========== Files/Folders - Created Within 30 Days ==========
[2013/04/17 12:43:15 | 000,000,000 | ---D | C] -- C:\windows\ERUNT
[2013/04/17 12:42:50 | 000,000,000 | ---D | C] -- C:\JRT
[2013/04/17 12:16:01 | 000,000,000 | ---D | C] -- C:\perflogs
[2013/04/13 17:20:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/04/12 12:38:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2013/04/12 12:37:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime
[2013/04/12 09:52:09 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2013/04/08 19:20:46 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Diagnostics
[2013/04/08 08:46:57 | 000,000,000 | --SD | C] -- C:\Users\Owner\Google Drive
[2013/04/06 19:07:35 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2013/04/06 15:32:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2013/04/04 22:46:14 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\webex
[2013/04/04 21:20:58 | 000,000,000 | ---D | C] -- C:\ProgramData\WebEx
[2013/04/04 08:31:04 | 000,000,000 | ---D | C] -- C:\windows\temp
[2013/04/04 07:46:58 | 000,518,144 | ---- | C] (SteelWerX) -- C:\windows\SWREG.exe
[2013/04/04 07:46:58 | 000,406,528 | ---- | C] (SteelWerX) -- C:\windows\SWSC.exe
[2013/04/04 07:46:58 | 000,060,416 | ---- | C] (NirSoft) -- C:\windows\NIRCMD.exe
[2013/04/04 07:46:51 | 000,000,000 | ---D | C] -- C:\Qoobox
[2013/04/04 07:46:36 | 000,000,000 | ---D | C] -- C:\windows\erdnt
[2013/04/03 07:46:30 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Malwarebytes
[2013/04/03 07:45:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2013/04/03 07:45:27 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Programs
[2013/04/02 10:11:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Visan
[2013/04/02 10:11:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HP Photo Creations
[2013/04/02 10:11:38 | 000,000,000 | ---D | C] -- C:\ProgramData\HP Photo Creations
[2013/04/02 10:11:06 | 000,000,000 | ---D | C] -- C:\windows\Hewlett-Packard
[2013/04/01 17:12:13 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\The Aware Show
[2013/03/31 16:43:27 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Screencast-O-Matic
[2013/03/30 09:24:53 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Tific
[2013/03/29 13:19:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hewlett-Packard
[2013/03/28 15:07:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2013/03/28 14:54:15 | 000,000,000 | ---D | C] -- C:\windows\Minidump
[2013/03/26 20:55:51 | 000,000,000 | R--D | C] -- C:\Users\Owner\Documents\Favorites
[2013/03/26 20:55:03 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\BH Careers
[2013/03/26 20:53:08 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\BWT Contacts
[2013/03/26 09:20:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft
[2013/03/26 09:20:06 | 000,000,000 | ---D | C] -- C:\Users\Owner\.meetingburner.com
[2013/03/26 09:17:01 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\HpUpdate
[2013/03/26 09:16:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
[2013/03/26 09:15:19 | 000,000,000 | ---D | C] -- C:\ProgramData\HP
[2013/03/26 09:15:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HP
[2013/03/26 09:13:34 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2013/03/26 09:12:33 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\HP
[2013/03/25 17:43:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Citrix
[2013/03/24 22:40:29 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Speedbit
[2013/03/24 22:37:19 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\WSFtp_Pro8
[2013/03/24 22:36:33 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Webroot System Analyzer
[2013/03/24 22:36:32 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Webinar
[2013/03/24 22:35:45 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Usana
[2013/03/24 22:35:45 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\trainmetoblog
[2013/03/24 22:35:43 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Tax Stuff
[2013/03/24 22:35:43 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Symantec
[2013/03/24 22:35:43 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Surveys
[2013/03/24 22:35:43 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Stocks Investments
[2013/03/24 22:35:43 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\sample letters
[2013/03/24 22:35:42 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Robert Allen Info
[2013/03/24 22:35:42 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Resumes_2010
[2013/03/24 22:35:42 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Resumes
[2013/03/24 22:35:42 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\ras_v1001
[2013/03/24 22:35:42 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Quicken Backups
[2013/03/24 22:34:47 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Photos - OC Singles Fabulous 40's and Fantastic 50's (Irvine, CA) - Meetup.com_files
[2013/03/24 22:34:46 | 000,000,000 | --SD | C] -- C:\Users\Owner\Documents\My Shapes
[2013/03/24 22:34:46 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Northwind_Backup
[2013/03/24 22:34:40 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\My Scans
[2013/03/24 22:34:40 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\My Google Gadgets
[2013/03/24 22:34:38 | 000,000,000 | --SD | C] -- C:\Users\Owner\Documents\My Data Sources
[2013/03/24 22:34:38 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\My Digital Editions
[2013/03/24 22:34:38 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Make Mine a Million
[2013/03/24 22:34:36 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Lantronix
[2013/03/24 22:34:27 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\ITS
[2013/03/24 22:34:23 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\IntraLase
[2013/03/24 22:34:22 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Household stuff
[2013/03/24 22:34:22 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Global Career Development
[2013/03/24 22:34:18 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\GEMA
[2013/03/24 22:34:18 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Freedom Trader Intensive
[2013/03/24 22:34:17 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Drugstore.com
[2013/03/24 22:34:17 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Downloads
[2013/03/24 22:34:16 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Dare - Student Loan
[2013/03/24 22:34:15 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\CyberLink
[2013/03/24 22:33:41 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Cisco VPN
[2013/03/24 22:33:40 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Chris Black Remodel
[2013/03/24 22:33:40 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\cat pictures
[2013/03/24 22:29:59 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Avery Templates
[2013/03/24 22:29:58 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Applied Medical
[2013/03/24 22:29:58 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Apple
[2013/03/24 22:29:30 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Alicia Private Pictures
[2013/03/24 22:29:29 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Alicia Pictures
[2013/03/24 22:29:29 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Affilorama - Mark Ling
[2013/03/24 22:28:38 | 000,000,000 | ---D | C] -- C:\User
[2013/03/24 22:24:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Carbonite
[2013/03/24 22:24:46 | 000,000,000 | ---D | C] -- C:\Program Files\Carbonite
[2013/03/24 22:24:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Carbonite
[2013/03/24 22:24:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Carbonite
[2013/03/24 10:21:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ConvertHelper
[2013/03/24 10:18:16 | 000,000,000 | ---D | C] -- C:\Users\Owner\dwhelper
[2013/03/24 10:14:29 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Macromedia
[2013/03/24 10:10:57 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Mozilla
[2013/03/24 10:10:57 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Mozilla
[2013/03/24 10:10:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2013/03/23 21:31:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
[2013/03/23 21:23:58 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Apple Computer
[2013/03/23 21:23:58 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Apple Computer
[2013/03/23 21:23:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2013/03/23 21:23:45 | 000,000,000 | ---D | C] -- C:\windows\SysNative\DRVSTORE
[2013/03/23 21:22:52 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2013/03/23 21:22:51 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2013/03/23 21:22:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2013/03/23 21:22:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2013/03/23 21:22:51 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2013/03/23 21:22:15 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Apple
[2013/03/23 21:22:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2013/03/23 21:21:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2013/03/23 21:21:33 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2013/03/23 21:21:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2013/03/23 21:21:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2013/03/23 21:21:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple
[2013/03/23 21:03:08 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Craig
[2013/03/23 21:01:57 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Adobe
[2013/03/23 19:56:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client
[2013/03/23 19:56:17 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2013/03/23 16:48:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2013/03/23 16:39:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2013/03/23 16:38:02 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2013/03/23 16:38:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
[2013/03/23 15:50:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2013/03/23 15:50:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2013/03/23 15:47:55 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2013/03/23 15:47:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services
[2013/03/23 15:47:01 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Microsoft Help
[2013/03/23 15:46:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2013/03/23 15:46:45 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2013/03/23 15:31:19 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Quicken
[2013/03/23 15:26:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\AnswerWorks 5.0
[2013/03/23 15:26:22 | 004,200,024 | ---- | C] (Amyuni Technologies
http://www.amyuni.com) -- C:\windows\SysWow64\cdintf400.dll
[2013/03/23 15:25:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quicken 2012
[2013/03/23 15:25:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intuit
[2013/03/23 15:24:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Quicken
[2013/03/23 15:24:53 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Intuit
[2013/03/23 15:22:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Intuit
[2013/03/23 14:56:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2013/03/23 14:54:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2013/03/23 14:52:32 | 000,000,000 | ---D | C] -- C:\windows\SysNative\Macromed
[2013/03/23 14:45:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Geek Squad
[2013/03/23 14:41:53 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Google
[2013/03/23 14:41:51 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Google
[2013/03/23 14:36:25 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Adobe
[2013/03/23 11:31:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2013/03/23 11:26:32 | 000,000,000 | ---D | C] -- C:\windows\SysWow64\Wat
[2013/03/23 11:26:31 | 000,000,000 | ---D | C] -- C:\windows\SysNative\Wat
[2013/03/23 10:15:04 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\ElevatedDiagnostics
[2013/03/22 16:37:21 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Toshiba
[2013/03/22 16:35:05 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\ATI
[2013/03/22 16:35:05 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\ATI
[2013/03/22 16:34:50 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\TOSHIBA
[2013/03/22 16:33:58 | 000,000,000 | R--D | C] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2013/03/22 16:33:58 | 000,000,000 | R--D | C] -- C:\Users\Owner\Searches
[2013/03/22 16:33:58 | 000,000,000 | R--D | C] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2013/03/22 16:33:57 | 000,000,000 | -H-D | C] -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2013/03/22 16:33:10 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Identities
[2013/03/22 16:32:51 | 000,000,000 | R--D | C] -- C:\Users\Owner\Contacts
[2013/03/22 16:32:43 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\VirtualStore
[2013/03/22 16:30:40 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\WinBatch
[2013/03/22 16:30:27 | 000,000,000 | --SD | C] -- C:\Users\Owner\AppData\Roaming\Microsoft
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\Videos
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\Saved Games
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\Pictures
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\Music
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\Links
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\Favorites
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\Downloads
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\Documents
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\Desktop
[2013/03/22 16:30:27 | 000,000,000 | R--D | C] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\AppData\Local\Temporary Internet Files
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\Templates
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\Start Menu
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\SendTo
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\Recent
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\PrintHood
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\NetHood
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\Documents\My Videos
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\Documents\My Pictures
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\Documents\My Music
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\My Documents
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\Local Settings
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\AppData\Local\History
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\Cookies
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\Application Data
[2013/03/22 16:30:27 | 000,000,000 | -HSD | C] -- C:\Users\Owner\AppData\Local\Application Data
[2013/03/22 16:30:27 | 000,000,000 | -H-D | C] -- C:\Users\Owner\AppData
[2013/03/22 16:30:27 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Temp
[2013/03/22 16:30:27 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Microsoft
[2013/03/22 16:30:27 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Media Center Programs
[2013/03/22 16:30:27 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Macromedia
[2013/03/22 16:22:40 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2013/03/22 16:12:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WildTangent Games
[2013/03/22 16:12:20 | 000,000,000 | ---D | C] -- C:\ProgramData\WildTangent
[2013/03/22 16:12:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TOSHIBA Games
[2013/03/22 16:11:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Toshiba Online Backup
[2013/03/22 16:11:36 | 000,000,000 | ---D | C] -- C:\windows\SysNative\drivers\NortonPCCheckupx64
[2013/03/22 16:11:36 | 000,000,000 | ---D | C] -- C:\windows\SysNative\drivers\NortonPCCheckupx64\02000D0.00B
[2013/03/22 16:11:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton PC Checkup
[2013/03/22 16:10:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PlayReady
[2013/03/22 16:10:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2013/03/22 16:09:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2013/03/22 16:07:54 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2013/03/22 16:07:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NortonInstaller
[2013/03/22 16:07:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetZero
[2013/03/22 16:02:13 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2013/03/22 16:02:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2013/03/22 16:01:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2013/03/22 15:59:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TOSHIBA Corporation
[2013/03/22 15:58:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Ulead Systems
[2013/03/22 15:58:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel Label@Once
[2013/03/22 15:58:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Corel
[2013/03/22 15:48:17 | 000,000,000 | ---D | C] -- C:\windows\SysWow64\sda
[2013/03/22 15:44:48 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
[2013/03/22 15:43:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek WLAN Driver
[2013/03/22 15:41:16 | 000,000,000 | ---D | C] -- C:\windows\SysWow64\RTCOM
[2013/03/22 15:41:16 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2013/03/22 15:41:01 | 002,604,376 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\WavesGUILib.dll
[2013/03/22 15:41:01 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\windows\SysNative\SRSTSX64.dll
[2013/03/22 15:41:01 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\windows\SysNative\SRSTSH64.dll
[2013/03/22 15:41:01 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\windows\SysNative\SRSHP64.dll
[2013/03/22 15:41:01 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\windows\SysNative\SRSWOW64.dll
[2013/03/22 15:41:00 | 003,768,152 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxAudioRealtek.dll
[2013/03/22 15:41:00 | 002,197,264 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxAudioEQ.dll
[2013/03/22 15:41:00 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RTEEP64A.dll
[2013/03/22 15:41:00 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxAudioAPO30.dll
[2013/03/22 15:41:00 | 000,334,680 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxVolumeSDAPO.dll
[2013/03/22 15:41:00 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxAudioAPO20.dll
[2013/03/22 15:41:00 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RP3DHT64.dll
[2013/03/22 15:41:00 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RP3DAA64.dll
[2013/03/22 15:41:00 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RTEED64A.dll
[2013/03/22 15:41:00 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RTEEL64A.dll
[2013/03/22 15:41:00 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RTEEG64A.dll
[2013/03/22 15:40:59 | 002,085,440 | ---- | C] (Fortemedia Corporation) -- C:\windows\SysNative\FMAPO64.dll
[2013/03/22 15:40:59 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2013/03/22 15:40:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2013/03/22 15:36:52 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2013/03/22 15:35:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2013/03/22 15:35:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
[2013/03/22 15:35:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
[2013/03/22 15:34:06 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2013/03/22 15:34:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
[2013/03/22 15:33:55 | 000,516,608 | ---- | C] (AMD) -- C:\windows\SysNative\atieclxx.exe
[2013/03/22 15:33:55 | 000,204,288 | ---- | C] (AMD) -- C:\windows\SysNative\atiesrxx.exe
[2013/03/22 15:33:55 | 000,120,320 | ---- | C] (AMD) -- C:\windows\SysNative\atitmm64.dll
[2013/03/22 15:33:55 | 000,058,880 | ---- | C] (AMD) -- C:\windows\SysNative\coinst.dll
[2013/03/22 15:33:55 | 000,021,504 | ---- | C] (AMD) -- C:\windows\SysNative\atimuixx.dll
[2013/03/22 15:26:22 | 000,000,000 | ---D | C] -- C:\windows\SoftwareDistribution
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013/04/17 12:48:10 | 000,000,830 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2013/04/17 12:42:47 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/04/17 12:42:46 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/04/17 12:39:15 | 000,000,912 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/04/17 12:34:03 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/04/17 12:33:46 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2013/04/17 12:33:39 | 2801,369,088 | -HS- | M] () -- C:\hiberfil.sys
[2013/04/17 12:19:42 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1032813789-689081970-2416060643-1000UA.job
[2013/04/17 10:19:39 | 000,000,856 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1032813789-689081970-2416060643-1000Core.job
[2013/04/15 14:01:57 | 000,516,242 | ---- | M] () -- C:\Users\Owner\Documents\2012 1099.pdf
[2013/04/12 12:38:14 | 000,001,856 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2013/04/11 12:26:01 | 000,061,304 | ---- | M] () -- C:\Users\Owner\g2mdlhlpx.exe
[2013/04/10 11:12:17 | 000,001,196 | ---- | M] () -- C:\Users\Owner\Desktop\HP Scan.lnk
[2013/04/10 08:01:30 | 000,342,680 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2013/04/10 05:41:23 | 000,002,194 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013/04/08 08:47:03 | 000,001,668 | ---- | M] () -- C:\Users\Owner\Desktop\Google Drive.lnk
[2013/04/08 08:40:11 | 000,726,316 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2013/04/08 08:40:11 | 000,624,178 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2013/04/08 08:40:11 | 000,106,522 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2013/04/06 16:15:15 | 000,000,027 | ---- | M] () -- C:\windows\SysNative\drivers\etc\hosts
[2013/04/06 15:38:13 | 000,002,290 | ---- | M] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013/04/02 10:11:43 | 000,002,002 | ---- | M] () -- C:\Users\Public\Desktop\HP Photo Creations.lnk
[2013/03/30 17:08:55 | 647,230,727 | ---- | M] () -- C:\windows\MEMORY.DMP
[2013/03/29 13:33:28 | 000,001,910 | ---- | M] () -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Officejet 6600 (Network).lnk
[2013/03/29 13:30:04 | 000,002,163 | ---- | M] () -- C:\Users\Public\Desktop\HP Officejet 6600.lnk
[2013/03/29 13:30:04 | 000,001,135 | ---- | M] () -- C:\Users\Public\Desktop\Shop for Supplies - HP Officejet 6600.lnk
[2013/03/28 15:07:19 | 000,001,158 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013/03/26 09:13:25 | 000,000,057 | ---- | M] () -- C:\ProgramData\Ament.ini
[2013/03/24 22:25:02 | 000,002,143 | ---- | M] () -- C:\Users\Public\Desktop\Carbonite InfoCenter.lnk
[2013/03/23 21:28:16 | 000,000,000 | -H-- | M] () -- C:\windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2013/03/23 21:23:55 | 000,001,794 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2013/03/23 20:13:00 | 000,001,945 | ---- | M] () -- C:\windows\epplauncher.mif
[2013/03/23 15:26:20 | 000,001,805 | ---- | M] () -- C:\Users\Public\Desktop\Quicken Home & Business 2012.lnk
[2013/03/23 15:25:48 | 000,000,126 | ---- | M] () -- C:\windows\QUICKEN.INI
[2013/03/23 14:55:09 | 000,002,030 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2013/03/23 14:41:41 | 000,001,418 | ---- | M] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2013/03/23 14:28:16 | 000,025,185 | ---- | M] () -- C:\windows\SysWow64\ieuinit.inf
[2013/03/23 14:28:16 | 000,025,185 | ---- | M] () -- C:\windows\SysNative\ieuinit.inf
[2013/03/22 16:31:25 | 000,000,013 | RHS- | M] () -- C:\windows\SysNative\drivers\fbd.sys
[2013/03/22 16:29:19 | 000,108,227 | ---- | M] () -- C:\windows\SysWow64\license.rtf
[2013/03/22 16:29:19 | 000,108,227 | ---- | M] () -- C:\windows\SysNative\license.rtf
[2013/03/22 15:44:51 | 000,000,000 | -H-- | M] () -- C:\windows\SysNative\drivers\Msft_Kernel_SynTP_01009.Wdf
[2013/03/22 15:36:24 | 000,000,000 | ---- | M] () -- C:\windows\ativpsrm.bin
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013/04/15 14:01:56 | 000,516,242 | ---- | C] () -- C:\Users\Owner\Documents\2012 1099.pdf
[2013/04/12 12:38:14 | 000,001,856 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2013/04/12 10:14:21 | 000,000,908 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1032813789-689081970-2416060643-1000UA.job
[2013/04/12 10:14:20 | 000,000,856 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1032813789-689081970-2416060643-1000Core.job
[2013/04/11 12:26:00 | 000,061,304 | ---- | C] () -- C:\Users\Owner\g2mdlhlpx.exe
[2013/04/10 11:12:17 | 000,001,196 | ---- | C] () -- C:\Users\Owner\Desktop\HP Scan.lnk
[2013/04/08 08:47:03 | 000,001,668 | ---- | C] () -- C:\Users\Owner\Desktop\Google Drive.lnk
[2013/04/06 15:32:43 | 000,002,290 | ---- | C] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013/04/06 15:32:43 | 000,002,194 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013/04/04 07:46:58 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2013/04/04 07:46:58 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2013/04/04 07:46:58 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2013/04/04 07:46:58 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2013/04/04 07:46:58 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2013/04/02 10:11:43 | 000,002,002 | ---- | C] () -- C:\Users\Public\Desktop\HP Photo Creations.lnk
[2013/03/29 13:33:28 | 000,001,910 | ---- | C] () -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Officejet 6600 (Network).lnk
[2013/03/29 13:30:04 | 000,002,163 | ---- | C] () -- C:\Users\Public\Desktop\HP Officejet 6600.lnk
[2013/03/29 13:30:04 | 000,001,135 | ---- | C] () -- C:\Users\Public\Desktop\Shop for Supplies - HP Officejet 6600.lnk
[2013/03/28 15:07:19 | 000,001,170 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2013/03/28 15:07:19 | 000,001,158 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013/03/28 14:54:02 | 647,230,727 | ---- | C] () -- C:\windows\MEMORY.DMP
[2013/03/26 09:17:14 | 000,000,962 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I.R.I.S. OCR Registration.lnk
[2013/03/26 09:13:25 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini
[2013/03/24 22:25:02 | 000,002,143 | ---- | C] () -- C:\Users\Public\Desktop\Carbonite InfoCenter.lnk
[2013/03/23 21:28:16 | 000,000,000 | -H-- | C] () -- C:\windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2013/03/23 21:23:55 | 000,001,794 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2013/03/23 21:22:14 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2013/03/23 20:13:00 | 000,001,945 | ---- | C] () -- C:\windows\epplauncher.mif
[2013/03/23 19:56:37 | 000,002,128 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
[2013/03/23 15:26:19 | 000,001,805 | ---- | C] () -- C:\Users\Public\Desktop\Quicken Home & Business 2012.lnk
[2013/03/23 15:24:48 | 000,000,126 | ---- | C] () -- C:\windows\QUICKEN.INI
[2013/03/23 14:55:08 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2013/03/23 14:55:08 | 000,002,030 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2013/03/23 14:52:39 | 000,000,830 | ---- | C] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2013/03/23 14:41:41 | 000,001,418 | ---- | C] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2013/03/23 14:28:16 | 000,025,185 | ---- | C] () -- C:\windows\SysWow64\ieuinit.inf
[2013/03/23 14:28:16 | 000,025,185 | ---- | C] () -- C:\windows\SysNative\ieuinit.inf
[2013/03/23 10:56:19 | 000,000,003 | ---- | C] () -- C:\windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2013/03/23 10:45:50 | 000,000,003 | ---- | C] () -- C:\windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2013/03/22 16:34:06 | 000,001,424 | ---- | C] () -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2013/03/22 16:31:25 | 000,000,013 | RHS- | C] () -- C:\windows\SysNative\drivers\fbd.sys
[2013/03/22 16:30:27 | 000,000,290 | ---- | C] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2013/03/22 16:30:27 | 000,000,272 | ---- | C] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2013/03/22 16:11:36 | 000,000,172 | ---- | C] () -- C:\windows\SysNative\drivers\NortonPCCheckupx64\02000D0.00B\isolate.ini
[2013/03/22 16:01:48 | 000,000,912 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/03/22 16:01:47 | 000,000,908 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/03/22 15:44:51 | 000,000,000 | -H-- | C] () -- C:\windows\SysNative\drivers\Msft_Kernel_SynTP_01009.Wdf
[2013/03/22 15:43:50 | 000,451,072 | ---- | C] () -- C:\windows\SysWow64\ISSRemoveSP.exe
[2013/03/22 15:41:02 | 000,011,438 | ---- | C] () -- C:\windows\SysNative\drivers\RTWaves30.dat
[2013/03/22 15:41:02 | 000,000,064 | ---- | C] () -- C:\windows\SysNative\drivers\rtkhdaud.dat
[2013/03/22 15:38:37 | 000,162,824 | ---- | C] () -- C:\windows\SysNative\GFNEXSrv.exe
[2013/03/22 15:38:37 | 000,152,376 | ---- | C] () -- C:\windows\SysNative\GFNEX64.dll
[2013/03/22 15:38:37 | 000,128,312 | ---- | C] () -- C:\windows\SysWow64\GFNEX.dll
[2013/03/22 15:36:24 | 000,000,000 | ---- | C] () -- C:\windows\ativpsrm.bin
[2013/03/22 15:33:55 | 001,988,768 | ---- | C] () -- C:\windows\SysWow64\atiumdva.cap
[2013/03/22 15:33:55 | 001,987,040 | ---- | C] () -- C:\windows\SysNative\atiumd6a.cap
[2013/03/22 15:33:55 | 000,239,869 | ---- | C] () -- C:\windows\SysNative\atiicdxx.dat
[2013/03/22 15:33:55 | 000,204,952 | ---- | C] () -- C:\windows\SysWow64\ativvsvl.dat
[2013/03/22 15:33:55 | 000,204,952 | ---- | C] () -- C:\windows\SysNative\ativvsvl.dat
[2013/03/22 15:33:55 | 000,204,640 | ---- | C] () -- C:\windows\SysWow64\atiapfxx.blb
[2013/03/22 15:33:55 | 000,204,640 | ---- | C] () -- C:\windows\SysNative\atiapfxx.blb
[2013/03/22 15:33:55 | 000,157,144 | ---- | C] () -- C:\windows\SysWow64\ativvsva.dat
[2013/03/22 15:33:55 | 000,157,144 | ---- | C] () -- C:\windows\SysNative\ativvsva.dat
[2013/03/22 15:33:55 | 000,036,103 | ---- | C] () -- C:\windows\atiogl.xml
[2013/03/22 15:33:55 | 000,003,917 | ---- | C] () -- C:\windows\SysWow64\atipblag.dat
[2013/03/22 15:33:55 | 000,003,917 | ---- | C] () -- C:\windows\SysNative\atipblag.dat
[2013/03/22 15:23:26 | 2801,369,088 | -HS- | C] () -- C:\hiberfil.sys
========== ZeroAccess Check ==========
[2009/07/13 21:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/08 22:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 21:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 18:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 20:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 18:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013/03/30 09:24:53 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\Tific
[2013/03/22 16:37:21 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\Toshiba
[2013/04/04 22:46:14 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\webex
[2013/03/22 16:30:40 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\WinBatch
========== Purity Check ==========
< End of report >