2012-06-14 06:08 - 2012-06-14 06:08 - 00406155 ____A C:\Users\Sam\Downloads\k8Usq.png
    2012-06-14 06:07 - 2012-06-14 06:07 - 00508723 ____A C:\Users\Sam\Downloads\JjnZo.png
    2012-06-14 06:07 - 2012-06-14 06:07 - 00508723 ____A C:\Users\Sam\Downloads\JjnZo (1).png
    2012-06-14 06:07 - 2012-06-14 06:07 - 00274974 ____A C:\Users\Sam\Downloads\5kKFT.png
    2012-06-13 18:42 - 2012-06-15 13:12 - 00075694 ____A C:\Users\Sam\Downloads\n4fd94bf3a0661.png
    2012-06-13 18:00 - 2012-05-17 18:47 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
    2012-06-13 18:00 - 2012-05-17 18:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
    2012-06-13 18:00 - 2012-05-17 18:06 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
    2012-06-13 18:00 - 2012-05-17 17:59 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
    2012-06-13 18:00 - 2012-05-17 17:59 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
    2012-06-13 18:00 - 2012-05-17 17:58 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
    2012-06-13 18:00 - 2012-05-17 17:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
    2012-06-13 18:00 - 2012-05-17 17:56 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
    2012-06-13 18:00 - 2012-05-17 17:55 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
    2012-06-13 18:00 - 2012-05-17 17:55 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
    2012-06-13 18:00 - 2012-05-17 17:54 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
    2012-06-13 18:00 - 2012-05-17 17:51 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
    2012-06-13 18:00 - 2012-05-17 17:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
    2012-06-13 18:00 - 2012-05-17 17:47 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
    2012-06-13 18:00 - 2012-05-17 15:11 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
    2012-06-13 18:00 - 2012-05-17 14:48 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
    2012-06-13 18:00 - 2012-05-17 14:45 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
    2012-06-13 18:00 - 2012-05-17 14:36 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
    2012-06-13 18:00 - 2012-05-17 14:35 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
    2012-06-13 18:00 - 2012-05-17 14:35 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
    2012-06-13 18:00 - 2012-05-17 14:33 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
    2012-06-13 18:00 - 2012-05-17 14:31 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
    2012-06-13 18:00 - 2012-05-17 14:29 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
    2012-06-13 18:00 - 2012-05-17 14:29 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
    2012-06-13 18:00 - 2012-05-17 14:27 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
    2012-06-13 18:00 - 2012-05-17 14:25 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
    2012-06-13 18:00 - 2012-05-17 14:24 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
    2012-06-13 18:00 - 2012-05-17 14:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
    2012-06-13 17:49 - 2012-06-13 17:49 - 01644467 ____A C:\Users\Sam\Downloads\n4fd91d741f6e2_large.gif
    2012-06-13 17:18 - 2012-06-13 17:20 - 00000000 ____D C:\Users\Sam\Downloads\Final Fantasy IX
    2012-06-13 16:35 - 2012-06-13 16:35 - 00485875 ____A C:\Users\Sam\Downloads\1339629812322.png
    2012-06-13 15:00 - 2012-06-13 15:00 - 01985103 ____A C:\Users\Sam\Downloads\woaUv.gif
    2012-06-13 14:52 - 2012-05-01 21:32 - 00208896 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
    2012-06-13 14:52 - 2012-04-25 21:34 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
    2012-06-13 14:52 - 2012-04-25 21:34 - 00076288 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
    2012-06-13 14:52 - 2012-04-25 21:28 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
    2012-06-13 14:51 - 2012-05-14 17:32 - 03144192 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
    2012-06-13 14:51 - 2012-05-04 02:52 - 05505392 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
    2012-06-13 14:51 - 2012-05-04 02:08 - 03958128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
    2012-06-13 14:51 - 2012-05-04 02:08 - 03902320 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
    2012-06-13 14:51 - 2012-04-27 19:50 - 00204800 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
    2012-06-13 14:51 - 2012-04-23 21:59 - 01460224 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
    2012-06-13 14:51 - 2012-04-23 21:59 - 00182272 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
    2012-06-13 14:51 - 2012-04-23 21:59 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
    2012-06-13 14:51 - 2012-04-23 20:47 - 01156608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
    2012-06-13 14:51 - 2012-04-23 20:47 - 00139264 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
    2012-06-13 14:51 - 2012-04-23 20:47 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
    2012-06-13 14:51 - 2012-04-07 04:18 - 03213824 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
    2012-06-13 14:51 - 2012-04-07 03:34 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
    2012-06-13 14:33 - 2012-06-13 14:33 - 02019342 ____A C:\Users\Sam\Downloads\IKtte.gif
    2012-06-13 14:33 - 2012-06-13 14:33 - 01923054 ____A C:\Users\Sam\Downloads\sADfK.gif
    2012-06-13 13:53 - 2012-06-13 13:53 - 00438293 ____A C:\Users\Sam\Downloads\75TlU.png
    2012-06-13 13:53 - 2012-06-13 13:53 - 00431910 ____A C:\Users\Sam\Downloads\0VT1n.png
    2012-06-13 13:53 - 2012-06-13 13:53 - 00314777 ____A C:\Users\Sam\Downloads\kVYoN.png
    2012-06-13 13:53 - 2012-06-13 13:53 - 00181644 ____A C:\Users\Sam\Downloads\0eDSx.png
    2012-06-13 13:29 - 2012-06-13 13:29 - 00587109 ____A C:\Users\Sam\Downloads\n4fd905f98a8a3.png
    2012-06-12 17:39 - 2012-06-12 17:39 - 00013578 ____A C:\Users\Sam\Downloads\1339550895675.png
    2012-06-12 17:37 - 2012-06-12 17:37 - 00242286 ____A C:\Users\Sam\Downloads\E9S0v.png
    2012-06-12 17:27 - 2012-05-29 02:31 - 13513415 ____A C:\delver.jar
    2012-06-12 17:23 - 2012-06-12 17:24 - 13411069 ____A C:\Users\Sam\Downloads\Delver-alpha-5-29-12.zip
    2012-06-12 17:01 - 2012-06-12 17:01 - 00101156 ____A C:\Users\Sam\Downloads\1339549245513.png
    2012-06-12 16:57 - 2012-06-12 16:57 - 00286312 ____A C:\Users\Sam\Downloads\wikipedia_harassment1.png
    2012-06-12 15:30 - 2012-06-12 15:30 - 00019263 ____A C:\Users\Sam\Downloads\1339540441199.png
    2012-06-12 15:25 - 2012-06-12 15:25 - 00100318 ____A C:\Users\Sam\Downloads\1339540041581.png
    2012-06-12 15:24 - 2012-06-12 15:24 - 00124385 ____A C:\Users\Sam\Downloads\1339540004789.png
    2012-06-12 15:22 - 2012-06-12 15:22 - 00065119 ____A C:\Users\Sam\Downloads\1339539824048.png
    2012-06-12 15:16 - 2012-06-12 15:16 - 00166525 ____A C:\Users\Sam\Downloads\1339539601017.png
    2012-06-12 15:09 - 2012-06-12 15:09 - 00716396 ____A C:\Users\Sam\Downloads\1339539318458.png
    2012-06-12 15:06 - 2012-06-12 15:06 - 02029826 ____A C:\Users\Sam\Downloads\1339539038686.gif
    2012-06-12 15:04 - 2012-06-12 15:04 - 00227109 ____A C:\Users\Sam\Downloads\1339538701109.png
    2012-06-12 14:56 - 2012-06-12 14:56 - 00142487 ____A C:\Users\Sam\Downloads\1339537563444.png
    2012-06-12 14:52 - 2012-06-12 14:52 - 00213762 ____A C:\Users\Sam\Downloads\1339537114631.png
    2012-06-12 14:30 - 2012-06-12 14:30 - 00099665 ____A C:\Users\Sam\Downloads\1339539221610.png
    2012-06-12 14:29 - 2012-06-12 14:29 - 00060995 ____A C:\Users\Sam\Downloads\1339539144886.png
    2012-06-12 14:26 - 2012-06-12 14:26 - 00083785 ____A C:\Users\Sam\Downloads\1339539082180.png
    2012-06-12 14:20 - 2012-06-12 14:20 - 00299429 ____A C:\Users\Sam\Downloads\1339539532673.png
    2012-06-12 14:19 - 2012-06-12 14:19 - 00008341 ____A C:\Users\Sam\Downloads\1339539425730.png
    2012-06-12 14:18 - 2012-06-12 14:18 - 01258662 ____A C:\Users\Sam\Downloads\1339538041302.gif
    2012-06-12 14:18 - 2012-06-12 14:18 - 00597234 ____A C:\Users\Sam\Downloads\1339537822406.gif
    2012-06-12 14:18 - 2012-06-12 14:18 - 00041996 ____A C:\Users\Sam\Downloads\1339538172315.png
    2012-06-12 14:17 - 2012-06-12 14:17 - 00078751 ____A C:\Users\Sam\Downloads\1339537667280.png
    2012-06-12 13:55 - 2012-06-12 13:55 - 00376976 ____A C:\Users\Sam\Downloads\1339536468542.png
    2012-06-12 13:49 - 2012-06-12 13:49 - 00441870 ____A C:\Users\Sam\Downloads\1339537543596.png
    2012-06-12 13:43 - 2012-06-12 13:43 - 00240459 ____A C:\Users\Sam\Downloads\1339537326653.png
    2012-06-12 13:36 - 2012-06-12 13:36 - 00097660 ____A C:\Users\Sam\Downloads\1339536155865.png
    2012-06-12 13:29 - 2012-06-12 13:29 - 00069731 ____A C:\Users\Sam\Downloads\1339536317971.png
    2012-06-12 13:23 - 2012-06-12 13:23 - 01991238 ____A C:\Users\Sam\Downloads\1339526223829.gif
    2012-06-12 13:03 - 2012-06-12 13:03 - 00057074 ____A C:\Users\Sam\Downloads\1339533167078.png
    2012-06-12 13:02 - 2012-06-12 13:02 - 00504430 ____A C:\Users\Sam\Downloads\1339533242278.gif
    2012-06-12 12:58 - 2012-06-12 12:58 - 00141518 ____A C:\Users\Sam\Downloads\1339532412234.png
    2012-06-12 12:57 - 2012-06-12 12:57 - 02082940 ____A C:\Users\Sam\Downloads\1339532135617.gif
    2012-06-12 12:50 - 2012-06-12 12:50 - 00538936 ____A C:\Users\Sam\Downloads\1339530641065.png
    2012-06-12 12:49 - 2012-06-12 12:49 - 00583401 ____A C:\Users\Sam\Downloads\1339530535376.png
    2012-06-12 12:42 - 2012-06-12 12:42 - 00783532 ____A C:\Users\Sam\Downloads\1339533178926.gif
    2012-06-12 12:40 - 2012-06-12 12:40 - 01001328 ____A C:\Users\Sam\Downloads\1339533396232.png
    2012-06-12 12:40 - 2012-06-12 12:40 - 00177532 ____A C:\Users\Sam\Downloads\1339533619806.png
    2012-06-12 12:38 - 2012-06-12 12:38 - 00108093 ____A C:\Users\Sam\Downloads\1339533097065.png
    2012-06-12 12:37 - 2012-06-12 12:37 - 00644604 ____A C:\Users\Sam\Downloads\1339532652037.png
    2012-06-12 12:36 - 2012-06-12 12:36 - 00925235 ____A C:\Users\Sam\Downloads\1339532324638.png
    2012-06-12 12:36 - 2012-06-12 12:36 - 00545012 ____A C:\Users\Sam\Downloads\1339532514392.png
    2012-06-12 12:33 - 2012-06-12 12:33 - 00071811 ____A C:\Users\Sam\Downloads\1339532889196.png
    2012-06-12 12:16 - 2012-06-12 12:17 - 16120530 ____A C:\Users\Sam\Downloads\Fate Gakuen Alternative.rar
    2012-06-12 12:08 - 2012-06-12 12:08 - 02319134 ____A C:\Users\Sam\Downloads\1339521136540.gif
    2012-06-12 11:58 - 2012-06-12 11:59 - 13085389 ____A C:\Users\Sam\Downloads\Takeda Hiromitsu, Tsubomi Hiraku Wa Beni No Hana.zip
    2012-06-12 11:53 - 2012-06-12 11:53 - 02228441 ____A C:\Users\Sam\Downloads\1339530650643.gif
    2012-06-12 11:39 - 2012-06-12 11:39 - 02875982 ____A C:\Users\Sam\Downloads\1339528221558.gif
    2012-06-12 11:19 - 2012-06-12 11:19 - 00145003 ____A C:\Users\Sam\Downloads\1339528193285.png
    2012-06-12 11:08 - 2012-06-12 11:08 - 00027929 ____A C:\Users\Sam\Downloads\1339527726611.png
    2012-06-12 10:30 - 2012-06-12 10:30 - 00518861 ____A C:\Users\Sam\Downloads\1339525347595.png
    2012-06-12 10:24 - 2012-06-12 10:24 - 00006667 ____A C:\Users\Sam\Downloads\1339524712317.png
    2012-06-12 10:23 - 2012-06-12 10:23 - 00063380 ____A C:\Users\Sam\Downloads\1339523732377.gif
    2012-06-12 09:37 - 2012-06-12 09:37 - 00089375 ____A C:\Users\Sam\Downloads\1339522114558.png
    2012-06-12 06:38 - 2012-06-12 06:38 - 00952561 ____A C:\Users\Sam\Downloads\Vocaroo_s0WFB6hVg8wq.mp3
    2012-06-12 06:38 - 2012-06-12 06:38 - 00676290 ____A C:\Users\Sam\Downloads\Vocaroo_s0rnjLKJV40H.mp3
    2012-06-12 06:38 - 2012-06-12 06:38 - 00407334 ____A C:\Users\Sam\Downloads\Vocaroo_s0pY6QBDdCBi.mp3
    2012-06-12 06:38 - 2012-06-12 06:38 - 00396049 ____A C:\Users\Sam\Downloads\Vocaroo_s0rmlL8hnBDe.mp3
    2012-06-12 06:38 - 2012-06-12 06:38 - 00396049 ____A C:\Users\Sam\Downloads\Vocaroo_s0rmlL8hnBDe (1).mp3
    2012-06-12 06:25 - 2012-06-12 06:25 - 00422171 ____A C:\Users\Sam\Downloads\Vocaroo_s0g7KjlZtukS.mp3
    2012-06-11 20:55 - 2012-06-11 20:55 - 06472877 ____A C:\Users\Sam\Downloads\Nyan.rar
    2012-06-11 20:51 - 2012-06-11 20:51 - 00622792 ____A C:\Users\Sam\Downloads\Vocaroo_s0Aa98tLhDBJ.mp3
    2012-06-11 07:56 - 2012-06-11 08:07 - 00000000 ____D C:\Users\Sam\Documents\Rockstar Games
    2012-06-11 06:41 - 2012-06-11 06:44 - 186235034 ____A C:\Users\Sam\Downloads\Kerbal Space Prgoram (Mod pack by SAS41).exe
    2012-06-11 06:38 - 2012-06-11 06:45 - 186511255 ____A C:\Users\Sam\Downloads\KSP_win_0_14.zip
    2012-06-11 03:08 - 2012-06-11 03:08 - 00284027 ____A C:\Users\Sam\Downloads\1339406242103.png
    2012-06-11 02:45 - 2012-06-11 02:45 - 02973129 ____A C:\Users\Sam\Downloads\1339410341181.gif
    2012-06-11 02:45 - 2012-06-11 02:45 - 00851549 ____A C:\Users\Sam\Downloads\1339410254472.gif
    2012-06-10 19:50 - 2012-06-10 19:50 - 00169664 ____A C:\Users\Sam\Downloads\1339386589530.gif
    2012-06-10 19:03 - 2012-06-10 19:03 - 00966676 ____A C:\Users\Sam\Downloads\1339383413643.png
    2012-06-10 18:53 - 2012-06-10 18:53 - 00098261 ____A C:\Users\Sam\Downloads\madotsuki_grab_my_lightswitch_by_cartoonydoodles-d442wjt.png
    2012-06-10 14:37 - 2012-06-10 14:37 - 00501639 ____A C:\Users\Sam\Downloads\1339365078076.gif
    2012-06-10 13:51 - 2012-06-10 13:51 - 00043762 ____A C:\Users\Sam\Downloads\1339364902794.png
    2012-06-10 13:51 - 2012-06-10 13:51 - 00024615 ____A C:\Users\Sam\Downloads\1339364998695.gif
    2012-06-10 13:50 - 2012-06-10 13:50 - 00231879 ____A C:\Users\Sam\Downloads\1339363193733.png
    2012-06-10 13:49 - 2012-06-10 13:49 - 00297911 ____A C:\Users\Sam\Downloads\1339362937336.png
    2012-06-10 11:46 - 2012-06-10 11:52 - 424821663 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_23_[h264-720p][9AD1A48A].mkv
    2012-06-10 11:44 - 2012-06-10 11:44 - 00016688 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_23_[h264-720p][9AD1A48A].mkv.torrent
    2012-06-10 11:40 - 2012-06-10 11:40 - 00325370 ____A C:\Users\Sam\Downloads\1339353254881.png
    2012-06-10 10:51 - 2012-06-10 10:51 - 02335363 ____A C:\Users\Sam\Downloads\1339354140448.gif
    2012-06-10 10:16 - 2012-06-10 10:16 - 00045494 ____A C:\Users\Sam\Downloads\1339351640960.gif
    2012-06-10 10:15 - 2012-06-10 10:15 - 00114202 ____A C:\Users\Sam\Downloads\1339351902821.gif
    2012-06-10 10:10 - 2012-06-10 10:10 - 00505092 ____A C:\Users\Sam\Downloads\1339351798441.gif
    2012-06-10 10:08 - 2012-06-10 10:08 - 01347749 ____A C:\Users\Sam\Downloads\1339346812796.gif
    2012-06-10 10:08 - 2012-06-10 10:08 - 00238143 ____A C:\Users\Sam\Downloads\1339346731378.png
    2012-06-10 09:19 - 2012-06-10 09:46 - 48988852 ____A C:\Users\Sam\Downloads\yn0.10enginstaller.rar
    2012-06-10 08:56 - 2012-06-10 08:56 - 02774103 ____A C:\Users\Sam\Downloads\1339347340488.png
    2012-06-10 08:25 - 2012-06-10 08:25 - 00118972 ____A C:\Users\Sam\Downloads\1339344243651.png
    2012-06-10 08:25 - 2012-06-10 08:25 - 00072554 ____A C:\Users\Sam\Downloads\1339344594388.png
    2012-06-10 08:24 - 2012-06-10 08:24 - 03109838 ____A C:\Users\Sam\Downloads\1339344161509.gif
    2012-06-10 08:23 - 2012-06-10 08:23 - 00422025 ____A C:\Users\Sam\Downloads\1339343908289.png
    2012-06-10 08:23 - 2012-06-10 08:23 - 00190029 ____A C:\Users\Sam\Downloads\1339343885784.png
    2012-06-10 08:23 - 2012-06-10 08:23 - 00100707 ____A C:\Users\Sam\Downloads\1339343963675.png
    2012-06-10 08:21 - 2012-06-10 08:21 - 00171814 ____A C:\Users\Sam\Downloads\1339343688016.png
    2012-06-10 08:21 - 2012-06-10 08:21 - 00087759 ____A C:\Users\Sam\Downloads\1339343629723.png
    2012-06-10 08:20 - 2012-06-10 08:20 - 00157338 ____A C:\Users\Sam\Downloads\1339343550517.png
    2012-06-10 08:20 - 2012-06-10 08:20 - 00046991 ____A C:\Users\Sam\Downloads\1339343591489.png
    2012-06-10 08:18 - 2012-06-10 08:18 - 00034063 ____A C:\Users\Sam\Downloads\1339343214363.png
    2012-06-10 08:13 - 2012-06-10 08:13 - 01869624 ____A C:\Users\Sam\Downloads\1339344206422.gif
    2012-06-10 08:11 - 2012-06-10 08:11 - 01167852 ____A C:\Users\Sam\Downloads\1339342136171.png
    2012-06-10 08:11 - 2012-06-10 08:11 - 00490565 ____A C:\Users\Sam\Downloads\1339342668200.gif
    2012-06-10 08:09 - 2012-06-10 08:09 - 00091948 ____A C:\Users\Sam\Downloads\1339341057083.gif
    2012-06-10 07:39 - 2012-06-10 07:39 - 00478372 ____A C:\Users\Sam\Downloads\1339338233887.gif
    2012-06-10 07:14 - 2012-06-10 07:13 - 00399386 ____A C:\Users\Sam\Downloads\1339337102316.png
    2012-06-10 07:09 - 2012-06-10 07:11 - 78346545 ____A C:\Users\Sam\Downloads\save.rar
    2012-06-10 06:29 - 2012-06-10 06:29 - 00948451 ____A C:\Users\Sam\Downloads\1339334892742.png
    2012-06-09 11:22 - 2012-06-10 04:56 - 00000000 ____D C:\Users\Sam\Downloads\Mawaru Penguindrum Music Collection (MP3)
    2012-06-09 11:20 - 2012-06-09 11:20 - 00035063 ____A C:\Users\Sam\Downloads\[BakaBT.164962v2] Mawaru Penguindrum Music Collection (MP3).torrent
    2012-06-08 09:44 - 2012-06-08 09:44 - 01270121 ____A C:\Users\Sam\Downloads\1339177272318.png
    2012-06-08 09:43 - 2012-06-08 09:43 - 01278229 ____A C:\Users\Sam\Downloads\1339177203455.png
    2012-06-08 09:43 - 2012-06-08 09:43 - 01037416 ____A C:\Users\Sam\Downloads\1339177064431.png
    2012-06-08 09:41 - 2012-06-08 09:41 - 01269748 ____A C:\Users\Sam\Downloads\1339177158276.png
    2012-06-08 09:33 - 2012-06-08 09:33 - 00920689 ____A C:\Users\Sam\Downloads\1339171479286.png
    2012-06-08 09:26 - 2012-06-08 09:26 - 00147587 ____A C:\Users\Sam\Downloads\1339168283733.png
    2012-06-08 09:26 - 2012-06-08 09:26 - 00041543 ____A C:\Users\Sam\Downloads\1339164923335.png
    2012-06-08 09:21 - 2012-06-08 09:21 - 00702194 ____A C:\Users\Sam\Downloads\1339165224979.png
    2012-06-08 09:20 - 2012-06-08 09:20 - 00137284 ____A C:\Users\Sam\Downloads\1339165192922.png
    2012-06-08 09:17 - 2012-06-08 09:17 - 00277550 ____A C:\Users\Sam\Downloads\1339164886907.png
    2012-06-08 09:17 - 2012-06-08 09:17 - 00144487 ____A C:\Users\Sam\Downloads\1339164852984.png
    2012-06-07 20:32 - 2012-06-07 20:32 - 00032514 ____A C:\Users\Sam\Downloads\1339121719945.png
    2012-06-07 20:19 - 2012-06-07 20:19 - 01713099 ____A C:\Users\Sam\Downloads\1339127505453.gif
    2012-06-07 18:25 - 2012-06-07 18:25 - 00739345 ____A C:\Users\Sam\Downloads\1339122198690.gif
    2012-06-07 18:08 - 2012-06-07 18:08 - 00179516 ____A C:\Users\Sam\Downloads\Crash.dmp
    2012-06-07 16:49 - 2012-06-07 16:49 - 00045028 ____A C:\Users\Sam\Downloads\1339116285331.png
    2012-06-07 14:58 - 2012-06-07 14:58 - 00000000 ____D C:\Users\Sam\Documents\CAPCOM
    2012-06-07 14:58 - 2012-06-07 14:58 - 00000000 ____D C:\Users\Sam\AppData\Local\CAPCOM
    2012-06-07 14:48 - 2012-06-07 14:48 - 00000000 ____D C:\Program Files (x86)\CAPCOM
    2012-06-07 14:06 - 2012-06-07 14:06 - 00190411 ____A C:\Users\Sam\Downloads\1339105528536.png
    2012-06-07 13:53 - 2012-06-07 13:53 - 00013860 ____A C:\Users\Sam\Downloads\1339099745570.png
    2012-06-07 10:56 - 2012-06-07 14:35 - 00000000 ____D C:\Users\Sam\Downloads\Devil.May.Cry.4-RELOADED [www.HispaTorrents.net]
    2012-06-07 09:48 - 2012-06-07 09:48 - 03065917 ____A C:\Users\Sam\Downloads\1339084716767.gif
    2012-06-07 08:36 - 2012-06-07 08:36 - 00074697 ____A C:\Users\Sam\Downloads\1339086858108.png
    2012-06-07 07:09 - 2012-06-07 07:09 - 00022393 ____A C:\Users\Sam\Downloads\Vocaroo_s0bxuGgZff9n.mp3
    2012-06-07 07:08 - 2012-06-07 07:08 - 00072548 ____A C:\Users\Sam\Downloads\Vocaroo_s0Wfxnwgt2PO.mp3
    2012-06-07 07:07 - 2012-06-07 07:07 - 00629445 ____A C:\Users\Sam\Downloads\n4fd04b1cf11ba.png
    2012-06-07 06:02 - 2012-06-07 06:02 - 00751314 ____A C:\Users\Sam\Downloads\Vocaroo_s0ZQoI0R4ncF.mp3
    2012-06-07 05:57 - 2012-06-07 05:57 - 00162828 ____A C:\Users\Sam\Downloads\Vocaroo_s0MOcw47hvCM.mp3
    2012-06-07 05:56 - 2012-06-07 05:56 - 00160320 ____A C:\Users\Sam\Downloads\Vocaroo_s0ncobTHuMSd.mp3
    2012-06-07 05:55 - 2012-06-07 05:55 - 00266899 ____A C:\Users\Sam\Downloads\Vocaroo_s043E1rhIXit.mp3
    2012-06-07 05:53 - 2012-06-07 05:53 - 00281737 ____A C:\Users\Sam\Downloads\Vocaroo_s0l4FPXg5Tsh.mp3
    2012-06-07 05:45 - 2012-06-07 05:45 - 01915833 ____A C:\Users\Sam\Downloads\1GvM8.gif
    2012-06-07 05:42 - 2012-06-07 05:42 - 00097835 ____A C:\Users\Sam\Downloads\Vocaroo_s0eq8RjTfLBC.mp3
    2012-06-07 05:39 - 2012-06-07 05:39 - 00095327 ____A C:\Users\Sam\Downloads\Vocaroo_s0sU1bgJhzOD.mp3
    2012-06-07 05:39 - 2012-06-07 05:39 - 00042873 ____A C:\Users\Sam\Downloads\Vocaroo_s0IUkp7ienrq.mp3
    2012-06-07 05:36 - 2012-06-07 05:36 - 00489045 ____A C:\Users\Sam\Downloads\Vocaroo_s0hwjmwnbiab.mp3
    2012-06-07 05:32 - 2012-06-07 05:32 - 00050606 ____A C:\Users\Sam\Downloads\Vocaroo_s0nInD3gsvQL.mp3
    2012-06-07 05:30 - 2012-06-07 05:30 - 00276304 ____A C:\Users\Sam\Downloads\Vocaroo_s0uzJH973c97.mp3
    2012-06-07 05:20 - 2012-06-07 05:20 - 00129391 ____A C:\Users\Sam\Downloads\Vocaroo_s0fh0mNeoFXz.mp3
    2012-06-07 05:06 - 2012-06-07 05:07 - 00072720 ____A C:\Windows\System32\peerblock.dmp
    2012-06-06 16:11 - 2012-06-06 16:11 - 01018819 ____A C:\Users\Sam\Downloads\WfP1J.gif
    2012-06-06 15:35 - 2012-06-06 15:35 - 02842975 ____A C:\Users\Sam\Downloads\1339025722897.gif
    2012-06-06 14:01 - 2012-06-06 14:01 - 00160381 ____A C:\Users\Sam\Downloads\1339020058859.png
    2012-06-06 13:46 - 2012-06-06 13:46 - 00003271 ____A C:\Users\Sam\Documents\fanfic.txt
    2012-06-06 08:41 - 2012-06-06 08:41 - 00770127 ____A C:\Users\Sam\Downloads\1338999998493.png
    2012-06-06 08:36 - 2012-06-06 13:46 - 00025516 ____A C:\Users\Sam\Documents\fanfic.odt
    2012-06-06 08:15 - 2012-06-06 08:18 - 00000825 ____A C:\Users\Sam\Documents\autism.txt
    2012-06-06 06:28 - 2012-06-06 06:28 - 00042567 ____A C:\Users\Sam\Downloads\1338992711991.png
    2012-06-06 06:18 - 2012-06-06 06:18 - 00473188 ____A C:\Users\Sam\Downloads\1338990334399.png
    2012-06-06 06:04 - 2012-06-06 06:10 - 00000000 ____D C:\mugen
    2012-06-06 05:57 - 2012-06-06 05:58 - 08811721 ____A C:\Users\Sam\Downloads\mugen100.zip
    2012-06-06 05:52 - 2012-06-06 05:52 - 00000000 ____D C:\Users\All Users\VirtuallTek
    2012-06-06 05:52 - 2012-06-06 05:52 - 00000000 ____D C:\Program Files (x86)\VirtuallTek
    2012-06-06 05:48 - 2012-06-06 05:51 - 01632901 ____A (VirtuallTek Systems ) C:\Users\Sam\Downloads\ffu26.exe
    2012-06-05 18:16 - 2012-06-05 18:15 - 00302025 ____A C:\Users\Sam\Downloads\1338948677165.png
    2012-06-05 18:09 - 2012-06-05 18:09 - 01038635 ____A C:\Users\Sam\Downloads\1338947559621.png
    2012-06-05 16:41 - 2012-06-05 16:41 - 01335004 ____A C:\Users\Sam\Downloads\1338942125442.png
    2012-06-05 15:07 - 2012-06-05 15:12 - 61353425 ____A C:\Users\Sam\Downloads\Conker's Bad Fur Day.zip
    2012-06-05 15:06 - 2012-06-05 15:08 - 00000000 ____D C:\Program Files (x86)\Project64 1.6
    2012-06-05 15:05 - 2012-06-05 15:06 - 02080797 ____A (Project64 ) C:\Users\Sam\Downloads\project64_1.6.exe
  8. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    2012-06-05 15:05 - 2012-06-05 15:05 - 06276900 ____A C:\Users\Sam\Downloads\Super Mario 64.zip
    2012-06-05 14:47 - 2012-06-05 14:47 - 01041528 ____A C:\Users\Sam\Downloads\1338928931119.gif
    2012-06-05 14:13 - 2012-06-05 14:13 - 00511645 ____A C:\Users\Sam\Downloads\1338934080168.gif
    2012-06-05 12:50 - 2012-06-05 12:50 - 01047927 ____A C:\Users\Sam\Downloads\1338927174085.gif
    2012-06-05 12:41 - 2012-06-05 12:41 - 00388894 ____A C:\Users\Sam\Downloads\1338928753084.png
    2012-06-05 12:14 - 2012-06-05 12:14 - 00308238 ____A C:\Users\Sam\Downloads\1338927173959.png
    2012-06-05 12:05 - 2012-06-05 12:05 - 00148926 ____A C:\Users\Sam\Downloads\1338926454207.png
    2012-06-05 12:03 - 2012-06-05 12:03 - 03640626 ____A C:\Users\Sam\Downloads\untitled_2nyjrc.gif
    2012-06-05 11:54 - 2012-06-05 11:54 - 00909729 ____A C:\Users\Sam\Downloads\1338925929642.gif
    2012-06-05 11:44 - 2012-06-05 11:44 - 00019209 ____A C:\Users\Sam\Downloads\1338925384507.png
    2012-06-05 11:44 - 2012-06-05 11:44 - 00011487 ____A C:\Users\Sam\Downloads\1338925294111.png
    2012-06-05 11:28 - 2012-06-05 11:28 - 00086116 ____A C:\Users\Sam\Downloads\1338924472650.png
    2012-06-05 10:55 - 2012-06-05 10:55 - 00450512 ____A C:\Users\Sam\Downloads\n4fcc2900d032c.png
    2012-06-05 09:13 - 2012-06-05 09:13 - 03040589 ____A C:\Users\Sam\Downloads\1338868479399.gif
    2012-06-05 09:01 - 2012-06-05 09:01 - 00418553 ____A C:\Users\Sam\Downloads\1338915125028.png
    2012-06-05 08:40 - 2012-06-05 08:40 - 00115399 ____A C:\Users\Sam\Downloads\1338914384781.png
    2012-06-05 08:34 - 2012-06-05 08:34 - 00262633 ____A C:\Users\Sam\Downloads\my_body_is_ready.png
    2012-06-04 18:33 - 2012-06-04 18:33 - 00098796 ____A C:\Users\Sam\Downloads\E3-logo1.png
    2012-06-04 18:29 - 2012-06-04 18:29 - 01018517 ____A C:\Users\Sam\Downloads\1338862637026.png
    2012-06-04 18:26 - 2012-06-04 18:26 - 00110941 ____A C:\Users\Sam\Downloads\1338862501694.png
    2012-06-04 13:35 - 2012-06-04 13:35 - 00181171 ____A C:\Users\Sam\Downloads\1338845458684.png
    2012-06-04 12:47 - 2012-06-04 12:47 - 00114859 ____A C:\Users\Sam\Downloads\1338841888259.png
    2012-06-04 11:57 - 2012-06-04 11:57 - 00166972 ____A C:\Users\Sam\Downloads\1338839726619.png
    2012-06-04 10:58 - 2012-06-04 10:58 - 00009217 ____A C:\Users\Sam\Downloads\1338835491659.png
    2012-06-04 10:45 - 2012-06-04 10:45 - 00599502 ____A C:\Users\Sam\Downloads\ywMBj.gif
    2012-06-04 10:37 - 2012-06-04 10:47 - 00176184 ____A C:\Users\Sam\Downloads\1338832981131.png
    2012-06-04 09:46 - 2012-06-04 09:46 - 01514501 ____A C:\Users\Sam\Downloads\1338831917088.png
    2012-06-04 05:57 - 2012-06-04 06:02 - 00000000 ____D C:\Users\Sam\Downloads\Yokohama Kaidashi Kikou Music Collection (mp3)
    2012-06-04 05:56 - 2012-06-04 05:56 - 00026078 ____A C:\Users\Sam\Downloads\[BakaBT.152927v3] Yokohama Kaidashi Kikou Music Collection (mp3).torrent
    2012-06-04 05:56 - 2012-06-04 05:56 - 00026078 ____A C:\Users\Sam\Downloads\[BakaBT.152927v3] Yokohama Kaidashi Kikou Music Collection (mp3) (1).torrent
    2012-06-04 05:56 - 2012-06-04 05:56 - 00021693 ____A C:\Users\Sam\Downloads\[BakaBT.153598v0] Yokohama Kaidashi Kikou Music Collection (FLAC).torrent
    2012-06-03 15:43 - 2012-06-04 06:02 - 1220193803 ____A C:\Users\Sam\Downloads\[Commie] Berserk - Golden Age Chapter I - Egg of the High King [BD 1080p AAC] [5E90C760].mkv
    2012-06-03 15:38 - 2012-06-03 15:38 - 00093549 ____A C:\Users\Sam\Downloads\[Commie] Berserk - Golden Age Chapter I - Egg of the High King [BD 1080p AAC] [5E90C760].mkv.torrent
    2012-06-03 14:55 - 2012-06-03 14:55 - 00032129 ____A C:\Users\Sam\Downloads\1338763798548.png
    2012-06-03 14:19 - 2012-06-03 14:19 - 00092438 ____A C:\Users\Sam\Downloads\1338761780155.png
    2012-06-03 13:06 - 2012-06-03 13:06 - 00066391 ____A C:\Users\Sam\Downloads\1338752398733.png
    2012-06-03 13:01 - 2012-06-03 13:01 - 00040718 ____A C:\Users\Sam\Downloads\1338756809369.png
    2012-06-03 13:00 - 2012-06-03 13:00 - 00546544 ____A C:\Users\Sam\Downloads\1338756972005.png
    2012-06-03 12:58 - 2012-06-03 12:58 - 00034247 ____A C:\Users\Sam\Downloads\1338754912661.png
    2012-06-03 08:50 - 2012-06-03 08:50 - 00134102 ____A C:\Users\Sam\Downloads\injectSMAA_by_mrhaandi_1.2 (4).7z
    2012-06-03 06:35 - 2012-06-03 06:35 - 00404919 ____A C:\Users\Sam\Downloads\1338733714668.png
    2012-06-03 06:28 - 2012-06-03 06:28 - 00283850 ____A C:\Users\Sam\Downloads\1338726234726.png
    2012-06-02 18:36 - 2012-06-02 18:36 - 00018643 ____A C:\Users\Sam\Downloads\[BakaBT.129870v0] A Time To Screw (1).torrent
    2012-06-02 18:35 - 2012-06-02 18:35 - 00018643 ____A C:\Users\Sam\Downloads\[BakaBT.129870v0] A Time To Screw.torrent
    2012-06-02 18:15 - 2012-06-02 18:33 - 00000000 ____D C:\Users\Sam\Downloads\[hshare.net].A.Time.To.Screw.EP01-02.[ENG.SUBS].[UNCEN]
    2012-06-02 18:13 - 2012-06-02 18:13 - 00021178 ____A C:\Users\Sam\Downloads\hshare.net.A.Time.To.Screw.EP01-02.ENG.SUBS.UNCEN.torrent
    2012-06-02 18:05 - 2012-06-02 18:05 - 00000000 ____D C:\Users\Sam\Downloads\A Time To Screw
    2012-06-02 18:04 - 2012-06-02 18:04 - 00018830 ____A C:\Users\Sam\Downloads\A Time To Screw.torrent
    2012-06-02 17:20 - 2012-06-03 06:49 - 00000000 ____D C:\Users\Sam\Documents\Battlefield 3
    2012-06-02 16:31 - 2012-06-03 08:51 - 00000000 ____D C:\Program Files (x86)\Battlefield 3
    2012-06-02 15:19 - 2012-06-02 15:19 - 19754715 ____A C:\Users\Sam\Downloads\jpcsp-2568-windows-amd64.7z
    2012-06-02 15:17 - 2012-06-02 15:25 - 258852757 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 22 [1D7B886C].mkv
    2012-06-02 15:15 - 2012-06-02 15:15 - 00020160 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 22 [1D7B886C].mkv.torrent
    2012-06-02 14:12 - 2012-06-02 14:12 - 07612586 ____A C:\Users\Sam\Downloads\pcsp_v0.5.4 (1).zip
    2012-06-02 13:54 - 2012-06-02 13:54 - 07612586 ____A C:\Users\Sam\Downloads\pcsp_v0.5.4.zip
    2012-06-02 13:43 - 2012-06-02 13:43 - 00001427 ____A C:\Users\Sam\Documents\cry.txt
    2012-06-02 12:29 - 2012-06-02 12:29 - 00281744 ____A C:\Users\Sam\Downloads\1338667841302.gif
    2012-06-02 11:29 - 2012-06-02 11:29 - 00000011 ____A C:\Users\Sam\Documents\Student Finance.txt
    2012-06-01 17:52 - 2012-06-01 18:00 - 1171374649 ____A C:\Users\Sam\Downloads\BlazBlue_Continuum_Shift.rar
    2012-06-01 09:14 - 2012-06-01 09:14 - 01864699 ____A C:\Users\Sam\Downloads\1338567812639.gif
    2012-06-01 09:11 - 2012-06-01 09:11 - 00970635 ____A C:\Users\Sam\Downloads\1338566312929.png
    2012-06-01 09:11 - 2012-06-01 09:11 - 00443321 ____A C:\Users\Sam\Downloads\1338566256293.png
    2012-06-01 06:42 - 2012-06-01 06:42 - 00000000 ____D C:\Users\Sam\Documents\WB Games
    2012-06-01 06:29 - 2012-06-01 06:31 - 00719436 ____A C:\Users\Sam\Downloads\1338559699109.png
    2012-06-01 06:28 - 2012-06-01 06:28 - 00890294 ____A C:\Users\Sam\Downloads\1338557718555.png
    2012-06-01 05:55 - 2012-06-11 06:24 - 00000000 ____D C:\Program Files (x86)\Black_Box
    2012-06-01 05:42 - 2012-06-01 05:42 - 00184177 ____A C:\Users\Sam\Downloads\1338557724904.png
    2012-06-01 05:10 - 2012-06-01 05:10 - 00095645 ____A C:\Users\Sam\Downloads\922270_1326074572207_full.png
    2012-06-01 05:08 - 2012-06-01 05:26 - 01094543 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8 (1).png
    2012-06-01 05:08 - 2012-06-01 05:08 - 00846658 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8 (2).png
    2012-06-01 04:04 - 2012-06-01 04:08 - 00555485 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8.png
    2012-05-31 23:08 - 2012-05-31 23:08 - 02030866 ____A C:\Users\Sam\Downloads\1338516702562.gif
    2012-05-31 18:01 - 2012-05-31 18:01 - 00091602 ____A C:\Users\Sam\Downloads\DQpwY.png
    2012-05-31 17:36 - 2012-05-31 17:36 - 00140904 ____A C:\Users\Sam\Downloads\1338505895859.png
    2012-05-31 15:15 - 2012-05-31 15:15 - 00730590 ____A C:\Users\Sam\Downloads\830px-IH.png
    2012-05-31 14:43 - 2012-05-31 16:06 - 00000000 ____D C:\Users\Sam\Downloads\Crysis.2.v1.9.Update.incl.DX11.Ultra.and.HiRes.Texture.Packs-SKIDROW
    2012-05-31 14:30 - 2012-05-31 15:11 - 3446656729 ____A C:\Users\Sam\Downloads\Samaritan_Realtime_Demo.mov
    2012-05-31 14:03 - 2012-05-31 14:03 - 00508323 ____A C:\Users\Sam\Downloads\IUH15.gif
    2012-05-31 12:51 - 2012-05-31 12:51 - 00000000 ____D C:\Users\Sam\Documents\Wolfire
    2012-05-31 12:50 - 2012-05-31 12:50 - 00415764 ____A C:\Users\Sam\Downloads\1338496525693.png
    2012-05-31 12:45 - 2012-05-31 12:45 - 00164620 ____A C:\Users\Sam\Downloads\1338496619808.png
    2012-05-31 12:42 - 2012-05-31 12:42 - 00052783 ____A C:\Users\Sam\Downloads\1338496126338.png
    2012-05-31 12:30 - 2012-05-31 12:29 - 00592973 ____A C:\Users\Sam\Downloads\1338495984208.gif
    2012-05-31 12:19 - 2012-05-31 12:39 - 2050742762 ____A C:\Users\Sam\Downloads\a175-win.exe
    2012-05-31 11:06 - 2012-05-31 11:06 - 02026331 ____A C:\Users\Sam\Downloads\playing tera with kinect.gif
    2012-05-31 11:04 - 2012-05-31 11:04 - 02075845 ____A C:\Users\Sam\Downloads\1338489603048.gif
    2012-05-31 11:01 - 2012-05-31 11:01 - 00112343 ____A C:\Users\Sam\Downloads\1338490490967.png
    2012-05-31 10:19 - 2012-05-31 10:19 - 01857408 ____A C:\Users\Sam\Downloads\1338481290684.gif
    2012-05-31 09:13 - 2012-05-31 09:31 - 00000000 ____D C:\Program Files (x86)\OMGWTFOTL
    2012-05-31 09:00 - 2012-05-31 13:03 - 00000000 ____D C:\Users\Sam\Downloads\Batman Arkham City-Black Box
    2012-05-31 08:45 - 2012-05-31 08:45 - 00296100 ____A C:\Users\Sam\Downloads\1338479893433.png
    2012-05-31 08:00 - 2012-05-31 08:00 - 01520673 ____A C:\Users\Sam\Downloads\1338479274502.png
    2012-05-31 06:50 - 2012-05-31 06:50 - 01673522 ____A C:\Users\Sam\Downloads\1338475481321.gif
    2012-05-31 06:49 - 2012-05-31 06:49 - 02126577 ____A C:\Users\Sam\Downloads\1338475454688.gif
    2012-05-31 05:44 - 2012-05-31 05:44 - 00405963 ____A C:\Users\Sam\Downloads\1338471665015.png
    2012-05-31 05:10 - 2012-05-31 05:18 - 315470531 ____A C:\Users\Sam\Downloads\StarForge_V0.1.zip
    2012-05-31 05:02 - 2012-05-31 05:02 - 00499752 ____A C:\Users\Sam\Downloads\forgetting to equip covenant of artorias.gif
    2012-05-31 05:00 - 2012-05-31 05:00 - 02815118 ____A C:\Users\Sam\Downloads\cod audience.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 02167911 ____A C:\Users\Sam\Downloads\1338465860686.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 01465355 ____A C:\Users\Sam\Downloads\1338465759944.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 01426056 ____A C:\Users\Sam\Downloads\1338465756520.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 00505912 ____A C:\Users\Sam\Downloads\1338465615458.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 00316451 ____A C:\Users\Sam\Downloads\1338465556688.gif
    2012-05-31 04:57 - 2012-05-31 04:57 - 00252981 ____A C:\Users\Sam\Downloads\1338465428206.gif
    2012-05-31 04:55 - 2012-05-31 04:55 - 00118891 ____A C:\Users\Sam\Downloads\1338465131425.gif
    2012-05-31 04:52 - 2012-05-31 04:52 - 01048079 ____A C:\Users\Sam\Downloads\1338468417468.png
    2012-05-31 04:52 - 2012-05-31 04:52 - 00364226 ____A C:\Users\Sam\Downloads\1338463568564.gif
    2012-05-31 04:45 - 2012-05-31 04:45 - 01739995 ____A C:\Users\Sam\Downloads\1338467275139.gif
    2012-05-31 03:46 - 2012-05-31 03:46 - 00500483 ____A C:\Users\Sam\Downloads\1338462955239.gif
    2012-05-31 03:11 - 2012-05-31 03:11 - 00597558 ____A C:\Users\Sam\Downloads\1338462659341.png
    2012-05-31 03:04 - 2012-05-31 03:04 - 00125013 ____A C:\Users\Sam\Downloads\1338460103662.png
    2012-05-31 01:40 - 2012-05-31 01:40 - 00303410 ____A C:\Users\Sam\Downloads\BobPage.png
    2012-05-31 01:37 - 2012-05-31 01:36 - 00038797 ____A C:\Users\Sam\Downloads\1338456974352.png
    2012-05-31 00:49 - 2012-05-31 00:49 - 00343600 ____A C:\Users\Sam\Downloads\1338450062772.gif
    2012-05-31 00:47 - 2012-05-31 00:47 - 00872103 ____A C:\Users\Sam\Downloads\1338453174536.png
    2012-05-31 00:41 - 2012-05-31 00:41 - 03004412 ____A C:\Users\Sam\Downloads\1338451381460.gif
    2012-05-31 00:41 - 2012-05-31 00:41 - 00503979 ____A C:\Users\Sam\Downloads\1338451552153.gif
    2012-05-31 00:13 - 2012-05-31 00:13 - 00042217 ____A C:\Users\Sam\Downloads\1338450067927.png
    2012-05-31 00:10 - 2012-05-31 00:10 - 00363059 ____A C:\Users\Sam\Downloads\1338451438669.gif
    2012-05-31 00:06 - 2012-05-31 00:06 - 00051766 ____A C:\Users\Sam\Downloads\1338450705862.png
    2012-05-30 17:09 - 2012-05-30 17:09 - 00325363 ____A C:\Users\Sam\Downloads\1338392092126.gif
    2012-05-30 17:06 - 2012-05-30 17:06 - 00332206 ____A C:\Users\Sam\Downloads\1338388826880.png
    2012-05-30 17:02 - 2012-05-30 17:02 - 00207723 ____A C:\Users\Sam\Downloads\1338379694876.png
    2012-05-30 15:48 - 2012-05-30 15:48 - 00000000 ____D C:\Users\Sam\Downloads\REDLINE Music Collection [FLAC]
    2012-05-30 15:47 - 2012-05-30 15:47 - 00016667 ____A C:\Users\Sam\Downloads\[BakaBT.160937v1] REDLINE Music Collection [FLAC].torrent
    2012-05-30 14:28 - 2012-05-30 14:31 - 16585571 ____A C:\Users\Sam\Downloads\OMGWTFOTLSetup[Nanatuha][AT2006].exe
    2012-05-30 14:28 - 2012-05-30 14:28 - 00005268 ____A C:\Users\Sam\Downloads\OMGWTFOTLSetup[Nanatuha][AT2006].exe (1).torrent
    2012-05-30 11:33 - 2012-05-30 11:33 - 02436542 ____A C:\Users\Sam\Downloads\1338404405047.gif
    2012-05-30 08:27 - 2012-05-30 08:30 - 368334765 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_21_[h264-720p][BCB5C808].mkv
    2012-05-30 08:27 - 2012-05-30 08:27 - 00014528 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_21_[h264-720p][BCB5C808].mkv.torrent
    2012-05-30 08:22 - 2012-05-30 08:22 - 02671412 ____A C:\Users\Sam\Downloads\1338394246397.gif
    2012-05-30 08:03 - 2012-05-30 08:03 - 01838721 ____A C:\Users\Sam\Downloads\1338393569559.gif
    2012-05-30 07:59 - 2012-05-30 07:59 - 00268129 ____A C:\Users\Sam\Downloads\1338391239612.gif
    2012-05-30 07:57 - 2012-05-30 07:57 - 02220249 ____A C:\Users\Sam\Downloads\1338389483646.gif
    2012-05-30 06:38 - 2012-05-30 06:38 - 00554232 ____A C:\Users\Sam\Downloads\SkinEdit Alpha 3 pre 7 (1).zip
    2012-05-29 18:56 - 2012-05-29 19:02 - 1367096420 ____A C:\Users\Sam\Downloads\Adobe Flash Pro CS6.exe
    2012-05-29 18:05 - 2012-05-29 18:05 - 00636769 ____A C:\Users\Sam\Downloads\1338342691660.png
    2012-05-29 16:00 - 2012-05-29 16:12 - 00000000 ____D C:\Users\Sam\Downloads\Diablo 2 with Lord of Destruction (v1.13c) (Direct Play)
    2012-05-29 14:47 - 2012-05-29 14:47 - 00167722 ____A C:\Users\Sam\Downloads\Hazama_(Continuum_Shift,_Character_Select_Artwork).png
    2012-05-29 05:23 - 2012-05-29 05:23 - 00036889 ____A C:\Users\Sam\Downloads\[BakaBT.163373v0] Legend.of.Galactic.Heroes.Overture.to.a.New.War.torrent
    2012-05-29 05:23 - 2012-05-29 05:23 - 00000000 ____D C:\Users\Sam\Downloads\Legend.of.Galactic.Heroes.Overture.to.a.New.War
    2012-05-29 04:44 - 2012-05-29 04:44 - 00646995 ____A C:\Users\Sam\Downloads\1338295426127.png
    2012-05-29 04:43 - 2012-05-29 04:43 - 00393429 ____A C:\Users\Sam\Downloads\1338294795435.png
    2012-05-28 18:43 - 2012-05-28 18:43 - 00264838 ____A C:\Users\Sam\Downloads\1338255862438.png
    2012-05-28 17:15 - 2012-05-28 17:15 - 00103742 ____A C:\Users\Sam\Downloads\1338250741805.png
    2012-05-28 17:12 - 2012-05-28 17:12 - 00048208 ____A C:\Users\Sam\Downloads\1338249300522.png
    2012-05-28 16:06 - 2012-05-28 16:08 - 12256911 ____A C:\Users\Sam\Downloads\[SaHa] Kaworu Watashiya - Kodomo no Jikan Ch.83 (English).rar
    2012-05-28 01:12 - 2012-05-28 01:12 - 00259339 ____A C:\Users\Sam\Downloads\1338190738707.png
    2012-05-27 23:37 - 2012-05-27 23:37 - 00262995 ____A C:\Users\Sam\Downloads\1338188104291.png
    2012-05-27 23:36 - 2012-05-27 23:36 - 00431069 ____A C:\Users\Sam\Downloads\1338188072876.png
    2012-05-27 23:34 - 2012-05-27 23:34 - 00386484 ____A C:\Users\Sam\Downloads\1338187660848.png
    2012-05-26 14:55 - 2012-05-26 14:55 - 00313718 ____A C:\Users\Sam\Downloads\n4fc15d72b93fb.png
    2012-05-26 07:20 - 2012-05-26 07:20 - 00308571 ____A C:\Users\Sam\Downloads\1338024965410.gif
    2012-05-26 04:25 - 2012-05-26 04:25 - 00026224 ____A C:\Users\Sam\Downloads\1338017225355.png
    2012-05-25 14:33 - 2012-05-25 14:33 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack
    2012-05-25 14:32 - 2012-05-25 14:32 - 09889896 ____A (CCCP Project ) C:\Users\Sam\Downloads\Combined-Community-Codec-Pack-2011-11-11 (1).exe
    2012-05-25 14:28 - 2012-06-18 14:48 - 00000000 ____D C:\Users\Sam\AppData\Roaming\vlc
    2012-05-25 14:26 - 2012-05-25 14:26 - 00000000 ____D C:\Program Files (x86)\VideoLAN
    2012-05-25 14:21 - 2012-05-25 14:22 - 22259528 ____A C:\Users\Sam\Downloads\vlc-2.0.1-win32.exe
    2012-05-25 14:16 - 2012-05-25 14:16 - 00162416 ____A C:\Users\Sam\Downloads\[BakaBT.161010v1] Legend of Galactic Heroes.torrent
    2012-05-25 13:01 - 2012-05-25 13:04 - 72731273 ____A C:\Users\Sam\Downloads\BIOS PCSX2 0.9.9.zip
    2012-05-25 03:59 - 2012-05-25 03:59 - 00251413 ____A C:\Users\Sam\Downloads\1337939535602.png
    2012-05-25 03:57 - 2012-05-25 03:57 - 00685892 ____A C:\Users\Sam\Downloads\1337938712729.png
    2012-05-25 00:44 - 2012-06-22 07:41 - 01607396 ____A C:\Windows\WindowsUpdate.log
    2012-05-23 09:24 - 2012-05-23 09:24 - 00001678 ____A C:\Users\Sam\Downloads\FakedPlayers.rar
    2012-05-23 07:15 - 2012-05-23 07:17 - 264329105 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_20_[h264-720p][AF35659F].mkv
    2012-05-23 07:15 - 2012-05-23 07:15 - 00020648 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_20_[h264-720p][AF35659F].mkv.torrent
    2012-05-23 04:53 - 2012-05-23 04:53 - 00077501 ____A C:\Users\Sam\Downloads\PBF071-Weeaboo.gif

    ============ 3 Months Modified Files and Folders =============

    2012-06-22 07:50 - 2012-06-22 07:50 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.71AA2B530F37956C
    2012-06-22 07:50 - 2012-06-22 07:50 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdnaklxs.sys
    2012-06-22 07:49 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
    2012-06-22 07:48 - 2012-06-18 17:56 - 00000616 ____A C:\Windows\setupact.log
    2012-06-22 07:46 - 2012-06-22 07:46 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.389A80A780DC0FE3
    2012-06-22 07:43 - 2012-06-22 07:43 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.F99EF225C3D55B0D
    2012-06-22 07:41 - 2012-05-25 00:44 - 01607396 ____A C:\Windows\WindowsUpdate.log
    2012-06-21 19:36 - 2011-11-11 07:21 - 00000900 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000UA.job
    2012-06-21 18:01 - 2012-06-18 10:52 - 00000000 ____D C:\Program Files\Microsoft Security Client
    2012-06-21 18:01 - 2012-03-10 13:50 - 00473542 ____A C:\Windows\System32\perfh011.dat
    2012-06-21 18:01 - 2012-03-10 13:50 - 00141852 ____A C:\Windows\System32\perfc011.dat
    2012-06-21 18:01 - 2011-11-11 07:28 - 00001945 ____A C:\Windows\epplauncher.mif
    2012-06-21 18:01 - 2011-11-11 07:27 - 00006438 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
    2012-06-21 18:00 - 2012-06-21 18:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
    2012-06-21 13:14 - 2012-06-21 13:11 - 00000000 ____D C:\Users\Sam\Desktop\fix
    2012-06-21 13:10 - 2009-07-13 20:45 - 00013456 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2012-06-21 13:10 - 2009-07-13 20:45 - 00013456 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2012-06-21 13:07 - 2011-11-11 08:02 - 00000000 ____D C:\Users\Sam\AppData\Roaming\uTorrent
    2012-06-21 13:05 - 2011-11-13 07:32 - 00000000 ____D C:\Program Files (x86)\Steam
    2012-06-21 13:04 - 2011-12-10 12:18 - 00000000 ____D C:\Program Files\PeerBlock
    2012-06-21 13:03 - 2012-06-18 17:55 - 00001412 ____A C:\Windows\PFRO.log
    2012-06-21 12:56 - 2012-06-21 12:56 - 00000000 ____D C:\Windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
    2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Malwarebytes
    2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Users\All Users\Malwarebytes
    2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
    2012-06-19 02:45 - 2012-06-19 02:45 - 00000000 __SHD C:\found.000
    2012-06-18 18:06 - 2012-06-18 17:50 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
    2012-06-18 18:06 - 2012-01-11 12:41 - 00000000 __SHD C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}
    2012-06-18 17:56 - 2012-06-18 17:56 - 00000000 ____A C:\Windows\setuperr.log
    2012-06-18 17:52 - 2012-06-18 17:52 - 00000000 ____D C:\Users\Sam\Documents\Simply Super Software
    2012-06-18 17:50 - 2012-06-18 17:50 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Simply Super Software
    2012-06-18 17:50 - 2012-06-18 17:50 - 00000000 ____D C:\Users\All Users\Simply Super Software
    2012-06-18 17:49 - 2012-06-18 17:49 - 00000000 ____D C:\Users\Sam\Desktop\KEY
    2012-06-18 17:08 - 2009-07-13 21:08 - 00032608 ____A C:\Windows\Tasks\SCHEDLGU.TXT
    2012-06-18 14:48 - 2012-06-14 13:07 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Rainmeter
    2012-06-18 14:48 - 2012-05-25 14:28 - 00000000 ____D C:\Users\Sam\AppData\Roaming\vlc
    2012-06-18 14:48 - 2012-05-02 17:43 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Youtube Downloader HD
    2012-06-18 14:48 - 2012-04-28 11:35 - 00000000 ____D C:\Users\Sam\AppData\Roaming\.techniclauncher
    2012-06-18 14:48 - 2012-02-26 12:15 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Audacity
    2012-06-18 14:48 - 2012-01-16 09:01 - 00000000 ____D C:\Users\Sam\AppData\Roaming\gtk-2.0
    2012-06-18 14:48 - 2011-11-11 08:13 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Winamp
    2012-06-18 14:48 - 2011-11-11 07:30 - 00000000 ____D C:\Users\Sam\AppData\Roaming\IrfanView
    2012-06-18 14:48 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\registration
    2012-06-18 14:48 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\AppCompat
    2012-06-18 13:01 - 2012-06-18 03:29 - 00000000 ____D C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
    2012-06-18 13:01 - 2012-06-16 04:07 - 00000000 ____D C:\Program Files\Web Assistant
    2012-06-18 10:52 - 2012-06-18 10:52 - 00065536 __ASH C:\Windows\System32\config\components{64a78e57-6562-11e1-be22-001fd0a2a7fa}.TxR.blf
    2012-06-18 10:52 - 2012-06-18 10:51 - 12621696 ____A (Microsoft Corporation) C:\Users\Sam\Downloads\mseinstall (1).exe
    2012-06-18 10:36 - 2011-11-11 07:21 - 00000848 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000Core.job
    2012-06-18 10:33 - 2012-06-18 10:30 - 275611648 ____A C:\Users\Sam\Downloads\kav_rescue_10.iso
    2012-06-18 10:23 - 2012-06-18 10:23 - 03879304 ____A (AVG Technologies) C:\Users\Sam\Downloads\avg_free_stb_all_2012_2180_cnet.exe
    2012-06-18 10:11 - 2012-03-06 03:57 - 00000000 ____D C:\Program Files (x86)\GNU
    2012-06-18 10:06 - 2011-11-27 09:25 - 00000000 ____D C:\Program Files (x86)\ShiftWindow
    2012-06-18 10:04 - 2012-05-13 19:26 - 00000000 ____D C:\Program Files (x86)\AMD APP
    2012-06-18 05:52 - 2011-11-11 06:53 - 00000000 ____D C:\users\Sam
    2012-06-18 03:17 - 2012-06-18 03:16 - 00000000 ____D C:\Users\Sam\Downloads\Franz Schubert - Symphonies
    2012-06-17 23:23 - 2012-06-17 23:23 - 00337888 ____A C:\Users\Sam\Downloads\YKRCj.png
    2012-06-17 23:08 - 2011-11-11 08:05 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Media Player Classic
    2012-06-17 18:29 - 2012-06-17 18:29 - 00014113 ____A C:\Users\Sam\.recently-used.xbel
    2012-06-17 18:04 - 2012-01-16 08:59 - 00000000 ____D C:\Users\Sam\.gimp-2.6
    2012-06-17 14:08 - 2012-06-15 09:42 - 00000000 ____D C:\Users\Sam\Desktop\REESEQUEST
    2012-06-17 11:36 - 2012-06-17 11:36 - 00062112 ____A C:\Users\Sam\Downloads\1339961660558.png
    2012-06-17 11:30 - 2012-06-17 11:30 - 02023244 ____A C:\Users\Sam\Downloads\1339960561597.gif
    2012-06-17 11:18 - 2012-06-17 11:18 - 00354087 ____A C:\Users\Sam\Downloads\1339958589177.png
    2012-06-17 11:10 - 2012-06-17 11:10 - 00098614 ____A C:\Users\Sam\Downloads\1339958242815.png
    2012-06-17 11:07 - 2012-06-17 11:07 - 00472450 ____A C:\Users\Sam\Downloads\1339960014519.png
    2012-06-17 09:35 - 2012-06-17 09:35 - 00567033 ____A C:\Users\Sam\Downloads\b00Nf.png
    2012-06-17 07:54 - 2012-06-17 07:54 - 00445108 ____A C:\Users\Sam\Downloads\1339946400319.png
    2012-06-17 07:54 - 2012-06-17 07:54 - 00394915 ____A C:\Users\Sam\Downloads\1339945860675.png
    2012-06-17 07:40 - 2012-06-17 07:31 - 387071187 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_24_[h264-720p][583D3DBB].mkv
    2012-06-17 07:31 - 2012-06-17 07:31 - 00029942 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_24_[h264-720p][583D3DBB].mkv.torrent
    2012-06-17 07:17 - 2012-06-17 07:15 - 39882672 ____A C:\Users\Sam\Downloads\Bakemonogatari Hentai - Iromono go _01vita.mp4
    2012-06-17 07:17 - 2012-06-17 07:15 - 27789679 ____A C:\Users\Sam\Downloads\Bakemonogatari Hentai - Iromono go _02vita.mp4
    2012-06-17 06:59 - 2012-06-17 06:59 - 00371927 ____A C:\Users\Sam\Downloads\n4fdd44ecacbaf.png
    2012-06-17 06:47 - 2012-03-12 08:29 - 00000000 ____D C:\Users\Sam\AppData\Roaming\DisplayFusion
    2012-06-17 06:42 - 2012-06-17 06:43 - 00559297 ____A C:\Users\Sam\Downloads\zpz7D.png
    2012-06-16 22:35 - 2012-01-24 18:36 - 00000000 ____D C:\Users\Sam\AppData\Roaming\X-Chat 2
    2012-06-16 16:54 - 2012-06-16 15:49 - 111406435 ____A C:\Users\Sam\Documents\REESE.wmv
    2012-06-16 10:25 - 2012-06-16 10:25 - 00258268 ____A C:\Users\Sam\Downloads\t6TF9.png
    2012-06-15 16:57 - 2012-06-15 16:56 - 20326756 ____A C:\Users\Sam\Downloads\Persona 4- Rise Joins The Team.mp3
    2012-06-15 15:24 - 2012-06-15 15:24 - 02357244 ____A C:\Users\Sam\Downloads\Nyans Birthday Surprise.rar
    2012-06-15 14:07 - 2012-06-15 14:07 - 06360088 ____A C:\Users\Sam\Documents\Reese Witherspoon Black Eye the song.Ray Sipe.Lady GaGa..avi
    2012-06-15 13:40 - 2012-06-15 13:34 - 183238098 ____A C:\Users\Sam\Downloads\Brodyquest-Tracks.zip
    2012-06-15 13:12 - 2012-06-13 18:42 - 00075694 ____A C:\Users\Sam\Downloads\n4fd94bf3a0661.png
    2012-06-15 12:40 - 2012-06-15 12:40 - 19384518 ____A C:\Users\Sam\Documents\reese.wmv_(480p).avi
    2012-06-15 11:49 - 2012-06-15 11:45 - 00333064 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4.sfk
    2012-06-15 11:43 - 2012-06-15 11:41 - 52151891 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4
    2012-06-15 11:37 - 2012-06-15 11:36 - 24766486 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).avi
    2012-06-15 11:34 - 2012-06-15 11:34 - 00734849 ____A C:\Users\Sam\Downloads\n4fdb6d5d1ce06_large.gif
    2012-06-15 10:30 - 2012-06-15 10:29 - 00313528 ____A C:\Users\Sam\Downloads\Brodyquest.mp3.sfk
    2012-06-15 10:26 - 2012-06-15 10:26 - 01383850 ____A C:\Users\Sam\Downloads\Big Reese (Song).mp3
    2012-06-15 10:25 - 2012-06-15 10:25 - 05944542 ____A C:\Users\Sam\Documents\Big Reese (Song)_(360p).mp4
    2012-06-15 09:40 - 2012-06-15 09:37 - 05467607 ____A C:\Users\Sam\Downloads\Brodyquest.mp3
    2012-06-15 08:12 - 2012-06-15 08:12 - 00149880 ____A C:\Users\Sam\Downloads\1339774832043.png
    2012-06-15 06:52 - 2011-11-11 07:17 - 00066992 ____A C:\Users\Sam\AppData\Local\GDIPFONTCACHEV1.DAT
    2012-06-15 06:49 - 2009-07-13 20:45 - 04863800 ____A C:\Windows\System32\FNTCACHE.DAT
    2012-06-14 19:07 - 2012-06-14 19:07 - 00704668 ____A C:\Users\Sam\Downloads\1339729029003.png
    2012-06-14 19:00 - 2012-06-14 19:00 - 00013860 ____A C:\Users\Sam\Downloads\1339728996219.png
    2012-06-14 14:15 - 2012-06-14 14:15 - 00837430 ____A C:\Users\Sam\Downloads\PixelVision_1.8.3.zip
    2012-06-14 13:11 - 2012-06-14 13:11 - 01835947 ____A C:\Users\Sam\Downloads\Enigma3.1.rmskin
    2012-06-14 13:11 - 2012-06-14 13:07 - 00000000 ____D C:\Program Files\Rainmeter
    2012-06-14 13:09 - 2012-06-14 13:09 - 00004186 ____A C:\Users\Sam\Downloads\segoeclock_for_rainmeter_by_mossydev-d4vdz3c.rmskin
    2012-06-14 13:07 - 2012-06-14 13:07 - 00000000 ____D C:\Users\Sam\Documents\Rainmeter
    2012-06-14 13:06 - 2012-06-14 13:06 - 01392000 ____A C:\Users\Sam\Downloads\Rainmeter-2.2.exe
    2012-06-14 12:41 - 2012-06-14 12:41 - 02220052 ____A C:\Users\Sam\Downloads\1339706463873.gif
    2012-06-14 12:25 - 2012-06-14 12:25 - 00356462 ____A C:\Users\Sam\Downloads\1339701294186.png
    2012-06-14 12:23 - 2012-06-14 12:23 - 00040185 ____A C:\Users\Sam\Downloads\1339700478683.png
    2012-06-14 08:49 - 2011-11-11 08:38 - 00010752 ____A C:\Users\Sam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2012-06-14 08:15 - 2012-06-14 08:15 - 00189477 ____A C:\Users\Sam\Downloads\1339690338427.png
    2012-06-14 07:50 - 2012-06-14 07:50 - 00397485 ____A C:\Users\Sam\Downloads\1339688945912.png
    2012-06-14 07:46 - 2012-06-14 07:46 - 00199984 ____A C:\Users\Sam\Downloads\1339688670017.png
    2012-06-14 06:33 - 2012-06-14 06:29 - 00000000 ____D C:\FlvGrabber
    2012-06-14 06:27 - 2012-06-14 06:23 - 00000000 ____D C:\Users\Sam\Documents\FlvGrabber
    2012-06-14 06:25 - 2012-06-14 06:25 - 04083298 ____A ( ) C:\Users\Sam\Downloads\HiDownloadPlatinum.exe
    2012-06-14 06:25 - 2012-06-14 06:25 - 00000000 __SHD C:\Windows\System32\%APPDATA%
    2012-06-14 06:20 - 2012-06-14 06:20 - 00000000 ____D C:\Program Files (x86)\WinPcap
    2012-06-14 06:17 - 2012-06-14 06:17 - 04118700 ____A ( ) C:\Users\Sam\Downloads\flvgrabber.exe
    2012-06-14 06:17 - 2012-06-14 06:17 - 04118700 ____A ( ) C:\Users\Sam\Downloads\flvgrabber (1).exe
    2012-06-14 06:08 - 2012-06-14 06:08 - 00406155 ____A C:\Users\Sam\Downloads\k8Usq.png
    2012-06-14 06:07 - 2012-06-14 06:07 - 00508723 ____A C:\Users\Sam\Downloads\JjnZo.png
    2012-06-14 06:07 - 2012-06-14 06:07 - 00508723 ____A C:\Users\Sam\Downloads\JjnZo (1).png
    2012-06-14 06:07 - 2012-06-14 06:07 - 00274974 ____A C:\Users\Sam\Downloads\5kKFT.png
    2012-06-14 03:05 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
    2012-06-13 17:49 - 2012-06-13 17:49 - 01644467 ____A C:\Users\Sam\Downloads\n4fd91d741f6e2_large.gif
    2012-06-13 17:20 - 2012-06-13 17:18 - 00000000 ____D C:\Users\Sam\Downloads\Final Fantasy IX
    2012-06-13 16:35 - 2012-06-13 16:35 - 00485875 ____A C:\Users\Sam\Downloads\1339629812322.png
    2012-06-13 15:00 - 2012-06-13 15:00 - 01985103 ____A C:\Users\Sam\Downloads\woaUv.gif
    2012-06-13 14:33 - 2012-06-13 14:33 - 02019342 ____A C:\Users\Sam\Downloads\IKtte.gif
    2012-06-13 14:33 - 2012-06-13 14:33 - 01923054 ____A C:\Users\Sam\Downloads\sADfK.gif
    2012-06-13 13:53 - 2012-06-13 13:53 - 00438293 ____A C:\Users\Sam\Downloads\75TlU.png
    2012-06-13 13:53 - 2012-06-13 13:53 - 00431910 ____A C:\Users\Sam\Downloads\0VT1n.png
    2012-06-13 13:53 - 2012-06-13 13:53 - 00314777 ____A C:\Users\Sam\Downloads\kVYoN.png
    2012-06-13 13:53 - 2012-06-13 13:53 - 00181644 ____A C:\Users\Sam\Downloads\0eDSx.png
    2012-06-13 13:29 - 2012-06-13 13:29 - 00587109 ____A C:\Users\Sam\Downloads\n4fd905f98a8a3.png
    2012-06-13 03:31 - 2012-03-08 09:19 - 00000000 ____D C:\Desk
    2012-06-12 17:39 - 2012-06-12 17:39 - 00013578 ____A C:\Users\Sam\Downloads\1339550895675.png
    2012-06-12 17:37 - 2012-06-12 17:37 - 00242286 ____A C:\Users\Sam\Downloads\E9S0v.png
    2012-06-12 17:24 - 2012-06-12 17:23 - 13411069 ____A C:\Users\Sam\Downloads\Delver-alpha-5-29-12.zip
    2012-06-12 17:01 - 2012-06-12 17:01 - 00101156 ____A C:\Users\Sam\Downloads\1339549245513.png
    2012-06-12 16:57 - 2012-06-12 16:57 - 00286312 ____A C:\Users\Sam\Downloads\wikipedia_harassment1.png
    2012-06-12 16:27 - 2011-12-12 09:03 - 00000000 ____D C:\Windows\SysWOW64\Macromed
    2012-06-12 15:30 - 2012-06-12 15:30 - 00019263 ____A C:\Users\Sam\Downloads\1339540441199.png
    2012-06-12 15:25 - 2012-06-12 15:25 - 00100318 ____A C:\Users\Sam\Downloads\1339540041581.png
    2012-06-12 15:24 - 2012-06-12 15:24 - 00124385 ____A C:\Users\Sam\Downloads\1339540004789.png
    2012-06-12 15:22 - 2012-06-12 15:22 - 00065119 ____A C:\Users\Sam\Downloads\1339539824048.png
    2012-06-12 15:16 - 2012-06-12 15:16 - 00166525 ____A C:\Users\Sam\Downloads\1339539601017.png
    2012-06-12 15:09 - 2012-06-12 15:09 - 00716396 ____A C:\Users\Sam\Downloads\1339539318458.png
    2012-06-12 15:06 - 2012-06-12 15:06 - 02029826 ____A C:\Users\Sam\Downloads\1339539038686.gif
    2012-06-12 15:04 - 2012-06-12 15:04 - 00227109 ____A C:\Users\Sam\Downloads\1339538701109.png
    2012-06-12 14:56 - 2012-06-12 14:56 - 00142487 ____A C:\Users\Sam\Downloads\1339537563444.png
    2012-06-12 14:52 - 2012-06-12 14:52 - 00213762 ____A C:\Users\Sam\Downloads\1339537114631.png
    2012-06-12 14:30 - 2012-06-12 14:30 - 00099665 ____A C:\Users\Sam\Downloads\1339539221610.png
    2012-06-12 14:29 - 2012-06-12 14:29 - 00060995 ____A C:\Users\Sam\Downloads\1339539144886.png
    2012-06-12 14:26 - 2012-06-12 14:26 - 00083785 ____A C:\Users\Sam\Downloads\1339539082180.png
    2012-06-12 14:20 - 2012-06-12 14:20 - 00299429 ____A C:\Users\Sam\Downloads\1339539532673.png
    2012-06-12 14:19 - 2012-06-12 14:19 - 00008341 ____A C:\Users\Sam\Downloads\1339539425730.png
    2012-06-12 14:18 - 2012-06-12 14:18 - 01258662 ____A C:\Users\Sam\Downloads\1339538041302.gif
    2012-06-12 14:18 - 2012-06-12 14:18 - 00597234 ____A C:\Users\Sam\Downloads\1339537822406.gif
    2012-06-12 14:18 - 2012-06-12 14:18 - 00041996 ____A C:\Users\Sam\Downloads\1339538172315.png
    2012-06-12 14:17 - 2012-06-12 14:17 - 00078751 ____A C:\Users\Sam\Downloads\1339537667280.png
    2012-06-12 13:55 - 2012-06-12 13:55 - 00376976 ____A C:\Users\Sam\Downloads\1339536468542.png
    2012-06-12 13:49 - 2012-06-12 13:49 - 00441870 ____A C:\Users\Sam\Downloads\1339537543596.png
    2012-06-12 13:43 - 2012-06-12 13:43 - 00240459 ____A C:\Users\Sam\Downloads\1339537326653.png
    2012-06-12 13:36 - 2012-06-12 13:36 - 00097660 ____A C:\Users\Sam\Downloads\1339536155865.png
    2012-06-12 13:29 - 2012-06-12 13:29 - 00069731 ____A C:\Users\Sam\Downloads\1339536317971.png
    2012-06-12 13:23 - 2012-06-12 13:23 - 01991238 ____A C:\Users\Sam\Downloads\1339526223829.gif
    2012-06-12 13:03 - 2012-06-12 13:03 - 00057074 ____A C:\Users\Sam\Downloads\1339533167078.png
    2012-06-12 13:02 - 2012-06-12 13:02 - 00504430 ____A C:\Users\Sam\Downloads\1339533242278.gif
    2012-06-12 12:58 - 2012-06-12 12:58 - 00141518 ____A C:\Users\Sam\Downloads\1339532412234.png
    2012-06-12 12:57 - 2012-06-12 12:57 - 02082940 ____A C:\Users\Sam\Downloads\1339532135617.gif
    2012-06-12 12:50 - 2012-06-12 12:50 - 00538936 ____A C:\Users\Sam\Downloads\1339530641065.png
    2012-06-12 12:49 - 2012-06-12 12:49 - 00583401 ____A C:\Users\Sam\Downloads\1339530535376.png
    2012-06-12 12:42 - 2012-06-12 12:42 - 00783532 ____A C:\Users\Sam\Downloads\1339533178926.gif
    2012-06-12 12:40 - 2012-06-12 12:40 - 01001328 ____A C:\Users\Sam\Downloads\1339533396232.png
    2012-06-12 12:40 - 2012-06-12 12:40 - 00177532 ____A C:\Users\Sam\Downloads\1339533619806.png
    2012-06-12 12:38 - 2012-06-12 12:38 - 00108093 ____A C:\Users\Sam\Downloads\1339533097065.png
    2012-06-12 12:37 - 2012-06-12 12:37 - 00644604 ____A C:\Users\Sam\Downloads\1339532652037.png
    2012-06-12 12:36 - 2012-06-12 12:36 - 00925235 ____A C:\Users\Sam\Downloads\1339532324638.png
    2012-06-12 12:36 - 2012-06-12 12:36 - 00545012 ____A C:\Users\Sam\Downloads\1339532514392.png
    2012-06-12 12:33 - 2012-06-12 12:33 - 00071811 ____A C:\Users\Sam\Downloads\1339532889196.png
    2012-06-12 12:17 - 2012-06-12 12:16 - 16120530 ____A C:\Users\Sam\Downloads\Fate Gakuen Alternative.rar
    2012-06-12 12:08 - 2012-06-12 12:08 - 02319134 ____A C:\Users\Sam\Downloads\1339521136540.gif
    2012-06-12 11:59 - 2012-06-12 11:58 - 13085389 ____A C:\Users\Sam\Downloads\Takeda Hiromitsu, Tsubomi Hiraku Wa Beni No Hana.zip
    2012-06-12 11:53 - 2012-06-12 11:53 - 02228441 ____A C:\Users\Sam\Downloads\1339530650643.gif
    2012-06-12 11:39 - 2012-06-12 11:39 - 02875982 ____A C:\Users\Sam\Downloads\1339528221558.gif
    2012-06-12 11:19 - 2012-06-12 11:19 - 00145003 ____A C:\Users\Sam\Downloads\1339528193285.png
    2012-06-12 11:08 - 2012-06-12 11:08 - 00027929 ____A C:\Users\Sam\Downloads\1339527726611.png
    2012-06-12 10:30 - 2012-06-12 10:30 - 00518861 ____A C:\Users\Sam\Downloads\1339525347595.png
    2012-06-12 10:24 - 2012-06-12 10:24 - 00006667 ____A C:\Users\Sam\Downloads\1339524712317.png
    2012-06-12 10:23 - 2012-06-12 10:23 - 00063380 ____A C:\Users\Sam\Downloads\1339523732377.gif
    2012-06-12 09:37 - 2012-06-12 09:37 - 00089375 ____A C:\Users\Sam\Downloads\1339522114558.png
    2012-06-12 06:38 - 2012-06-12 06:38 - 00952561 ____A C:\Users\Sam\Downloads\Vocaroo_s0WFB6hVg8wq.mp3
    2012-06-12 06:38 - 2012-06-12 06:38 - 00676290 ____A C:\Users\Sam\Downloads\Vocaroo_s0rnjLKJV40H.mp3
    2012-06-12 06:38 - 2012-06-12 06:38 - 00407334 ____A C:\Users\Sam\Downloads\Vocaroo_s0pY6QBDdCBi.mp3
    2012-06-12 06:38 - 2012-06-12 06:38 - 00396049 ____A C:\Users\Sam\Downloads\Vocaroo_s0rmlL8hnBDe.mp3
    2012-06-12 06:38 - 2012-06-12 06:38 - 00396049 ____A C:\Users\Sam\Downloads\Vocaroo_s0rmlL8hnBDe (1).mp3
    2012-06-12 06:25 - 2012-06-12 06:25 - 00422171 ____A C:\Users\Sam\Downloads\Vocaroo_s0g7KjlZtukS.mp3
    2012-06-11 20:55 - 2012-06-11 20:55 - 06472877 ____A C:\Users\Sam\Downloads\Nyan.rar
    2012-06-11 20:51 - 2012-06-11 20:51 - 00622792 ____A C:\Users\Sam\Downloads\Vocaroo_s0Aa98tLhDBJ.mp3
    2012-06-11 08:29 - 2012-03-20 09:59 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
    2012-06-11 08:07 - 2012-06-11 07:56 - 00000000 ____D C:\Users\Sam\Documents\Rockstar Games
    2012-06-11 06:45 - 2012-06-11 06:38 - 186511255 ____A C:\Users\Sam\Downloads\KSP_win_0_14.zip
    2012-06-11 06:44 - 2012-06-11 06:41 - 186235034 ____A C:\Users\Sam\Downloads\Kerbal Space Prgoram (Mod pack by SAS41).exe
    2012-06-11 06:24 - 2012-06-01 05:55 - 00000000 ____D C:\Program Files (x86)\Black_Box
    2012-06-11 03:08 - 2012-06-11 03:08 - 00284027 ____A C:\Users\Sam\Downloads\1339406242103.png
    2012-06-11 02:45 - 2012-06-11 02:45 - 02973129 ____A C:\Users\Sam\Downloads\1339410341181.gif
    2012-06-11 02:45 - 2012-06-11 02:45 - 00851549 ____A C:\Users\Sam\Downloads\1339410254472.gif
    2012-06-10 19:50 - 2012-06-10 19:50 - 00169664 ____A C:\Users\Sam\Downloads\1339386589530.gif
    2012-06-10 19:03 - 2012-06-10 19:03 - 00966676 ____A C:\Users\Sam\Downloads\1339383413643.png
    2012-06-10 18:53 - 2012-06-10 18:53 - 00098261 ____A C:\Users\Sam\Downloads\madotsuki_grab_my_lightswitch_by_cartoonydoodles-d442wjt.png
    2012-06-10 16:14 - 2012-04-02 04:10 - 00000000 ____D C:\Games
    2012-06-10 14:37 - 2012-06-10 14:37 - 00501639 ____A C:\Users\Sam\Downloads\1339365078076.gif
    2012-06-10 13:51 - 2012-06-10 13:51 - 00043762 ____A C:\Users\Sam\Downloads\1339364902794.png
    2012-06-10 13:51 - 2012-06-10 13:51 - 00024615 ____A C:\Users\Sam\Downloads\1339364998695.gif
    2012-06-10 13:50 - 2012-06-10 13:50 - 00231879 ____A C:\Users\Sam\Downloads\1339363193733.png
    2012-06-10 13:49 - 2012-06-10 13:49 - 00297911 ____A C:\Users\Sam\Downloads\1339362937336.png
    2012-06-10 12:20 - 2011-11-11 08:46 - 00000000 ____D C:\Users\Sam\AppData\Roaming\DAEMON Tools Lite
    2012-06-10 11:52 - 2012-06-10 11:46 - 424821663 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_23_[h264-720p][9AD1A48A].mkv
    2012-06-10 11:44 - 2012-06-10 11:44 - 00016688 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_23_[h264-720p][9AD1A48A].mkv.torrent
    2012-06-10 11:40 - 2012-06-10 11:40 - 00325370 ____A C:\Users\Sam\Downloads\1339353254881.png
    2012-06-10 10:51 - 2012-06-10 10:51 - 02335363 ____A C:\Users\Sam\Downloads\1339354140448.gif
    2012-06-10 10:16 - 2012-06-10 10:16 - 00045494 ____A C:\Users\Sam\Downloads\1339351640960.gif
    2012-06-10 10:15 - 2012-06-10 10:15 - 00114202 ____A C:\Users\Sam\Downloads\1339351902821.gif
    2012-06-10 10:10 - 2012-06-10 10:10 - 00505092 ____A C:\Users\Sam\Downloads\1339351798441.gif
    2012-06-10 10:08 - 2012-06-10 10:08 - 01347749 ____A C:\Users\Sam\Downloads\1339346812796.gif
    2012-06-10 10:08 - 2012-06-10 10:08 - 00238143 ____A C:\Users\Sam\Downloads\1339346731378.png
    2012-06-10 09:46 - 2012-06-10 09:19 - 48988852 ____A C:\Users\Sam\Downloads\yn0.10enginstaller.rar
    2012-06-10 08:56 - 2012-06-10 08:56 - 02774103 ____A C:\Users\Sam\Downloads\1339347340488.png
    2012-06-10 08:25 - 2012-06-10 08:25 - 00118972 ____A C:\Users\Sam\Downloads\1339344243651.png
    2012-06-10 08:25 - 2012-06-10 08:25 - 00072554 ____A C:\Users\Sam\Downloads\1339344594388.png
    2012-06-10 08:24 - 2012-06-10 08:24 - 03109838 ____A C:\Users\Sam\Downloads\1339344161509.gif
    2012-06-10 08:23 - 2012-06-10 08:23 - 00422025 ____A C:\Users\Sam\Downloads\1339343908289.png
    2012-06-10 08:23 - 2012-06-10 08:23 - 00190029 ____A C:\Users\Sam\Downloads\1339343885784.png
    2012-06-10 08:23 - 2012-06-10 08:23 - 00100707 ____A C:\Users\Sam\Downloads\1339343963675.png
    2012-06-10 08:21 - 2012-06-10 08:21 - 00171814 ____A C:\Users\Sam\Downloads\1339343688016.png
    2012-06-10 08:21 - 2012-06-10 08:21 - 00087759 ____A C:\Users\Sam\Downloads\1339343629723.png
    2012-06-10 08:20 - 2012-06-10 08:20 - 00157338 ____A C:\Users\Sam\Downloads\1339343550517.png
    2012-06-10 08:20 - 2012-06-10 08:20 - 00046991 ____A C:\Users\Sam\Downloads\1339343591489.png
    2012-06-10 08:18 - 2012-06-10 08:18 - 00034063 ____A C:\Users\Sam\Downloads\1339343214363.png
    2012-06-10 08:13 - 2012-06-10 08:13 - 01869624 ____A C:\Users\Sam\Downloads\1339344206422.gif
    2012-06-10 08:11 - 2012-06-10 08:11 - 01167852 ____A C:\Users\Sam\Downloads\1339342136171.png
    2012-06-10 08:11 - 2012-06-10 08:11 - 00490565 ____A C:\Users\Sam\Downloads\1339342668200.gif
    2012-06-10 08:09 - 2012-06-10 08:09 - 00091948 ____A C:\Users\Sam\Downloads\1339341057083.gif
    2012-06-10 07:39 - 2012-06-10 07:39 - 00478372 ____A C:\Users\Sam\Downloads\1339338233887.gif
    2012-06-10 07:13 - 2012-06-10 07:14 - 00399386 ____A C:\Users\Sam\Downloads\1339337102316.png
    2012-06-10 07:11 - 2012-06-10 07:09 - 78346545 ____A C:\Users\Sam\Downloads\save.rar
    2012-06-10 06:29 - 2012-06-10 06:29 - 00948451 ____A C:\Users\Sam\Downloads\1339334892742.png
    2012-06-10 04:56 - 2012-06-09 11:22 - 00000000 ____D C:\Users\Sam\Downloads\Mawaru Penguindrum Music Collection (MP3)
    2012-06-09 12:30 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
    2012-06-09 11:20 - 2012-06-09 11:20 - 00035063 ____A C:\Users\Sam\Downloads\[BakaBT.164962v2] Mawaru Penguindrum Music Collection (MP3).torrent
    2012-06-08 16:57 - 2012-05-13 18:30 - 3608531088 ____A C:\Users\Sam\Downloads\Gw2.dat
    2012-06-08 15:52 - 2012-05-14 01:15 - 00000000 ____A C:\Users\Sam\Downloads\chrome.log
    2012-06-08 15:48 - 2012-05-13 18:30 - 00000000 ____A C:\Users\Sam\Downloads\Gw2.tmp
    2012-06-08 15:48 - 2012-05-13 18:29 - 21764672 ____A (ArenaNet) C:\Users\Sam\Downloads\Gw2.exe
    2012-06-08 15:03 - 2012-04-10 07:44 - 00281288 ____A C:\Windows\SysWOW64\PnkBstrB.xtr
    2012-06-08 15:03 - 2012-04-10 05:49 - 00281288 ____A C:\Windows\SysWOW64\PnkBstrB.exe
    2012-06-08 14:36 - 2012-04-10 05:49 - 00281288 ____A C:\Windows\SysWOW64\PnkBstrB.ex0
    2012-06-08 09:44 - 2012-06-08 09:44 - 01270121 ____A C:\Users\Sam\Downloads\1339177272318.png
    2012-06-08 09:43 - 2012-06-08 09:43 - 01278229 ____A C:\Users\Sam\Downloads\1339177203455.png
    2012-06-08 09:43 - 2012-06-08 09:43 - 01037416 ____A C:\Users\Sam\Downloads\1339177064431.png
    2012-06-08 09:41 - 2012-06-08 09:41 - 01269748 ____A C:\Users\Sam\Downloads\1339177158276.png
    2012-06-08 09:33 - 2012-06-08 09:33 - 00920689 ____A C:\Users\Sam\Downloads\1339171479286.png
    2012-06-08 09:26 - 2012-06-08 09:26 - 00147587 ____A C:\Users\Sam\Downloads\1339168283733.png
    2012-06-08 09:26 - 2012-06-08 09:26 - 00041543 ____A C:\Users\Sam\Downloads\1339164923335.png
    2012-06-08 09:21 - 2012-06-08 09:21 - 00702194 ____A C:\Users\Sam\Downloads\1339165224979.png
    2012-06-08 09:20 - 2012-06-08 09:20 - 00137284 ____A C:\Users\Sam\Downloads\1339165192922.png
    2012-06-08 09:17 - 2012-06-08 09:17 - 00277550 ____A C:\Users\Sam\Downloads\1339164886907.png
    2012-06-08 09:17 - 2012-06-08 09:17 - 00144487 ____A C:\Users\Sam\Downloads\1339164852984.png
    2012-06-07 20:32 - 2012-06-07 20:32 - 00032514 ____A C:\Users\Sam\Downloads\1339121719945.png
    2012-06-07 20:19 - 2012-06-07 20:19 - 01713099 ____A C:\Users\Sam\Downloads\1339127505453.gif
    2012-06-07 18:25 - 2012-06-07 18:25 - 00739345 ____A C:\Users\Sam\Downloads\1339122198690.gif
    2012-06-07 18:08 - 2012-06-07 18:08 - 00179516 ____A C:\Users\Sam\Downloads\Crash.dmp
    2012-06-07 18:08 - 2012-05-13 18:30 - 00000000 ____D C:\Users\Sam\Documents\Guild Wars 2
    2012-06-07 16:49 - 2012-06-07 16:49 - 00045028 ____A C:\Users\Sam\Downloads\1339116285331.png
    2012-06-07 14:58 - 2012-06-07 14:58 - 00000000 ____D C:\Users\Sam\Documents\CAPCOM
    2012-06-07 14:58 - 2012-06-07 14:58 - 00000000 ____D C:\Users\Sam\AppData\Local\CAPCOM
    2012-06-07 14:48 - 2012-06-07 14:48 - 00000000 ____D C:\Program Files (x86)\CAPCOM
    2012-06-07 14:35 - 2012-06-07 10:56 - 00000000 ____D C:\Users\Sam\Downloads\Devil.May.Cry.4-RELOADED [www.HispaTorrents.net]
    2012-06-07 14:06 - 2012-06-07 14:06 - 00190411 ____A C:\Users\Sam\Downloads\1339105528536.png
    2012-06-07 13:53 - 2012-06-07 13:53 - 00013860 ____A C:\Users\Sam\Downloads\1339099745570.png
    2012-06-07 09:48 - 2012-06-07 09:48 - 03065917 ____A C:\Users\Sam\Downloads\1339084716767.gif
    2012-06-07 08:36 - 2012-06-07 08:36 - 00074697 ____A C:\Users\Sam\Downloads\1339086858108.png
    2012-06-07 07:09 - 2012-06-07 07:09 - 00022393 ____A C:\Users\Sam\Downloads\Vocaroo_s0bxuGgZff9n.mp3
    2012-06-07 07:08 - 2012-06-07 07:08 - 00072548 ____A C:\Users\Sam\Downloads\Vocaroo_s0Wfxnwgt2PO.mp3
    2012-06-07 07:07 - 2012-06-07 07:07 - 00629445 ____A C:\Users\Sam\Downloads\n4fd04b1cf11ba.png
    2012-06-07 06:02 - 2012-06-07 06:02 - 00751314 ____A C:\Users\Sam\Downloads\Vocaroo_s0ZQoI0R4ncF.mp3
    2012-06-07 05:57 - 2012-06-07 05:57 - 00162828 ____A C:\Users\Sam\Downloads\Vocaroo_s0MOcw47hvCM.mp3
    2012-06-07 05:56 - 2012-06-07 05:56 - 00160320 ____A C:\Users\Sam\Downloads\Vocaroo_s0ncobTHuMSd.mp3
    2012-06-07 05:55 - 2012-06-07 05:55 - 00266899 ____A C:\Users\Sam\Downloads\Vocaroo_s043E1rhIXit.mp3
    2012-06-07 05:53 - 2012-06-07 05:53 - 00281737 ____A C:\Users\Sam\Downloads\Vocaroo_s0l4FPXg5Tsh.mp3
    2012-06-07 05:45 - 2012-06-07 05:45 - 01915833 ____A C:\Users\Sam\Downloads\1GvM8.gif
    2012-06-07 05:42 - 2012-06-07 05:42 - 00097835 ____A C:\Users\Sam\Downloads\Vocaroo_s0eq8RjTfLBC.mp3
    2012-06-07 05:39 - 2012-06-07 05:39 - 00095327 ____A C:\Users\Sam\Downloads\Vocaroo_s0sU1bgJhzOD.mp3
    2012-06-07 05:39 - 2012-06-07 05:39 - 00042873 ____A C:\Users\Sam\Downloads\Vocaroo_s0IUkp7ienrq.mp3
    2012-06-07 05:36 - 2012-06-07 05:36 - 00489045 ____A C:\Users\Sam\Downloads\Vocaroo_s0hwjmwnbiab.mp3
    2012-06-07 05:32 - 2012-06-07 05:32 - 00050606 ____A C:\Users\Sam\Downloads\Vocaroo_s0nInD3gsvQL.mp3
    2012-06-07 05:30 - 2012-06-07 05:30 - 00276304 ____A C:\Users\Sam\Downloads\Vocaroo_s0uzJH973c97.mp3
    2012-06-07 05:20 - 2012-06-07 05:20 - 00129391 ____A C:\Users\Sam\Downloads\Vocaroo_s0fh0mNeoFXz.mp3
    2012-06-07 05:07 - 2012-06-07 05:06 - 00072720 ____A C:\Windows\System32\peerblock.dmp
    2012-06-06 16:11 - 2012-06-06 16:11 - 01018819 ____A C:\Users\Sam\Downloads\WfP1J.gif
    2012-06-06 15:35 - 2012-06-06 15:35 - 02842975 ____A C:\Users\Sam\Downloads\1339025722897.gif
    2012-06-06 14:01 - 2012-06-06 14:01 - 00160381 ____A C:\Users\Sam\Downloads\1339020058859.png
    2012-06-06 13:46 - 2012-06-06 13:46 - 00003271 ____A C:\Users\Sam\Documents\fanfic.txt
    2012-06-06 13:46 - 2012-06-06 08:36 - 00025516 ____A C:\Users\Sam\Documents\fanfic.odt
    2012-06-06 08:41 - 2012-06-06 08:41 - 00770127 ____A C:\Users\Sam\Downloads\1338999998493.png
    2012-06-06 08:18 - 2012-06-06 08:15 - 00000825 ____A C:\Users\Sam\Documents\autism.txt
    2012-06-06 06:28 - 2012-06-06 06:28 - 00042567 ____A C:\Users\Sam\Downloads\1338992711991.png
  9. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    2012-06-06 06:18 - 2012-06-06 06:18 - 00473188 ____A C:\Users\Sam\Downloads\1338990334399.png
    2012-06-06 06:10 - 2012-06-06 06:04 - 00000000 ____D C:\mugen
    2012-06-06 05:58 - 2012-06-06 05:57 - 08811721 ____A C:\Users\Sam\Downloads\mugen100.zip
    2012-06-06 05:52 - 2012-06-06 05:52 - 00000000 ____D C:\Users\All Users\VirtuallTek
    2012-06-06 05:52 - 2012-06-06 05:52 - 00000000 ____D C:\Program Files (x86)\VirtuallTek
    2012-06-06 05:51 - 2012-06-06 05:48 - 01632901 ____A (VirtuallTek Systems ) C:\Users\Sam\Downloads\ffu26.exe
    2012-06-05 18:15 - 2012-06-05 18:16 - 00302025 ____A C:\Users\Sam\Downloads\1338948677165.png
    2012-06-05 18:09 - 2012-06-05 18:09 - 01038635 ____A C:\Users\Sam\Downloads\1338947559621.png
    2012-06-05 16:41 - 2012-06-05 16:41 - 01335004 ____A C:\Users\Sam\Downloads\1338942125442.png
    2012-06-05 15:12 - 2012-06-05 15:07 - 61353425 ____A C:\Users\Sam\Downloads\Conker's Bad Fur Day.zip
    2012-06-05 15:08 - 2012-06-05 15:06 - 00000000 ____D C:\Program Files (x86)\Project64 1.6
    2012-06-05 15:06 - 2012-06-05 15:05 - 02080797 ____A (Project64 ) C:\Users\Sam\Downloads\project64_1.6.exe
    2012-06-05 15:05 - 2012-06-05 15:05 - 06276900 ____A C:\Users\Sam\Downloads\Super Mario 64.zip
    2012-06-05 14:47 - 2012-06-05 14:47 - 01041528 ____A C:\Users\Sam\Downloads\1338928931119.gif
    2012-06-05 14:13 - 2012-06-05 14:13 - 00511645 ____A C:\Users\Sam\Downloads\1338934080168.gif
    2012-06-05 12:50 - 2012-06-05 12:50 - 01047927 ____A C:\Users\Sam\Downloads\1338927174085.gif
    2012-06-05 12:41 - 2012-06-05 12:41 - 00388894 ____A C:\Users\Sam\Downloads\1338928753084.png
    2012-06-05 12:14 - 2012-06-05 12:14 - 00308238 ____A C:\Users\Sam\Downloads\1338927173959.png
    2012-06-05 12:05 - 2012-06-05 12:05 - 00148926 ____A C:\Users\Sam\Downloads\1338926454207.png
    2012-06-05 12:03 - 2012-06-05 12:03 - 03640626 ____A C:\Users\Sam\Downloads\untitled_2nyjrc.gif
    2012-06-05 11:54 - 2012-06-05 11:54 - 00909729 ____A C:\Users\Sam\Downloads\1338925929642.gif
    2012-06-05 11:44 - 2012-06-05 11:44 - 00019209 ____A C:\Users\Sam\Downloads\1338925384507.png
    2012-06-05 11:44 - 2012-06-05 11:44 - 00011487 ____A C:\Users\Sam\Downloads\1338925294111.png
    2012-06-05 11:28 - 2012-06-05 11:28 - 00086116 ____A C:\Users\Sam\Downloads\1338924472650.png
    2012-06-05 10:55 - 2012-06-05 10:55 - 00450512 ____A C:\Users\Sam\Downloads\n4fcc2900d032c.png
    2012-06-05 09:13 - 2012-06-05 09:13 - 03040589 ____A C:\Users\Sam\Downloads\1338868479399.gif
    2012-06-05 09:01 - 2012-06-05 09:01 - 00418553 ____A C:\Users\Sam\Downloads\1338915125028.png
    2012-06-05 08:40 - 2012-06-05 08:40 - 00115399 ____A C:\Users\Sam\Downloads\1338914384781.png
    2012-06-05 08:34 - 2012-06-05 08:34 - 00262633 ____A C:\Users\Sam\Downloads\my_body_is_ready.png
    2012-06-04 18:33 - 2012-06-04 18:33 - 00098796 ____A C:\Users\Sam\Downloads\E3-logo1.png
    2012-06-04 18:29 - 2012-06-04 18:29 - 01018517 ____A C:\Users\Sam\Downloads\1338862637026.png
    2012-06-04 18:26 - 2012-06-04 18:26 - 00110941 ____A C:\Users\Sam\Downloads\1338862501694.png
    2012-06-04 13:35 - 2012-06-04 13:35 - 00181171 ____A C:\Users\Sam\Downloads\1338845458684.png
    2012-06-04 12:47 - 2012-06-04 12:47 - 00114859 ____A C:\Users\Sam\Downloads\1338841888259.png
    2012-06-04 11:57 - 2012-06-04 11:57 - 00166972 ____A C:\Users\Sam\Downloads\1338839726619.png
    2012-06-04 10:58 - 2012-06-04 10:58 - 00009217 ____A C:\Users\Sam\Downloads\1338835491659.png
    2012-06-04 10:47 - 2012-06-04 10:37 - 00176184 ____A C:\Users\Sam\Downloads\1338832981131.png
    2012-06-04 10:45 - 2012-06-04 10:45 - 00599502 ____A C:\Users\Sam\Downloads\ywMBj.gif
    2012-06-04 09:46 - 2012-06-04 09:46 - 01514501 ____A C:\Users\Sam\Downloads\1338831917088.png
    2012-06-04 06:02 - 2012-06-04 05:57 - 00000000 ____D C:\Users\Sam\Downloads\Yokohama Kaidashi Kikou Music Collection (mp3)
    2012-06-04 06:02 - 2012-06-03 15:43 - 1220193803 ____A C:\Users\Sam\Downloads\[Commie] Berserk - Golden Age Chapter I - Egg of the High King [BD 1080p AAC] [5E90C760].mkv
    2012-06-04 05:56 - 2012-06-04 05:56 - 00026078 ____A C:\Users\Sam\Downloads\[BakaBT.152927v3] Yokohama Kaidashi Kikou Music Collection (mp3).torrent
    2012-06-04 05:56 - 2012-06-04 05:56 - 00026078 ____A C:\Users\Sam\Downloads\[BakaBT.152927v3] Yokohama Kaidashi Kikou Music Collection (mp3) (1).torrent
    2012-06-04 05:56 - 2012-06-04 05:56 - 00021693 ____A C:\Users\Sam\Downloads\[BakaBT.153598v0] Yokohama Kaidashi Kikou Music Collection (FLAC).torrent
    2012-06-03 15:38 - 2012-06-03 15:38 - 00093549 ____A C:\Users\Sam\Downloads\[Commie] Berserk - Golden Age Chapter I - Egg of the High King [BD 1080p AAC] [5E90C760].mkv.torrent
    2012-06-03 14:55 - 2012-06-03 14:55 - 00032129 ____A C:\Users\Sam\Downloads\1338763798548.png
    2012-06-03 14:28 - 2011-11-11 19:01 - 58957832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
    2012-06-03 14:19 - 2012-06-03 14:19 - 00092438 ____A C:\Users\Sam\Downloads\1338761780155.png
    2012-06-03 13:06 - 2012-06-03 13:06 - 00066391 ____A C:\Users\Sam\Downloads\1338752398733.png
    2012-06-03 13:01 - 2012-06-03 13:01 - 00040718 ____A C:\Users\Sam\Downloads\1338756809369.png
    2012-06-03 13:00 - 2012-06-03 13:00 - 00546544 ____A C:\Users\Sam\Downloads\1338756972005.png
    2012-06-03 12:58 - 2012-06-03 12:58 - 00034247 ____A C:\Users\Sam\Downloads\1338754912661.png
    2012-06-03 08:51 - 2012-06-02 16:31 - 00000000 ____D C:\Program Files (x86)\Battlefield 3
    2012-06-03 08:50 - 2012-06-03 08:50 - 00134102 ____A C:\Users\Sam\Downloads\injectSMAA_by_mrhaandi_1.2 (4).7z
    2012-06-03 06:49 - 2012-06-02 17:20 - 00000000 ____D C:\Users\Sam\Documents\Battlefield 3
    2012-06-03 06:35 - 2012-06-03 06:35 - 00404919 ____A C:\Users\Sam\Downloads\1338733714668.png
    2012-06-03 06:28 - 2012-06-03 06:28 - 00283850 ____A C:\Users\Sam\Downloads\1338726234726.png
    2012-06-02 18:36 - 2012-06-02 18:36 - 00018643 ____A C:\Users\Sam\Downloads\[BakaBT.129870v0] A Time To Screw (1).torrent
    2012-06-02 18:35 - 2012-06-02 18:35 - 00018643 ____A C:\Users\Sam\Downloads\[BakaBT.129870v0] A Time To Screw.torrent
    2012-06-02 18:33 - 2012-06-02 18:15 - 00000000 ____D C:\Users\Sam\Downloads\[hshare.net].A.Time.To.Screw.EP01-02.[ENG.SUBS].[UNCEN]
    2012-06-02 18:13 - 2012-06-02 18:13 - 00021178 ____A C:\Users\Sam\Downloads\hshare.net.A.Time.To.Screw.EP01-02.ENG.SUBS.UNCEN.torrent
    2012-06-02 18:05 - 2012-06-02 18:05 - 00000000 ____D C:\Users\Sam\Downloads\A Time To Screw
    2012-06-02 18:04 - 2012-06-02 18:04 - 00018830 ____A C:\Users\Sam\Downloads\A Time To Screw.torrent
    2012-06-02 15:25 - 2012-06-02 15:17 - 258852757 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 22 [1D7B886C].mkv
    2012-06-02 15:19 - 2012-06-02 15:19 - 19754715 ____A C:\Users\Sam\Downloads\jpcsp-2568-windows-amd64.7z
    2012-06-02 15:15 - 2012-06-02 15:15 - 00020160 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 22 [1D7B886C].mkv.torrent
    2012-06-02 14:12 - 2012-06-02 14:12 - 07612586 ____A C:\Users\Sam\Downloads\pcsp_v0.5.4 (1).zip
    2012-06-02 13:54 - 2012-06-02 13:54 - 07612586 ____A C:\Users\Sam\Downloads\pcsp_v0.5.4.zip
    2012-06-02 13:43 - 2012-06-02 13:43 - 00001427 ____A C:\Users\Sam\Documents\cry.txt
    2012-06-02 12:29 - 2012-06-02 12:29 - 00281744 ____A C:\Users\Sam\Downloads\1338667841302.gif
    2012-06-02 11:29 - 2012-06-02 11:29 - 00000011 ____A C:\Users\Sam\Documents\Student Finance.txt
    2012-06-01 18:00 - 2012-06-01 17:52 - 1171374649 ____A C:\Users\Sam\Downloads\BlazBlue_Continuum_Shift.rar
    2012-06-01 09:14 - 2012-06-01 09:14 - 01864699 ____A C:\Users\Sam\Downloads\1338567812639.gif
    2012-06-01 09:11 - 2012-06-01 09:11 - 00970635 ____A C:\Users\Sam\Downloads\1338566312929.png
    2012-06-01 09:11 - 2012-06-01 09:11 - 00443321 ____A C:\Users\Sam\Downloads\1338566256293.png
    2012-06-01 06:42 - 2012-06-01 06:42 - 00000000 ____D C:\Users\Sam\Documents\WB Games
    2012-06-01 06:31 - 2012-06-01 06:29 - 00719436 ____A C:\Users\Sam\Downloads\1338559699109.png
    2012-06-01 06:28 - 2012-06-01 06:28 - 00890294 ____A C:\Users\Sam\Downloads\1338557718555.png
    2012-06-01 05:55 - 2011-11-11 07:27 - 00000000 ____D C:\Windows\SysWOW64\directx
    2012-06-01 05:42 - 2012-06-01 05:42 - 00184177 ____A C:\Users\Sam\Downloads\1338557724904.png
    2012-06-01 05:26 - 2012-06-01 05:08 - 01094543 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8 (1).png
    2012-06-01 05:10 - 2012-06-01 05:10 - 00095645 ____A C:\Users\Sam\Downloads\922270_1326074572207_full.png
    2012-06-01 05:08 - 2012-06-01 05:08 - 00846658 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8 (2).png
    2012-06-01 04:08 - 2012-06-01 04:04 - 00555485 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8.png
    2012-05-31 23:08 - 2012-05-31 23:08 - 02030866 ____A C:\Users\Sam\Downloads\1338516702562.gif
    2012-05-31 18:01 - 2012-05-31 18:01 - 00091602 ____A C:\Users\Sam\Downloads\DQpwY.png
    2012-05-31 17:36 - 2012-05-31 17:36 - 00140904 ____A C:\Users\Sam\Downloads\1338505895859.png
    2012-05-31 16:06 - 2012-05-31 14:43 - 00000000 ____D C:\Users\Sam\Downloads\Crysis.2.v1.9.Update.incl.DX11.Ultra.and.HiRes.Texture.Packs-SKIDROW
    2012-05-31 15:15 - 2012-05-31 15:15 - 00730590 ____A C:\Users\Sam\Downloads\830px-IH.png
    2012-05-31 15:11 - 2012-05-31 14:30 - 3446656729 ____A C:\Users\Sam\Downloads\Samaritan_Realtime_Demo.mov
    2012-05-31 14:03 - 2012-05-31 14:03 - 00508323 ____A C:\Users\Sam\Downloads\IUH15.gif
    2012-05-31 13:03 - 2012-05-31 09:00 - 00000000 ____D C:\Users\Sam\Downloads\Batman Arkham City-Black Box
    2012-05-31 12:51 - 2012-05-31 12:51 - 00000000 ____D C:\Users\Sam\Documents\Wolfire
    2012-05-31 12:50 - 2012-05-31 12:50 - 00415764 ____A C:\Users\Sam\Downloads\1338496525693.png
    2012-05-31 12:45 - 2012-05-31 12:45 - 00164620 ____A C:\Users\Sam\Downloads\1338496619808.png
    2012-05-31 12:42 - 2012-05-31 12:42 - 00052783 ____A C:\Users\Sam\Downloads\1338496126338.png
    2012-05-31 12:39 - 2012-05-31 12:19 - 2050742762 ____A C:\Users\Sam\Downloads\a175-win.exe
    2012-05-31 12:29 - 2012-05-31 12:30 - 00592973 ____A C:\Users\Sam\Downloads\1338495984208.gif
    2012-05-31 11:06 - 2012-05-31 11:06 - 02026331 ____A C:\Users\Sam\Downloads\playing tera with kinect.gif
    2012-05-31 11:04 - 2012-05-31 11:04 - 02075845 ____A C:\Users\Sam\Downloads\1338489603048.gif
    2012-05-31 11:01 - 2012-05-31 11:01 - 00112343 ____A C:\Users\Sam\Downloads\1338490490967.png
    2012-05-31 10:19 - 2012-05-31 10:19 - 01857408 ____A C:\Users\Sam\Downloads\1338481290684.gif
    2012-05-31 09:31 - 2012-05-31 09:13 - 00000000 ____D C:\Program Files (x86)\OMGWTFOTL
    2012-05-31 08:45 - 2012-05-31 08:45 - 00296100 ____A C:\Users\Sam\Downloads\1338479893433.png
    2012-05-31 08:00 - 2012-05-31 08:00 - 01520673 ____A C:\Users\Sam\Downloads\1338479274502.png
    2012-05-31 06:50 - 2012-05-31 06:50 - 01673522 ____A C:\Users\Sam\Downloads\1338475481321.gif
    2012-05-31 06:49 - 2012-05-31 06:49 - 02126577 ____A C:\Users\Sam\Downloads\1338475454688.gif
    2012-05-31 05:44 - 2012-05-31 05:44 - 00405963 ____A C:\Users\Sam\Downloads\1338471665015.png
    2012-05-31 05:18 - 2012-05-31 05:10 - 315470531 ____A C:\Users\Sam\Downloads\StarForge_V0.1.zip
    2012-05-31 05:02 - 2012-05-31 05:02 - 00499752 ____A C:\Users\Sam\Downloads\forgetting to equip covenant of artorias.gif
    2012-05-31 05:00 - 2012-05-31 05:00 - 02815118 ____A C:\Users\Sam\Downloads\cod audience.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 02167911 ____A C:\Users\Sam\Downloads\1338465860686.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 01465355 ____A C:\Users\Sam\Downloads\1338465759944.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 01426056 ____A C:\Users\Sam\Downloads\1338465756520.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 00505912 ____A C:\Users\Sam\Downloads\1338465615458.gif
    2012-05-31 04:58 - 2012-05-31 04:58 - 00316451 ____A C:\Users\Sam\Downloads\1338465556688.gif
    2012-05-31 04:57 - 2012-05-31 04:57 - 00252981 ____A C:\Users\Sam\Downloads\1338465428206.gif
    2012-05-31 04:55 - 2012-05-31 04:55 - 00118891 ____A C:\Users\Sam\Downloads\1338465131425.gif
    2012-05-31 04:52 - 2012-05-31 04:52 - 01048079 ____A C:\Users\Sam\Downloads\1338468417468.png
    2012-05-31 04:52 - 2012-05-31 04:52 - 00364226 ____A C:\Users\Sam\Downloads\1338463568564.gif
    2012-05-31 04:45 - 2012-05-31 04:45 - 01739995 ____A C:\Users\Sam\Downloads\1338467275139.gif
    2012-05-31 03:46 - 2012-05-31 03:46 - 00500483 ____A C:\Users\Sam\Downloads\1338462955239.gif
    2012-05-31 03:11 - 2012-05-31 03:11 - 00597558 ____A C:\Users\Sam\Downloads\1338462659341.png
    2012-05-31 03:04 - 2012-05-31 03:04 - 00125013 ____A C:\Users\Sam\Downloads\1338460103662.png
    2012-05-31 01:40 - 2012-05-31 01:40 - 00303410 ____A C:\Users\Sam\Downloads\BobPage.png
    2012-05-31 01:36 - 2012-05-31 01:37 - 00038797 ____A C:\Users\Sam\Downloads\1338456974352.png
    2012-05-31 00:49 - 2012-05-31 00:49 - 00343600 ____A C:\Users\Sam\Downloads\1338450062772.gif
    2012-05-31 00:47 - 2012-05-31 00:47 - 00872103 ____A C:\Users\Sam\Downloads\1338453174536.png
    2012-05-31 00:41 - 2012-05-31 00:41 - 03004412 ____A C:\Users\Sam\Downloads\1338451381460.gif
    2012-05-31 00:41 - 2012-05-31 00:41 - 00503979 ____A C:\Users\Sam\Downloads\1338451552153.gif
    2012-05-31 00:13 - 2012-05-31 00:13 - 00042217 ____A C:\Users\Sam\Downloads\1338450067927.png
    2012-05-31 00:10 - 2012-05-31 00:10 - 00363059 ____A C:\Users\Sam\Downloads\1338451438669.gif
    2012-05-31 00:06 - 2012-05-31 00:06 - 00051766 ____A C:\Users\Sam\Downloads\1338450705862.png
    2012-05-30 17:09 - 2012-05-30 17:09 - 00325363 ____A C:\Users\Sam\Downloads\1338392092126.gif
    2012-05-30 17:06 - 2012-05-30 17:06 - 00332206 ____A C:\Users\Sam\Downloads\1338388826880.png
    2012-05-30 17:02 - 2012-05-30 17:02 - 00207723 ____A C:\Users\Sam\Downloads\1338379694876.png
    2012-05-30 15:48 - 2012-05-30 15:48 - 00000000 ____D C:\Users\Sam\Downloads\REDLINE Music Collection [FLAC]
    2012-05-30 15:47 - 2012-05-30 15:47 - 00016667 ____A C:\Users\Sam\Downloads\[BakaBT.160937v1] REDLINE Music Collection [FLAC].torrent
    2012-05-30 14:31 - 2012-05-30 14:28 - 16585571 ____A C:\Users\Sam\Downloads\OMGWTFOTLSetup[Nanatuha][AT2006].exe
    2012-05-30 14:28 - 2012-05-30 14:28 - 00005268 ____A C:\Users\Sam\Downloads\OMGWTFOTLSetup[Nanatuha][AT2006].exe (1).torrent
    2012-05-30 12:32 - 2012-05-16 05:06 - 00000000 ____D C:\Windows\SysWOW64\Adobe
    2012-05-30 11:33 - 2012-05-30 11:33 - 02436542 ____A C:\Users\Sam\Downloads\1338404405047.gif
    2012-05-30 08:30 - 2012-05-30 08:27 - 368334765 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_21_[h264-720p][BCB5C808].mkv
    2012-05-30 08:27 - 2012-05-30 08:27 - 00014528 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_21_[h264-720p][BCB5C808].mkv.torrent
    2012-05-30 08:22 - 2012-05-30 08:22 - 02671412 ____A C:\Users\Sam\Downloads\1338394246397.gif
    2012-05-30 08:03 - 2012-05-30 08:03 - 01838721 ____A C:\Users\Sam\Downloads\1338393569559.gif
    2012-05-30 07:59 - 2012-05-30 07:59 - 00268129 ____A C:\Users\Sam\Downloads\1338391239612.gif
    2012-05-30 07:57 - 2012-05-30 07:57 - 02220249 ____A C:\Users\Sam\Downloads\1338389483646.gif
    2012-05-30 06:38 - 2012-05-30 06:38 - 00554232 ____A C:\Users\Sam\Downloads\SkinEdit Alpha 3 pre 7 (1).zip
    2012-05-29 19:02 - 2012-05-29 18:56 - 1367096420 ____A C:\Users\Sam\Downloads\Adobe Flash Pro CS6.exe
    2012-05-29 18:05 - 2012-05-29 18:05 - 00636769 ____A C:\Users\Sam\Downloads\1338342691660.png
    2012-05-29 16:12 - 2012-05-29 16:00 - 00000000 ____D C:\Users\Sam\Downloads\Diablo 2 with Lord of Destruction (v1.13c) (Direct Play)
    2012-05-29 14:47 - 2012-05-29 14:47 - 00167722 ____A C:\Users\Sam\Downloads\Hazama_(Continuum_Shift,_Character_Select_Artwork).png
    2012-05-29 05:23 - 2012-05-29 05:23 - 00036889 ____A C:\Users\Sam\Downloads\[BakaBT.163373v0] Legend.of.Galactic.Heroes.Overture.to.a.New.War.torrent
    2012-05-29 05:23 - 2012-05-29 05:23 - 00000000 ____D C:\Users\Sam\Downloads\Legend.of.Galactic.Heroes.Overture.to.a.New.War
    2012-05-29 04:44 - 2012-05-29 04:44 - 00646995 ____A C:\Users\Sam\Downloads\1338295426127.png
    2012-05-29 04:43 - 2012-05-29 04:43 - 00393429 ____A C:\Users\Sam\Downloads\1338294795435.png
    2012-05-29 02:31 - 2012-06-12 17:27 - 13513415 ____A C:\delver.jar
    2012-05-28 18:43 - 2012-05-28 18:43 - 00264838 ____A C:\Users\Sam\Downloads\1338255862438.png
    2012-05-28 17:15 - 2012-05-28 17:15 - 00103742 ____A C:\Users\Sam\Downloads\1338250741805.png
    2012-05-28 17:12 - 2012-05-28 17:12 - 00048208 ____A C:\Users\Sam\Downloads\1338249300522.png
    2012-05-28 16:08 - 2012-05-28 16:06 - 12256911 ____A C:\Users\Sam\Downloads\[SaHa] Kaworu Watashiya - Kodomo no Jikan Ch.83 (English).rar
    2012-05-28 01:12 - 2012-05-28 01:12 - 00259339 ____A C:\Users\Sam\Downloads\1338190738707.png
    2012-05-27 23:37 - 2012-05-27 23:37 - 00262995 ____A C:\Users\Sam\Downloads\1338188104291.png
    2012-05-27 23:36 - 2012-05-27 23:36 - 00431069 ____A C:\Users\Sam\Downloads\1338188072876.png
    2012-05-27 23:34 - 2012-05-27 23:34 - 00386484 ____A C:\Users\Sam\Downloads\1338187660848.png
    2012-05-26 14:55 - 2012-05-26 14:55 - 00313718 ____A C:\Users\Sam\Downloads\n4fc15d72b93fb.png
    2012-05-26 07:20 - 2012-05-26 07:20 - 00308571 ____A C:\Users\Sam\Downloads\1338024965410.gif
    2012-05-26 04:25 - 2012-05-26 04:25 - 00026224 ____A C:\Users\Sam\Downloads\1338017225355.png
    2012-05-25 14:33 - 2012-05-25 14:33 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack
    2012-05-25 14:32 - 2012-05-25 14:32 - 09889896 ____A (CCCP Project ) C:\Users\Sam\Downloads\Combined-Community-Codec-Pack-2011-11-11 (1).exe
    2012-05-25 14:26 - 2012-05-25 14:26 - 00000000 ____D C:\Program Files (x86)\VideoLAN
    2012-05-25 14:22 - 2012-05-25 14:21 - 22259528 ____A C:\Users\Sam\Downloads\vlc-2.0.1-win32.exe
    2012-05-25 14:22 - 2012-02-24 13:10 - 00000000 ____D C:\Users\Sam\Downloads\Legend of Galactic Heroes
    2012-05-25 14:16 - 2012-05-25 14:16 - 00162416 ____A C:\Users\Sam\Downloads\[BakaBT.161010v1] Legend of Galactic Heroes.torrent
    2012-05-25 13:04 - 2012-05-25 13:01 - 72731273 ____A C:\Users\Sam\Downloads\BIOS PCSX2 0.9.9.zip
    2012-05-25 03:59 - 2012-05-25 03:59 - 00251413 ____A C:\Users\Sam\Downloads\1337939535602.png
    2012-05-25 03:57 - 2012-05-25 03:57 - 00685892 ____A C:\Users\Sam\Downloads\1337938712729.png
    2012-05-23 09:24 - 2012-05-23 09:24 - 00001678 ____A C:\Users\Sam\Downloads\FakedPlayers.rar
    2012-05-23 07:17 - 2012-05-23 07:15 - 264329105 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_20_[h264-720p][AF35659F].mkv
    2012-05-23 07:15 - 2012-05-23 07:15 - 00020648 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_20_[h264-720p][AF35659F].mkv.torrent
    2012-05-23 04:53 - 2012-05-23 04:53 - 00077501 ____A C:\Users\Sam\Downloads\PBF071-Weeaboo.gif
    2012-05-22 16:50 - 2012-05-22 16:50 - 00073801 ____A C:\Users\Sam\Downloads\1337732235664.png
    2012-05-22 14:32 - 2012-05-22 14:32 - 00987153 ____A C:\Users\Sam\Downloads\1337719019473.gif
    2012-05-22 12:33 - 2012-05-22 12:03 - 1774411798 ____A C:\Users\Sam\Downloads\Mars-bump.zip
    2012-05-22 12:28 - 2012-05-22 12:18 - 453332159 ____A C:\Users\Sam\Downloads\Jupiter-moons.zip
    2012-05-22 12:23 - 2012-05-22 12:16 - 340816325 ____A C:\Users\Sam\Downloads\Mars-surface-nonshaded.zip
    2012-05-22 12:17 - 2012-05-22 12:03 - 715564281 ____A C:\Users\Sam\Downloads\Earth-clouds.zip
    2012-05-22 12:15 - 2012-05-22 12:07 - 177003006 ____A C:\Users\Sam\Downloads\Mars-surface.zip
    2012-05-22 12:07 - 2012-05-22 12:01 - 565675655 ____A C:\Users\Sam\Downloads\Moon-bump.zip
    2012-05-22 12:02 - 2012-05-22 12:02 - 00000000 ____D C:\Users\Sam\Downloads\Earth-surface
    2012-05-22 12:02 - 2012-05-22 12:02 - 00000000 ____D C:\Users\Sam\Downloads\Earth-bump
    2012-05-22 11:50 - 2012-05-22 11:49 - 14644532 ____A C:\Users\Sam\Downloads\Hide (PC).zip
    2012-05-22 10:57 - 2012-05-22 10:57 - 00293087 ____A C:\Users\Sam\Downloads\1337712498678.png
    2012-05-22 10:55 - 2012-05-22 10:55 - 00865615 ____A C:\Users\Sam\Downloads\1337712444362.png
    2012-05-22 10:54 - 2012-05-22 10:54 - 00288146 ____A C:\Users\Sam\Downloads\1337711910801.png
    2012-05-22 10:54 - 2012-05-22 10:54 - 00215519 ____A C:\Users\Sam\Downloads\1337712340020.png
    2012-05-22 10:49 - 2012-05-22 10:50 - 01113122 ____A C:\Users\Sam\Downloads\1337709125344.gif
    2012-05-22 10:49 - 2012-05-22 10:49 - 02238553 ____A C:\Users\Sam\Downloads\1337708997975.gif
    2012-05-22 10:35 - 2012-05-22 10:36 - 01345995 ____A C:\Users\Sam\Downloads\1337711730981.png
    2012-05-22 09:03 - 2012-05-22 09:03 - 01936946 ____A C:\Users\Sam\Downloads\1337706172424.gif
    2012-05-22 09:01 - 2012-05-22 09:01 - 00037336 ____A C:\Users\Sam\Downloads\1337705872956.png
    2012-05-22 04:01 - 2012-05-22 04:01 - 03112052 ____A C:\Users\Sam\Downloads\1337666379697.gif
    2012-05-22 00:55 - 2012-05-22 00:55 - 00586316 ____A C:\Users\Sam\Downloads\1337676765291.png
    2012-05-22 00:37 - 2012-03-07 17:50 - 00000000 ____D C:\Users\Sam\Documents\Tay-tay
    2012-05-21 18:06 - 2012-05-21 18:05 - 11086329 ____A C:\Users\Sam\Downloads\Mandrill Maze Nightmare Simulator Deluxe.rar
    2012-05-21 17:34 - 2012-05-21 17:34 - 00449086 ____A C:\Users\Sam\Downloads\n4fbaa84554a0f.png
    2012-05-21 16:20 - 2012-05-21 16:19 - 45198141 ____A C:\Users\Sam\Documents\Mandrill Maze Nightmare Simulator Delux.wmv
    2012-05-21 15:52 - 2012-05-21 15:52 - 01170656 ____A (Microsoft Corporation) C:\Users\Sam\Downloads\IconChanger38.exe
    2012-05-21 15:39 - 2012-05-21 15:38 - 00082048 ____A C:\Users\Sam\Downloads\monkey.mp3
    2012-05-21 14:55 - 2012-05-21 14:55 - 00046208 ____A C:\Users\Sam\Downloads\monkey2 (1).mp3
    2012-05-21 14:45 - 2012-05-21 14:45 - 00038256 ____A C:\Users\Sam\Downloads\baboon (1).aif
    2012-05-21 14:43 - 2012-05-21 14:43 - 00038256 ____A C:\Users\Sam\Downloads\baboon.aif
    2012-05-21 14:17 - 2012-05-21 14:17 - 00089893 ____A C:\Users\Sam\Downloads\M. Bison "Yes Yes!" Widescreen HD reupload.mp3
    2012-05-21 13:41 - 2012-05-21 13:38 - 09590234 ____A C:\Users\Sam\Downloads\Mandrill Maze.mp3
    2012-05-21 12:48 - 2012-05-21 12:48 - 00221703 ____A C:\Users\Sam\Downloads\baboon_face-389.gif
    2012-05-21 12:43 - 2012-05-21 12:43 - 03070333 ____A C:\Users\Sam\Downloads\SCP-087-B (1).zip
    2012-05-21 12:36 - 2012-05-21 12:36 - 00096879 ____A C:\Users\Sam\Downloads\1337631636043.png
    2012-05-21 12:09 - 2012-05-21 12:09 - 00431501 ____A C:\Users\Sam\Downloads\1337630412229.gif
    2012-05-21 12:00 - 2012-05-21 12:00 - 01023284 ____A C:\Users\Sam\Downloads\1337630156429.gif
    2012-05-21 11:47 - 2012-05-21 11:47 - 00007422 ____A C:\Users\Sam\Downloads\1337629557344.png
    2012-05-21 09:39 - 2012-05-21 09:39 - 00307685 ____A C:\Users\Sam\Downloads\1337621648970.png
    2012-05-21 09:38 - 2012-05-21 09:38 - 00136568 ____A C:\Users\Sam\Downloads\1337621527756.png
    2012-05-21 08:13 - 2012-05-21 08:13 - 00120097 ____A C:\Users\Sam\Downloads\1337616602975.png
    2012-05-21 07:09 - 2012-05-21 07:09 - 00457268 ____A C:\Users\Sam\Downloads\1337612714834.png
    2012-05-21 03:16 - 2012-05-21 03:16 - 00063587 ____A C:\Users\Sam\Downloads\1337597857886.png
    2012-05-21 03:14 - 2012-05-21 03:14 - 00752401 ____A C:\Users\Sam\Downloads\1337594865082.png
    2012-05-21 03:14 - 2012-05-21 03:14 - 00649066 ____A C:\Users\Sam\Downloads\1337595537347.png
    2012-05-21 03:13 - 2012-05-21 03:14 - 00859577 ____A C:\Users\Sam\Downloads\1337594315018.png
    2012-05-21 03:13 - 2012-05-21 03:13 - 00592067 ____A C:\Users\Sam\Downloads\1337593744050.png
    2012-05-21 03:12 - 2012-05-21 03:12 - 00182151 ____A C:\Users\Sam\Downloads\1337593023215.png
    2012-05-21 03:04 - 2012-05-21 03:04 - 00042623 ____A C:\Users\Sam\Downloads\1337587992040.png
    2012-05-21 01:22 - 2012-05-21 01:22 - 03723078 ____A C:\Users\Sam\Downloads\1337380624779.gif
    2012-05-21 01:09 - 2012-05-21 01:09 - 00156512 ____A C:\Users\Sam\Downloads\1337589637888.png
    2012-05-21 01:07 - 2012-05-21 01:07 - 00133739 ____A C:\Users\Sam\Downloads\1337591157221.png
    2012-05-21 01:02 - 2012-05-21 01:02 - 00080538 ____A C:\Users\Sam\Downloads\1337590393332.png
    2012-05-21 00:54 - 2012-05-21 00:54 - 00037828 ____A C:\Users\Sam\Downloads\1337589346705.png
    2012-05-21 00:06 - 2012-05-21 00:06 - 00399764 ____A C:\Users\Sam\Downloads\1337587521050.gif
    2012-05-20 23:28 - 2012-05-20 23:28 - 00033158 ____A C:\Users\Sam\Downloads\1337585194866.png
    2012-05-20 17:00 - 2012-05-20 17:00 - 00136159 ____A C:\Users\Sam\Downloads\1337561824289.png
    2012-05-20 16:45 - 2012-05-20 16:45 - 00406656 ____A C:\Users\Sam\Downloads\1337561069256.png
    2012-05-20 15:40 - 2012-05-20 15:40 - 01930272 ____A C:\Users\Sam\Downloads\1337557087245.gif
    2012-05-20 14:08 - 2012-05-20 14:08 - 00795795 ____A C:\Users\Sam\Downloads\1337550665164.png
    2012-05-20 14:08 - 2012-05-20 14:08 - 00205894 ____A C:\Users\Sam\Downloads\1337550288556.png
    2012-05-20 14:04 - 2012-05-20 14:04 - 00012928 ____A C:\Users\Sam\Downloads\1337548119955.png
    2012-05-20 07:42 - 2012-05-20 07:42 - 00068204 ____A C:\Users\Sam\Downloads\1337527254399.png
    2012-05-20 07:40 - 2012-05-20 07:40 - 00264993 ____A C:\Users\Sam\Downloads\1337522559710.png
    2012-05-20 07:39 - 2012-05-20 07:39 - 00146978 ____A C:\Users\Sam\Downloads\1337528204817.png
    2012-05-20 07:27 - 2012-05-20 07:27 - 00297447 ____A C:\Users\Sam\Downloads\1337526850821.png
    2012-05-20 07:12 - 2012-05-20 07:12 - 00002087 ____A C:\Users\Sam\Downloads\W1Xqu.png
    2012-05-20 06:19 - 2012-05-20 06:19 - 00226657 ____A C:\Users\Sam\Downloads\1337522121652.png
    2012-05-20 06:15 - 2012-05-20 06:15 - 00687850 ____A C:\Users\Sam\Downloads\1337521471982.png
    2012-05-20 06:13 - 2012-05-20 06:13 - 00895839 ____A C:\Users\Sam\Downloads\1337521427782.png
    2012-05-19 17:28 - 2012-05-19 17:28 - 00049203 ____A C:\Users\Sam\Downloads\lilypad-motioninjoy.zip
    2012-05-19 17:28 - 2012-05-19 17:28 - 00049203 ____A C:\Users\Sam\Downloads\lilypad-motioninjoy (1).zip
    2012-05-19 17:19 - 2012-05-19 17:19 - 00000000 ____D C:\Users\Sam\Documents\PCSX2
    2012-05-19 17:14 - 2012-05-19 17:14 - 06526202 ____A C:\Users\Sam\Downloads\ps2bios.7z
    2012-05-19 17:01 - 2012-05-19 17:01 - 00000000 ____D C:\Program Files (x86)\PCSX2 0.9.8
    2012-05-19 16:57 - 2012-05-19 16:57 - 12780479 ____A C:\Users\Sam\Downloads\pcsx2-0.9.8-r4600-setup.exe
    2012-05-19 09:34 - 2012-05-19 09:30 - 00000000 ____D C:\Users\Sam\Downloads\Mushishi OST Collection [Nipponsei]
    2012-05-19 09:29 - 2012-05-19 09:29 - 00016322 ____A C:\Users\Sam\Downloads\[BakaBT.129516v1] mushishi.torrent
    2012-05-19 09:25 - 2012-05-19 08:58 - 00000000 ____D C:\Users\Sam\Downloads\Mushishi
    2012-05-19 09:05 - 2012-05-19 09:05 - 00000000 ____D C:\Program Files (x86)\Fotosizer
    2012-05-19 08:59 - 2012-05-19 08:56 - 00000000 ____D C:\Users\Sam\Downloads\Onani Master Kurosawa
    2012-05-19 08:57 - 2012-05-19 08:57 - 00015927 ____A C:\Users\Sam\Downloads\[BakaBT.159884v1] Mushishi.torrent
    2012-05-19 08:55 - 2012-05-19 08:55 - 00020034 ____A C:\Users\Sam\Downloads\[BakaBT.150874v1] Onani Master Kurosawa.torrent
    2012-05-19 08:49 - 2012-05-19 08:49 - 01741087 ____A C:\Users\Sam\Downloads\fsSetup134s.exe
    2012-05-19 06:33 - 2012-05-19 06:33 - 00000000 ____D C:\Users\Sam\Downloads\The Stories of Anton Chekhov - Anton Chekhov [Uber]
    2012-05-19 06:04 - 2012-05-19 05:49 - 00000000 ____D C:\Users\Sam\AppData\Roaming\calibre
    2012-05-19 05:51 - 2012-05-19 05:50 - 11659387 ____A C:\Users\Sam\Downloads\[Evil_Genius]Berserk_v37c327.rar
    2012-05-19 05:49 - 2012-05-19 05:49 - 00007487 ____A C:\Users\Sam\Downloads\[Evil_Genius]Berserk_v37c327.rar.torrent
    2012-05-19 05:49 - 2012-05-19 05:49 - 00000000 ____D C:\Users\Sam\Documents\Calibre Library
    2012-05-19 05:47 - 2012-05-19 05:47 - 08759248 ____A C:\Users\Sam\Downloads\mangle_2.3.zip
    2012-05-19 05:47 - 2012-05-19 05:47 - 00000000 ____D C:\Program Files (x86)\Calibre2
    2012-05-19 05:46 - 2012-05-19 05:46 - 47252912 ____A C:\Users\Sam\Downloads\calibre-0.8.52.msi
    2012-05-19 05:29 - 2009-07-13 21:13 - 00006472 ____A C:\Windows\System32\PerfStringBackup.INI
    2012-05-18 17:02 - 2012-05-18 17:02 - 00000000 ____D C:\Users\Sam\Downloads\Amagami SS Plus 01-13 [720p] [UTW]
    2012-05-18 17:00 - 2012-05-18 17:00 - 00018046 ____A C:\Users\Sam\Downloads\[BakaBT.165970v3] Amagami SS Plus 01-13 [720p] [UTW].torrent
    2012-05-18 17:00 - 2012-05-18 17:00 - 00018046 ____A C:\Users\Sam\Downloads\[BakaBT.165970v3] Amagami SS Plus 01-13 [720p] [UTW] (1).torrent
    2012-05-18 09:45 - 2012-05-18 09:45 - 02478624 ____A C:\Users\Sam\Downloads\1337362318404.png
    2012-05-18 09:45 - 2012-05-18 09:45 - 01901778 ____A C:\Users\Sam\Downloads\1337362916437.gif
    2012-05-18 09:41 - 2012-05-18 09:41 - 00072435 ____A C:\Users\Sam\Downloads\1337362088191.png
    2012-05-18 08:38 - 2012-05-18 08:38 - 00437059 ____A C:\Users\Sam\Downloads\1337287317451.gif
    2012-05-18 07:17 - 2012-05-13 13:28 - 00000000 ____D C:\Users\Sam\AppData\Local\ArmA 2 OA
    2012-05-18 05:30 - 2012-05-18 05:30 - 00146144 ____A C:\Users\Sam\Downloads\1337345056395.png
    2012-05-18 03:48 - 2012-05-18 03:48 - 02673093 ____A C:\Users\Sam\Downloads\133511901889.gif
    2012-05-18 03:40 - 2012-05-18 03:40 - 00485062 ____A C:\Users\Sam\Downloads\1337329406200.png
    2012-05-17 19:21 - 2012-05-17 19:21 - 00822722 ____A C:\Users\Sam\Downloads\1337310736516.gif
    2012-05-17 19:19 - 2012-05-17 19:19 - 00041032 ____A C:\Users\Sam\Downloads\1337311056550.png
    2012-05-17 18:47 - 2012-06-13 18:00 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
    2012-05-17 18:16 - 2012-06-13 18:00 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
    2012-05-17 18:06 - 2012-06-13 18:00 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
    2012-05-17 17:59 - 2012-06-13 18:00 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
    2012-05-17 17:59 - 2012-06-13 18:00 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
    2012-05-17 17:58 - 2012-06-13 18:00 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
    2012-05-17 17:58 - 2012-06-13 18:00 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
    2012-05-17 17:56 - 2012-06-13 18:00 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
    2012-05-17 17:55 - 2012-06-13 18:00 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
    2012-05-17 17:55 - 2012-06-13 18:00 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
    2012-05-17 17:54 - 2012-06-13 18:00 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
    2012-05-17 17:51 - 2012-06-13 18:00 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
    2012-05-17 17:51 - 2012-06-13 18:00 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
    2012-05-17 17:49 - 2012-05-17 17:49 - 02108596 ____A C:\Users\Sam\Downloads\1337305743591.gif
    2012-05-17 17:47 - 2012-06-13 18:00 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
    2012-05-17 17:47 - 2012-05-17 17:47 - 01691517 ____A C:\Users\Sam\Downloads\1337305382210.png
    2012-05-17 17:11 - 2012-05-17 17:11 - 00001550 ____A C:\Users\Sam\Documents\0outof10.txt
    2012-05-17 15:11 - 2012-06-13 18:00 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
    2012-05-17 14:48 - 2012-06-13 18:00 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
    2012-05-17 14:45 - 2012-06-13 18:00 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
    2012-05-17 14:36 - 2012-06-13 18:00 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
    2012-05-17 14:35 - 2012-06-13 18:00 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
    2012-05-17 14:35 - 2012-06-13 18:00 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
    2012-05-17 14:33 - 2012-06-13 18:00 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
    2012-05-17 14:31 - 2012-06-13 18:00 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
    2012-05-17 14:29 - 2012-06-13 18:00 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
    2012-05-17 14:29 - 2012-06-13 18:00 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
    2012-05-17 14:27 - 2012-06-13 18:00 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
    2012-05-17 14:25 - 2012-06-13 18:00 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
    2012-05-17 14:24 - 2012-06-13 18:00 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
    2012-05-17 14:20 - 2012-06-13 18:00 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
    2012-05-17 12:01 - 2012-05-17 12:01 - 31961789 ____A C:\Users\Sam\Downloads\SCP - Containment Breach v0.2.zip
    2012-05-17 08:45 - 2012-05-17 08:45 - 00007758 ____A C:\Users\Sam\Downloads\InstantViewDistancenoPvpv2.2 (2).7z
    2012-05-17 08:40 - 2012-05-17 08:40 - 00007758 ____A C:\Users\Sam\Downloads\InstantViewDistancenoPvpv2.2 (1).7z
    2012-05-17 07:13 - 2012-05-17 07:13 - 02215383 ____A C:\Users\Sam\Downloads\1337267362204.gif
    2012-05-17 07:07 - 2011-11-30 14:57 - 00000000 ____D C:\Users\Sam\Downloads\[ www.Speed.Cd ] - House.S08E08.720p.HDTV.X264-DIMENSION
    2012-05-17 04:00 - 2012-05-17 04:00 - 00068395 ____A C:\Users\Sam\Downloads\1337254847679.png
    2012-05-17 00:12 - 2012-05-17 00:12 - 00009686 ____A C:\Users\Sam\Downloads\1337242148350.png
    2012-05-17 00:01 - 2012-05-17 00:01 - 00411935 ____A C:\Users\Sam\Downloads\1337241653480.png
    2012-05-16 23:50 - 2012-05-16 23:50 - 02386965 ____A C:\Users\Sam\Downloads\1337240875426.png
    2012-05-16 23:49 - 2012-05-16 23:49 - 00778540 ____A C:\Users\Sam\Downloads\1337240726722.png
    2012-05-16 23:48 - 2012-05-16 23:48 - 01086062 ____A C:\Users\Sam\Downloads\1337240881615.png
    2012-05-16 19:18 - 2012-05-16 19:18 - 00028831 ____A C:\Users\Sam\Downloads\n4fb2c328300fe_large.png
    2012-05-16 19:17 - 2012-05-16 19:17 - 00062207 ____A C:\Users\Sam\Downloads\1337218562768.png
    2012-05-16 19:15 - 2012-05-16 19:15 - 00614970 ____A C:\Users\Sam\Downloads\1337219911202.png
    2012-05-16 19:08 - 2012-05-16 19:08 - 00351379 ____A C:\Users\Sam\Downloads\1337220674250.png
    2012-05-16 19:07 - 2012-05-16 19:07 - 00916529 ____A C:\Users\Sam\Downloads\1337220858586.gif
    2012-05-16 18:42 - 2012-05-16 18:42 - 00363297 ____A C:\Users\Sam\Downloads\1337222490039.gif
    2012-05-16 17:51 - 2012-05-16 17:51 - 00319162 ____A C:\Users\Sam\Downloads\1337219219651.png
    2012-05-16 17:19 - 2012-05-16 17:20 - 00052054 ____A C:\Users\Sam\Downloads\1337208482736.png
    2012-05-16 15:07 - 2012-05-16 15:07 - 00313052 ____A C:\Users\Sam\Downloads\1337208908398.png
    2012-05-16 10:43 - 2012-04-29 13:31 - 00000000 ____D C:\Program Files (x86)\Facade
    2012-05-16 06:55 - 2012-05-16 06:55 - 00272559 ____A C:\Users\Sam\Downloads\1337179702801.gif
    2012-05-16 05:06 - 2012-05-16 05:06 - 06677264 ____A (Adobe Systems Inc.) C:\Users\Sam\Downloads\Shockwave_Installer_Slim.exe
    2012-05-15 19:11 - 2012-05-15 19:11 - 01532218 ____A C:\Users\Sam\Downloads\1337130548593.gif
    2012-05-15 15:35 - 2012-05-15 15:35 - 00390842 ____A C:\Users\Sam\Downloads\@CBA_v0.8.3.175_hotfix2.7z
    2012-05-15 15:35 - 2012-05-15 15:35 - 00007758 ____A C:\Users\Sam\Downloads\InstantViewDistancenoPvpv2.2.7z
    2012-05-15 13:18 - 2012-05-15 13:18 - 01533627 ____A C:\Users\Sam\Downloads\1337115101614.gif
    2012-05-15 13:17 - 2012-05-15 13:17 - 01821921 ____A C:\Users\Sam\Downloads\1337114327846.gif
    2012-05-15 05:47 - 2012-05-15 05:47 - 00427224 ____A C:\Users\Sam\Downloads\1337089407967.png
    2012-05-15 05:39 - 2012-05-15 05:39 - 00493589 ____A C:\Users\Sam\Downloads\1337088151711.png
    2012-05-15 05:37 - 2012-05-15 05:37 - 00080853 ____A C:\Users\Sam\Downloads\1337088661051.png
    2012-05-15 05:34 - 2012-05-15 05:34 - 00264767 ____A C:\Users\Sam\Downloads\1337087693630.png
    2012-05-14 17:32 - 2012-06-13 14:51 - 03144192 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
    2012-05-14 16:49 - 2012-05-14 16:49 - 00712581 ____A C:\Users\Sam\Downloads\MKVExtractGUI-2.2.2.5.zip
    2012-05-14 16:48 - 2012-05-14 16:48 - 07496911 ____A (Moritz Bunkus) C:\Users\Sam\Downloads\mkvtoolnix-unicode-5.5.0-setup.exe
    2012-05-14 16:35 - 2012-05-14 16:35 - 01063403 ____A C:\Users\Sam\Downloads\Cat_Head_Imako_02.png
    2012-05-14 16:17 - 2012-05-14 16:17 - 00000000 ____D C:\Users\Sam\AppData\Local\Microsoft Games
    2012-05-14 15:40 - 2012-05-14 15:40 - 00462465 ____A C:\Users\Sam\Downloads\n4fb14bfdebb3b.png
    2012-05-14 07:27 - 2012-05-14 07:27 - 00000661 ____A C:\Users\Sam\Documents\ali.txt
    2012-05-14 06:23 - 2012-05-14 06:21 - 32782149 ____A C:\Users\Sam\Downloads\dayz_anim_v0.1 (1).rar
    2012-05-14 06:22 - 2012-05-14 06:21 - 30128808 ____A C:\Users\Sam\Downloads\dayz_sfx_v1.1.rar
    2012-05-14 06:22 - 2012-05-14 06:21 - 14295634 ____A C:\Users\Sam\Downloads\dayz_weapons_v1.1.1 (1).rar
    2012-05-14 06:22 - 2012-05-14 06:21 - 14132258 ____A C:\Users\Sam\Downloads\dayz_equip_v1.2.3 (1).rar
    2012-05-14 06:22 - 2012-05-14 06:21 - 10856873 ____A C:\Users\Sam\Downloads\dayz_v1.2.4.rar
    2012-05-14 06:22 - 2012-05-14 06:21 - 05611547 ____A C:\Users\Sam\Downloads\dayz_vehicles_v0.1 (1).rar
    2012-05-14 06:21 - 2012-05-14 06:21 - 00132984 ____A C:\Users\Sam\Downloads\dayz_code_v1.5.7.rar
    2012-05-14 05:13 - 2012-05-14 05:13 - 00000000 ____D C:\Program Files (x86)\Geeks3D
    2012-05-14 05:11 - 2012-05-14 05:11 - 03931189 ____A (Geeks3D.com ) C:\Users\Sam\Downloads\FurMark_1.9.2 (1).exe
    2012-05-13 19:29 - 2012-05-13 19:29 - 00000000 ____D C:\Users\All Users\ATI
    2012-05-13 19:29 - 2011-11-11 07:17 - 00000000 ____D C:\Users\Sam\AppData\Roaming\ATI
    2012-05-13 19:29 - 2011-11-11 07:17 - 00000000 ____D C:\Users\Sam\AppData\Local\ATI
    2012-05-13 19:28 - 2012-05-13 19:28 - 00000000 ____A C:\Windows\ativpsrm.bin
    2012-05-13 19:26 - 2012-05-13 19:26 - 00000000 ____D C:\Users\All Users\AMD
    2012-05-13 19:26 - 2012-05-13 19:26 - 00000000 ____D C:\Program Files (x86)\AMD AVT
    2012-05-13 19:25 - 2012-05-13 19:25 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
    2012-05-13 19:25 - 2012-05-13 19:23 - 00000000 ____D C:\Program Files\ATI Technologies
    2012-05-13 19:24 - 2012-05-13 19:24 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
    2012-05-13 19:23 - 2012-05-13 19:23 - 00000000 ____D C:\Program Files\ATI
    2012-05-13 19:22 - 2012-05-13 19:22 - 00000000 ____D C:\AMD
    2012-05-13 18:14 - 2012-05-13 18:14 - 07902008 ____A (VS Revo Group ) C:\Users\Sam\Downloads\RevoUninProSetup.exe
    2012-05-13 18:14 - 2012-05-13 18:14 - 02617176 ____A (VS Revo Group Ltd.) C:\Users\Sam\Downloads\revosetup.exe
    2012-05-13 18:14 - 2012-05-13 18:14 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
    2012-05-13 18:03 - 2012-05-13 18:01 - 160889384 ____A (Advanced Micro Devices, Inc.) C:\Users\Sam\Downloads\12-4_vista_win7_64_dd_ccc.exe
    2012-05-13 18:01 - 2012-05-13 18:01 - 00000000 ____D C:\Program Files\Microsoft Silverlight
    2012-05-13 18:01 - 2012-05-13 18:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
    2012-05-13 17:56 - 2012-05-13 17:56 - 05429372 ____A (Phyxion.net ) C:\Users\Sam\Downloads\DriverSweeper_3.2.0.exe
    2012-05-13 17:56 - 2012-05-13 17:56 - 00463080 ____A (CNET Download.com) C:\Users\Sam\Downloads\cnet_DriverSweeper_3_2_0_exe.exe
    2012-05-13 17:27 - 2012-05-09 11:01 - 00000000 ____D C:\Users\Sam\Documents\ArmA 2
    2012-05-13 15:54 - 2012-05-13 15:53 - 15469769 ____A C:\Users\Sam\Documents\Chandeliers.wmv
    2012-05-13 15:53 - 2012-05-13 14:23 - 00019928 ____A C:\Users\Sam\Documents\delboi.veg
    2012-05-13 15:50 - 2012-05-13 15:49 - 15413769 ____A C:\Users\Sam\Documents\delboi.wmv
    2012-05-13 15:49 - 2012-05-13 14:23 - 00019808 ____A C:\Users\Sam\Documents\delboi.veg.bak
    2012-05-13 15:10 - 2012-05-13 15:07 - 00063383 ____A C:\Users\Sam\Downloads\pomf2.png
    2012-05-13 14:47 - 2012-05-13 14:31 - 00000000 ____D C:\Users\Sam\Downloads\AVS.Video.Converter.v8.1.1.509.Cracked-F4CG
    2012-05-13 14:46 - 2012-05-13 14:46 - 00000000 ____D C:\Users\Sam\AppData\Roaming\AVS4YOU
    2012-05-13 14:46 - 2012-05-13 14:45 - 00000000 ____D C:\Users\All Users\AVS4YOU
    2012-05-13 14:23 - 2012-01-16 06:31 - 00000000 ____D C:\Program Files (x86)\QuickTime
    2012-05-13 14:20 - 2012-05-13 14:20 - 39401336 ____A (Apple Inc.) C:\Users\Sam\Downloads\QuickTimeInstaller (1).exe
    2012-05-13 14:19 - 2012-05-13 14:14 - 00262560 ____A C:\Users\Sam\Documents\Only Fools and Horses.mp4.sfk
    2012-05-13 14:15 - 2012-05-13 13:59 - 14608825 ____A C:\Users\Sam\Documents\Only Fools and Horses.mp4
    2012-05-13 14:05 - 2012-05-13 14:04 - 00000000 ____D C:\Users\Sam\AppData\Roaming\tiger-k
    2012-05-13 14:04 - 2012-05-13 14:04 - 00000000 ____D C:\Users\Sam\Documents\Leawo
    2012-05-13 14:04 - 2012-05-13 14:04 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Leawo
    2012-05-13 14:04 - 2012-05-13 14:04 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
    2012-05-13 14:02 - 2012-05-13 13:59 - 27901317 ____A (Leawo Software Co.,Ltd. ) C:\Users\Sam\Downloads\videoconverter_setup.exe
    2012-05-13 12:27 - 2012-05-13 12:26 - 32782149 ____A C:\Users\Sam\Downloads\dayz_anim_v0.1.rar
    2012-05-13 12:27 - 2012-05-13 12:26 - 29545827 ____A C:\Users\Sam\Downloads\dayz_sfx_v1.0.rar
    2012-05-13 12:26 - 2012-05-13 12:26 - 14295634 ____A C:\Users\Sam\Downloads\dayz_weapons_v1.1.1.rar
    2012-05-13 12:26 - 2012-05-13 12:26 - 14132258 ____A C:\Users\Sam\Downloads\dayz_equip_v1.2.3.rar
    2012-05-13 12:26 - 2012-05-13 12:26 - 10296165 ____A C:\Users\Sam\Downloads\dayz_v1.2.3.rar
    2012-05-13 12:26 - 2012-05-13 12:26 - 05611547 ____A C:\Users\Sam\Downloads\dayz_vehicles_v0.1.rar
    2012-05-13 12:26 - 2012-05-13 12:26 - 00128751 ____A C:\Users\Sam\Downloads\dayz_code_v1.5.6.rar
    2012-05-13 12:20 - 2012-05-13 12:20 - 00000000 ____D C:\Program Files (x86)\SIX Projects
    2012-05-13 12:19 - 2012-05-13 12:19 - 09808136 ____A (Oleg N. Scherbakov) C:\Users\Sam\Downloads\Six Updater v2.9.5pre38 setup.exe
    2012-05-13 10:23 - 2012-05-13 09:43 - 534642935 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_05_[720p][10bit][2EC6002D].mkv
    2012-05-13 10:18 - 2012-05-13 09:43 - 424336968 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_06_[720p][10bit][93CECE13].mkv
    2012-05-13 09:43 - 2012-05-13 09:43 - 00016702 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_06_[720p][10bit][93CECE13].mkv.torrent
    2012-05-13 09:42 - 2012-05-13 09:42 - 00020902 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_05_[720p][10bit][2EC6002D].mkv.torrent
    2012-05-13 08:12 - 2011-12-18 11:58 - 00000000 ____D C:\Program Files\Java
    2012-05-13 08:08 - 2012-05-13 08:08 - 00193309 ____A C:\Users\Sam\Downloads\SpritecraftFree.jar
    2012-05-13 08:08 - 2012-05-13 08:08 - 00000775 ____A C:\Users\Sam\Downloads\n4f05167958e69_medium.gif
    2012-05-13 05:59 - 2012-05-13 05:59 - 00168260 ____A C:\Users\Sam\Downloads\n4faf4d95ba52e.png
    2012-05-13 05:44 - 2012-05-13 05:44 - 00220473 ____A C:\Users\Sam\Downloads\n4faf5282879f1.png
    2012-05-13 05:44 - 2012-05-13 05:44 - 00198210 ____A C:\Users\Sam\Downloads\n4faf52f4e62e3.png
    2012-05-13 05:44 - 2012-05-13 05:44 - 00185170 ____A C:\Users\Sam\Downloads\n4faf54a799b40.png
    2012-05-13 05:44 - 2012-05-13 05:44 - 00174571 ____A C:\Users\Sam\Downloads\n4faf546ca7e8b.png
    2012-05-13 05:43 - 2012-05-13 05:43 - 00253496 ____A C:\Users\Sam\Downloads\n4faf525062eb2.png
    2012-05-13 05:43 - 2012-05-13 05:43 - 00243261 ____A C:\Users\Sam\Downloads\n4faf51eb79b71.png
    2012-05-12 18:35 - 2012-05-12 18:21 - 1306797193 ____A C:\Users\Sam\Downloads\NMRiH_Beta_1.04_Full.zip
    2012-05-12 16:45 - 2012-02-11 20:09 - 00011759 ____A C:\Users\Sam\Documents\2worlds.odt
    2012-05-12 13:00 - 2012-05-12 13:00 - 332493753 ____A C:\Users\Sam\Downloads\[Hatsuyuki]_Fate_Zero_-_18_[10bit][1280x720][A20F0914].mkv
    2012-05-12 13:00 - 2012-05-12 12:42 - 245495167 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 19 [EEC4D378].mkv
    2012-05-12 12:59 - 2012-05-12 12:59 - 00013225 ____A C:\Users\Sam\Downloads\[Hatsuyuki]_Fate_Zero_-_18_[10bit][1280x720][A20F0914].mkv.torrent
    2012-05-12 12:41 - 2012-05-12 12:41 - 00019140 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 19 [EEC4D378].mkv (1).torrent
    2012-05-12 12:40 - 2012-05-12 12:40 - 00019140 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 19 [EEC4D378].mkv.torrent
    2012-05-12 12:40 - 2011-11-11 08:01 - 00880496 ____A (BitTorrent, Inc.) C:\Users\Sam\Downloads\utorrent.exe
    2012-05-12 11:57 - 2012-05-12 11:57 - 17628887 ____A () C:\Users\Sam\Downloads\SkyrimOnline-Installer.exe
    2012-05-11 15:02 - 2012-05-11 15:02 - 00238362 ____A C:\Users\Sam\Downloads\[BakaBT.163344v2] Legend.of.the.Galactic.Heroes.[x264.720p.10bit.AAC].torrent
    2012-05-11 12:53 - 2012-05-11 12:53 - 00026723 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 06 [720p].mkv.torrent
    2012-05-11 12:53 - 2012-05-11 12:53 - 00026703 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 05 [720p].mkv.torrent
    2012-05-10 13:17 - 2012-05-10 13:17 - 00002706 ____A C:\Users\Sam\Downloads\c63Jv.png
    2012-05-10 12:50 - 2012-05-10 12:50 - 11821269 ____A C:\Users\Sam\Downloads\serbline.ogg
    2012-05-10 10:43 - 2012-05-10 10:43 - 00092076 ____A C:\Users\Sam\Downloads\FUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUU.png
    2012-05-10 04:14 - 2012-05-10 04:14 - 75841115 ____A (Advanced Micro Devices, Inc.) C:\Users\Sam\Downloads\10-4_vista64_win7_64_dd_ccc_wdm_enu.exe
    2012-05-10 03:35 - 2012-05-10 03:35 - 01058784 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Sam\Downloads\GPU-Z.0.6.2.exe
    2012-05-10 03:34 - 2012-05-10 03:34 - 00000000 ____D C:\Users\Sam\Documents\Criterion Games
    2012-05-09 23:33 - 2012-05-09 23:33 - 00399309 ____A C:\Users\Sam\Downloads\n4fab38b132c50_large.gif
    2012-05-09 23:16 - 2012-05-09 23:16 - 00471480 ____A C:\Users\Sam\Downloads\Gratuitous ViolenceMODIFIED.ESP
    2012-05-09 18:00 - 2009-07-13 23:46 - 00000000 ____D C:\Program Files\Windows Journal
    2012-05-09 14:37 - 2012-05-09 11:01 - 00000000 ____D C:\Users\Sam\AppData\Local\ArmA 2
    2012-05-09 11:24 - 2012-05-09 11:24 - 00256277 ____A C:\Users\Sam\Downloads\FXAAToolHg6.zip
    2012-05-09 11:24 - 2012-05-09 11:24 - 00134102 ____A C:\Users\Sam\Downloads\injectSMAA_by_mrhaandi_1.2 (3).7z
    2012-05-09 11:20 - 2012-05-09 11:16 - 283658259 ____A C:\Users\Sam\Downloads\ARMA2Update_105.zip
    2012-05-09 11:15 - 2012-05-09 11:12 - 222166155 ____A C:\Users\Sam\Downloads\ARMA2_Update_111.zip
    2012-05-09 11:09 - 2012-05-09 11:09 - 00000074 ____A C:\Users\Sam\Documents\arma2.swr
    2012-05-09 09:36 - 2012-05-09 09:36 - 00000000 ____D C:\Program Files\Bohemia Interactive
    2012-05-07 17:55 - 2012-05-07 17:56 - 01691375 ____A C:\Users\Sam\Downloads\minimising a window with kinect.gif
    2012-05-07 17:29 - 2012-05-07 17:29 - 00350979 ____A C:\Users\Sam\Downloads\jnes_1_0_2.exe
    2012-05-07 17:29 - 2012-05-07 17:29 - 00126541 ____A C:\Users\Sam\Downloads\Strider.7z
    2012-05-07 17:29 - 2012-05-07 17:29 - 00000000 ____D C:\Program Files (x86)\Jnes
    2012-05-07 16:03 - 2012-04-10 05:48 - 00076888 ____A C:\Windows\SysWOW64\PnkBstrA.exe
    2012-05-07 12:09 - 2012-05-07 12:06 - 493972892 ____A C:\Users\Sam\Downloads\DangerousWorld_2.0.exe
    2012-05-07 00:34 - 2012-05-07 00:34 - 01764447 ____A C:\Users\Sam\Downloads\Vocaroo_s0lSq5b6Fm9J.mp3
    2012-05-07 00:26 - 2012-05-07 00:26 - 01084817 ____A C:\Users\Sam\Downloads\n4fa7758f3187e.png
    2012-05-06 15:36 - 2012-05-06 15:32 - 327581343 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_18_[h264-720p][CFAB3675].mkv
  10. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    2012-05-06 15:32 - 2012-05-06 15:32 - 00012968 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_18_[h264-720p][CFAB3675].mkv.torrent
    2012-05-06 12:57 - 2012-05-04 19:04 - 326414112 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 04 [720p].mkv
    2012-05-06 12:48 - 2012-05-06 12:48 - 01324545 ____A C:\Users\Sam\Downloads\Vocaroo_s0SC7yydwxLu.mp3
    2012-05-05 14:02 - 2011-12-02 14:15 - 00000000 ____D C:\Users\Sam\AppData\Local\LogMeIn Hamachi
    2012-05-05 13:22 - 2012-05-05 13:22 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
    2012-05-05 13:22 - 2011-11-11 10:03 - 00000000 ____D C:\Users\Sam\Documents\My Games
    2012-05-05 13:20 - 2012-05-05 13:20 - 00085879 ____A C:\Users\Sam\Downloads\winexp.zip
    2012-05-05 12:21 - 2012-05-05 12:20 - 01408470 ____A C:\Users\Sam\Downloads\minecraft_server.jar
    2012-05-05 12:15 - 2011-11-11 10:44 - 00000000 ____D C:\Windows\System32\appmgmt
    2012-05-05 11:57 - 2012-05-05 11:57 - 00191264 ____A (Sun Microsystems, Inc.) C:\Windows\System32\javaws.exe
    2012-05-05 11:57 - 2012-05-05 11:57 - 00172320 ____A (Sun Microsystems, Inc.) C:\Windows\System32\javaw.exe
    2012-05-05 11:57 - 2012-05-05 11:57 - 00172320 ____A (Sun Microsystems, Inc.) C:\Windows\System32\java.exe
    2012-05-05 11:34 - 2012-05-05 11:34 - 00476960 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\npdeployJava1.dll
    2012-05-05 11:34 - 2012-05-05 11:34 - 00157472 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaws.exe
    2012-05-05 11:34 - 2012-05-05 11:34 - 00149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaw.exe
    2012-05-05 11:34 - 2012-05-05 11:34 - 00149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe
    2012-05-05 11:34 - 2011-11-11 08:22 - 00472864 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\deployJava1.dll
    2012-05-05 11:33 - 2012-05-05 11:33 - 00909088 ____A (Sun Microsystems, Inc.) C:\Users\Sam\Downloads\chromeinstall.exe
    2012-05-05 11:27 - 2012-05-05 11:27 - 01345637 ____A C:\Users\Sam\Documents\minecraft_server_Full 1.2.3.jar
    2012-05-05 11:18 - 2012-05-05 11:18 - 01601908 ____A C:\Users\Sam\Downloads\hackslashmine0.5.3.zip
    2012-05-05 11:11 - 2012-05-05 11:11 - 00669179 ____A C:\Users\Sam\Downloads\MVC.zip
    2012-05-05 10:58 - 2012-05-05 10:58 - 13974613 ____A C:\Users\Sam\Downloads\Tekkit_Server_2.1.1.zip
    2012-05-05 10:58 - 2012-05-05 10:58 - 00052736 ____A (Technic) C:\Users\Sam\Downloads\TechnicLauncher (1).exe
    2012-05-05 10:55 - 2012-05-05 10:55 - 00278561 ____A C:\Users\Sam\Downloads\Minecraft.exe
    2012-05-04 19:23 - 2012-05-04 19:05 - 326444826 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 03 [720p].mkv
    2012-05-04 19:22 - 2012-05-04 19:04 - 326668070 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 02 [720p].mkv
    2012-05-04 19:04 - 2012-05-04 19:04 - 00025309 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 02 [720p].mkv.torrent
    2012-05-04 19:04 - 2012-05-04 19:04 - 00025289 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 03 [720p].mkv.torrent
    2012-05-04 19:03 - 2012-05-04 19:03 - 00025289 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 04 [720p].mkv.torrent
    2012-05-04 19:03 - 2012-05-04 19:03 - 00011574 ____A C:\Users\Sam\Downloads\[Commie-Commie] Sakamichi no Apollon - 04 [C88B2AB6].mkv.torrent
    2012-05-04 18:28 - 2012-05-04 18:24 - 341211507 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 04 [720p].mkv
    2012-05-04 18:23 - 2012-05-04 18:23 - 00026409 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 04 [720p].mkv.torrent
    2012-05-04 14:42 - 2012-03-14 14:19 - 00000000 ____D C:\Program Files (x86)\uTorrent
    2012-05-04 06:11 - 2012-05-04 06:11 - 00554232 ____A C:\Users\Sam\Downloads\SkinEdit Alpha 3 pre 7.zip
    2012-05-04 02:52 - 2012-06-13 14:51 - 05505392 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
    2012-05-04 02:08 - 2012-06-13 14:51 - 03958128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
    2012-05-04 02:08 - 2012-06-13 14:51 - 03902320 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
    2012-05-03 22:50 - 2012-05-03 22:50 - 00013376 ____A C:\Users\Sam\Downloads\XG1lR.png
    2012-05-03 22:49 - 2012-05-03 22:49 - 00271472 ____A C:\Users\Sam\Downloads\n4fa35faa191bf.png
    2012-05-03 16:40 - 2012-05-03 16:39 - 60869635 ____A C:\Users\Sam\Downloads\Stephen Fry - All about I (What I wish I knew when I was 18).mp3
    2012-05-03 16:17 - 2012-05-02 18:06 - 00032336 ____A C:\Users\Sam\Documents\dragon age 3.veg
    2012-05-03 14:36 - 2012-03-06 16:54 - 00003931 ____A C:\Users\Sam\Documents\getoutofherestalker.txt
    2012-05-03 13:44 - 2012-05-03 03:44 - 00023016 ____A C:\Users\Sam\Documents\email2.odt
    2012-05-03 03:43 - 2012-04-30 16:48 - 00002675 ____A C:\Users\Sam\Documents\loli.txt
    2012-05-03 02:56 - 2012-05-03 02:56 - 00155029 ____A C:\Users\Sam\Downloads\nnn0va.png
    2012-05-02 19:19 - 2012-05-02 18:06 - 00026000 ____A C:\Users\Sam\Documents\dragon age 3.veg.bak
    2012-05-02 18:15 - 2012-05-02 18:15 - 00507496 ____A C:\Users\Sam\Documents\PAX Prime 2010_ Dragon Age 2_ Interview with Bioware Lead Writer David Gaiter_(480p).mp4.sfk
    2012-05-02 18:15 - 2012-05-02 18:12 - 39932994 ____A C:\Users\Sam\Documents\PAX Prime 2010_ Dragon Age 2_ Interview with Bioware Lead Writer David Gaiter_(480p).mp4
    2012-05-02 18:04 - 2012-05-02 18:02 - 00024616 ____A C:\Users\Sam\Documents\It was the best of times, It was the blurst of times._(480p).mp4.sfk
    2012-05-02 18:01 - 2012-05-02 18:01 - 02270582 ____A C:\Users\Sam\Documents\It was the best of times, It was the blurst of times._(480p).mp4
    2012-05-02 17:56 - 2012-05-02 17:56 - 00000000 ____D C:\Program Files (x86)\Xvid
    2012-05-02 17:56 - 2012-05-02 17:55 - 10768856 ____A (Xvid Team) C:\Users\Sam\Downloads\Xvid-1.3.2-20110601.exe
    2012-05-02 17:53 - 2012-05-02 17:53 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Sony Creative Software Inc
    2012-05-02 17:52 - 2012-05-02 17:52 - 00248596 ____A C:\Users\Sam\Downloads\1447_aviplug.zip
    2012-05-02 17:50 - 2012-04-19 17:15 - 00000000 ____D C:\Users\Sam\Downloads\Prodropping
    2012-05-02 17:43 - 2012-05-02 17:43 - 00000000 ____D C:\Program Files (x86)\Youtube Downloader HD
    2012-05-02 17:40 - 2012-05-02 17:40 - 03722823 ____A (YoutubeDownloaderHD.com ) C:\Users\Sam\Downloads\youtube_downloader_hd_setup.exe
    2012-05-02 17:37 - 2012-05-02 17:37 - 01497943 ____A C:\Users\Sam\Downloads\It was the best of times, It was the blurst of times. [SaveYouTube.com].mp4
    2012-05-02 17:37 - 2012-05-02 17:37 - 00024832 ____A C:\Users\Sam\Downloads\It was the best of times, It was the blurst of times. [SaveYouTube.com].mp4.sfk
    2012-05-02 17:26 - 2012-05-02 17:26 - 02766178 ____A C:\Users\Sam\Downloads\It was the best of times, It was the blurst of times. [SaveYouTube.com].flv
    2012-05-01 21:32 - 2012-06-13 14:52 - 00208896 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
    2012-04-30 13:22 - 2012-04-30 13:22 - 00205208 ____A C:\Users\Sam\Downloads\n4f9efecd6b0ae.png
    2012-04-30 12:57 - 2012-04-30 12:57 - 00483269 ____A C:\Users\Sam\Downloads\n4f9efa8ba4316.png
    2012-04-30 03:31 - 2012-04-30 03:31 - 00193523 ____A C:\Users\Sam\Downloads\GodHandGene.png
    2012-04-29 13:27 - 2012-04-29 13:27 - 00001474 ____A C:\Users\Sam\Downloads\TechnicLauncher.exe - Shortcut.lnk
    2012-04-29 10:10 - 2012-04-29 10:03 - 107930540 ____A C:\Users\Sam\Downloads\[Po-ju] Secret Journey Ch.0-7 (Complete) [ENG].zip
    2012-04-28 19:11 - 2012-04-28 19:11 - 00660556 ____A C:\Users\Sam\Downloads\_save228017.sav
    2012-04-28 19:06 - 2012-04-28 19:06 - 06340125 ____A (XxxXxXM374LG34R_420_5n1p3rN0ZC0P3Z12XxXxxX(Aka SePhIrOt D4RKM4NT) C:\Users\Sam\Downloads\sanic.exe
    2012-04-28 17:40 - 2012-04-28 17:24 - 00000000 ____D C:\Users\Sam\Downloads\-=Arma II-OA CRASH FIX [MAJESTIC ONE]=-
    2012-04-28 17:26 - 2012-04-28 17:26 - 00000000 ____D C:\Users\Sam\Downloads\Arma_2_Operation_Arrowhead-FLT
    2012-04-28 15:23 - 2012-04-28 15:18 - 211118308 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 17 [8894A250].mkv
    2012-04-28 15:17 - 2012-04-28 15:17 - 00016520 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 17 [8894A250].mkv.torrent
    2012-04-28 13:15 - 2012-04-28 13:15 - 00400256 ____A C:\Users\Sam\Downloads\n4f9c5a52dcc29.png
    2012-04-28 13:04 - 2012-04-28 13:04 - 04587073 ____A C:\Users\Sam\Downloads\**** YOU ?.flv
    2012-04-28 12:57 - 2012-04-28 12:57 - 00174080 ____A (KeepVid) C:\Users\Sam\Downloads\KeepVid.exe
    2012-04-28 12:56 - 2012-04-27 12:26 - 3014596237 ____A C:\Users\Sam\Downloads\Ghost_in_the_Shell_-_Stand_Alone_Complex_-_Solid_State_Society_(ANOTHER_DIMENSION)_[3xR][Blu-ray.1080p.H264.FLAC]_[C64DDCAD].mkv
    2012-04-28 11:49 - 2012-04-28 10:51 - 337687782 ____A C:\Users\Sam\Downloads\[HorribleSubs] Fate Zero S2 - 03 [720p].mkv
    2012-04-28 11:35 - 2012-04-28 11:35 - 00052736 ____A (Technic) C:\Users\Sam\Downloads\TechnicLauncher.exe
    2012-04-28 10:44 - 2012-04-28 10:44 - 00026141 ____A C:\Users\Sam\Downloads\[HorribleSubs] Fate Zero S2 - 03 [720p].mkv.torrent
    2012-04-27 20:35 - 2012-04-27 20:33 - 00000000 ____D C:\Users\Sam\AppData\Local\Procaster
    2012-04-27 20:33 - 2012-04-27 20:33 - 00000000 ____D C:\Program Files (x86)\Livestream Procaster
    2012-04-27 20:29 - 2012-04-27 20:28 - 22669060 ____A C:\Users\Sam\Downloads\LivestreamProcaster (1).pkg
    2012-04-27 20:29 - 2012-04-27 20:28 - 18631248 ____A (Procaster) C:\Users\Sam\Downloads\Procaster.exe
    2012-04-27 20:27 - 2012-04-27 20:27 - 22669060 ____A C:\Users\Sam\Downloads\LivestreamProcaster.pkg
    2012-04-27 19:50 - 2012-06-13 14:51 - 00204800 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
    2012-04-27 12:25 - 2012-04-27 12:25 - 00055752 ____A C:\Users\Sam\Downloads\[BakaBT.161579v0] Ghost_in_the_Shell_-_Stand_Alone_Complex_-_Solid_State_Society_(ANOTHER_DIMENSION)_[3xR][Blu-ray.1080p.H264.FLAC]_[C64DDCAD].mkv.torrent
    2012-04-27 08:34 - 2012-04-27 08:22 - 467572510 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_03_[EFC5CD18].mkv
    2012-04-27 08:21 - 2012-04-27 08:21 - 00018321 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_03_[EFC5CD18].mkv.torrent
    2012-04-27 07:32 - 2012-04-27 07:18 - 00000000 ____D C:\Users\Sam\Downloads\Ghost in the Shell Music Collection [FLAC]
    2012-04-27 07:18 - 2012-04-27 07:18 - 00084574 ____A C:\Users\Sam\Downloads\[BakaBT.153340v4] Ghost in the Shell Music Collection [FLAC].torrent
    2012-04-26 14:53 - 2012-04-26 14:53 - 04479327 ____A C:\Users\Sam\Downloads\(C81) [le pomf] (Its Not My Fault Im Unpopular) My Little sister cant be this UNpopular V01.rar
    2012-04-26 09:44 - 2012-04-26 09:43 - 11041759 ____A C:\Users\Sam\Downloads\[SaHa]+Kaworu+Watashiya+-+Kodomo+no+Jikan+Ch.82+(English).rar
    2012-04-26 09:28 - 2012-04-26 09:28 - 01037824 ____A C:\Users\Sam\Downloads\015.png
    2012-04-25 21:34 - 2012-06-13 14:52 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
    2012-04-25 21:34 - 2012-06-13 14:52 - 00076288 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
    2012-04-25 21:28 - 2012-06-13 14:52 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
    2012-04-25 11:49 - 2012-04-25 11:49 - 01079339 ____A C:\Users\Sam\Downloads\psdouble_036.png
    2012-04-24 09:32 - 2012-04-24 09:27 - 104366405 ____A C:\Users\Sam\Downloads\rocket-dayz-20120424-1713.zip
    2012-04-24 03:14 - 2012-04-24 03:12 - 73239062 ____A C:\Users\Sam\Downloads\Complete Loli v0.3.rar
    2012-04-24 03:13 - 2012-04-24 03:13 - 00037506 ____A C:\Users\Sam\Downloads\Performance_and_Quality_ENB_Final-14646-1-0.zip
    2012-04-24 00:24 - 2012-04-22 16:52 - 00000000 ____D C:\Program Files (x86)\AllToAVI
    2012-04-23 21:59 - 2012-06-13 14:51 - 01460224 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
    2012-04-23 21:59 - 2012-06-13 14:51 - 00182272 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
    2012-04-23 21:59 - 2012-06-13 14:51 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
    2012-04-23 20:47 - 2012-06-13 14:51 - 01156608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
    2012-04-23 20:47 - 2012-06-13 14:51 - 00139264 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
    2012-04-23 20:47 - 2012-06-13 14:51 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
    2012-04-23 16:13 - 2012-04-23 16:13 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Actual Tools
    2012-04-23 16:12 - 2012-04-23 16:12 - 05007000 ____A (Actual Tools ) C:\Users\Sam\Downloads\ammsetup.exe
    2012-04-23 15:58 - 2012-04-23 15:58 - 00000000 ____D C:\Users\Sam\AppData\Roaming\XRay Engine
    2012-04-23 14:24 - 2012-04-23 14:09 - 1287560058 ____A C:\Users\Sam\Downloads\MISERY_Stalker_CoP.zip
    2012-04-23 14:10 - 2012-04-23 14:10 - 29578116 ____A C:\Users\Sam\Downloads\MISERY_patch_2.zip
    2012-04-23 12:04 - 2012-04-23 12:04 - 00229191 ____A C:\Users\Sam\Downloads\Tripcode_Explorer.7z
    2012-04-23 11:30 - 2012-04-23 11:11 - 340709288 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 03 [720p].mkv
    2012-04-23 11:29 - 2012-04-23 11:22 - 511826822 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_02_[A08B456C].mkv
    2012-04-23 11:22 - 2012-04-23 11:22 - 00019887 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_02_[A08B456C].mkv.torrent
    2012-04-23 11:21 - 2012-04-23 11:21 - 00012160 ____A C:\Users\Sam\Downloads\[Hadena] Eureka Seven AO - 02 [10bit][720p][E9CFD563].mkv.torrent
    2012-04-23 11:11 - 2012-04-23 11:11 - 00026369 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 03 [720p].mkv.torrent
    2012-04-23 08:13 - 2012-04-23 08:13 - 00000000 ____D C:\Users\Sam\Downloads\GRIEF SYNDROME
    2012-04-22 17:02 - 2012-04-22 17:02 - 00000223 ____A C:\Users\Sam\Downloads\stream.pls
    2012-04-22 16:52 - 2012-04-22 16:52 - 26453613 ____A C:\Users\Sam\Downloads\AllToAVI_v4_r5394_Setup (1).exe
    2012-04-22 16:49 - 2012-04-22 16:48 - 26453613 ____A C:\Users\Sam\Downloads\AllToAVI_v4_r5394_Setup.exe
    2012-04-22 16:49 - 2012-04-22 16:40 - 00011232 ____A C:\Users\Sam\Documents\crawlinglogh.veg
    2012-04-22 16:41 - 2012-04-22 16:39 - 00000000 ____D C:\Users\Sam\Downloads\Crawling
    2012-04-22 16:40 - 2012-04-22 16:40 - 00006864 ____A C:\Users\Sam\Documents\crawlinglogh.veg.bak
    2012-04-22 16:40 - 2012-04-19 17:58 - 00084192 ____A C:\Users\Sam\Documents\droppinghard.veg
    2012-04-22 15:54 - 2012-04-22 15:53 - 26171084 ____A C:\Users\Sam\Downloads\Dubs_-_Containment_Breach_by_SenganGalo.rar
    2012-04-22 05:56 - 2012-04-22 05:56 - 00026743 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 04 [720p].mkv.torrent
    2012-04-22 05:56 - 2012-04-22 05:56 - 00026743 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 03 [720p].mkv.torrent
    2012-04-21 14:50 - 2012-04-21 14:29 - 336362042 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 16 [7385C970].mkv
    2012-04-21 14:34 - 2012-04-21 14:32 - 356145143 ____A C:\Users\Sam\Downloads\[gg]_Jormungand_-_02_[D48EDE54].mkv
    2012-04-21 14:34 - 2012-04-21 14:29 - 401180181 ____A C:\Users\Sam\Downloads\[WhyNot] Sakamichi no Apollon - 02 [D7E73505].mkv
    2012-04-21 14:32 - 2012-04-21 14:32 - 00014076 ____A C:\Users\Sam\Downloads\[gg]_Jormungand_-_02_[D48EDE54].mkv.torrent
    2012-04-21 14:28 - 2012-04-21 14:28 - 00015705 ____A C:\Users\Sam\Downloads\[WhyNot] Sakamichi no Apollon - 02 [D7E73505].mkv.torrent
    2012-04-21 14:27 - 2012-04-21 14:27 - 00013240 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 16 [7385C970].mkv.torrent
    2012-04-21 09:14 - 2012-04-21 09:14 - 00364557 ____A C:\Users\Sam\Documents\1335022154229.gif
    2012-04-21 09:05 - 2012-04-21 09:05 - 00398149 ____A C:\Users\Sam\Documents\1335025798217.png
    2012-04-21 08:14 - 2012-04-21 08:07 - 15221631 ____A C:\Users\Sam\Documents\droppinghard.wmv
    2012-04-21 08:12 - 2012-04-19 17:58 - 00084192 ____A C:\Users\Sam\Documents\droppinghard.veg.bak
    2012-04-20 14:53 - 2012-04-20 14:53 - 00563776 ____A C:\Users\Sam\Downloads\n4f91e14dde25d.gif
    2012-04-19 18:38 - 2012-04-19 16:12 - 00000000 ____D C:\Program Files (x86)\TERA
    2012-04-19 17:01 - 2012-04-19 17:01 - 01459127 ____A C:\Users\Sam\Downloads\Balamory Theme (Dubstep Remix).mp3
    2012-04-19 16:12 - 2012-04-19 16:12 - 00000000 ____D C:\Users\All Users\TERA
    2012-04-19 16:10 - 2012-04-19 16:09 - 13822128 ____A (Frogster Online Gaming GmbH ) C:\Users\Sam\Downloads\TERASetup.exe
    2012-04-19 14:27 - 2012-04-19 14:19 - 00000000 ____D C:\Program Files (x86)\Planescape - Torment
    2012-04-19 14:12 - 2012-04-19 14:10 - 00000000 ____D C:\Users\Sam\Downloads\Planescape Torment Direct Play
    2012-04-19 12:28 - 2012-04-19 11:44 - 00000000 ____D C:\Users\Sam\Downloads\Ultimate Collection
    2012-04-19 11:55 - 2012-04-19 11:51 - 82769251 ____A C:\Users\Sam\Downloads\De-Censor Elin v1.2.rar
    2012-04-19 11:48 - 2012-04-19 11:48 - 00000000 ____D C:\Users\Sam\AppData\Local\TERA-Diagnostic
    2012-04-19 11:36 - 2012-04-19 11:35 - 96234888 ____A (En Masse Entertainment) C:\Users\Sam\Downloads\TERA-Setup.exe
    2012-04-19 07:06 - 2012-04-19 06:54 - 463533534 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_03_[720p][10bit][B65CE9E7].mkv
    2012-04-19 06:52 - 2012-04-19 06:52 - 00018202 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_03_[720p][10bit][B65CE9E7].mkv.torrent
    2012-04-16 13:20 - 2012-04-16 13:01 - 341181549 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 02 [720p].mkv
    2012-04-16 13:08 - 2012-04-16 13:02 - 614129696 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_15_[h264-720p][422C8FDD].mkv
    2012-04-16 13:02 - 2012-04-14 08:56 - 324733292 ____A C:\Users\Sam\Downloads\[NicoNico]_Fate_Zero_-_15_[720p].mp4
    2012-04-16 13:01 - 2012-04-16 13:01 - 00012185 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_15_[h264-720p][422C8FDD].mkv.torrent
    2012-04-16 13:01 - 2012-04-16 12:41 - 209231272 ____A (FUJITSU LIMITED ) C:\Users\Sam\Downloads\ATLASV14ETrial.exe
    2012-04-16 13:00 - 2012-04-16 13:00 - 00026409 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 02 [720p].mkv.torrent
    2012-04-16 12:42 - 2012-04-16 12:42 - 00217199 ____A C:\Users\Sam\Downloads\AtlTransText.zip
    2012-04-16 12:42 - 2012-04-16 12:42 - 00060299 ____A C:\Users\Sam\Downloads\ATLCHECK.zip
    2012-04-16 12:42 - 2012-04-16 12:42 - 00005196 ____A C:\Users\Sam\Downloads\AGTHGENERALHELP.htm
    2012-04-16 12:37 - 2012-04-16 12:37 - 00266079 ____A C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171 (2).rar
    2012-04-16 12:34 - 2012-04-16 12:34 - 00266079 ____A C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171 (1).rar
    2012-04-16 12:31 - 2012-04-16 12:31 - 00000000 ____D C:\Translation Aggregator 0.4.9.r171
    2012-04-16 12:30 - 2012-04-16 12:30 - 00266079 ____A C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171.rar
    2012-04-16 12:25 - 2012-04-16 12:25 - 00000000 ____D C:\agth
    2012-04-16 12:24 - 2012-04-16 12:24 - 00029360 ____A C:\Users\Sam\Downloads\agth.rar
    2012-04-16 12:06 - 2012-04-16 11:58 - 00000000 ____D C:\VH_translated
    2012-04-16 11:49 - 2012-04-16 11:49 - 05678166 ____A C:\Users\Sam\Downloads\RPGMaker Trans v1.97.7z
    2012-04-16 11:49 - 2012-04-16 11:45 - 00000000 ____D C:\VH
    2012-04-16 11:47 - 2012-04-16 11:47 - 02206782 ____A C:\Users\Sam\Downloads\VH Eng V0.6.rar
    2012-04-16 11:43 - 2012-04-16 11:42 - 38136354 ____A C:\Users\Sam\Downloads\VH???01120319.7z
    2012-04-16 09:36 - 2012-04-16 09:36 - 00063936 ____A C:\Users\Sam\Downloads\skeleton_dancing_hg_blk.gif
    2012-04-16 09:35 - 2012-04-16 09:36 - 00006786 ____A C:\Users\Sam\Downloads\mummyl.gif
    2012-04-16 09:35 - 2012-04-16 09:35 - 00026667 ____A C:\Users\Sam\Downloads\anighost.gif
    2012-04-16 09:35 - 2012-04-16 09:35 - 00012696 ____A C:\Users\Sam\Downloads\boo.gif
    2012-04-16 09:35 - 2012-04-16 09:35 - 00005454 ____A C:\Users\Sam\Downloads\skeleton.gif
    2012-04-16 09:22 - 2012-04-16 09:22 - 14031936 ____A C:\Users\Sam\Downloads\GhostDubsters Mastered.mp3
    2012-04-16 08:00 - 2012-04-16 07:58 - 32716585 ____A C:\Users\Sam\Downloads\SCP.zip
    2012-04-16 07:55 - 2012-04-16 07:55 - 03070333 ____A C:\Users\Sam\Downloads\SCP-087-B.zip
    2012-04-16 06:20 - 2012-04-16 06:20 - 20384302 ____A C:\Users\Sam\Downloads\SCP - Containment Breach v0.1.zip
    2012-04-15 06:02 - 2012-04-15 06:01 - 12316713 ____A () C:\Users\Sam\Downloads\2000rtp (1).exe
    2012-04-14 10:24 - 2012-04-14 10:24 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (5).jnlp
    2012-04-14 08:54 - 2012-04-14 08:54 - 00012757 ____A C:\Users\Sam\Downloads\[NicoNico]_Fate_Zero_-_15_[720p].mp4.torrent
    2012-04-14 07:17 - 2012-04-14 07:17 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (4).jnlp
    2012-04-14 06:31 - 2012-04-14 06:31 - 00378872 ____A C:\Users\Sam\Downloads\1MPEK.gif
    2012-04-13 15:37 - 2012-04-13 15:37 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (3).jnlp
    2012-04-13 15:29 - 2012-04-13 15:29 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (2).jnlp
    2012-04-13 08:57 - 2012-04-13 08:25 - 00000000 ____D C:\Users\Sam\Documents\WURM
    2012-04-13 08:31 - 2012-04-13 08:13 - 486731659 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_01_[946DCCD6].mkv
    2012-04-13 08:24 - 2012-04-13 08:24 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (1).jnlp
    2012-04-13 08:20 - 2012-04-13 08:20 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient.jnlp
    2012-04-13 08:13 - 2012-04-13 08:13 - 00019061 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_01_[946DCCD6].mkv.torrent
    2012-04-13 08:13 - 2012-04-13 08:13 - 00011054 ____A C:\Users\Sam\Downloads\[NemDiggers] Eureka Seven AO - 01 [720p] [H264 AAC MP4].mp4.torrent
    2012-04-13 06:09 - 2012-04-13 05:41 - 269618062 ____A C:\Users\Sam\Downloads\[AKFDP]_Kiss_x_sis_00_(DVD)_(H264_AC3)_[909C9D5C].mkv
    2012-04-13 05:41 - 2012-04-13 05:41 - 00010709 ____A C:\Users\Sam\Downloads\[AKFDP]_Kiss_x_sis_00_(DVD)_(H264_AC3)_[909C9D5C].mkv.torrent
    2012-04-13 05:38 - 2012-04-13 05:38 - 00036999 ____A C:\Users\Sam\Downloads\[BakaBT.155434v1] [Coalgirls]_Kiss_x_Sis_(1280x720_Blu-Ray_FLAC).torrent
    2012-04-13 05:38 - 2012-04-13 05:38 - 00036999 ____A C:\Users\Sam\Downloads\[BakaBT.155434v1] [Coalgirls]_Kiss_x_Sis_(1280x720_Blu-Ray_FLAC) (1).torrent
    2012-04-12 16:48 - 2012-04-12 16:37 - 2726526577 ____A C:\Users\Sam\Downloads\3D Max 9.rar
    2012-04-12 12:44 - 2012-04-12 11:29 - 00000000 ____D C:\Users\Sam\Downloads\Royal Space Force: The Wings of Honneamise [1028p]
    2012-04-12 11:31 - 2012-04-12 11:25 - 293445126 ____A C:\Users\Sam\Downloads\[Commie] Tasogare Otome × Amnesia - 01 [1A5B2C81].mkv
    2012-04-12 10:46 - 2012-04-12 10:36 - 354490879 ____A C:\Users\Sam\Downloads\[sage]_Lupin_III_-_Mine_Fujiko_to_Iu_Onna_-_02_[720p][10bit][CE3F3607].mkv
    2012-04-12 10:32 - 2012-04-12 10:32 - 00014036 ____A C:\Users\Sam\Downloads\[sage]_Lupin_III_-_Mine_Fujiko_to_Iu_Onna_-_02_[720p][10bit][CE3F3607].mkv.torrent
    2012-04-12 08:53 - 2012-04-12 08:38 - 326174703 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 01 [720p].mkv
    2012-04-12 08:37 - 2012-04-12 08:37 - 00025269 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 01 [720p].mkv.torrent
    2012-04-12 06:25 - 2012-04-12 06:25 - 00134215 ____A C:\Users\Sam\Downloads\n4f861b3983db6.png
    2012-04-11 09:59 - 2012-04-11 09:59 - 00011612 ____A C:\Users\Sam\Downloads\[Commie] Tasogare Otome × Amnesia - 01 [1A5B2C81].mkv.torrent
    2012-04-11 06:43 - 2012-04-11 06:32 - 453052323 ____A C:\Users\Sam\Downloads\[gg]_Jormungand_-_01_[382A285D].mkv
    2012-04-10 20:04 - 2012-04-10 20:04 - 00017776 ____A C:\Users\Sam\Downloads\[gg]_Jormungand_-_01_[382A285D].mkv.torrent
    2012-04-10 19:09 - 2012-01-04 05:12 - 00000000 ____D C:\Program Files (x86)\Hi-Rez Studios
    2012-04-10 18:52 - 2012-04-10 18:52 - 00560635 ____A C:\Users\Sam\Downloads\m8HkO.png
    2012-04-10 07:44 - 2012-04-10 07:44 - 00000000 ____D C:\Users\Sam\AppData\Local\PunkBuster
    2012-04-09 13:53 - 2012-04-09 13:50 - 338957586 ____A C:\Users\Sam\Downloads\[HorribleSubs] Mysterious Girlfriend X - 01 [720p].mkv
    2012-04-09 13:49 - 2012-04-09 13:49 - 00026252 ____A C:\Users\Sam\Downloads\[HorribleSubs] Mysterious Girlfriend X - 01 [720p].mkv.torrent
    2012-04-09 13:00 - 2012-04-09 12:48 - 341696121 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 01 [720p].mkv
    2012-04-09 12:47 - 2012-04-09 12:47 - 00026449 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 01 [720p].mkv.torrent
    2012-04-09 10:12 - 2012-04-09 10:12 - 01291677 ____A ( ) C:\Users\Sam\Downloads\setup_t3sneakyupgrade_1.1.0.exe
    2012-04-08 13:57 - 2012-04-08 13:57 - 00026723 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 02 [720p].mkv.torrent
    2012-04-07 17:02 - 2012-04-07 17:02 - 00060431 ____A C:\Users\Sam\Downloads\n4f80dd637ab4e.png
    2012-04-07 14:43 - 2012-04-07 13:48 - 427667138 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 14 [1AA40CC4].mkv
    2012-04-07 13:59 - 2012-04-07 13:57 - 394403364 ____A C:\Users\Sam\Downloads\[Commie] Accel World - 01 [30E0CD08].mkv
    2012-04-07 13:57 - 2012-04-07 13:57 - 00016718 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 14 [1AA40CC4].mkv (1).torrent
    2012-04-07 13:51 - 2012-01-24 18:38 - 00000000 ____D C:\Program Files (x86)\XChat-WDK
    2012-04-07 13:48 - 2012-04-07 13:48 - 00060630 ____A C:\Users\Sam\Downloads\[Kagura] Royal Space Force: The Wings of Honneamise [BDRip 1788x1028 x264 Hi10P TrueHD].torrent
    2012-04-07 13:48 - 2012-04-07 13:48 - 00015456 ____A C:\Users\Sam\Downloads\[Commie] Accel World - 01 [30E0CD08].mkv.torrent
    2012-04-07 13:48 - 2012-04-07 13:47 - 00014172 ____A C:\Users\Sam\Downloads\[Warui-chan] Upotte!! - 01v2 [720p] [79B1B28C].mkv.torrent
    2012-04-07 13:47 - 2012-04-07 13:47 - 00010764 ____A C:\Users\Sam\Downloads\[NemDiggers] Upotte!! - 01 [720p] [H264 AAC MP4].mp4.torrent
    2012-04-07 13:46 - 2012-04-07 13:46 - 00016718 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 14 [1AA40CC4].mkv.torrent
    2012-04-07 04:18 - 2012-06-13 14:51 - 03213824 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
    2012-04-07 03:34 - 2012-06-13 14:51 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
    2012-04-05 21:22 - 2012-04-05 21:22 - 11174400 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\atikmdag.sys
    2012-04-05 18:23 - 2012-04-05 18:23 - 00245896 ____A C:\Windows\SysWOW64\atiapfxx.blb
    2012-04-05 18:23 - 2012-04-05 18:23 - 00245896 ____A C:\Windows\System32\atiapfxx.blb
    2012-04-05 18:22 - 2012-04-05 18:22 - 00159744 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atiapfxx.exe
    2012-04-05 18:21 - 2012-04-05 18:21 - 00909312 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
    2012-04-05 18:20 - 2012-04-05 18:20 - 01067520 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\aticfx64.dll
    2012-04-05 18:16 - 2012-04-05 18:16 - 00503808 ____A (AMD) C:\Windows\System32\atieclxx.exe
    2012-04-05 18:16 - 2012-04-05 18:16 - 00442368 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\ATIDEMGX.dll
    2012-04-05 18:16 - 2012-04-05 18:16 - 00236544 ____A (AMD) C:\Windows\System32\atiesrxx.exe
    2012-04-05 18:14 - 2012-04-05 18:14 - 00120320 ____A (AMD) C:\Windows\System32\atitmm64.dll
    2012-04-05 18:14 - 2012-04-05 18:14 - 00059392 ____A (ATI Technologies, Inc.) C:\Windows\System32\atiedu64.dll
    2012-04-05 18:14 - 2012-04-05 18:14 - 00043520 ____A (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll
    2012-04-05 18:14 - 2012-04-05 18:14 - 00021504 ____A (AMD) C:\Windows\System32\atimuixx.dll
    2012-04-05 18:13 - 2012-04-05 18:13 - 06800896 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
    2012-04-05 18:10 - 2012-04-05 18:10 - 26181632 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atio6axx.dll
    2012-04-05 18:00 - 2012-04-05 18:00 - 00064000 ____A (AMD) C:\Windows\System32\coinst.dll
    2012-04-05 17:54 - 2012-04-05 17:54 - 07479296 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atidxx64.dll
    2012-04-05 17:50 - 2012-04-05 17:50 - 19753984 ____A (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
    2012-04-05 17:35 - 2012-04-05 17:35 - 01120768 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd6v.dll
    2012-04-05 17:34 - 2012-04-05 17:34 - 06203392 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
    2012-04-05 17:34 - 2012-04-05 17:34 - 04731904 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd6a.dll
    2012-04-05 17:34 - 2012-04-05 17:34 - 01831424 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdmv.dll
    2012-04-05 17:30 - 2012-04-05 17:30 - 00051200 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticalrt64.dll
    2012-04-05 17:30 - 2012-04-05 17:30 - 00046080 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
    2012-04-05 17:30 - 2012-04-05 17:30 - 00044544 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticalcl64.dll
    2012-04-05 17:30 - 2012-04-05 17:30 - 00044032 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
    2012-04-05 17:29 - 2012-04-05 17:29 - 16090624 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticaldd64.dll
    2012-04-05 17:29 - 2012-04-05 17:29 - 02631008 ____A C:\Windows\System32\atiumd6a.cap
    2012-04-05 17:29 - 2012-04-05 17:29 - 00204952 ____A C:\Windows\SysWOW64\ativvsvl.dat
    2012-04-05 17:29 - 2012-04-05 17:29 - 00204952 ____A C:\Windows\System32\ativvsvl.dat
    2012-04-05 17:29 - 2012-04-05 17:29 - 00157144 ____A C:\Windows\SysWOW64\ativvsva.dat
    2012-04-05 17:29 - 2012-04-05 17:29 - 00157144 ____A C:\Windows\System32\ativvsva.dat
    2012-04-05 17:25 - 2012-04-05 17:25 - 13764096 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
    2012-04-05 17:23 - 2012-04-05 17:23 - 07431680 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd64.dll
    2012-04-05 17:22 - 2012-04-05 17:22 - 04795904 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
    2012-04-05 17:21 - 2012-04-05 17:21 - 02664704 ____A C:\Windows\SysWOW64\atiumdva.cap
    2012-04-05 17:11 - 2012-04-05 17:11 - 00514560 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atiadlxx.dll
    2012-04-05 17:11 - 2012-04-05 17:11 - 00360448 ____A (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
    2012-04-05 17:11 - 2012-04-05 17:11 - 00041984 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atig6txx.dll
    2012-04-05 17:11 - 2012-04-05 17:11 - 00017408 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atig6pxx.dll
    2012-04-05 17:11 - 2012-04-05 17:11 - 00014848 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
    2012-04-05 17:11 - 2012-04-05 17:11 - 00014848 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiglpxx.dll
    2012-04-05 17:10 - 2012-04-05 17:10 - 00343040 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\atikmpag.sys
    2012-04-05 17:10 - 2012-04-05 17:10 - 00033280 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
    2012-04-05 17:09 - 2012-04-05 17:09 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiuxp64.dll
    2012-04-05 17:09 - 2012-04-05 17:09 - 00053248 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\ati2erec.dll
    2012-04-05 17:09 - 2012-04-05 17:09 - 00044544 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiu9p64.dll
    2012-04-05 17:09 - 2012-04-05 17:09 - 00041984 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
    2012-04-05 17:09 - 2012-04-05 17:09 - 00032256 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
    2012-04-05 17:06 - 2012-04-05 17:06 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atimpc64.dll
    2012-04-05 17:06 - 2012-04-05 17:06 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\amdpcom64.dll
    2012-04-05 17:06 - 2012-04-05 17:06 - 00053760 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
    2012-04-05 17:06 - 2012-04-05 17:06 - 00053760 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
    2012-04-05 13:34 - 2012-04-05 13:34 - 00187392 ____A C:\Windows\System32\clinfo.exe
    2012-04-05 13:34 - 2012-04-05 13:34 - 00074752 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\OpenVideo64.dll
    2012-04-05 13:34 - 2012-04-05 13:34 - 00064512 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll
    2012-04-05 13:33 - 2012-04-05 13:33 - 16457216 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\amdocl64.dll
    2012-04-05 13:33 - 2012-04-05 13:33 - 00063488 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\OVDecode64.dll
    2012-04-05 13:33 - 2012-04-05 13:33 - 00056320 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll
    2012-04-05 13:32 - 2012-04-05 13:32 - 13007872 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
    2012-04-05 13:32 - 2012-04-05 13:32 - 00054784 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll
    2012-04-05 13:32 - 2012-04-05 13:32 - 00050176 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
    2012-04-05 10:08 - 2012-04-05 09:48 - 605554163 ____A C:\Users\Sam\Downloads\[sage]_Lupin_III_-_Mine_Fujiko_to_Iu_Onna_-_01_[720p][10bit][53E61CD8].mkv
    2012-04-05 08:28 - 2012-04-05 08:28 - 00000000 ____D C:\Program Files (x86)\AutoHotkey
    2012-04-05 08:28 - 2009-07-13 23:46 - 00000000 ____D C:\Windows\ShellNew
    2012-04-05 08:17 - 2012-04-05 08:17 - 02047357 ____A C:\Users\Sam\Downloads\AutoHotkey104805_Install.exe
    2012-04-05 08:08 - 2012-04-05 08:08 - 02695067 ____A C:\Users\Sam\Downloads\AutoHotkey110703_Install.exe
    2012-04-05 07:38 - 2012-04-05 07:38 - 00012057 ____A C:\Users\Sam\Downloads\[sage]_Lupin_III_-_Mine_Fujiko_to_Iu_Onna_-_01_[720p][10bit][53E61CD8].mkv.torrent
    2012-04-05 06:18 - 2012-04-05 06:15 - 352522302 ____A C:\Users\Sam\Downloads\[WhyNot] Medaka Box - 01 [720F54E9].mkv
    2012-04-05 06:14 - 2012-04-05 06:14 - 00013835 ____A C:\Users\Sam\Downloads\[WhyNot] Medaka Box - 01 [720F54E9].mkv.torrent
    2012-04-04 18:28 - 2012-04-04 18:28 - 00017227 ____A C:\Users\Sam\Downloads\[BakaBT.140470v0] Kodomo No Jikan.torrent
    2012-04-04 18:28 - 2012-04-04 18:27 - 00019820 ____A C:\Users\Sam\Downloads\[BakaBT.150728v4] [BarkySeal]Kodomo no Jikan - Ni Gakki (1).torrent
    2012-04-04 16:10 - 2012-04-04 16:10 - 00486826 ____A C:\Users\Sam\Downloads\n4f7ce232f0a03.gif
    2012-04-04 15:49 - 2012-04-04 15:42 - 00000000 ____D C:\Users\Sam\Downloads\Kore wa Zombie Desu ka [720p]
    2012-04-04 15:40 - 2012-04-04 15:40 - 00022371 ____A C:\Users\Sam\Downloads\Kore_wa_Zombie_Desu_ka_2011_Doki1280x720_h264_AAC.torrent
    2012-04-04 06:56 - 2012-06-21 12:54 - 00024904 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
    2012-04-03 16:40 - 2012-04-03 16:40 - 00001717 ____A C:\Users\Sam\Downloads\saints row the third no autoaim mod.zip
    2012-04-03 08:06 - 2012-04-03 07:59 - 572412648 ____A () C:\Users\Sam\Downloads\Crysis_2_DX11_Pack.exe
    2012-04-03 07:53 - 2012-04-03 07:06 - 00000000 ____D C:\Users\Sam\Downloads\Crysis_2-FLT
    2012-04-03 02:36 - 2012-04-03 02:33 - 233541575 ____A C:\Users\Sam\Downloads\SMAA-Enhanced-Subpixel-Morphological-Antialiasing.mp4
    2012-04-02 13:54 - 2012-04-02 13:52 - 21607248 ____A (Igor Pavlov) C:\Users\Sam\Downloads\tor-browser-2.2.35-8_en-US.exe
    2012-04-02 04:11 - 2012-04-02 04:11 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Toribash
    2012-04-02 04:09 - 2012-04-02 04:08 - 16503720 ____A (Nabi Studios Pte Ltd ) C:\Users\Sam\Downloads\Toribash-3.99-Setup.exe
    2012-04-02 04:05 - 2012-04-02 04:03 - 387584954 ____A C:\Users\Sam\Downloads\[Triad]_The_Legend_of_Koizumi_-_01.mkv
    2012-04-02 04:00 - 2012-04-02 04:00 - 00015148 ____A C:\Users\Sam\Downloads\[BakaBT.158259v0] mudazumo.torrent
    2012-04-01 16:58 - 2012-04-01 16:52 - 352175109 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 11 [720p].mkv
    2012-04-01 16:58 - 2012-04-01 16:52 - 348781447 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 12 [720p].mkv
    2012-04-01 16:40 - 2012-04-01 16:28 - 352406378 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 10 [720p].mkv
    2012-04-01 16:40 - 2012-04-01 16:28 - 352097142 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 09 [720p].mkv
    2012-04-01 16:11 - 2012-04-01 15:57 - 352493219 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 08 [720p].mkv
    2012-04-01 15:57 - 2012-04-01 15:36 - 352376981 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 06 [720p].mkv
    2012-04-01 15:56 - 2012-04-01 15:36 - 352810968 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 07 [720p].mkv
    2012-04-01 05:54 - 2012-04-01 05:54 - 00105545 ____A C:\Users\Sam\Downloads\n4f18fdbf80ae0.png
    2012-04-01 04:46 - 2012-04-01 04:46 - 00026743 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 01 [720p].mkv.torrent
    2012-03-31 08:20 - 2012-03-31 08:20 - 00134102 ____A C:\Users\Sam\Downloads\injectSMAA_by_mrhaandi_1.2 (2).7z
    2012-03-31 08:15 - 2012-03-31 08:15 - 00612246 ____A C:\Users\Sam\Downloads\GameplayCrush.SR3.game_launcherV1.3.2.zip
    2012-03-30 03:09 - 2012-05-08 22:32 - 01895280 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
    2012-03-30 00:11 - 2012-03-28 12:16 - 00000000 ____D C:\Users\Sam\Downloads\Proxifier v3.0 Standard Edition
    2012-03-29 17:34 - 2012-03-29 17:34 - 02222791 ____A C:\Users\Sam\Downloads\4e6fad580d8a09dd2485c0647defe341.gif
    2012-03-29 09:27 - 2012-03-28 14:33 - 00000000 ____D C:\Silent Hill 2- Electric Boogaloo
    2012-03-29 07:41 - 2012-03-29 07:41 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Mael
    2012-03-29 07:35 - 2012-03-29 07:35 - 00872029 ____A C:\Users\Sam\Downloads\HxDSetupEN.zip
    2012-03-29 07:35 - 2012-03-29 07:35 - 00000000 ____D C:\Program Files (x86)\HxD
    2012-03-29 04:42 - 2012-03-29 04:42 - 00945108 ____A C:\Users\Sam\Downloads\01b1f7ea2ca8b4b69c4e09dd22f87e88.png
    2012-03-28 16:44 - 2012-03-28 16:33 - 293311865 ____A C:\Users\Sam\Downloads\[yug] Tentacle and Witches - 01.mkv
    2012-03-28 16:37 - 2012-03-28 16:35 - 00000000 ____D C:\Users\Sam\Downloads\Dark Love - 01 Uncensored Eng Subs
    2012-03-28 16:33 - 2012-03-28 16:30 - 324433528 ____A C:\Users\Sam\Downloads\[yug] Tentacle and Witches - 02.mkv
    2012-03-28 16:29 - 2012-03-28 16:29 - 00012800 ____A C:\Users\Sam\Downloads\[yug] Tentacle and Witches - 02.mkv.torrent
    2012-03-28 16:29 - 2012-03-28 16:29 - 00011620 ____A C:\Users\Sam\Downloads\[yug] Tentacle and Witches - 01.mkv.torrent
    2012-03-28 16:29 - 2012-03-28 16:29 - 00011452 ____A C:\Users\Sam\Downloads\Dark Love - 01 Uncensored Eng Subs.torrent
    2012-03-28 16:29 - 2012-03-28 16:28 - 339096046 ____A C:\Users\Sam\Downloads\[SubDESU-H]_Imouto_Paradise!_-_01_[96CBE1ED].mkv
    2012-03-28 16:27 - 2012-03-28 16:27 - 00013309 ____A C:\Users\Sam\Downloads\[SubDESU-H]_Imouto_Paradise!_-_01_[96CBE1ED].mkv.torrent
    2012-03-28 15:45 - 2012-03-28 15:45 - 01661648 ____A C:\Users\Sam\Downloads\sh2patch.exe
    2012-03-28 12:25 - 2012-03-28 12:25 - 17185771 ____A C:\Users\Sam\Downloads\i2pinstall_0.8.13.exe
    2012-03-28 12:25 - 2012-03-28 12:24 - 10845039 ____A C:\Users\Sam\Downloads\Anomos_0.9.5_Setup.exe
    2012-03-28 12:19 - 2012-03-28 12:19 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Proxifier
    2012-03-28 12:18 - 2012-03-28 12:18 - 03691656 ____A (Initex ) C:\Users\Sam\Downloads\ProxifierSetup.exe
    2012-03-28 12:18 - 2012-03-28 12:18 - 00000000 ____D C:\Program Files (x86)\Proxifier
    2012-03-28 11:21 - 2012-03-28 10:35 - 00000000 ____D C:\Users\Sam\Downloads\Silent Hill 3 PC
    2012-03-28 10:51 - 2012-03-28 10:34 - 00000000 ____D C:\Users\Sam\Downloads\Silent.Hill.2.Directors.Cut.PC.Game(djDEVASTATE™)
    2012-03-27 11:23 - 2012-03-27 09:53 - 1480818528 ____A C:\Users\Sam\Downloads\Corpse Run Festival Cut.avi
    2012-03-27 09:51 - 2012-03-27 09:51 - 00014571 ____A C:\Users\Sam\Downloads\[kat.ph]corpse.run.torrent
    2012-03-26 13:56 - 2012-05-05 11:12 - 01058316 ____A ( ) C:\Users\Sam\Documents\Minecraft Version Changer.exe


    ZeroAccess:
    C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}
    C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\@
    C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\L
    C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U
    C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U\800000cb.@

    ZeroAccess:
    C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}
    C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\@
    C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\L
    C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U

    ========================= Known DLLs (Whitelisted) ============


    ========================= Bamital & volsnap Check ============

    C:\Windows\System32\winlogon.exe => MD5 is legit
    C:\Windows\System32\wininit.exe => MD5 is legit
    C:\Windows\SysWOW64\wininit.exe => MD5 is legit
    C:\Windows\explorer.exe => MD5 is legit
    C:\Windows\SysWOW64\explorer.exe => MD5 is legit
    C:\Windows\System32\svchost.exe => MD5 is legit
    C:\Windows\SysWOW64\svchost.exe => MD5 is legit
    C:\Windows\System32\services.exe 014A9CB92514E27C0107614DF764BC06 ZeroAccess <==== ATTENTION!.
    C:\Windows\System32\User32.dll => MD5 is legit
    C:\Windows\SysWOW64\User32.dll => MD5 is legit
    C:\Windows\System32\userinit.exe => MD5 is legit
    C:\Windows\SysWOW64\userinit.exe => MD5 is legit
    C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

    ==================== EXE ASSOCIATION =====================

    HKLM\...\.exe: exefile => OK
    HKLM\...\exefile\DefaultIcon: %1 => OK
    HKLM\...\exefile\open\command: "%1" %* => OK

    ========================= Memory info ======================

    Percentage of memory in use: 13%
    Total physical RAM: 6142.49 MB
    Available physical RAM: 5300.35 MB
    Total Pagefile: 6140.64 MB
    Available Pagefile: 5305.28 MB
    Total Virtual: 8192 MB
    Available Virtual: 8191.9 MB

    ======================= Partitions =========================

    2 Drive c: () (Fixed) (Total:1397.16 GB) (Free:418.68 GB) NTFS
    3 Drive d: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
    5 Drive g: () (Removable) (Total:14.89 GB) (Free:14.8 GB) NTFS
    6 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
    7 Drive y: (2.0TB Storage) (Fixed) (Total:1863.01 GB) (Free:281.36 GB) NTFS

    Disk ### Status Size Free Dyn Gpt
    -------- ------------- ------- ------- --- ---
    Disk 0 Online 1863 GB 0 B
    Disk 1 Online 1397 GB 0 B
    Disk 2 Online 14 GB 0 B

    Partitions of Disk 0:
    ===============

    Partition ### Type Size Offset
    ------------- ---------------- ------- -------
    Partition 1 Primary 1863 GB 1024 KB

    ======================================================================================================

    Disk: 0
    Partition 1
    Type : 07
    Hidden: No
    Active: No

    Volume ### Ltr Label Fs Type Size Status Info
    ---------- --- ----------- ----- ---------- ------- --------- --------
    * Volume 1 Y 2.0TB Stora NTFS Partition 1863 GB Healthy

    ======================================================================================================

    Partitions of Disk 1:
    ===============

    Partition ### Type Size Offset
    ------------- ---------------- ------- -------
    Partition 1 Primary 100 MB 1024 KB
    Partition 2 Primary 1397 GB 101 MB

    ======================================================================================================

    Disk: 1
    Partition 1
    Type : 07
    Hidden: No
    Active: Yes

    Volume ### Ltr Label Fs Type Size Status Info
    ---------- --- ----------- ----- ---------- ------- --------- --------
    * Volume 2 D System Rese NTFS Partition 100 MB Healthy

    ======================================================================================================

    Disk: 1
    Partition 2
    Type : 07
    Hidden: No
    Active: No

    Volume ### Ltr Label Fs Type Size Status Info
    ---------- --- ----------- ----- ---------- ------- --------- --------
    * Volume 3 C NTFS Partition 1397 GB Healthy

    ======================================================================================================

    Partitions of Disk 2:
    ===============

    Partition ### Type Size Offset
    ------------- ---------------- ------- -------
    Partition 1 Primary 14 GB 4096 KB

    ======================================================================================================

    Disk: 2
    Partition 1
    Type : 07
    Hidden: No
    Active: Yes

    Volume ### Ltr Label Fs Type Size Status Info
    ---------- --- ----------- ----- ---------- ------- --------- --------
    * Volume 4 G NTFS Removable 14 GB Healthy

    ======================================================================================================

    ==========================================================

    Last Boot: 2012-06-17 23:53

    ======================= End Of Log ==========================
  11. Broni

    Broni Malware Annihilator Posts: 46,177   +251

    In Vista or Windows 7: Boot to System Recovery Options and run FRST.
    In Windows XP: Please boot to UBCD and run FRST.
    Type the following in the edit box after "Search:".

    services.exe

    Click Search button and post the log (Search.txt) it makes to your reply.
     
  12. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    Farbar Recovery Scan Tool Version: 21-06-2012 02
    Ran by SYSTEM at 2012-06-23 08:25:48
    Running from G:\

    ================== Search: "services.exe" ===================

    C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
    [2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 24ACB7E5BE595468E3B9AA488B9B4FCB

    C:\Windows\System32\services.exe
    [2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 014A9CB92514E27C0107614DF764BC06

    ====== End Of Search ======
  13. Broni

    Broni Malware Annihilator Posts: 46,177   +251

    Download attached fixlist.txt file and save it to the very same USB flash drive you've been using. Plug the drive back in.

    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

    On Vista or Windows 7: Now please enter System Recovery Options.
    On Windows XP: Now please boot into the UBCD.
    Run FRST64 and press the Fix button just once and wait.
    The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

    Next....

    Restart normally and....

    Please download ComboFix from Here, Here or Here to your Desktop.

    **Note: In the event you already have Combofix, this is a new version that I need you to download. It is important that it is saved directly to your desktop**
    • Never rename Combofix unless instructed.
    • Close any open browsers.
    • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
    • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".
    • Click on this link to see a list of programs that should be disabled. The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.
    • Close any open browsers.
    • WARNING: Combofix will disconnect your machine from the Internet as soon as it starts
    • Please do not attempt to re-connect your machine back to the Internet until Combofix has completely finished.
    • If there is no internet connection after running Combofix, then restart your computer to restore back your connection.
    • Double click on combofix.exe & follow the prompts.

    • NOTE1. If Combofix asks you to install Recovery Console, please allow it.
      NOTE 2. If Combofix asks you to update the program, always do so.
    • When finished, it will produce a report for you.
    • Please post the "C:\ComboFix.txt"
    **Note 1: Do not mouseclick combofix's window while it's running. That may cause it to stall
    **Note 2 for AVG and CA Internet Security (Total Defense Internet Security) users: ComboFix will not run until AVG/CA Internet Security is uninstalled as a protective measure against the anti-virus. This is because AVG/CA Internet Security "falsely" detects ComboFix (or its embedded files) as a threat and may remove them resulting in the tool not working correctly which in turn can cause "unpredictable results". Since AVG/CA Internet Security cannot be effectively disabled before running ComboFix, the author recommends you to uninstall AVG/CA Internet Security first.
    Use AppRemover to uninstall it: http://www.appremover.com/
    We can reinstall it when we're done with CF.
    **Note 3: If you receive an error "Illegal operation attempted on a registery key that has been marked for deletion", restart computer to fix the issue.
    **Note 4: Some infections may take some significant time to be cured. As long as your computer clock is running Combofix is still working. Be patient.


    Make sure, you re-enable your security programs, when you're done with Combofix.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

    NOTE.
    If, for some reason, Combofix refuses to run, try one of the following:

    1. Run Combofix from Safe Mode.

    2. Delete Combofix file, download fresh one, but rename combofix.exe to your_name.exe BEFORE saving it to your desktop.
    Do NOT run it yet.
    Please download and run the below tool named Rkill (courtesy of BleepingComputer.com) which may help allow other programs to run.
    There are 4 different versions. If one of them won't run then download and try to run the other one.
    Vista and Win7 users need to right click Rkill and choose Run as Administrator
    You only need to get one of these to run, not all of them. You may get warnings from your antivirus about this tool, ignore them or shutdown your antivirus.

    * Rkill.com
    * Rkill.scr
    * Rkill.exe
    • Double-click on the Rkill icon to run the tool.
    • If using Vista or Windows 7 right-click on it and choose Run As Administrator.
    • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
    • If not, delete the file, then download and use the one provided in Link 2.
    • If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
    • Do not reboot until instructed.
    • If the tool does not run from any of the links provided, please let me know.
    Once you've gotten one of them to run, immediately run your_name.exe by double clicking on it.

    If normal mode still doesn't work, run BOTH tools from safe mode.

    In case #2, please post BOTH logs, rKill and Combofix.

    DO NOT make any other changes to your computer (like installing programs, using other cleaning tools, etc.), until it's officially declared clean!!!

    Attached Files:

  14. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    Fix result of Farbar Recovery Tool (FRST written by Farbar) Version: 21-06-2012 02
    Ran by SYSTEM at 2012-06-23 18:02:25 Run:1
    Running from G:\

    ==============================================

    HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Session Manager\SubSystems\\Windows Value was restored successfully .
    C:\Windows\System32\consrv.dll not found.
    C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db} moved successfully.
    C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db} moved successfully.
    C:\Windows\System32\services.exe moved successfully.
    C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe copied successfully to C:\Windows\System32\services.exe

    ==== End of Fixlog ====
  15. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    ComboFix 12-06-23.05 - Sam 23/06/2012 18:11:29.1.4 - x64
    Microsoft Windows 7 Ultimate 6.1.7600.0.932.81.1033.18.6142.4573 [GMT 1:00]
    Running from: c:\users\Sam\Desktop\ComboFix.exe
    AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
    SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    .
    .
    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    C:\Install.exe
    c:\users\Sam\AppData\Roaming\FFSJ
    c:\users\Sam\AppData\Roaming\FFSJ\FFSJ.cfg
    c:\windows\apppatch\AppLoc.exe
    c:\windows\AppPatch\Custom\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb
    .
    .
    ((((((((((((((((((((((((( Files Created from 2012-05-23 to 2012-06-23 )))))))))))))))))))))))))))))))
    .
    .
    2012-06-23 22:15 . 2012-06-02 22:1957880----a-w-c:\windows\system32\wuauclt.exe
    2012-06-23 22:15 . 2012-06-02 22:1944056----a-w-c:\windows\system32\wups2.dll
    2012-06-23 22:15 . 2012-06-02 22:192428952----a-w-c:\windows\system32\wuaueng.dll
    2012-06-23 22:15 . 2012-06-02 22:152622464----a-w-c:\windows\system32\wucltux.dll
    2012-06-23 22:15 . 2012-06-02 14:19186752----a-w-c:\windows\system32\wuwebv.dll
    2012-06-23 22:15 . 2012-06-02 14:1536864----a-w-c:\windows\system32\wuapp.exe
    2012-06-23 19:12 . 2012-05-30 20:049013136----a-w-c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{76BB56E6-23EA-4E11-BDF9-9F5A7FD34FCE}\mpengine.dll
    2012-06-23 17:20 . 2012-06-23 17:20--------d-----w-c:\users\Default\AppData\Local\temp
    2012-06-23 01:08 . 2012-06-23 01:10--------d-----w-C:\FRST
    2012-06-22 15:50 . 2012-06-22 15:50328704----a-w-c:\windows\system32\services.exe.71AA2B530F37956C
    2012-06-22 15:46 . 2012-06-22 15:46328704----a-w-c:\windows\system32\services.exe.389A80A780DC0FE3
    2012-06-22 15:43 . 2012-06-22 15:43328704----a-w-c:\windows\system32\services.exe.F99EF225C3D55B0D
    2012-06-22 15:41 . 2012-06-22 15:41927800------w-c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7295C28F-C275-47FB-B991-4E62367CC463}\gapaengine.dll
    2012-06-22 15:41 . 2012-05-30 20:049013136------w-c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
    2012-06-22 02:00 . 2012-06-22 02:00--------d-----w-c:\program files (x86)\Microsoft Security Client
    2012-06-21 20:56 . 2012-06-21 20:56--------d-----w-c:\windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
    2012-06-21 20:54 . 2012-06-21 20:54--------d-----w-c:\users\Sam\AppData\Roaming\Malwarebytes
    2012-06-21 20:54 . 2012-06-21 20:54--------d-----w-c:\programdata\Malwarebytes
    2012-06-21 20:54 . 2012-06-21 20:54--------d-----w-c:\program files (x86)\Malwarebytes' Anti-Malware
    2012-06-21 20:54 . 2012-04-04 14:5624904----a-w-c:\windows\system32\drivers\mbam.sys
    2012-06-19 10:45 . 2012-06-19 10:45--------d-----w-C:\found.000
    2012-06-19 01:50 . 2003-02-02 18:06153088----a-w-c:\windows\SysWow64\UNRAR3.dll
    2012-06-19 01:50 . 2002-03-05 23:0075264----a-w-c:\windows\SysWow64\unacev2.dll
    2012-06-19 01:50 . 2012-06-19 02:06--------d-----w-c:\program files (x86)\Trojan Remover
    2012-06-19 01:50 . 2012-06-19 01:50--------d-----w-c:\users\Sam\AppData\Roaming\Simply Super Software
    2012-06-19 01:50 . 2012-06-19 01:50--------d-----w-c:\programdata\Simply Super Software
    2012-06-18 18:52 . 2012-06-22 02:01--------d-----w-c:\program files\Microsoft Security Client
    2012-06-18 11:29 . 2012-06-18 21:01--------d-----w-C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
    2012-06-16 12:07 . 2012-06-18 21:01--------d-----w-c:\program files\Web Assistant
    2012-06-14 21:07 . 2012-06-18 22:48--------d-----w-c:\users\Sam\AppData\Roaming\Rainmeter
    2012-06-14 21:07 . 2012-06-14 21:11--------d-----w-c:\program files\Rainmeter
    2012-06-14 14:29 . 2012-06-14 14:33--------d-----w-C:\FlvGrabber
    2012-06-14 14:25 . 2012-06-14 14:25--------d-sh--w-c:\windows\system32\%APPDATA%
    2012-06-14 14:20 . 2012-06-14 14:20--------d-----w-c:\program files (x86)\WinPcap
    2012-06-13 22:52 . 2012-04-26 05:3476288----a-w-c:\windows\system32\rdpwsx.dll
    2012-06-13 22:52 . 2012-04-26 05:34149504----a-w-c:\windows\system32\rdpcorekmts.dll
    2012-06-13 22:52 . 2012-04-26 05:289216----a-w-c:\windows\system32\rdrmemptylst.exe
    2012-06-13 22:52 . 2012-05-02 05:32208896----a-w-c:\windows\system32\profsvc.dll
    2012-06-09 20:30 . 2012-06-09 20:30--------d-----w-c:\users\Sam\AppData\Local\ElevatedDiagnostics
    2012-06-07 22:58 . 2012-06-07 22:58--------d-----w-c:\users\Sam\AppData\Local\CAPCOM
    2012-06-07 22:48 . 2012-06-07 22:48--------d-----w-c:\program files (x86)\CAPCOM
    2012-06-06 14:04 . 2012-06-06 14:10--------d-----w-C:\mugen
    2012-06-06 13:52 . 2012-06-06 13:52--------d-----w-c:\programdata\VirtuallTek
    2012-06-06 13:52 . 2012-06-06 13:52--------d-----w-c:\program files (x86)\VirtuallTek
    2012-06-05 23:06 . 2012-06-05 23:0640960----a-r-c:\users\Sam\AppData\Roaming\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\NewShortcut1_9559F7CA5E344237A2D9D856464AD727.exe
    2012-06-05 23:06 . 2012-06-05 23:0640960----a-r-c:\users\Sam\AppData\Roaming\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\ARPPRODUCTICON.exe
    2012-06-05 23:06 . 2012-06-05 23:08--------d-----w-c:\program files (x86)\Project64 1.6
    2012-06-03 00:46 . 2012-06-03 00:46--------d--h--w-c:\program files (x86)\Common Files\EAInstaller
    2012-06-03 00:31 . 2012-06-03 16:51--------d-----w-c:\program files (x86)\Battlefield 3
    2012-06-01 13:55 . 2012-06-11 14:24--------d-----w-c:\program files (x86)\Black_Box
    2012-05-31 17:13 . 2012-05-31 17:31--------d-----w-c:\program files (x86)\OMGWTFOTL
    2012-05-25 22:33 . 2012-05-25 22:33--------d-----w-c:\program files (x86)\Combined Community Codec Pack
    2012-05-25 22:28 . 2012-06-18 22:48--------d-----w-c:\users\Sam\AppData\Roaming\vlc
    2012-05-25 22:26 . 2012-05-25 22:26--------d-----w-c:\program files (x86)\VideoLAN
    .
    .
    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2012-06-08 23:03 . 2012-04-10 15:44281288----a-w-c:\windows\SysWow64\PnkBstrB.xtr
    2012-06-08 23:03 . 2012-04-10 13:49281288----a-w-c:\windows\SysWow64\PnkBstrB.exe
    2012-06-08 22:36 . 2012-04-10 13:49281288----a-w-c:\windows\SysWow64\PnkBstrB.ex0
    2012-05-08 00:03 . 2012-04-10 13:4876888----a-w-c:\windows\SysWow64\PnkBstrA.exe
    2012-05-05 19:34 . 2012-05-05 19:34476960----a-w-c:\windows\SysWow64\npdeployJava1.dll
    2012-05-05 19:34 . 2011-11-11 16:22472864----a-w-c:\windows\SysWow64\deployJava1.dll
    2012-04-18 02:03 . 2012-05-01 02:028917360------w-c:\programdata\Microsoft\Windows Defender\Definition Updates\{4C808E29-1E6D-4CEB-B7ED-09787002A54A}\mpengine.dll
    2012-04-06 05:22 . 2012-04-06 05:2211174400----a-w-c:\windows\system32\drivers\atikmdag.sys
    2012-04-06 02:22 . 2012-04-06 02:22159744----a-w-c:\windows\system32\atiapfxx.exe
    2012-04-06 02:21 . 2012-04-06 02:21909312----a-w-c:\windows\SysWow64\aticfx32.dll
    2012-04-06 02:20 . 2012-04-06 02:201067520----a-w-c:\windows\system32\aticfx64.dll
    2012-04-06 02:16 . 2012-04-06 02:16442368----a-w-c:\windows\system32\ATIDEMGX.dll
    2012-04-06 02:16 . 2012-04-06 02:16503808----a-w-c:\windows\system32\atieclxx.exe
    2012-04-06 02:16 . 2012-04-06 02:16236544----a-w-c:\windows\system32\atiesrxx.exe
    2012-04-06 02:14 . 2012-04-06 02:14120320----a-w-c:\windows\system32\atitmm64.dll
    2012-04-06 02:14 . 2012-04-06 02:1421504----a-w-c:\windows\system32\atimuixx.dll
    2012-04-06 02:14 . 2012-04-06 02:1459392----a-w-c:\windows\system32\atiedu64.dll
    2012-04-06 02:14 . 2012-04-06 02:1443520----a-w-c:\windows\SysWow64\ati2edxx.dll
    2012-04-06 02:13 . 2012-04-06 02:136800896----a-w-c:\windows\SysWow64\atidxx32.dll
    2012-04-06 02:10 . 2012-04-06 02:1026181632----a-w-c:\windows\system32\atio6axx.dll
    2012-04-06 02:00 . 2012-04-06 02:0064000----a-w-c:\windows\system32\coinst.dll
    2012-04-06 01:54 . 2012-04-06 01:547479296----a-w-c:\windows\system32\atidxx64.dll
    2012-04-06 01:50 . 2012-04-06 01:5019753984----a-w-c:\windows\SysWow64\atioglxx.dll
    2012-04-06 01:35 . 2012-04-06 01:351120768----a-w-c:\windows\system32\atiumd6v.dll
    2012-04-06 01:34 . 2012-04-06 01:341831424----a-w-c:\windows\SysWow64\atiumdmv.dll
    2012-04-06 01:34 . 2012-04-06 01:344731904----a-w-c:\windows\system32\atiumd6a.dll
    2012-04-06 01:34 . 2012-04-06 01:346203392----a-w-c:\windows\SysWow64\atiumdag.dll
    2012-04-06 01:30 . 2012-04-06 01:3051200----a-w-c:\windows\system32\aticalrt64.dll
    2012-04-06 01:30 . 2012-04-06 01:3046080----a-w-c:\windows\SysWow64\aticalrt.dll
    2012-04-06 01:30 . 2012-04-06 01:3044544----a-w-c:\windows\system32\aticalcl64.dll
    2012-04-06 01:30 . 2012-04-06 01:3044032----a-w-c:\windows\SysWow64\aticalcl.dll
    2012-04-06 01:29 . 2012-04-06 01:2916090624----a-w-c:\windows\system32\aticaldd64.dll
    2012-04-06 01:25 . 2012-04-06 01:2513764096----a-w-c:\windows\SysWow64\aticaldd.dll
    2012-04-06 01:23 . 2012-04-06 01:237431680----a-w-c:\windows\system32\atiumd64.dll
    2012-04-06 01:22 . 2012-04-06 01:224795904----a-w-c:\windows\SysWow64\atiumdva.dll
    2012-04-06 01:11 . 2012-04-06 01:11514560----a-w-c:\windows\system32\atiadlxx.dll
    2012-04-06 01:11 . 2012-04-06 01:11360448----a-w-c:\windows\SysWow64\atiadlxy.dll
    2012-04-06 01:11 . 2012-04-06 01:1117408----a-w-c:\windows\system32\atig6pxx.dll
    2012-04-06 01:11 . 2012-04-06 01:1114848----a-w-c:\windows\SysWow64\atiglpxx.dll
    2012-04-06 01:11 . 2012-04-06 01:1114848----a-w-c:\windows\system32\atiglpxx.dll
    2012-04-06 01:11 . 2012-04-06 01:1141984----a-w-c:\windows\system32\atig6txx.dll
    2012-04-06 01:10 . 2012-04-06 01:1033280----a-w-c:\windows\SysWow64\atigktxx.dll
    2012-04-06 01:10 . 2012-04-06 01:10343040----a-w-c:\windows\system32\drivers\atikmpag.sys
    2012-04-06 01:09 . 2012-04-06 01:0954784----a-w-c:\windows\system32\atiuxp64.dll
    2012-04-06 01:09 . 2012-04-06 01:0941984----a-w-c:\windows\SysWow64\atiuxpag.dll
    2012-04-06 01:09 . 2012-04-06 01:0944544----a-w-c:\windows\system32\atiu9p64.dll
    2012-04-06 01:09 . 2012-04-06 01:0932256----a-w-c:\windows\SysWow64\atiu9pag.dll
    2012-04-06 01:09 . 2012-04-06 01:0953248----a-w-c:\windows\system32\drivers\ati2erec.dll
    2012-04-06 01:06 . 2012-04-06 01:0654784----a-w-c:\windows\system32\atimpc64.dll
    2012-04-06 01:06 . 2012-04-06 01:0654784----a-w-c:\windows\system32\amdpcom64.dll
    2012-04-06 01:06 . 2012-04-06 01:0653760----a-w-c:\windows\SysWow64\atimpc32.dll
    2012-04-06 01:06 . 2012-04-06 01:0653760----a-w-c:\windows\SysWow64\amdpcom32.dll
    2012-04-05 21:34 . 2012-04-05 21:34187392----a-w-c:\windows\system32\clinfo.exe
    2012-04-05 21:34 . 2012-04-05 21:3474752----a-w-c:\windows\system32\OpenVideo64.dll
    2012-04-05 21:34 . 2012-04-05 21:3464512----a-w-c:\windows\SysWow64\OpenVideo.dll
    2012-04-05 21:33 . 2012-04-05 21:3363488----a-w-c:\windows\system32\OVDecode64.dll
    2012-04-05 21:33 . 2012-04-05 21:3356320----a-w-c:\windows\SysWow64\OVDecode.dll
    2012-04-05 21:33 . 2012-04-05 21:3316457216----a-w-c:\windows\system32\amdocl64.dll
    2012-04-05 21:32 . 2012-04-05 21:3213007872----a-w-c:\windows\SysWow64\amdocl.dll
    2012-04-05 21:32 . 2012-04-05 21:3254784----a-w-c:\windows\system32\OpenCL.dll
    2012-04-05 21:32 . 2012-04-05 21:3250176----a-w-c:\windows\SysWow64\OpenCL.dll
    2012-03-30 11:09 . 2012-05-09 06:321895280----a-w-c:\windows\system32\drivers\tcpip.sys
    .
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Steam"="c:\program files (x86)\Steam\steam.exe" [2011-11-13 1242448]
    "PeerBlock"="c:\program files\PeerBlock\peerblock.exe" [2010-11-06 2646128]
    "DisplayFusion"="c:\program files (x86)\DisplayFusion\DisplayFusion.exe" [2012-01-12 2789280]
    "Xvid"="c:\program files (x86)\Xvid\CheckUpdate.exe" [2011-01-17 8192]
    "uTorrent"="c:\users\Sam\Downloads\uTorrent.exe" [2012-05-12 880496]
    "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-11-10 3514176]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
    "AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
    "AdobeCS5.5ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" [2011-01-12 1523360]
    "SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
    "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2011-10-24 421888]
    "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-04-06 641664]
    "TrojanScanner"="c:\program files (x86)\Trojan Remover\Trjscan.exe" [2012-06-19 1240848]
    .
    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
    Rainmeter.lnk - c:\program files\Rainmeter\Rainmeter.exe [2012-1-8 107720]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "ConsentPromptBehaviorAdmin"= 0 (0x0)
    "ConsentPromptBehaviorUser"= 3 (0x3)
    "EnableLUA"= 0 (0x0)
    "EnableUIADesktopToggle"= 0 (0x0)
    "PromptOnSecureDesktop"= 0 (0x0)
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
    "aux2"=wdmaud.drv
    .
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
    Security PackagesREG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
    @="Service"
    .
    R0 sptd;sptd; [x]
    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
    R3 dc3d;MS Hardware Device Detection Driver;c:\windows\system32\DRIVERS\dc3d.sys [x]
    R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
    R3 GPU-Z;GPU-Z;c:\users\Sam\AppData\Local\Temp\GPU-Z.sys [x]
    R3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\DRIVERS\MijXfilt.sys [x]
    R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
    R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
    R3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64.sys [x]
    R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
    R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
    S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
    S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
    S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
    S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
    S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
    S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;c:\program files (x86)\Hi-Rez Studios\HiPatchService.exe [2012-04-05 8704]
    S2 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [x]
    S2 RadeonPro Support Service;RadeonPro Support Service;c:\program files (x86)\RadeonPro\RadeonProSupport.exe [2011-02-10 12800]
    S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
    S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
    S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]
    S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys [x]
    S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
    .
    .
    --- Other Services/Drivers In Memory ---
    .
    *Deregistered* - pbfilter
    .
    Contents of the 'Scheduled Tasks' folder
    .
    2012-06-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000Core.job
    - c:\users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-11 15:21]
    .
    2012-06-23 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000UA.job
    - c:\users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-11 15:21]
    .
    .
    --------- X64 Entries -----------
    .
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Eraser"="c:\progra~1\Eraser\Eraser.exe" [2011-11-05 980368]
    "IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2011-08-01 2417032]
    "EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2011-10-07 1744152]
    "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2011-03-15 499608]
    "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "LoadAppInit_DLLs"=0x0
    .
    ------- Supplementary Scan -------
    .
    uLocal Page = c:\windows\system32\blank.htm
    mLocal Page = c:\windows\SysWOW64\blank.htm
    uInternet Settings,ProxyOverride = *.local
    LSP: %SystemRoot%\system32\PrxerDrv.dll
    .
    - - - - ORPHANS REMOVED - - - -
    .
    AddRemove-BattlEye for OA - c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowheadExpansion\BattlEye\UnInstallBE.exe
    AddRemove-{1AA94747-3BF6-4237-9E1A-7B3067738FE1} - c:\program files (x86)\InstallShield Installation Information\{1AA94747-3BF6-4237-9E1A-7B3067738FE1}\setup.exe
    AddRemove-{5A67D2EA-FB70-4033-A6F3-606AD85B2015}_is1 - c:\program files (x86)\Phyxion.net\Driver Sweeper\unins000.exe
    .
    .
    .
    --------------------- LOCKED REGISTRY KEYS ---------------------
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Shockwave Flash Object"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
    @="0"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
    @="ShockwaveFlash.ShockwaveFlash.10"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="ShockwaveFlash.ShockwaveFlash"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Macromedia Flash Factory Object"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
    @="FlashFactory.FlashFactory.1"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="FlashFactory.FlashFactory"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker4"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
    @Denied: (Full) (Everyone)
    .
    ------------------------ Other Running Processes ------------------------
    .
    c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    c:\windows\SysWOW64\PnkBstrA.exe
    c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
    .
    **************************************************************************
    .
    Completion time: 2012-06-23 23:50:16 - machine was rebooted
    ComboFix-quarantined-files.txt 2012-06-23 22:50
    .
    Pre-Run: 449,384,747,008 bytes free
    Post-Run: 453,907,841,024 bytes free
    .
    - - End Of File - - B27619A119546A2FBE1C2C6E49A39536
  16. Broni

    Broni Malware Annihilator Posts: 46,177   +251

    Looks good.

    How is computer doing?

    Download Malwarebytes' Anti-Malware: http://www.malwarebytes.org/products/malwarebytes_free to your desktop.

    * Double-click mbam-setup.exe and follow the prompts to install the program.
    * At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
    * If an update is found, it will download and install the latest version.
    * Once the program has loaded, select Perform quick scan, then click Scan.
    * When the scan is complete, click OK, then Show Results to view the results.
    * Be sure that everything is checked, and click Remove Selected.
    * When completed, a log will open in Notepad.
    * Post the log back here.

    Be sure to restart the computer.

    The log can also be found here:
    C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
    Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

    =====================================================

    Download OTL to your Desktop.

    • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
    • Click the Scan All Users checkbox.
    • Under the Custom Scan box paste this in:


    netsvcs
    drivers32
    %SYSTEMDRIVE%\*.*
    %systemroot%\Fonts\*.com
    %systemroot%\Fonts\*.dll
    %systemroot%\Fonts\*.ini
    %systemroot%\Fonts\*.ini2
    %systemroot%\Fonts\*.exe
    %systemroot%\system32\spool\prtprocs\w32x86\*.*
    %systemroot%\REPAIR\*.bak1
    %systemroot%\REPAIR\*.ini
    %systemroot%\system32\*.jpg
    %systemroot%\*.jpg
    %systemroot%\*.png
    %systemroot%\*.scr
    %systemroot%\*._sy
    %APPDATA%\Adobe\Update\*.*
    %ALLUSERSPROFILE%\Favorites\*.*
    %APPDATA%\Microsoft\*.*
    %PROGRAMFILES%\*.*
    %APPDATA%\Update\*.*
    %systemroot%\*. /mp /s
    CREATERESTOREPOINT
    %systemroot%\System32\config\*.sav
    %PROGRAMFILES%\bak. /s
    %systemroot%\system32\bak. /s
    %ALLUSERSPROFILE%\Start Menu\*.lnk /x
    %systemroot%\system32\config\systemprofile\*.dat /x
    %systemroot%\*.config
    %systemroot%\system32\*.db
    %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x
    %USERPROFILE%\Desktop\*.exe
    %PROGRAMFILES%\Common Files\*.*
    %systemroot%\*.src
    %systemroot%\install\*.*
    %systemroot%\system32\DLL\*.*
    %systemroot%\system32\HelpFiles\*.*
    %systemroot%\tasks\*.*
    %systemroot%\system32\rundll\*.*
    %systemroot%\winn32\*.*
    %systemroot%\Java\*.*
    %systemroot%\system32\test\*.*
    %systemroot%\system32\Rundll32\*.*
    %systemroot%\AppPatch\Custom\*.*
    %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x
    %PROGRAMFILES%\PC-Doctor\Downloads\*.*
    %PROGRAMFILES%\Internet Explorer\*.tmp
    %PROGRAMFILES%\Internet Explorer\*.dat
    %USERPROFILE%\My Documents\*.exe
    %USERPROFILE%\*.exe
    %systemroot%\ADDINS\*.*
    %systemroot%\assembly\*.bak2
    %systemroot%\Config\*.*
    %systemroot%\REPAIR\*.bak2
    %systemroot%\SECURITY\Database\*.sdb /x
    %systemroot%\SYSTEM\*.bak2
    %systemroot%\Web\*.bak2
    %systemroot%\Driver Cache\*.*
    %PROGRAMFILES%\Mozilla Firefox\0*.exe
    %ProgramFiles%\Microsoft Common\*.*
    %ProgramFiles%\TinyProxy.
    %USERPROFILE%\Favorites\*.url /x
    %systemroot%\system32\*.bk
    %systemroot%\*.te
    %systemroot%\system32\system32\*.*
    %ALLUSERSPROFILE%\*.dat /x
    %systemroot%\system32\drivers\*.rmv
    dir /b "%systemroot%\system32\*.exe" | find /I " " /c
    dir /b "%systemroot%\*.exe" | find /I " " /c
    %PROGRAMFILES%\Microsoft\*.*
    %systemroot%\System32\Wbem\proquota.exe
    %PROGRAMFILES%\Mozilla Firefox\*.dat
    %USERPROFILE%\Cookies\*.txt /x
    %SystemRoot%\system32\fonts\*.*
    %systemroot%\system32\winlog\*.*
    %systemroot%\system32\Language\*.*
    %systemroot%\system32\Settings\*.*
    %systemroot%\system32\*.quo
    %SYSTEMROOT%\AppPatch\*.exe
    %SYSTEMROOT%\inf\*.exe
    %SYSTEMROOT%\Installer\*.exe
    %systemroot%\system32\config\*.bak2
    %systemroot%\system32\Computers\*.*
    %SystemRoot%\system32\Sound\*.*
    %SystemRoot%\system32\SpecialImg\*.*
    %SystemRoot%\system32\code\*.*
    %SystemRoot%\system32\draft\*.*
    %SystemRoot%\system32\MSSSys\*.*
    %ProgramFiles%\Javascript\*.*
    %systemroot%\pchealth\helpctr\System\*.exe /s
    %systemroot%\Web\*.exe
    %systemroot%\system32\msn\*.*
    %systemroot%\system32\*.tro
    %AppData%\Microsoft\Installer\msupdates\*.*
    %ProgramFiles%\Messenger\*.*
    %systemroot%\system32\systhem32\*.*
    %systemroot%\system\*.exe
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\LastSuccessTime /rs
    /md5start
    /md5stop


    • Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
    • When the scan completes, it will open two notepad windows: OTL.txt and Extras.txt. These are saved in the same location as OTL.
    • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post them back here.
  17. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    My PC seems to have regained normal function, thank you. Here are the logs.

    Malwarebytes Anti-Malware 1.61.0.1400
    www.malwarebytes.org

    Database version: v2012.06.23.06

    Windows 7 x64 NTFS
    Internet Explorer 9.0.8112.16421
    Sam :: SAM-PC [administrator]

    24/06/2012 00:58:55
    mbam-log-2012-06-24 (00-58-55).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 210584
    Time elapsed: 6 minute(s), 11 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 0
    (No malicious items detected)

    (end)
  18. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    OTL logfile created on: 24/06/2012 01:28:39 - Run 1
    OTL by OldTimer - Version 3.2.52.0 Folder = C:\Users\Sam\Desktop
    64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

    6.00 Gb Total Physical Memory | 4.30 Gb Available Physical Memory | 71.61% Memory free
    12.00 Gb Paging File | 10.16 Gb Available in Paging File | 84.66% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 1397.16 Gb Total Space | 422.81 Gb Free Space | 30.26% Space Free | Partition Type: NTFS
    Drive E: | 1863.01 Gb Total Space | 287.12 Gb Free Space | 15.41% Space Free | Partition Type: NTFS
    Drive G: | 14.89 Gb Total Space | 14.79 Gb Free Space | 99.30% Space Free | Partition Type: NTFS

    Computer Name: SAM-PC | User Name: Sam | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
    Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - [2012/06/24 00:38:56 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Sam\Desktop\OTL.exe
    PRC - [2012/05/08 01:03:06 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
    PRC - [2012/01/12 12:54:26 | 000,095,640 | ---- | M] (Binary Fortress Software) -- C:\Program Files (x86)\DisplayFusion\AppHookx86.exe
    PRC - [2012/01/03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    PRC - [2011/02/10 02:00:16 | 000,012,800 | ---- | M] (Mr. John aka japamd) -- C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe


    ========== Modules (No Company Name) ==========


    ========== Win32 Services (SafeList) ==========

    SRV:64bit: - [2012/04/06 03:16:02 | 000,236,544 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
    SRV:64bit: - [2012/03/26 18:49:56 | 000,291,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
    SRV:64bit: - [2012/03/26 18:49:56 | 000,012,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
    SRV:64bit: - [2011/09/27 20:04:08 | 000,359,192 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
    SRV:64bit: - [2009/07/14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
    SRV:64bit: - [2009/07/14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
    SRV - [2012/05/19 17:46:59 | 000,529,232 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
    SRV - [2012/05/08 01:03:06 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
    SRV - [2012/04/05 20:50:06 | 000,008,704 | ---- | M] (Hi-Rez Studios) [Auto | Running] -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe -- (HiPatchService)
    SRV - [2012/02/28 18:38:54 | 002,343,816 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
    SRV - [2012/01/03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
    SRV - [2011/02/10 02:00:16 | 000,012,800 | ---- | M] (Mr. John aka japamd) [Auto | Running] -- C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe -- (RadeonPro Support Service)
    SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
    SRV - [2010/02/19 14:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
    SRV - [2009/10/20 19:19:48 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
    SRV - [2009/06/10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


    ========== Driver Services (SafeList) ==========

    DRV:64bit: - [2012/04/06 06:22:40 | 011,174,400 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
    DRV:64bit: - [2012/04/06 02:10:44 | 000,343,040 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
    DRV:64bit: - [2012/03/20 20:44:12 | 000,098,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
    DRV:64bit: - [2012/03/01 07:54:38 | 000,022,896 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
    DRV:64bit: - [2012/02/23 13:32:04 | 000,095,760 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
    DRV:64bit: - [2012/02/13 05:26:32 | 000,834,544 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\sptd.sys.vir -- (sptd)
    DRV:64bit: - [2011/11/11 17:49:49 | 000,279,616 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
    DRV:64bit: - [2011/11/10 19:32:02 | 000,115,272 | ---- | M] (MotioninJoy) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MijXfilt.sys -- (MotioninJoyXFilter)
    DRV:64bit: - [2011/09/02 07:30:36 | 000,060,696 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
    DRV:64bit: - [2011/09/02 07:30:24 | 000,066,840 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
    DRV:64bit: - [2011/08/01 16:59:06 | 000,045,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\point64.sys -- (Point64)
    DRV:64bit: - [2011/05/18 09:08:32 | 000,047,616 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dc3d.sys -- (dc3d)
    DRV:64bit: - [2011/03/11 07:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
    DRV:64bit: - [2011/03/11 07:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
    DRV:64bit: - [2010/08/19 20:24:34 | 000,074,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
    DRV:64bit: - [2009/10/20 19:19:54 | 000,047,632 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
    DRV:64bit: - [2009/07/14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
    DRV:64bit: - [2009/07/14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
    DRV:64bit: - [2009/07/14 02:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
    DRV:64bit: - [2009/07/14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
    DRV:64bit: - [2009/06/19 08:56:08 | 000,712,704 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x)
    DRV:64bit: - [2009/06/10 21:35:42 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
    DRV:64bit: - [2009/06/10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
    DRV:64bit: - [2009/06/10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
    DRV:64bit: - [2009/06/10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
    DRV:64bit: - [2009/06/10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
    DRV:64bit: - [2009/03/18 18:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
    DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



    IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Internet Explorer\Main,DefaultNetworkProfile = 517540814
    IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-GB
    IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 80 3D A9 01 3A 4A CD 01 [binary data]
    IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\..\SearchScopes,DefaultScope = {60F942CD-4576-4A7E-8301-0ED012D7F5AC}
    IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\..\SearchScopes\{60F942CD-4576-4A7E-8301-0ED012D7F5AC}: "URL" = http://www.google.co.uk/search?hl=en&q={searchTerms}&meta=
    IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
    IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

    ========== FireFox ==========



    FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found
    FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.2.1: C:\Windows\system32\npDeployJava1.dll (Sun Microsystems, Inc.)
    FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll File not found
    FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
    FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
    FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_32: C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.)
    FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@nexon.net/NxGame: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
    FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
    FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
    FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Sam\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
    FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Sam\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)


    [2011/11/11 16:23:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Sam\AppData\Roaming\mozilla\Extensions
    [2012/06/16 13:07:31 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Sam\AppData\Roaming\mozilla\Firefox\Profiles\ra1mkfoe.default\extensions
    [2012/06/18 22:01:42 | 000,000,000 | ---D | M] (incredibar.com) -- C:\Users\Sam\AppData\Roaming\mozilla\Firefox\Profiles\ra1mkfoe.default\extensions\ffxtlbr@incredibar.com
    [2012/02/04 12:45:35 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
    [2012/06/18 22:01:43 | 000,000,000 | ---D | M] ("CrazyJApps Daily Deals") -- C:\Program Files (x86)\Mozilla Firefox\extensions\{2b44b65f-87dd-4448-a0a7-0b6ffdbd4dea}
    [2011/12/02 23:39:23 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
    [2011/11/10 06:54:13 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
    [2011/10/26 19:49:56 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll

    ========== Chrome ==========

    CHR - default_search_provider: Google (Enabled)
    CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:eek:riginalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
    CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
    CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
    CHR - plugin: Native Client (Enabled) = C:\Users\Sam\AppData\Local\Google\Chrome\Application\19.0.1084.56\ppGoogleNaClPluginChrome.dll
    CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Sam\AppData\Local\Google\Chrome\Application\19.0.1084.56\pdf.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Sam\AppData\Local\Google\Chrome\Application\19.0.1084.56\gcswf32.dll
    CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
    CHR - plugin: Skype Toolbars (Enabled) = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.7.0.8773_0\npSkypeChromePlugin.dll
    CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
    CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
    CHR - plugin: Java(TM) Platform SE 6 U32 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
    CHR - plugin: Java Deployment Toolkit 6.0.320.5 (Enabled) = C:\Windows\SysWOW64\npdeployJava1.dll
    CHR - plugin: Nexon Game Controller (Enabled) = C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
    CHR - plugin: Google Update (Enabled) = C:\Users\Sam\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
    CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll
    CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
    CHR - Extension: YouTube = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
    CHR - Extension: Google Search = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
    CHR - Extension: Marlies Dekkers = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\fepnljgdbelppefncogilfbjikmnbhjm\2_0\
    CHR - Extension: AdBlock = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.36_0\
    CHR - Extension: Skype Click to Call = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.7.0.8773_0\
    CHR - Extension: 4chan Plus = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\pinelipedelckihohgdlpcclgocodhjj\2.5.4_0\
    CHR - Extension: Gmail = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

    O1 HOSTS File: ([2012/06/23 23:45:27 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 localhost
    O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\ssv.dll File not found
    O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
    O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
    O4:64bit: - HKLM..\Run: [Eraser] c:\Program Files\Eraser\Eraser.exe (The Eraser Project)
    O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
    O4:64bit: - HKLM..\Run: [IntelliPoint] c:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
    O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
    O4 - HKLM..\Run: [AMD AVT] C:\Windows\SysWow64\cmd.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
    O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe (Simply Super Software)
    O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
    O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [DisplayFusion] C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe (Binary Fortress Software)
    O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [PeerBlock] C:\Program Files\PeerBlock\peerblock.exe (PeerBlock, LLC)
    O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
    O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [uTorrent] C:\Users\Sam\Downloads\uTorrent.exe (BitTorrent, Inc.)
    O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe ()
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
    O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\S-1-5-21-3332832593-3043654-485038372-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
    O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
    O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Windows\SysNative\PrxerNsp.dll ()
    O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
    O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
    O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
    O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
    O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000015 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Windows\SysWOW64\PrxerNsp.dll ()
    O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
    O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
    O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
    O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
    O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
    O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
    O16:64bit: - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
    O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
    O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A7405511-9D97-4A52-B803-3564DBEAB194}: DhcpNameServer = 192.168.1.1
    O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
    O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
    O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
    O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
    O32 - HKLM CDRom: AutoRun - 1
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35:64bit: - HKLM\..comfile [open] -- "%1" %*
    O35:64bit: - HKLM\..exefile [open] -- "%1" %*
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
    O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
    O37 - HKLM\...com [@ = ComFile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*
    O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
    O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
    O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

    NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

    Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
    Drivers32:64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
    Drivers32:64bit: vidc.XVID - xvidvfw.dll ()
    Drivers32: msacm.l3acm - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
    Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
    Drivers32: VIDC.FFDS - C:\Program Files (x86)\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll ()
    Drivers32: VIDC.FPS1 - C:\Windows\SysWow64\frapsvid.dll (Beepa P/L)
    Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()

    CREATERESTOREPOINT
    Restore point Set: OTL Restore Point
  19. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    ========== Files/Folders - Created Within 30 Days ==========

    [2012/06/24 00:55:30 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Sam\Desktop\OTL.exe
    [2012/06/24 00:55:29 | 010,063,000 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Sam\Desktop\mbam-setup-1.61.0.1400 (2).exe
    [2012/06/23 23:50:18 | 000,000,000 | ---D | C] -- C:\Windows\temp
    [2012/06/23 23:45:33 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
    [2012/06/23 18:09:28 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
    [2012/06/23 18:09:28 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
    [2012/06/23 18:09:28 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
    [2012/06/23 18:09:18 | 000,000,000 | ---D | C] -- C:\Qoobox
    [2012/06/23 18:08:47 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
    [2012/06/23 18:08:12 | 004,565,820 | R--- | C] (Swearware) -- C:\Users\Sam\Desktop\ComboFix.exe
    [2012/06/23 02:08:51 | 000,000,000 | ---D | C] -- C:\FRST
    [2012/06/22 03:00:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client
    [2012/06/21 22:11:12 | 000,000,000 | ---D | C] -- C:\Users\Sam\Desktop\fix
    [2012/06/21 21:56:40 | 000,000,000 | ---D | C] -- C:\Windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
    [2012/06/21 21:54:27 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Malwarebytes
    [2012/06/21 21:54:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
    [2012/06/21 21:54:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
    [2012/06/21 21:54:01 | 000,024,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
    [2012/06/21 21:54:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
    [2012/06/19 11:45:00 | 000,000,000 | ---D | C] -- C:\found.000
    [2012/06/19 02:52:09 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Simply Super Software
    [2012/06/19 02:52:08 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
    [2012/06/19 02:50:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover
    [2012/06/19 02:50:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trojan Remover
    [2012/06/19 02:50:28 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Simply Super Software
    [2012/06/19 02:50:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Simply Super Software
    [2012/06/19 02:49:58 | 000,000,000 | ---D | C] -- C:\Users\Sam\Desktop\KEY
    [2012/06/19 02:49:51 | 012,137,424 | ---- | C] (Simply Super Software ) -- C:\Users\Sam\Desktop\trjsetup683.exe
    [2012/06/18 19:52:59 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
    [2012/06/18 12:29:02 | 000,000,000 | ---D | C] -- C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
    [2012/06/16 13:07:28 | 000,000,000 | ---D | C] -- C:\Program Files\Web Assistant
    [2012/06/16 13:06:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pazera Free MP4 to AVI Converter
    [2012/06/15 18:42:24 | 000,000,000 | ---D | C] -- C:\Users\Sam\Desktop\REESEQUEST
    [2012/06/14 22:07:06 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Rainmeter
    [2012/06/14 22:07:06 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Rainmeter
    [2012/06/14 22:07:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter
    [2012/06/14 22:07:04 | 000,000,000 | ---D | C] -- C:\Program Files\Rainmeter
    [2012/06/14 15:29:44 | 000,000,000 | ---D | C] -- C:\FlvGrabber
    [2012/06/14 15:25:22 | 000,000,000 | -HSD | C] -- C:\Windows\SysNative\%APPDATA%
    [2012/06/14 15:23:00 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\FlvGrabber
    [2012/06/14 15:20:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
    [2012/06/14 15:20:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinPcap
    [2012/06/11 16:56:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Max Payne 3
    [2012/06/11 16:56:51 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Rockstar Games
    [2012/06/11 01:14:37 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Yume Nikki 0.10 English
    [2012/06/09 21:30:48 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Local\ElevatedDiagnostics
    [2012/06/07 23:58:35 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\CAPCOM
    [2012/06/07 23:58:33 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Local\CAPCOM
    [2012/06/07 23:48:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CAPCOM
    [2012/06/06 15:04:18 | 000,000,000 | ---D | C] -- C:\mugen
    [2012/06/06 14:52:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VirtuallTek
    [2012/06/06 14:52:02 | 000,000,000 | ---D | C] -- C:\ProgramData\VirtuallTek
    [2012/06/06 14:52:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VirtuallTek
    [2012/06/06 00:06:48 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\project64 1.6
    [2012/06/06 00:06:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Project64 1.6
    [2012/06/03 15:45:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 Update 4
    [2012/06/03 02:20:40 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Battlefield 3
    [2012/06/03 01:46:30 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Common Files\EAInstaller
    [2012/06/03 01:31:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Battlefield 3
    [2012/06/01 15:42:30 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\WB Games
    [2012/06/01 15:13:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Batman Arkham City
    [2012/06/01 14:55:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Black_Box
    [2012/05/31 21:51:05 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Wolfire
    [2012/05/31 21:44:35 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overgrowth
    [2012/05/31 21:44:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overgrowth
    [2012/05/31 18:13:05 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OMGWTFOTL
    [2012/05/31 18:13:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OMGWTFOTL
    [2012/05/31 18:13:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OMGWTFOTL
    [2012/05/25 23:33:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack
    [2012/05/25 23:33:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Combined Community Codec Pack
    [2012/05/25 23:28:41 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\vlc
    [2012/05/25 23:27:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
    [2012/05/25 23:26:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN

    ========== Files - Modified Within 30 Days ==========

    [2012/06/24 01:23:34 | 000,013,456 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    [2012/06/24 01:23:34 | 000,013,456 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    [2012/06/24 01:15:42 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2012/06/24 01:15:38 | 535,683,071 | -HS- | M] () -- C:\hiberfil.sys
    [2012/06/24 00:58:11 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2012/06/24 00:39:06 | 010,063,000 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Sam\Desktop\mbam-setup-1.61.0.1400 (2).exe
    [2012/06/24 00:38:56 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Sam\Desktop\OTL.exe
    [2012/06/24 00:36:32 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000UA.job
    [2012/06/23 23:54:48 | 000,681,710 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
    [2012/06/23 23:54:48 | 000,485,924 | ---- | M] () -- C:\Windows\SysNative\perfh011.dat
    [2012/06/23 23:54:48 | 000,146,038 | ---- | M] () -- C:\Windows\SysNative\perfc011.dat
    [2012/06/23 23:54:48 | 000,145,282 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
    [2012/06/23 23:54:48 | 000,006,472 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
    [2012/06/23 23:45:27 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
    [2012/06/23 18:05:02 | 004,565,820 | R--- | M] (Swearware) -- C:\Users\Sam\Desktop\ComboFix.exe
    [2012/06/22 03:01:11 | 000,001,945 | ---- | M] () -- C:\Windows\epplauncher.mif
    [2012/06/22 03:01:01 | 000,006,438 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
    [2012/06/18 19:36:00 | 000,000,848 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000Core.job
    [2012/06/18 03:29:40 | 000,014,113 | ---- | M] () -- C:\Users\Sam\.recently-used.xbel
    [2012/06/17 01:54:35 | 111,406,435 | ---- | M] () -- C:\Users\Sam\Documents\REESE.wmv
    [2012/06/15 23:07:29 | 006,360,088 | ---- | M] () -- C:\Users\Sam\Documents\Reese Witherspoon Black Eye the song.Ray Sipe.Lady GaGa..avi
    [2012/06/15 21:40:38 | 019,384,518 | ---- | M] () -- C:\Users\Sam\Documents\reese.wmv_(480p).avi
    [2012/06/15 20:49:17 | 000,333,064 | ---- | M] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4.sfk
    [2012/06/15 20:43:54 | 052,151,891 | ---- | M] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4
    [2012/06/15 20:37:01 | 024,766,486 | ---- | M] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).avi
    [2012/06/15 19:25:56 | 005,944,542 | ---- | M] () -- C:\Users\Sam\Documents\Big Reese (Song)_(360p).mp4
    [2012/06/15 15:49:17 | 004,863,800 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
    [2012/06/14 22:07:04 | 000,001,712 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
    [2012/06/14 17:49:18 | 000,010,752 | ---- | M] () -- C:\Users\Sam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2012/06/09 00:03:41 | 000,281,288 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
    [2012/06/09 00:03:41 | 000,281,288 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
    [2012/06/08 23:36:46 | 000,281,288 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
    [2012/06/07 14:07:18 | 000,072,720 | ---- | M] () -- C:\Windows\SysNative\peerblock.dmp
    [2012/06/06 22:46:45 | 000,025,516 | ---- | M] () -- C:\Users\Sam\Documents\fanfic.odt
    [2012/06/03 15:46:00 | 000,001,031 | ---- | M] () -- C:\Users\Sam\Application Data\Microsoft\Internet Explorer\Quick Launch\Battlefield 3 Update 4.lnk
    [2012/05/29 11:31:48 | 013,513,415 | ---- | M] () -- C:\delver.jar

    ========== Files Created - No Company Name ==========

    [2012/06/24 00:58:11 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2012/06/23 18:09:28 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
    [2012/06/23 18:09:28 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
    [2012/06/23 18:09:28 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
    [2012/06/23 18:09:28 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
    [2012/06/23 18:09:28 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
    [2012/06/19 02:50:29 | 000,153,088 | ---- | C] () -- C:\Windows\SysWow64\UNRAR3.dll
    [2012/06/19 02:50:29 | 000,075,264 | ---- | C] () -- C:\Windows\SysWow64\unacev2.dll
    [2012/06/18 19:53:00 | 000,001,915 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
    [2012/06/18 03:29:40 | 000,014,113 | ---- | C] () -- C:\Users\Sam\.recently-used.xbel
    [2012/06/17 00:49:39 | 111,406,435 | ---- | C] () -- C:\Users\Sam\Documents\REESE.wmv
    [2012/06/15 23:07:27 | 006,360,088 | ---- | C] () -- C:\Users\Sam\Documents\Reese Witherspoon Black Eye the song.Ray Sipe.Lady GaGa..avi
    [2012/06/15 21:40:13 | 019,384,518 | ---- | C] () -- C:\Users\Sam\Documents\reese.wmv_(480p).avi
    [2012/06/15 20:45:18 | 000,333,064 | ---- | C] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4.sfk
    [2012/06/15 20:41:12 | 052,151,891 | ---- | C] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4
    [2012/06/15 20:36:23 | 024,766,486 | ---- | C] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).avi
    [2012/06/15 19:25:44 | 005,944,542 | ---- | C] () -- C:\Users\Sam\Documents\Big Reese (Song)_(360p).mp4
    [2012/06/14 22:07:04 | 000,001,712 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
    [2012/06/13 02:27:05 | 013,513,415 | ---- | C] () -- C:\delver.jar
    [2012/06/07 14:06:29 | 000,072,720 | ---- | C] () -- C:\Windows\SysNative\peerblock.dmp
    [2012/06/06 17:36:33 | 000,025,516 | ---- | C] () -- C:\Users\Sam\Documents\fanfic.odt
    [2012/06/03 15:46:00 | 000,001,031 | ---- | C] () -- C:\Users\Sam\Application Data\Microsoft\Internet Explorer\Quick Launch\Battlefield 3 Update 4.lnk
    [2012/05/14 04:28:08 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
    [2012/05/13 23:04:34 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
    [2012/05/03 02:56:32 | 000,645,632 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
    [2012/05/03 02:56:32 | 000,240,640 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
    [2012/04/10 14:49:00 | 000,281,288 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
    [2012/04/10 14:48:59 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
    [2012/04/06 02:29:34 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
    [2012/04/06 02:29:34 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
    [2012/03/28 21:18:43 | 000,054,000 | ---- | C] () -- C:\Windows\SysWow64\PrxerNsp.dll
    [2012/03/09 14:06:14 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
    [2012/01/16 15:38:48 | 000,001,456 | ---- | C] () -- C:\Users\Sam\AppData\Local\Adobe Save for Web 12.0 Prefs
    [2012/01/16 15:35:44 | 000,000,132 | ---- | C] () -- C:\Users\Sam\AppData\Roaming\Adobe GIF Format CS5 Prefs
    [2012/01/16 14:10:14 | 000,002,070 | ---- | C] () -- C:\Users\Sam\fagbut.html
    [2012/01/16 14:10:13 | 000,071,038 | ---- | C] () -- C:\Users\Sam\fagbut.swf
    [2012/01/16 13:18:35 | 000,004,373 | ---- | C] () -- C:\Users\Sam\AuthortimeSharedAssets.fla
    [2012/01/16 13:18:35 | 000,000,829 | ---- | C] () -- C:\Users\Sam\.actionScriptProperties
    [2012/01/16 13:18:35 | 000,000,472 | ---- | C] () -- C:\Users\Sam\.project
    [2012/01/16 13:18:34 | 001,245,528 | ---- | C] () -- C:\Users\Sam\fagbut.fla
    [2011/12/12 18:12:41 | 000,794,906 | ---- | C] () -- C:\Windows\unins000.exe
    [2011/12/12 18:12:41 | 000,004,147 | ---- | C] () -- C:\Windows\unins000.dat
    [2011/11/11 17:38:55 | 000,010,752 | ---- | C] () -- C:\Users\Sam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2011/11/11 16:27:56 | 000,006,438 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
    [2011/09/28 18:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
    [2011/09/12 23:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat

    ========== LOP Check ==========

    [2012/03/05 18:35:35 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\.minecraft
    [2011/12/18 19:56:52 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\.Nitrous
    [2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\.techniclauncher
    [2012/03/14 23:21:45 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\.Tribler
    [2012/04/24 01:13:42 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Actual Tools
    [2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Audacity
    [2012/01/16 14:22:36 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Babylon
    [2012/05/19 15:04:52 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\calibre
    [2012/01/16 12:42:43 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
    [2012/06/10 21:20:02 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\DAEMON Tools Lite
    [2012/06/17 15:47:17 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\DisplayFusion
    [2012/01/25 03:13:31 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\FileZilla
    [2012/03/06 13:03:24 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\gnupg
    [2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\gtk-2.0
    [2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\IrfanView
    [2011/12/25 14:22:55 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Leadertech
    [2012/05/13 23:04:43 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Leawo
    [2012/03/29 16:41:02 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Mael
    [2011/11/27 19:27:16 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\MotioninJoy
    [2012/02/27 00:22:29 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\MTE
    [2011/11/15 12:32:08 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\OpenOffice.org
    [2012/03/28 21:19:41 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Proxifier
    [2012/02/29 23:37:03 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Publish Providers
    [2012/02/13 00:45:58 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\RadeonPro
    [2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Rainmeter
    [2012/01/04 21:47:48 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\RenPy
    [2012/03/06 13:03:34 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\RetroShare
    [2012/06/19 02:50:28 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Simply Super Software
    [2012/03/01 19:42:28 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Sony
    [2012/05/03 02:53:57 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Sony Creative Software Inc
    [2012/05/13 23:05:53 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\tiger-k
    [2012/06/24 01:27:08 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\uTorrent
    [2012/06/17 07:35:51 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\X-Chat 2
    [2012/04/24 00:58:49 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\XRay Engine
    [2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Youtube Downloader HD
    [2012/06/19 02:08:54 | 000,032,608 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

    ========== Purity Check ==========



    ========== Custom Scans ==========

    < %SYSTEMDRIVE%\*.* >
    [2012/06/23 23:50:16 | 000,022,423 | ---- | M] () -- C:\ComboFix.txt
    [2012/05/29 11:31:48 | 013,513,415 | ---- | M] () -- C:\delver.jar
    [2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1028.txt
    [2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1031.txt
    [2007/11/07 09:00:40 | 000,010,134 | ---- | M] () -- C:\eula.1033.txt
    [2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1036.txt
    [2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1040.txt
    [2007/11/07 09:00:40 | 000,000,118 | ---- | M] () -- C:\eula.1041.txt
    [2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1042.txt
    [2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.2052.txt
    [2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.3082.txt
    [2007/11/07 09:00:40 | 000,001,110 | ---- | M] () -- C:\globdata.ini
    [2012/06/24 01:15:38 | 535,683,071 | -HS- | M] () -- C:\hiberfil.sys
    [2007/11/07 09:00:40 | 000,000,843 | ---- | M] () -- C:\install.ini
    [2007/11/07 09:44:20 | 000,075,280 | ---- | M] (Microsoft Corporation) -- C:\install.res.1028.dll
    [2007/11/07 09:44:20 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.1031.dll
    [2007/11/07 09:44:20 | 000,090,128 | ---- | M] (Microsoft Corporation) -- C:\install.res.1033.dll
    [2007/11/07 09:44:20 | 000,096,272 | ---- | M] (Microsoft Corporation) -- C:\install.res.1036.dll
    [2007/11/07 09:44:20 | 000,094,224 | ---- | M] (Microsoft Corporation) -- C:\install.res.1040.dll
    [2007/11/07 09:44:20 | 000,080,400 | ---- | M] (Microsoft Corporation) -- C:\install.res.1041.dll
    [2007/11/07 09:44:20 | 000,078,864 | ---- | M] (Microsoft Corporation) -- C:\install.res.1042.dll
    [2007/11/07 09:44:20 | 000,074,768 | ---- | M] (Microsoft Corporation) -- C:\install.res.2052.dll
    [2007/11/07 09:44:20 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.3082.dll
    [2005/09/23 00:39:38 | 000,894,976 | ---- | M] (Microsoft Corporation) -- C:\msdia80.dll
    [2012/06/24 01:15:41 | 2145,902,591 | -HS- | M] () -- C:\pagefile.sys
    [2012/01/16 14:32:44 | 000,073,222 | ---- | M] () -- C:\testtemp1.swf
    [2012/01/16 14:22:44 | 000,000,237 | ---- | M] () -- C:\user.js
    [2007/11/07 09:00:40 | 000,005,686 | ---- | M] () -- C:\vcredist.bmp
    [2007/11/07 09:50:40 | 001,927,956 | ---- | M] () -- C:\VC_RED.cab
    [2007/11/07 09:53:12 | 000,242,176 | ---- | M] () -- C:\VC_RED.MSI

    < %systemroot%\Fonts\*.com >
    [2009/07/14 06:32:31 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
    [2009/07/14 06:32:31 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
    [2009/07/14 06:32:31 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
    [2009/07/14 06:32:31 | 000,043,318 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont

    < %systemroot%\Fonts\*.dll >

    < %systemroot%\Fonts\*.ini >
    [2009/06/10 21:49:50 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini

    < %systemroot%\Fonts\*.ini2 >

    < %systemroot%\Fonts\*.exe >

    < %systemroot%\system32\spool\prtprocs\w32x86\*.* >

    < %systemroot%\REPAIR\*.bak1 >

    < %systemroot%\REPAIR\*.ini >

    < %systemroot%\system32\*.jpg >

    < %systemroot%\*.jpg >

    < %systemroot%\*.png >

    < %systemroot%\*.scr >

    < %systemroot%\*._sy >

    < %APPDATA%\Adobe\Update\*.* >

    < %ALLUSERSPROFILE%\Favorites\*.* >

    < %APPDATA%\Microsoft\*.* >

    < %PROGRAMFILES%\*.* >
    [2009/07/14 05:54:24 | 000,000,174 | -HS- | M] () -- C:\Program Files (x86)\desktop.ini

    < %APPDATA%\Update\*.* >

    < %systemroot%\*. /mp /s >

    < %systemroot%\System32\config\*.sav >

    < %PROGRAMFILES%\bak. /s >
    [2011/12/12 18:38:04 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Steam\steamapps\common\stalker shadow of chernobyl\gamedata\textures\wpn\BAK

    < %systemroot%\system32\bak. /s >

    < %ALLUSERSPROFILE%\Start Menu\*.lnk /x >

    < %systemroot%\system32\config\systemprofile\*.dat /x >

    < %systemroot%\*.config >

    < %systemroot%\system32\*.db >

    < %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
    [2011/12/18 20:03:41 | 000,000,221 | -HS- | M] () -- C:\Users\Sam\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini

    < %USERPROFILE%\Desktop\*.exe >
    [2012/06/23 18:05:02 | 004,565,820 | R--- | M] (Swearware) -- C:\Users\Sam\Desktop\ComboFix.exe
    [2012/06/24 00:39:06 | 010,063,000 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Sam\Desktop\mbam-setup-1.61.0.1400 (2).exe
    [2012/06/24 00:38:56 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Sam\Desktop\OTL.exe
    [2012/03/14 15:26:01 | 012,137,424 | ---- | M] (Simply Super Software ) -- C:\Users\Sam\Desktop\trjsetup683.exe

    < %PROGRAMFILES%\Common Files\*.* >

    < %systemroot%\*.src >

    < %systemroot%\install\*.* >

    < %systemroot%\system32\DLL\*.* >

    < %systemroot%\system32\HelpFiles\*.* >

    < %systemroot%\tasks\*.* >
    [2012/06/18 19:36:00 | 000,000,848 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000Core.job
    [2012/06/24 01:36:00 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000UA.job
    [2012/06/24 01:15:51 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
    [2012/06/19 02:08:54 | 000,032,608 | ---- | M] () -- C:\Windows\tasks\SCHEDLGU.TXT

    < %systemroot%\system32\rundll\*.* >

    < %systemroot%\winn32\*.* >

    < %systemroot%\Java\*.* >

    < %systemroot%\system32\test\*.* >

    < %systemroot%\system32\Rundll32\*.* >

    < %systemroot%\AppPatch\Custom\*.* >

    < %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >

    < %PROGRAMFILES%\PC-Doctor\Downloads\*.* >

    < %PROGRAMFILES%\Internet Explorer\*.tmp >

    < %PROGRAMFILES%\Internet Explorer\*.dat >

    < %USERPROFILE%\My Documents\*.exe >

    < %USERPROFILE%\*.exe >

    < %systemroot%\ADDINS\*.* >
    [2009/06/10 22:20:04 | 000,000,802 | ---- | M] () -- C:\Windows\ADDINS\FXSEXT.ecf

    < %systemroot%\assembly\*.bak2 >

    < %systemroot%\Config\*.* >

    < %systemroot%\REPAIR\*.bak2 >

    < %systemroot%\SECURITY\Database\*.sdb /x >

    < %systemroot%\SYSTEM\*.bak2 >

    < %systemroot%\Web\*.bak2 >

    < %systemroot%\Driver Cache\*.* >

    < %PROGRAMFILES%\Mozilla Firefox\0*.exe >

    < %ProgramFiles%\Microsoft Common\*.* >

    < %ProgramFiles%\TinyProxy. >

    < %USERPROFILE%\Favorites\*.url /x >
    [2012/02/16 15:47:23 | 000,000,402 | -HS- | M] () -- C:\Users\Sam\Favorites\desktop.ini

    < %systemroot%\system32\*.bk >

    < %systemroot%\*.te >

    < %systemroot%\system32\system32\*.* >

    < %ALLUSERSPROFILE%\*.dat /x >

    < %systemroot%\system32\drivers\*.rmv >

    < dir /b "%systemroot%\system32\*.exe" | find /I " " /c >

    < dir /b "%systemroot%\*.exe" | find /I " " /c >

    < %PROGRAMFILES%\Microsoft\*.* >

    < %systemroot%\System32\Wbem\proquota.exe >

    < %PROGRAMFILES%\Mozilla Firefox\*.dat >

    < %USERPROFILE%\Cookies\*.txt /x >

    < %SystemRoot%\system32\fonts\*.* >

    < %systemroot%\system32\winlog\*.* >

    < %systemroot%\system32\Language\*.* >

    < %systemroot%\system32\Settings\*.* >

    < %systemroot%\system32\*.quo >

    < %SYSTEMROOT%\AppPatch\*.exe >

    < %SYSTEMROOT%\inf\*.exe >

    < %SYSTEMROOT%\Installer\*.exe >

    < %systemroot%\system32\config\*.bak2 >

    < %systemroot%\system32\Computers\*.* >

    < %SystemRoot%\system32\Sound\*.* >

    < %SystemRoot%\system32\SpecialImg\*.* >

    < %SystemRoot%\system32\code\*.* >

    < %SystemRoot%\system32\draft\*.* >

    < %SystemRoot%\system32\MSSSys\*.* >

    < %ProgramFiles%\Javascript\*.* >

    < %systemroot%\pchealth\helpctr\System\*.exe /s >

    < %systemroot%\Web\*.exe >

    < %systemroot%\system32\msn\*.* >

    < %systemroot%\system32\*.tro >

    < %AppData%\Microsoft\Installer\msupdates\*.* >

    < %ProgramFiles%\Messenger\*.* >

    < %systemroot%\system32\systhem32\*.* >

    < %systemroot%\system\*.exe >

    < HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

    < HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\LastSuccessTime /rs >

    ========== Alternate Data Streams ==========

    @Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:CB0AACC9

    < End of report >
  20. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    OTL Extras logfile created on: 24/06/2012 01:28:42 - Run 1
    OTL by OldTimer - Version 3.2.52.0 Folder = C:\Users\Sam\Desktop
    64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

    6.00 Gb Total Physical Memory | 4.30 Gb Available Physical Memory | 71.61% Memory free
    12.00 Gb Paging File | 10.16 Gb Available in Paging File | 84.66% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 1397.16 Gb Total Space | 422.81 Gb Free Space | 30.26% Space Free | Partition Type: NTFS
    Drive E: | 1863.01 Gb Total Space | 287.12 Gb Free Space | 15.41% Space Free | Partition Type: NTFS
    Drive G: | 14.89 Gb Total Space | 14.79 Gb Free Space | 99.30% Space Free | Partition Type: NTFS

    Computer Name: SAM-PC | User Name: Sam | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
    Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

    ========== Shell Spawning ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    htmlfile [edit] -- Reg Error: Key error.
    htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
    inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
    InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
    InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
    Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
    Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
    Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
    Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    htmlfile [edit] -- Reg Error: Key error.
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
    Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
    Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
    Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
    Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
    Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [explore] -- Reg Error: Value error.
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

    ========== Security Center Settings ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1
    "FirewallDisableNotify" = 0
    "AntiVirusDisableNotify" = 0
    "UpdatesDisableNotify" = 0

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "FirewallDisableNotify" = 0
    "AntiVirusDisableNotify" = 0
    "UpdatesDisableNotify" = 0

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

    ========== System Restore Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
    "DisableSR" = 0

    ========== Firewall Settings ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    ========== Authorized Applications List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


    ========== Vista Active Open Ports Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{0294BB2F-6178-459D-8C46-8D1C40D6AD6B}" = rport=445 | protocol=6 | dir=out | app=system |
    "{057550CC-1C7E-4C7B-A2F8-3A8DDC978C8C}" = lport=138 | protocol=17 | dir=in | app=system |
    "{08E024BB-596A-4DFF-A430-159062EB67CE}" = lport=10243 | protocol=6 | dir=in | app=system |
    "{19A5737B-0BEE-43C8-BCD3-3CC714AA4FD3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{25B9D31D-64EC-44F5-900B-17177C3E5D3C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{295EF879-34FC-4A05-A484-51AA1443280E}" = lport=445 | protocol=6 | dir=in | app=system |
    "{2FA65B31-3A9D-4C20-AFC6-469495F0EF44}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{4084E937-EAAA-47EE-9520-7BE7CE434C09}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
    "{4BF5EB07-06A2-40E2-B5B6-244EF5C49A0F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
    "{5456EA1E-AF45-48BD-9C96-AB99A6CCF1D9}" = lport=139 | protocol=6 | dir=in | app=system |
    "{6364B77A-8796-4078-B3CC-5963A3E70B4F}" = rport=139 | protocol=6 | dir=out | app=system |
    "{6EFD3216-D4DB-448C-81DA-E8838C66FFD2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{7C7BD74E-D59D-40F9-8481-A74C4729E9DD}" = rport=138 | protocol=17 | dir=out | app=system |
    "{86444BB3-291D-4D31-A046-BB4AA3243C28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{AF8150A9-8B4A-4262-900E-D368942052B3}" = lport=2869 | protocol=6 | dir=in | app=system |
    "{BE10AB93-C4A6-464B-BE93-069E778BFF99}" = rport=10243 | protocol=6 | dir=out | app=system |
    "{C232D951-55E7-4D04-9346-F88A07FC0B22}" = lport=137 | protocol=17 | dir=in | app=system |
    "{C428A183-FD79-40B5-990D-895328F43AC8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{CF0676E6-E2EC-438A-9741-7029DEBD00CE}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
    "{F534D21D-02A4-4E48-A237-A3745ED5E6D3}" = rport=137 | protocol=17 | dir=out | app=system |
    "{F9C1EEE5-72B7-40C6-BC7C-64E9DF7DEB39}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

    ========== Vista Active Application Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{003C7A18-60D9-4C89-94D8-DE42C1AA1D76}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
    "{02A4D600-582A-4C14-ADFE-C125CF0CB18F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{1473D86F-6F04-46A3-9153-CD04272511DC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
    "{20AB5F49-6362-457E-B837-7390D83F8166}" = protocol=6 | dir=in | app=c:\users\sam\downloads\utorrent.exe |
    "{4849799C-D8E9-4360-8F9A-6B5F2BCC7EA4}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
    "{56E808A1-BFD0-4B79-B567-B9FA848D697F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
    "{61FB8AD2-C831-45AB-9DFB-D685C3A8300D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
    "{62F27534-2769-4D2F-B42F-E96E62F64F44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
    "{65901CFC-D156-4C8F-90EA-C26D256CA195}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{68F6992D-6E9D-4F14-88EC-3E0B8BEC7EFF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{8642AF85-31DC-4BB3-8E9D-1E478C224084}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{869CC934-0C48-4F5F-9E12-9DB942A94F12}" = protocol=17 | dir=in | app=c:\users\sam\downloads\utorrent.exe |
    "{A5589677-56C4-46C1-A86B-1F0B5425786F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{AB3FBA72-52C3-4476-9A38-230DBE05659B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
    "{BC7833D1-AE4B-4CAB-BDD5-6EA587E5C763}" = protocol=6 | dir=out | app=system |
    "{CE504808-152F-4073-8BB9-0F8E7C4D30C6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
    "{D3648D1D-2BA3-4973-9B7E-EDC907B6E342}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
    "{E8715BB0-E132-4617-B344-62E03BFE2C1C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
    "{E926E57D-011D-4F63-BCC5-FFCFDC28D091}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
    "{EFA98652-B437-42AA-B7D3-EFFD71ED4ECD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
    "{F7DCF881-DB9D-4779-8D1C-CCCBAC7C73FF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{015C5B35-B678-451C-9AEE-821E8D69621C}_is1" = PeerBlock 1.1 (r518)
    "{119B2F5A-2A06-DB96-FF28-992EC2A10BDF}" = AMD Accelerated Video Transcoding
    "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
    "{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
    "{26A24AE4-039D-4CA4-87B4-2F86416032FF}" = Java(TM) 6 Update 32 (64-bit)
    "{2E8D6204-D656-8355-1ED3-2988AC52EB0F}" = ccc-utility64
    "{314DDDC0-E935-11E0-8F9F-F04DA23A5C58}" = Vegas Pro 11.0 (64-bit)
    "{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1" = MotioninJoy DS3 driver version 0.6.0005
    "{33C19CDE-E935-11E0-A0DA-F04DA23A5C58}" = MSVCRT Redists
    "{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
    "{3ABFAF33-D6EE-9348-CE96-AF51E9D6D2FF}" = AMD Drag and Drop Transcoding
    "{3D33F6F0-4D90-484D-A1D9-09AE791CCBD9}" = Eraser 6.0.9.2343
    "{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
    "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
    "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
    "{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}" = AMD Catalyst Install Manager
    "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
    "{624C7F0A-89B2-4C49-9CAB-9D69613EC95A}" = Microsoft IntelliPoint 8.2
    "{63CE6C32-1EB3-4C51-89FC-9FD96A661A9C}" = AMD Media Foundation Decoders
    "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
    "{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
    "{75104836-CAC7-444E-A39E-3F54151942F5}" = Apple Mobile Device Support
    "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
    "{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
    "{90BF0360-A1DB-4599-A643-95AB90A52C1E}" = Microsoft_VC90_MFCLOC_x86_x64
    "{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
    "{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
    "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
    "{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}" = Microsoft Security Client
    "{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
    "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
    "{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
    "{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb" = Microsoft Windows Application Compatibility Database
    "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
    "6af12c54-643b-4752-87d0-8335503010de_is1" = Nexus Mod Manager
    "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit
    "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit
    "CCleaner" = CCleaner
    "Explorer Suite_is1" = Explorer Suite III
    "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
    "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
    "Microsoft IntelliPoint 8.2" = Microsoft IntelliPoint 8.2
    "Microsoft Security Client" = Microsoft Security Essentials
    "sp6" = Logitech SetPoint 6.32
    "WinRAR archiver" = WinRAR 4.10 beta 3 (64-bit)

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
    "{03D4C700-2BFE-43E0-A0B4-9512B43C5B9F}" = Catalyst Control Center - Branding
    "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
    "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
    "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
    "{117B6BF6-82C3-420C-B284-9247C8568E53}" = The Sims™ 3 Outdoor Living Stuff
    "{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1
    "{19D614EB-D62A-AEE7-2391-E74126601D59}" = CCC Help Italian
    "{1AA94747-3BF6-4237-9E1A-7B3067738FE1}" = Max Payne 3
    "{1C373820-B9C8-0F7F-8F84-FC1B76A85F27}" = CCC Help Portuguese
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1" = Geeks3D.com FurMark 1.9.2
    "{23E445D5-FD83-4C50-A211-EB26A2975317}" = Adobe Flash Professional CS5.5
    "{24E34264-D483-477C-A9A0-4E53F69834CF}" = Façade
    "{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java(TM) 6 Update 32
    "{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0
    "{2D35BC33-7D08-D529-DF91-8A15FBF2600E}" = CCC Help Polish
    "{2E295B5B-1AD4-4d36-97C2-A316084722CF}" = Python 2.7.2
    "{31758AE2-D16E-4E1E-A448-945EF61B48A8}" = calibre
    "{337788D1-43D1-9A0F-9787-DD00DB512D41}" = Catalyst Control Center Localization All
    "{33F7A957-A66D-45A1-BADF-6576083B14E2}" = RPGツクール2000 ランタイムパッケージ
    "{343666E2-A059-48AC-AD67-230BF74E2DB2}" = Apple Application Support
    "{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help
    "{394BE3D9-7F57-4638-A8D1-1D88671913B7}" = Microsoft AppLocale
    "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF010}" = Tribes Ascend Closed Beta
    "{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Rez Studios Authenticate and Update Service
    "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
    "{45057FCE-5784-48BE-8176-D9D00AF56C3C}" = The Sims™ 3 Late Night
    "{4725833D-4325-5C34-57D4-1FE23E5AE578}" = CCC Help Chinese Standard
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{4B271648-43CB-DD31-FF24-E7B06D3EE72A}" = Catalyst Control Center InstallProxy
    "{4DC37F33-7AEC-A4CB-56B1-69A402828763}" = CCC Help Japanese
    "{52E9A798-88C7-4EE6-94D4-2D54FEC8EE52}" = Ragnarok Online
    "{5710DAC2-8F2A-503C-CFC2-A973ADE0EA4C}" = CCC Help Czech
    "{58E5AF4D-F896-41E6-9CA0-ECC4816B8C67}" = Ace of Spades
    "{5A67D2EA-FB70-4033-A6F3-606AD85B2015}_is1" = Driver Sweeper version 3.2.0
    "{5C763682-4C40-86DA-9C46-31924D7D2C34}" = CCC Help Thai
    "{60E5022D-FA4B-C6A2-1E80-B46EC39096F3}" = CCC Help Chinese Traditional
    "{60F34FDF-267C-408F-290E-EC90D841C8CB}" = CCC Help German
    "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
    "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
    "{66B79AE1-C6E2-B958-689C-D0812DE86BAB}" = CCC Help Greek
    "{6787B847-DE1D-4B75-AF7F-9F0B0FF9E59E}_is1" = Thief 3 Sneaky Upgrade version 1.1.0
    "{6B39BE0F-0F5E-A8FA-33E4-8481AE39D96C}" = CCC Help Russian
    "{7032B400-11EC-11E0-A9BF-0013D3D69929}" = MSVCRT Redists
    "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
    "{71828142-5A24-4BD0-97E7-976DA08CE6CF}" = The Sims™ 3 High-End Loft Stuff
    "{75D84EF7-0D8C-4e70-MAXP3-7B42A5D4E0EB}_is1" = Max Payne 3 version 1.02
    "{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
    "{7694E0B1-2332-448B-9235-929F84B41E3F}" = Active@ ISO Burner
    "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
    "{7B11296A-F894-449C-8DF6-6AAAA7D4D118}" = The Sims™ 3 Town Life Stuff
    "{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
    "{82AF3E91-57E1-4754-84D0-40A46E2479AB}" = OpenOffice.org 3.3
    "{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
    "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
    "{8A809006-C25A-4A3A-9DAB-94659BCDB107}" = NVIDIA PhysX
    "{8B7IL77L-LKS1-AC3-BATAC-18CD6E6334R1}_is1" = Batman Arkham City version 1.0
    "{8E19F2AF-7145-51DE-E395-7729A9374973}" = Catalyst Control Center Graphics Previews Common
    "{910F4A29-1134-49E0-AD8B-56E4A3152BD1}" = The Sims™ 3 Ambitions
    "{9158FF30-78D7-40EF-B83E-451AC5334640}" = Adobe Photoshop CS5.1
    "{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends
    "{91CB5B8B-4EC8-DBA1-A88D-99FD480567B0}" = CCC Help English
    "{924FBAC4-60D2-7981-3C3E-979DF9CBB346}" = CCC Help Finnish
    "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
    "{9559F7CA-5E34-4237-A2D9-D856464AD727}" = Project64 1.6
    "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{9DC939DC-B7A4-D0E2-C582-A442DF1B3EBE}" = CCC Help Spanish
    "{A1BD938B-F006-6E6D-70B2-47E1DD56F7DE}" = CCC Help Swedish
    "{A2S166A0-F031-4E27-A057-C69733219434}_is1" = TERA
    "{A33A89D0-2F48-FD1C-A243-9073EE0592E0}" = Catalyst Control Center InstallProxy
    "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
    "{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
    "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5
    "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.3)
    "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
    "{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
    "{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}" = The Sims™ 3 World Adventures
    "{BABF7852-C2DD-6A8A-9956-101720C715C7}" = CCC Help Turkish
    "{BB7C2A56-9706-43B8-5A8C-210AF5816106}" = CCC Help French
    "{BE3A3BDB-93B0-4F19-ABB1-D63575210C6C}_is1" = Dig-N-Rig version 1.0
    "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
    "{C12631C6-804D-4B32-B0DD-8A496462F106}" = The Sims™ 3 Pets
    "{C325F588-D6B1-4A7F-B6A2-914C75DDA348}" = Morrowind
    "{CFC2CB60-5654-05A7-4D30-C661800A3A92}" = CCC Help Korean
    "{D04CE005-D1D2-80F3-84C8-B3524FCD39C3}" = CCC Help Norwegian
    "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
    "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas
    "{D4E5A687-797D-44B1-8F96-4FD7A24166A9}" = DEVIL MAY CRY 4
    "{D544AE4C-4152-225B-A897-6756C8986B14}" = Catalyst Control Center
    "{D81E9069-3CCC-4405-3751-71E4AFEACC52}" = CCC Help Hungarian
    "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
    "{DB3C800B-081B-4146-B4E3-EFB5B77AA913}" = TES Construction Set
    "{DE43AA92-E8C0-4620-AFE2-FBD623C71643}" = Sizer 3.33
    "{DEAD48E5-E36C-431E-B83C-E61CE71AA13F}" = Livestream Procaster
    "{E1845F1C-068C-F8F4-D31D-D3540D47C453}" = Adobe Download Assistant
    "{E2494AD8-314D-44F8-B39C-4358A60DC184}" = LogMeIn Hamachi
    "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
    "{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}" = The Sims™ 3 Generations
    "{E93FF166-DF14-2537-8FB4-96BB5810A96C}" = CCC Help Danish
    "{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}" = Nexon Game Manager
    "{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}" = The Sims™ 3 Fast Lane Stuff
    "{EF2F12AA-3E37-4826-A9F9-B37ABB3A4B23}" = Six Updater
    "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    "{F112F66E-25CA-42DD-983C-6118EB38F606}" = Microsoft Games for Windows - LIVE
    "{FA9827E1-8A8E-C176-4923-0840A67ED4DE}" = CCC Help Dutch
    "{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR
    "Absolute Nature Texture Pack 2 CS_is1" = Absolute Nature 2 for S.T.A.L.K.E.R - Clear Sky
    "Absolute Structures Texture Pack_is1" = Absolute Structures for S.T.A.L.K.E.R - Clear Sky
    "Adobe AIR" = Adobe AIR
    "Adobe Shockwave Player" = Adobe Shockwave Player 11.6
    "ArmA 2" = ArmA 2 Uninstall
    "Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.14 (Unicode)
    "AutoHotkey" = AutoHotkey 1.1.07.03
    "B076073A-5527-4f4f-B46B-B10692277DA2_is1" = DisplayFusion 3.4.1
    "Battlefield 3 Update 4_is1" = Battlefield 3 Update 4
    "BattlEye" = BattlEye Uninstall
    "BattlEye for OA" = BattlEye for OA Uninstall
    "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
    "com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant
    "Combined Community Codec Pack_is1" = Combined Community Codec Pack 2011-11-11
    "DAEMON Tools Lite" = DAEMON Tools Lite
    "File Splitter and Joiner_is1" = File Splitter and Joiner (FFSJ v3.3)
    "FileZilla Client" = FileZilla Client 3.5.3
    "Fotosizer" = Fotosizer 1.34
    "Fraps" = Fraps (remove only)
    "FXAA Post-Process Injector" = FXAA Post-Process Injector
    "HDTP" = Deus Ex - HDTP
    "hon" = Heroes of Newerth
    "HxD Hex Editor_is1" = HxD Hex Editor version 1.7.7.0
    "IrfanView" = IrfanView (remove only)
    "Katawa Shoujo" = Katawa Shoujo
    "KLiteCodecPack_is1" = K-Lite Codec Pack 7.9.0 (Basic)
    "LAME_is1" = LAME v3.99.3 (for Windows)
    "LogMeIn Hamachi" = LogMeIn Hamachi
    "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.61.0.1400
    "Minecraft Texturepack Editor" = Minecraft Texturepack Editor
    "MISERY_is1" = MISERY for S.T.A.L.K.E.R - Call of Pripyat
    "MTA:SA 1.3" = MTA:SA v1.3
    "OMGWTFOTL" = OMGWTFOTL 1.0E
    "pcsx2-r4600" = PCSX2 - Playstation 2 Emulator
    "PowerMenu" = PowerMenu 1.51
    "Proxifier_is1" = Proxifier version 3.0
    "PunkBusterSvc" = PunkBuster Services
    "RadeonPro_is1" = RadeonPro 1.0 (Build 1.1.0.6)
    "Rainmeter" = Rainmeter
    "RetroShare" = RetroShare
    "Revo Uninstaller" = Revo Uninstaller 1.93
    "Rockstar Games Social Club" = Rockstar Games Social Club
    "ShiftWindow_is1" = ShiftWindow 1.02
    "Steam App 105600" = Terraria
    "Steam App 113400" = APB Reloaded
    "Steam App 113420" = Fallen Earth
    "Steam App 1250" = Killing Floor
    "Steam App 12900" = Audiosurf
    "Steam App 17520" = Synergy
    "Steam App 20500" = Red Faction: Guerrilla
    "Steam App 20510" = S.T.A.L.K.E.R.: Clear Sky
    "Steam App 218" = Source SDK Base 2007
    "Steam App 220" = Half-Life 2
    "Steam App 33930" = ARMA 2: Operation Arrowhead
    "Steam App 380" = Half-Life 2: Episode One
    "Steam App 4000" = Garry's Mod
    "Steam App 4010" = Garry's Mod 13
    "Steam App 41700" = S.T.A.L.K.E.R.: Call of Pripyat
    "Steam App 420" = Half-Life 2: Episode Two
    "Steam App 42910" = Magicka
    "Steam App 4500" = S.T.A.L.K.E.R.: Shadow of Chernobyl
    "Steam App 47870" = Need for Speed: Hot Pursuit
    "Steam App 48700" = Mount & Blade: Warband
    "Steam App 550" = Left 4 Dead 2
    "Steam App 55230" = Saints Row: The Third
    "Steam App 620" = Portal 2
    "Steam App 6910" = Deus Ex: Game of the Year Edition
    "Steam App 6980" = Thief: Deadly Shadows
    "Steam App 7060" = Infernal
    "Steam App 91310" = Dead Island
    "Steam App 91600" = Sanctum
    "Steam App 9480" = Saints Row 2
    "Steam App 98200" = Frozen Synapse
    "uTorrent" = µTorrent
    "Vindictus" = Vindictus
    "VirtuallTek Fighter Factory Ultimate_is1" = Fighter Factory Ultimate
    "VLC media player" = VLC media player 2.0.1
    "Winamp" = Winamp
    "WinGimp-2.0_is1" = GIMP 2.6.11
    "WinPcapInst" = WinPcap 4.1.1
    "XChat-WDK (x86)_is1" = XChat-WDK (x86)
    "Xvid Video Codec 1.3.2" = Xvid Video Codec
    "Youtube Downloader HD_is1" = Youtube Downloader HD v. 2.9.2

    ========== HKEY_USERS Uninstall List ==========

    [HKEY_USERS\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "Google Chrome" = Google Chrome
    "Winamp Detect" = Winamp Detector Plug-in
    "Yume Nikki 0.10 English" = Yume Nikki 0.10 English

    ========== Last 20 Event Log Errors ==========

    [ Application Events ]
    Error - 18/06/2012 21:57:27 | Computer Name = Sam-PC | Source = Windows Search Service | ID = 7010
    Description =

    Error - 18/06/2012 22:00:17 | Computer Name = Sam-PC | Source = Application Hang | ID = 1002
    Description = The program Trjscan.exe version 6.8.3.1312 stopped interacting with
    Windows and was closed. To see if more information about the problem is available,
    check the problem history in the Action Center control panel. Process ID: f78 Start
    Time: 01cd4dbef33e95b5 Termination Time: 0 Application Path: C:\Program Files (x86)\Trojan
    Remover\Trjscan.exe Report Id: 5f4ce59f-b9b2-11e1-91b1-001fd0a2a7fa

    Error - 18/06/2012 22:03:36 | Computer Name = Sam-PC | Source = Application Hang | ID = 1002
    Description = The program trupd.exe version 1.3.7.1094 stopped interacting with
    Windows and was closed. To see if more information about the problem is available,
    check the problem history in the Action Center control panel. Process ID: eb8 Start
    Time: 01cd4dbfa7d0ff7b Termination Time: 0 Application Path: C:\Program Files (x86)\Trojan
    Remover\trupd.exe Report Id: f7c55bb7-b9b2-11e1-91b1-001fd0a2a7fa

    Error - 21/06/2012 17:00:30 | Computer Name = Sam-PC | Source = MsiInstaller | ID = 11921
    Description =

    Error - 21/06/2012 17:01:19 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
    Description = The performance strings in the Performance registry value is corrupted
    when process Performance extension counter provider. The BaseIndex value from the
    Performance registry is the first DWORD in the Data section, LastCounter value
    is the second DWORD in the Data section, and LastHelp value is the third DWORD in
    the Data section.

    Error - 21/06/2012 17:01:19 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
    Description = The performance strings in the Performance registry value is corrupted
    when process Performance extension counter provider. The BaseIndex value from the
    Performance registry is the first DWORD in the Data section, LastCounter value
    is the second DWORD in the Data section, and LastHelp value is the third DWORD in
    the Data section.

    Error - 21/06/2012 17:01:19 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011
    Description = Unloading the performance counter strings for service Network Inspection
    System (Network Inspection System) failed. The first DWORD in the Data section
    contains the error code.

    Error - 21/06/2012 17:01:39 | Computer Name = Sam-PC | Source = Microsoft Security Client Setup | ID = 100
    Description = HRESULT:0x8004FF80 Description:Cannot complete the Security Essentials
    Upgrade. An error has prevented the Security Essentials Upgrade Wizard from continuing.
    The previous version of Security Essentials was restored. Error code:0x8004FF80.

    Error - 21/06/2012 18:09:33 | Computer Name = Sam-PC | Source = SideBySide | ID = 16842824
    Description = Activation context generation failed for "c:\program files\microsoft
    security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft
    security client\MSESysprep.dll" on line 10. The element imaging appears as a child
    of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by
    this version of Windows.

    Error - 21/06/2012 22:00:48 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
    Description = The performance strings in the Performance registry value is corrupted
    when process Performance extension counter provider. The BaseIndex value from the
    Performance registry is the first DWORD in the Data section, LastCounter value
    is the second DWORD in the Data section, and LastHelp value is the third DWORD in
    the Data section.

    Error - 21/06/2012 22:00:48 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
    Description = The performance strings in the Performance registry value is corrupted
    when process Performance extension counter provider. The BaseIndex value from the
    Performance registry is the first DWORD in the Data section, LastCounter value
    is the second DWORD in the Data section, and LastHelp value is the third DWORD in
    the Data section.

    Error - 21/06/2012 22:00:48 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011
    Description = Unloading the performance counter strings for service Network Inspection
    System (Network Inspection System) failed. The first DWORD in the Data section
    contains the error code.

    [ System Events ]
    Error - 30/04/2012 22:01:56 | Computer Name = Sam-PC | Source = Microsoft Antimalware | ID = 3002
    Description = %%860 Real-Time Protection feature has encountered an error and failed.

    Feature:
    %%834 Error Code: 0x80070005 Error description: Access is denied. Reason: %%837

    Error - 30/04/2012 22:01:56 | Computer Name = Sam-PC | Source = Microsoft Antimalware | ID = 3002
    Description = %%860 Real-Time Protection feature has encountered an error and failed.

    Feature:
    %%835 Error Code: 0x80070005 Error description: Access is denied. Reason: %%837

    Error - 30/04/2012 22:11:59 | Computer Name = Sam-PC | Source = Microsoft Antimalware | ID = 3002
    Description = %%860 Real-Time Protection feature has encountered an error and failed.

    Feature:
    %%834 Error Code: 0x80070006 Error description: The handle is invalid. Reason: %%837

    Error - 30/04/2012 22:11:59 | Computer Name = Sam-PC | Source = Microsoft Antimalware | ID = 3002
    Description = %%860 Real-Time Protection feature has encountered an error and failed.

    Feature:
    %%835 Error Code: 0x80070006 Error description: The handle is invalid. Reason: %%837

    Error - 01/05/2012 11:49:00 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
    Description = The previous system shutdown at 04:44:19 on ?01/?05/?2012 was unexpected.

    Error - 01/05/2012 12:02:22 | Computer Name = Sam-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
    Description = Installation Failure: Windows failed to install the following update
    with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
    1.125.886.0).

    Error - 02/05/2012 06:10:54 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
    Description = The previous system shutdown at 04:02:58 on ?02/?05/?2012 was unexpected.

    Error - 03/05/2012 03:09:48 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
    Description = The previous system shutdown at 04:18:59 on ?03/?05/?2012 was unexpected.

    Error - 03/05/2012 06:22:49 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
    Description = The previous system shutdown at 08:33:40 on ?03/?05/?2012 was unexpected.

    Error - 04/05/2012 02:42:02 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
    Description = The previous system shutdown at 04:19:55 on ?04/?05/?2012 was unexpected.


    < End of report >
  21. Broni

    Broni Malware Annihilator Posts: 46,177   +251

    Uninstall Trojan Remover, rather questionable program.

    Run OTL
    • Under the Custom Scans/Fixes box at the bottom, paste in the following

      Code:
      :OTL
      O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\ssv.dll File not found
      @Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:CB0AACC9
      
      :Commands
      [purity]
      [emptytemp]
      [emptyjava]
      [emptyflash]
      [Reboot]
      
    • Then click the Run Fix button at the top
    • Let the program run unhindered, reboot the PC when it is done
    • You will get a log that shows the results of the fix. Please post it.

    ==============================================================

    Last scans....

    1. Download Security Check from HERE, and save it to your Desktop.
    • Double-click SecurityCheck.exe
    • Follow the onscreen instructions inside of the black box.
    • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

      NOTE SecurityCheck may produce some false warning(s), so leave the results reading to me.

    2. Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
    • Make sure the following options are checked:
      • Internet Services
      • Windows Firewall
      • System Restore
      • Security Center
      • Windows Update
      • Windows Defender
    • Press "Scan".
    • It will create a log (FSS.txt) in the same directory the tool is run.
    • Please copy and paste the log to your reply.


    3. Download Temp File Cleaner (TFC)
    • Double click on TFC.exe to run the program.
    • Click on Start button to begin cleaning process.
    • TFC will close all running programs, and it may ask you to restart computer.


    4. Please run a free online scan with the ESET Online Scanner

    • Disable your antivirus program
    • Tick the box next to YES, I accept the Terms of Use
    • Click Start
    • Accept any security warnings from your browser.
    • Check Scan archives
    • Click Start
    • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
    • When the scan completes, click on List of found threats
    • Click on Export to text file , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
    • NOTE. If Eset won't find any threats, it won't produce any log.
  22. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    Results of screen317's Security Check version 0.99.24
    Windows 7 x64 (UAC is disabled!)
    Internet Explorer 9
    ``````````````````````````````
    Antivirus/Firewall Check:

    Windows Firewall Enabled!
    WMI entry may not exist for antivirus; attempting automatic update.
    ```````````````````````````````
    Anti-malware/Other Utilities Check:

    Java(TM) 6 Update 32
    Adobe Reader X (10.1.3)
    ````````````````````````````````
    Process Check:
    objlist.exe by Laurent

    Windows Defender MSMpEng.exe
    Microsoft Security Essentials msseces.exe
    ``````````End of Log````````````
    Farbar Service Scanner Version: 23-06-2012
    Ran by Sam (administrator) on 24-06-2012 at 02:48:41
    Running from "C:\Users\Sam\Desktop"
    Microsoft Windows 7 Ultimate (X64)
    Boot Mode: Normal
    ****************************************************************
    Internet Services:
    ============
    Connection Status:
    ==============
    Localhost is accessible.
    LAN connected.
    Google IP is accessible.
    Google.com is accessible.
    Attempt to access Yahoo IP returned error: Other errors
    Yahoo.com is accessible.
    Windows Firewall:
    =============
    Firewall Disabled Policy:
    ==================
    System Restore:
    ============
    System Restore Disabled Policy:
    ========================
    Action Center:
    ============
    Windows Update:
    ============
    Windows Autoupdate Disabled Policy:
    ============================
    Windows Defender:
    ==============
    WinDefend Service is not running. Checking service configuration:
    The start type of WinDefend service is set to Demand. The default start type is Auto.
    The ImagePath of WinDefend service is OK.
    The ServiceDll of WinDefend service is OK.
    Windows Defender Disabled Policy:
    ==========================
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
    "DisableAntiSpyware"=DWORD:1
    File Check:
    ========
    C:\Windows\System32\nsisvc.dll => MD5 is legit
    C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
    C:\Windows\System32\dhcpcore.dll => MD5 is legit
    C:\Windows\System32\drivers\afd.sys
    [2012-02-16 06:09] - [2011-12-28 04:59] - 0499200 ____A (Microsoft Corporation) DB9D6C6B2CD95A9CA414D045B627422E
    C:\Windows\System32\drivers\tdx.sys => MD5 is legit
    C:\Windows\System32\Drivers\tcpip.sys
    [2012-05-09 07:32] - [2012-03-30 12:09] - 1895280 ____A (Microsoft Corporation) 624C5B3AA4C99B3184BB922D9ECE3FF0
    C:\Windows\System32\dnsrslvr.dll => MD5 is legit
    C:\Windows\System32\mpssvc.dll
    [2009-07-14 01:09] - [2009-07-14 02:41] - 0824832 ____A (Microsoft Corporation) AECAB449567D1846DAD63ECE49E893E3
    C:\Windows\System32\bfe.dll => MD5 is legit
    C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
    C:\Windows\System32\SDRSVC.dll
    [2009-07-14 00:36] - [2009-07-14 02:41] - 0170496 ____A (Microsoft Corporation) 765A27C3279CE11D14CB9E4F5869FCA5
    C:\Windows\System32\vssvc.exe => MD5 is legit
    C:\Windows\System32\wscsvc.dll => MD5 is legit
    C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
    C:\Windows\System32\wuaueng.dll => MD5 is legit
    C:\Windows\System32\qmgr.dll => MD5 is legit
    C:\Windows\System32\es.dll => MD5 is legit
    C:\Windows\System32\cryptsvc.dll
    [2012-06-13 23:51] - [2012-04-24 06:59] - 0182272 ____A (Microsoft Corporation) F02786B66375292E58C8777082D4396D
    C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
    C:\Windows\System32\svchost.exe => MD5 is legit
    C:\Windows\System32\rpcss.dll => MD5 is legit
    **** End of log ****
    C:\Desk\Translation Aggregator 0.4.9.r171\agth.dllprobably a variant of Win32/AGTH.A applicationcleaned by deleting - quarantined
    C:\FRST\Quarantine\services.exeWin64/Patched.B.Gen trojandeleted - quarantined
    C:\FRST\Quarantine\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U\80000000.@Win64/Sirefef.AE trojancleaned by deleting - quarantined
    C:\Program Files (x86)\Black_Box\Max Payne 3\gsrld.dlla variant of Win32/Packed.VMProtect.AAH trojancleaned by deleting - quarantined
    C:\Translation Aggregator 0.4.9.r171\agth.dllprobably a variant of Win32/AGTH.A applicationcleaned by deleting - quarantined
    C:\Users\Sam\Downloads\cnet2_SwfToGifConverter_setup_zip.exea variant of Win32/InstallCore.D applicationcleaned by deleting - quarantined
    C:\Users\Sam\Downloads\cnet_DriverSweeper_3_2_0_exe.exea variant of Win32/InstallCore.D applicationcleaned by deleting - quarantined
    C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171 (1).rarprobably a variant of Win32/AGTH.A applicationdeleted - quarantined
    C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171 (2).rarprobably a variant of Win32/AGTH.A applicationdeleted - quarantined
    C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171.rarprobably a variant of Win32/AGTH.A applicationdeleted - quarantined
    C:\Users\Sam\Downloads\The Sims 3 - Razor1911 Final MAXSPEED\The Sims 3 - Razor1911 MAXSPEED www.torentz.3xforum.ro\The Sims 3 - Razor1911 MAXSPEED www.torentz.3xforum.ro.isoprobably a variant of Win32/Hupigon.CJKIBCX trojandeleted - quarantined
  23. Broni

    Broni Malware Annihilator Posts: 46,177   +251

    1. Update your Java version here: http://www.java.com/en/download/installed.jsp

    Note 1: UNCHECK any pre-checked toolbar and/or software offered with the Java update. The pre-checked toolbars/software are not part of the Java update.

    Note 2: The Java Quick Starter (JQS.exe) adds a service to improve the initial startup time of Java applets and applications. If you don't want to run another extra service, go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter. Click OK and restart your computer.

    2. Now, we need to remove old Java version and its remnants...

    Download JavaRa to your desktop and unzip it.
    • Run JavaRa.exe (Vista users! Right click on JavaRa.exe, click Run As Administrator), pick the language of your choice and click Select. Then click Remove Older Versions.
    • Accept any prompts.
    • Do NOT post JavaRa log.

    ======================================================

    Your computer is clean [​IMG]

    1. We need to reset system restore to prevent your computer from being accidentally reinfected by using some old restore point(s). We'll create fresh, clean restore point, using following OTL script:

    Run OTL

    • Under the Custom Scans/Fixes box at the bottom, paste in the following:

    Code:
    :OTL
    :Commands
    [purity]
    [emptytemp]
    [EMPTYFLASH]
    [emptyjava]
    [CLEARALLRESTOREPOINTS]
    [Reboot]
    • Then click the Run Fix button at the top
    • Let the program run unhindered, reboot the PC when it is done
    • Post resulting log.

    2. Now, we'll remove all tools, we used during our cleaning process

    Clean up with OTL:

    • Double-click OTL.exe to start the program.
    • Close all other programs apart from OTL as this step will require a reboot
    • On the OTL main screen, press the CLEANUP button
    • Say Yes to the prompt and then allow the program to reboot your computer.

    If you still have any tools or logs leftover on your computer you can go ahead and delete those off of your computer now.

    3. Make sure, Windows Updates are current.

    4. If any Trojan was listed among your infection(s), make sure, you change all of your on-line important passwords (bank account(s), secured web sites, etc.) immediately!

    5. Download, and install WOT (Web OF Trust): http://www.mywot.com/. It'll warn you (in most cases) about dangerous web sites.

    6. Run Malwarebytes "Quick scan" once in a while to assure safety of your computer.

    7. Run Temporary File Cleaner (TFC) weekly.

    8. Download and install Secunia Personal Software Inspector (PSI): http://secunia.com/vulnerability_scanning/personal/. The Secunia PSI is a FREE security tool designed to detect vulnerable and out-dated programs and plug-ins which expose your PC to attacks. Run it weekly.

    9. (optional) If you want to keep all your programs up to date, download and install FileHippo Update Checker.
    The Update Checker will scan your computer for installed software, check the versions and then send this information to FileHippo.com to see if there are any newer releases.

    10. (Windows XP only) Run defrag at your convenience.

    11. When installing\updating ANY program, make sure you always select "Custom " installation, so you can UN-check any possible "drive-by-install" (foistware), like toolbars etc., which may try to install along with the legitimate program. Do NOT click "Next" button without looking at any given page.

    12. Read How did I get infected?, With steps so it does not happen again!: http://www.bleepingcomputer.com/forums/topic2520.html

    13. Please, let me know, how your computer is doing.
  24. BobPage

    BobPage Newcomer, in training Topic Starter Posts: 20

    All processes killed
    ========== OTL ==========
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: All Users

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Public
    ->Temp folder emptied: 0 bytes

    User: Sam
    ->Temp folder emptied: 3332927 bytes
    ->Temporary Internet Files folder emptied: 143332 bytes
    ->Java cache emptied: 2027 bytes
    ->FireFox cache emptied: 0 bytes
    ->Google Chrome cache emptied: 334300874 bytes
    ->Flash cache emptied: 1379 bytes

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 0 bytes
    %systemroot%\System32 (64bit) .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 3988 bytes
    %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
    RecycleBin emptied: 4542110 bytes

    Total Files Cleaned = 326.00 mb


    [EMPTYFLASH]

    User: All Users

    User: Default
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Flash cache emptied: 0 bytes

    User: Public

    User: Sam
    ->Flash cache emptied: 0 bytes

    Total Flash Files Cleaned = 0.00 mb


    [EMPTYJAVA]

    User: All Users

    User: Default

    User: Default User

    User: Public

    User: Sam
    ->Java cache emptied: 0 bytes

    Total Java Files Cleaned = 0.00 mb

    Restore point Set: OTL Restore Point

    OTL by OldTimer - Version 3.2.52.0 log created on 06242012_195909

    Files\Folders moved on Reboot...
    C:\Users\Sam\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

    Registry entries deleted on Reboot...

    Thank you very much for all the help, my computer is now back to normal.

    I shall be sure to follow your advice in the future.
  25. Broni

    Broni Malware Annihilator Posts: 46,177   +251



Add New Comment

TechSpot Members
Login or sign up for free,
it takes about 30 seconds.
You may also...


Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.