Command prompt was stuck to X: driver, may be it was some special settings by VAIO or I don't know. Than, I took risk and tried something different without asking you:
-Using the notepad's file browser I copied FRST64.exe to X: driver root.
-typed "cd.." ENTER and did this 2 times untill
X:\Windows\system32> was set to X: root.
- Typed FRST64 as X:\>FRST64 then BINGO here is the log below.
Scan result of Farbar Recovery Scan Tool Version: 25-06-2012
Ran by SYSTEM at 28-06-2012 23:37:25
Running from X:\
Windows 7 Professional (X64) OS Language: English(US)
The current controlset is ControlSet001
========================== Registry (Whitelisted) =============
HKLM\...\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup [16395880 2009-11-02] (NVIDIA Corporation)
HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [9636896 2009-12-07] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [1861416 2009-11-02] (Synaptics Incorporated)
HKLM\...\Run: [PSQLLauncher] "C:\Program Files\Protector Suite\launcher.exe" /startup [84744 2009-07-20] (UPEK Inc.)
HKLM\...\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" [171520 2010-01-19] (Sun Microsystems, Inc.)
HKLM\...\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice [2716216 2009-11-16] (ESET)
HKLM\...\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe [166424 2010-05-01] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe [390680 2010-05-01] (Intel Corporation)
HKLM\...\Run: [Persistence] C:\Windows\system32\igfxpers.exe [410136 2010-05-01] (Intel Corporation)
HKLM\...\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h [9569096 2012-03-11] (COMODO)
HKLM-x32\...\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2009-10-02] (Intel Corporation)
HKLM-x32\...\Run: [ISBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe" [320880 2009-08-26] (Sony Corporation)
HKLM-x32\...\Run: [MarketingTools] C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe [26624 2010-01-19] (Sony Corporation)
HKLM-x32\...\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2010-03-17] (Apple Inc.)
HKLM-x32\...\Run: [M-Audio Taskbar Icon] C:\Windows\system32\MAFWTray.exe [x]
HKLM-x32\...\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe" [37888 2010-01-13] (Nullsoft, Inc.)
HKLM-x32\...\Run: [MobileConnect] %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent [2327552 2009-04-20] (Vodafone)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [COMODO] C:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe [213304 2011-11-23] (COMODO)
HKLM-x32\...\Run: [CPA] C:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe [184120 2011-11-23] (COMODO)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [252296 2012-01-17] (Sun Microsystems, Inc.)
HKU\SONY\...\Run: [ABBYY Screenshot Reader Bonus] [x]
HKU\SONY\...\Run: [im4igtyxv3] C:\Users\SONY\im4igtyxv3.exe [x]
HKU\yasemin\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [39408 2010-01-19] (Google Inc.)
Winlogon\Notify\igfxcui: igfxdev.dll (Intel Corporation)
Winlogon\Notify\psfus: C:\Program Files\Protector Suite\psqlpwd.dll (UPEK Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
AppInit_DLLs: C:\Windows\system32\guard64.dll
Tcpip\..\Interfaces\{2FDE7CA3-1672-45BD-9EFE-F8DA40098E18}: [NameServer]216.52.1.33,24.143.246.29
Lsa: [Notification Packages] scecli
C:\Program Files\Protector Suite\psqlpwd.dll
Startup: C:\Users\All Users\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\All Users\Start Menu\Programs\Startup\PDFCreator.lnk
ShortcutTarget: PDFCreator.lnk -> C:\Program Files (x86)\PDFCreator\PDFCreator.exe (pdfforge
http://www.pdfforge.org/)
==================== Services (Whitelisted) ======
2 ABBYY.Licensing.PDFTransformer.Classic.3.0; "C:\Program Files (x86)\ABBYY PDF Transformer 3.0\NetworkLicenseServer.exe" -service [759048 2009-05-14] (ABBYY)
3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [109056 2009-02-06] (ArcSoft Inc.)
2 BcmSqlStartupSvc; "C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe" [30312 2009-02-20] (Microsoft Corporation)
2 CLPSLS; C:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe [1267000 2011-11-23] (COMODO)
2 cmdAgent; "C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe" [2815496 2012-03-11] (COMODO)
3 EhttpSrv; "C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe" [23296 2009-11-16] (ESET)
2 ekrn; "C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe" [735960 2009-11-16] (ESET)
3 MSSQL$MSSMLBIZ; "C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sMSSMLBIZ [29293408 2010-12-10] (Microsoft Corporation)
4 MSSQLServerADHelper; "C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe" [44384 2010-12-10] (Microsoft Corporation)
2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [4948992 2009-07-17] (Native Instruments GmbH)
2 QDLService2kSony; "C:\Program Files (x86)\QUALCOMM\QDLService2k\QDLService2kSony.exe" [330488 2009-12-03] (QUALCOMM, Inc.)
3 Roxio UPnP Renderer 10; "C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe" [313840 2009-08-31] (Sonic Solutions)
2 Roxio Upnp Server 10; "C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe" [362992 2009-08-31] (Sonic Solutions)
2 SampleCollector; "C:\Program Files\Sony\VAIO Care\VCPerfService.exe" "/service" "/sstates" "/sampleinterval=5000" "/procinterval=5" "/dllinterval=120" "/counter=\Processor(_Total)\% Processor Time:1/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:1" "/counter=\Network Interface(*)\Bytes Total/sec:1" "/expandcounter=\Processor Information(*)\Processor Frequency:1" "/expandcounter=\Processor(*)\% Idle Time:1" "/expandcounter=\Processor(*)\% C1 Time:1" "/expandcounter=\Processor(*)\% C2 Time:1" "/expandcounter=\Processor(*)\% C3 Time:1" "/expandcounter=\Processor(*)\% Processor Time:1" "/directory=C:\ProgramData\Sony Corporation\VAIO Care\inteldata" [259192 2011-01-29] (Sony Corporation)
2 UNS; "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" [2314240 2009-10-01] (Intel Corporation)
2 VAIO Event Service; "C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe" [205168 2010-05-28] (Sony Corporation)
3 VAIO Power Management; "C:\Program Files\Sony\VAIO Power Management\SPMService.exe" [571248 2009-11-30] (Sony Corporation)
3 VCService; "C:\Program Files\Sony\VAIO Care\VCService.exe" [44736 2011-02-14] (Sony Corporation)
2 VMCService; "C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe" [9216 2009-04-20] (Vodafone)
2 VSNService; "C:\Program Files\Sony\VAIO Smart Network\VSNService.exe" [845312 2010-08-11] (Sony Corporation)
3 VUAgent; "C:\Program Files\Sony\VAIO Update Common\VUAgent.exe" [1256040 2012-01-13] (Sony Corporation)
========================== Drivers (Whitelisted) =============
3 bbcap; C:\Windows\System32\Drivers\bbcap.sys [4608 2010-08-10] (Windows (R) Codename Longhorn DDK provider)
1 cmderd; C:\Windows\System32\Drivers\cmderd.sys [22696 2012-03-11] (COMODO)
1 cmdGuard; C:\Windows\System32\Drivers\cmdGuard.sys [577824 2012-03-11] (COMODO)
2 eamon; C:\Windows\System32\Drivers\eamon.sys [145336 2009-11-16] (ESET)
1 ehdrv; C:\Windows\System32\Drivers\ehdrv.sys [136584 2009-11-16] (ESET)
2 epfwwfpr; C:\Windows\System32\Drivers\epfwwfpr.sys [123200 2009-12-18] (ESET)
3 EuMusDesignVirtualAudioCableWdm; C:\Windows\System32\DRIVERS\vrtaucbl.sys [66728 2011-08-17] (Eugene V. Muzychenko)
3 hwdatacard; C:\Windows\System32\DRIVERS\ewusbmdm.sys [116864 2009-04-09] (Huawei Technologies Co., Ltd.)
3 MAFW; C:\Windows\System32\Drivers\MAFW.sys [231944 2009-07-29] (Avid Technology, Inc.)
3 qcfilterSny2k; C:\Windows\System32\Drivers\qcfilterSny2k.sys [6400 2009-12-03] (QUALCOMM Incorporated)
3 qcusbnetsny2k; C:\Windows\System32\Drivers\qcusbnetsny2k.sys [240640 2009-12-03] (QUALCOMM Incorporated)
3 qcusbsersny2k; C:\Windows\System32\Drivers\qcusbsersny2k.sys [121216 2009-12-03] (QUALCOMM Incorporated)
2 rimspci; C:\Windows\system32\drivers\rimssne64.sys [93696 2009-10-29] (REDC)
2 risdsnpe; C:\Windows\system32\drivers\risdsne64.sys [76800 2009-10-29] (REDC)
0 shpf; C:\Windows\System32\Drivers\shpf.sys [25120 2009-05-28] (Sony Corporation)
0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2010-05-22] (Duplex Secure Ltd.)
3 UsbserFilt; C:\Windows\System32\DRIVERS\usbser_lowerfltjx64.sys [9216 2011-08-17] (Nokia)
3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [x]
========================== NetSvcs (Whitelisted) ===========
============ One Month Created Files and Folders ==============
2012-06-28 23:37 - 2012-06-28 23:37 - 00000000 ____D C:\FRST
2012-06-27 10:13 - 2012-06-27 10:13 - 00000000 ____D C:\Program Files (x86)\Oracle
2012-06-27 10:13 - 2012-05-04 16:29 - 00227720 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2012-06-26 21:51 - 2012-06-26 21:51 - 00000000 ____D C:\Users\SONY\AppData\Local\COMODO
2012-06-26 21:38 - 2012-06-26 21:39 - 00270024 ____A C:\Windows\Minidump\062712-23368-01.dmp
2012-06-26 19:17 - 2012-06-27 10:18 - 00000000 ____D C:\Users\All Users\CPA_VA
2012-06-26 19:16 - 2012-06-26 19:16 - 00000000 ___HD C:\VritualRoot
2012-06-26 19:16 - 2012-06-26 19:16 - 00000000 ____D C:\Users\Public\Documents\COMODO
2012-06-26 19:13 - 2012-06-28 20:32 - 01474832 ____A C:\Windows\System32\Drivers\sfi.dat
2012-06-26 19:13 - 2012-06-26 21:51 - 00000000 ____D C:\Users\All Users\Comodo
2012-06-26 19:13 - 2012-06-26 19:13 - 00001846 ____A C:\Users\Public\Desktop\COMODO Antivirus.lnk
2012-06-26 19:13 - 2012-06-26 19:13 - 00001045 ____A C:\Users\Public\Desktop\COMODO GeekBuddy.lnk
2012-06-26 19:13 - 2012-06-26 19:13 - 00000000 ____D C:\Program Files\COMODO
2012-06-25 01:11 - 2012-06-25 01:50 - 00000000 ____D C:\sh4ldr
2012-06-25 01:11 - 2012-06-25 01:11 - 00000000 ____D C:\Program Files\Enigma Software Group
2012-06-25 01:10 - 2012-06-25 01:50 - 00000000 ____D C:\Windows\18F97AF04F884494AFE25A5702E142CC.TMP
2012-06-24 09:39 - 2012-06-24 09:40 - 05645445 ____A C:\Users\SONY\Downloads\Norah Jones - Crazy.mp3
2012-06-23 14:01 - 2012-06-23 15:48 - 00106810 ____A C:\Users\SONY\Desktop\killer brass_5.rns
2012-06-23 13:45 - 2012-06-23 13:54 - 00106804 ____A C:\Users\SONY\Desktop\killer brass_4.rns
2012-06-23 13:32 - 2012-06-23 13:40 - 00106802 ____A C:\Users\SONY\Desktop\killer brass_3.rns
2012-06-23 11:31 - 2012-06-23 11:31 - 00106796 ____A C:\Users\SONY\Desktop\killer brass_2.rns
2012-06-23 11:18 - 2012-06-23 11:27 - 00106796 ____A C:\Users\SONY\Desktop\killer brass_1.rns
2012-06-22 13:32 - 2012-06-02 22:19 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-22 13:32 - 2012-06-02 22:19 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-22 13:32 - 2012-06-02 22:19 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-22 13:32 - 2012-06-02 22:19 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-22 13:32 - 2012-06-02 22:19 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-22 13:32 - 2012-06-02 22:15 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-22 13:32 - 2012-06-02 22:15 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-22 13:32 - 2012-06-02 12:19 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-22 13:32 - 2012-06-02 12:15 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-15 22:00 - 2012-06-15 22:00 - 00000000 ____D C:\Users\SONY\AppData\Local\Macromedia
2012-06-13 19:45 - 2012-05-18 01:59 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-06-13 19:45 - 2012-05-18 01:59 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-06-13 19:45 - 2012-05-18 01:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-06-13 19:45 - 2012-05-18 01:55 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-06-13 19:45 - 2012-05-18 01:54 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-06-13 19:45 - 2012-05-18 01:51 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-06-13 19:45 - 2012-05-18 01:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-06-13 19:45 - 2012-05-18 01:47 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-06-13 19:45 - 2012-05-17 22:36 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-06-13 19:45 - 2012-05-17 22:35 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-06-13 19:45 - 2012-05-17 22:33 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-06-13 19:45 - 2012-05-17 22:29 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-06-13 19:45 - 2012-05-17 22:27 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-06-13 19:45 - 2012-05-17 22:25 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-06-13 19:45 - 2012-05-17 22:24 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-06-13 19:45 - 2012-05-17 22:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-06-13 19:44 - 2012-05-18 02:47 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-06-13 19:44 - 2012-05-18 02:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-06-13 19:44 - 2012-05-18 02:06 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-06-13 19:44 - 2012-05-18 01:58 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-06-13 19:44 - 2012-05-18 01:56 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-06-13 19:44 - 2012-05-18 01:55 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-06-13 19:44 - 2012-05-17 23:11 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-06-13 19:44 - 2012-05-17 22:48 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-06-13 19:44 - 2012-05-17 22:45 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-06-13 19:44 - 2012-05-17 22:35 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-06-13 19:44 - 2012-05-17 22:31 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-06-13 19:44 - 2012-05-17 22:29 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-06-13 18:00 - 2012-05-04 11:06 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-06-13 18:00 - 2012-05-04 10:03 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-06-13 18:00 - 2012-05-04 10:03 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-06-13 18:00 - 2012-05-01 05:40 - 00209920 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-06-13 18:00 - 2012-04-26 05:41 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-06-13 18:00 - 2012-04-26 05:41 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-06-13 18:00 - 2012-04-26 05:34 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-06-13 17:59 - 2012-05-15 01:32 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-06-13 17:59 - 2012-04-28 03:55 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-06-13 17:59 - 2012-04-24 05:37 - 01462272 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-06-13 17:59 - 2012-04-24 05:37 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-06-13 17:59 - 2012-04-24 05:37 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-06-13 17:59 - 2012-04-24 04:36 - 01158656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-06-13 17:59 - 2012-04-24 04:36 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-06-13 17:59 - 2012-04-24 04:36 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-06-13 17:59 - 2012-04-07 12:31 - 03216384 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-06-13 17:59 - 2012-04-07 11:26 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2012-06-11 20:00 - 2012-06-11 20:00 - 00011416 ____A C:\Users\SONY\Desktop\deep buzz.fxb
2012-06-06 18:32 - 2012-06-06 18:36 - 28820388 ____A C:\Users\SONY\Downloads\Neil Young _ Crazy Horse_ Oh Susannah.flv
2012-06-06 18:07 - 2012-06-06 18:07 - 00653424 ____A C:\Users\SONY\Desktop\bu ne lan.png
2012-05-30 17:26 - 2012-05-30 17:46 - 128389120 ____A C:\Users\SONY\Downloads\111472.mpg
2012-05-30 17:26 - 2012-05-30 17:42 - 98668544 ____A C:\Users\SONY\Downloads\fractal movie.mpg
2012-05-30 17:22 - 2012-05-30 17:23 - 06127616 ____A C:\Users\SONY\Downloads\Fractal_Animations-3.mp4
2012-05-30 17:21 - 2012-05-30 17:21 - 02869959 ____A C:\Users\SONY\Downloads\Fractal_Animations.flv
2012-05-30 17:20 - 2012-05-30 17:20 - 06127616 ____A C:\Users\SONY\Downloads\Fractal_Animations-2.mp4
2012-05-30 17:18 - 2012-05-30 17:18 - 06127616 ____A C:\Users\SONY\Downloads\Fractal_Animations-1.mp4
2012-05-30 17:07 - 2012-05-30 17:20 - 163556292 ____A C:\Users\SONY\Downloads\Fractal_Animations.mp4
============ 3 Months Modified Files and Folders =============
2012-06-28 23:37 - 2012-06-28 23:37 - 00000000 ____D C:\FRST
2012-06-28 20:32 - 2012-06-26 19:13 - 01474832 ____A C:\Windows\System32\Drivers\sfi.dat
2012-06-28 20:32 - 2010-04-26 15:34 - 01997099 ____A C:\Windows\WindowsUpdate.log
2012-06-28 20:29 - 2009-07-14 04:45 - 00009920 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-06-28 20:29 - 2009-07-14 04:45 - 00009920 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-06-28 20:28 - 2009-07-14 05:13 - 00799114 ____A C:\Windows\System32\PerfStringBackup.INI
2012-06-28 20:22 - 2010-01-19 11:13 - 00000908 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2012-06-28 20:21 - 2010-11-07 19:50 - 00213914 ____A C:\Windows\setupact.log
2012-06-28 20:21 - 2010-08-10 09:14 - 00000031 ____A C:\Windows\System32\bbcap.err
2012-06-28 20:21 - 2009-07-14 05:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-06-28 19:08 - 2010-01-19 11:13 - 00000912 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2012-06-27 21:00 - 2010-01-19 11:47 - 00000000 ____D C:\Program Files (x86)\OneClickInternet
2012-06-27 20:59 - 2011-12-17 07:55 - 00000000 ____D C:\Users\SONY\AppData\Roaming\Nokia Suite
2012-06-27 20:59 - 2011-12-17 07:55 - 00000000 ____D C:\Users\SONY\AppData\Roaming\Nokia
2012-06-27 20:59 - 2011-12-17 07:52 - 00000000 ____D C:\Users\SONY\AppData\Local\NokiaAccount
2012-06-27 20:59 - 2011-12-17 07:48 - 00000000 ____D C:\Program Files (x86)\Nokia
2012-06-27 20:57 - 2011-03-15 22:51 - 00000000 ____D C:\Program Files (x86)\FlashGet
2012-06-27 20:43 - 2010-05-01 16:48 - 00000000 ____D C:\Users\SONY\AppData\Roaming\vlc
2012-06-27 10:18 - 2012-06-26 19:17 - 00000000 ____D C:\Users\All Users\CPA_VA
2012-06-27 10:13 - 2012-06-27 10:13 - 00000000 ____D C:\Program Files (x86)\Oracle
2012-06-27 10:12 - 2012-05-15 13:19 - 00174064 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2012-06-27 10:12 - 2012-05-15 13:19 - 00174064 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2012-06-27 10:12 - 2010-05-01 12:09 - 00000000 ____D C:\Program Files (x86)\Java
2012-06-27 06:27 - 2011-01-23 13:37 - 00014090 ____A C:\Windows\PFRO.log
2012-06-26 21:51 - 2012-06-26 21:51 - 00000000 ____D C:\Users\SONY\AppData\Local\COMODO
2012-06-26 21:51 - 2012-06-26 19:13 - 00000000 ____D C:\Users\All Users\Comodo
2012-06-26 21:39 - 2012-06-26 21:38 - 00270024 ____A C:\Windows\Minidump\062712-23368-01.dmp
2012-06-26 21:38 - 2010-06-21 22:42 - 00000000 ____D C:\Windows\Minidump
2012-06-26 19:16 - 2012-06-26 19:16 - 00000000 ___HD C:\VritualRoot
2012-06-26 19:16 - 2012-06-26 19:16 - 00000000 ____D C:\Users\Public\Documents\COMODO
2012-06-26 19:13 - 2012-06-26 19:13 - 00001846 ____A C:\Users\Public\Desktop\COMODO Antivirus.lnk
2012-06-26 19:13 - 2012-06-26 19:13 - 00001045 ____A C:\Users\Public\Desktop\COMODO GeekBuddy.lnk
2012-06-26 19:13 - 2012-06-26 19:13 - 00000000 ____D C:\Program Files\COMODO
2012-06-25 01:50 - 2012-06-25 01:11 - 00000000 ____D C:\sh4ldr
2012-06-25 01:50 - 2012-06-25 01:10 - 00000000 ____D C:\Windows\18F97AF04F884494AFE25A5702E142CC.TMP
2012-06-25 01:11 - 2012-06-25 01:11 - 00000000 ____D C:\Program Files\Enigma Software Group
2012-06-24 23:30 - 2010-04-26 15:35 - 00000000 ____D C:\users\SONY
2012-06-24 09:40 - 2012-06-24 09:39 - 05645445 ____A C:\Users\SONY\Downloads\Norah Jones - Crazy.mp3
2012-06-23 20:04 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\rescache
2012-06-23 15:48 - 2012-06-23 14:01 - 00106810 ____A C:\Users\SONY\Desktop\killer brass_5.rns
2012-06-23 13:54 - 2012-06-23 13:45 - 00106804 ____A C:\Users\SONY\Desktop\killer brass_4.rns
2012-06-23 13:40 - 2012-06-23 13:32 - 00106802 ____A C:\Users\SONY\Desktop\killer brass_3.rns
2012-06-23 11:31 - 2012-06-23 11:31 - 00106796 ____A C:\Users\SONY\Desktop\killer brass_2.rns
2012-06-23 11:27 - 2012-06-23 11:18 - 00106796 ____A C:\Users\SONY\Desktop\killer brass_1.rns
2012-06-22 12:50 - 2009-07-14 05:08 - 00032620 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-06-15 22:00 - 2012-06-15 22:00 - 00000000 ____D C:\Users\SONY\AppData\Local\Macromedia
2012-06-15 05:18 - 2012-04-02 18:25 - 00426184 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-06-15 05:18 - 2011-05-16 19:08 - 00070344 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-06-13 20:04 - 2009-07-14 04:45 - 00426488 ____A C:\Windows\System32\FNTCACHE.DAT
2012-06-13 20:01 - 2010-01-19 11:20 - 00000000 ____D C:\Users\All Users\Microsoft Help
2012-06-13 19:51 - 2010-04-28 20:57 - 58957832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-06-11 20:00 - 2012-06-11 20:00 - 00011416 ____A C:\Users\SONY\Desktop\deep buzz.fxb
2012-06-06 18:36 - 2012-06-06 18:32 - 28820388 ____A C:\Users\SONY\Downloads\Neil Young _ Crazy Horse_ Oh Susannah.flv
2012-06-06 18:32 - 2012-05-23 18:37 - 00000000 ____D C:\Users\SONY\Downloads\ali bilge
2012-06-06 18:07 - 2012-06-06 18:07 - 00653424 ____A C:\Users\SONY\Desktop\bu ne lan.png
2012-06-04 11:50 - 2009-12-14 22:20 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2012-06-04 11:21 - 2010-09-04 16:05 - 00001185 ____A C:\Users\Public\Desktop\GOM Player.lnk
2012-06-02 22:19 - 2012-06-22 13:32 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-02 22:19 - 2012-06-22 13:32 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-02 22:19 - 2012-06-22 13:32 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-02 22:19 - 2012-06-22 13:32 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-02 22:19 - 2012-06-22 13:32 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-02 22:15 - 2012-06-22 13:32 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-02 22:15 - 2012-06-22 13:32 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-02 12:19 - 2012-06-22 13:32 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-02 12:15 - 2012-06-22 13:32 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-01 22:12 - 2010-06-26 21:18 - 00000000 ____D C:\Users\yasemin\AppData\Roaming\Adobe
2012-06-01 05:40 - 2010-06-02 19:49 - 00734201 ____A C:\test.xml
2012-05-30 17:46 - 2012-05-30 17:26 - 128389120 ____A C:\Users\SONY\Downloads\111472.mpg
2012-05-30 17:42 - 2012-05-30 17:26 - 98668544 ____A C:\Users\SONY\Downloads\fractal movie.mpg
2012-05-30 17:23 - 2012-05-30 17:22 - 06127616 ____A C:\Users\SONY\Downloads\Fractal_Animations-3.mp4
2012-05-30 17:21 - 2012-05-30 17:21 - 02869959 ____A C:\Users\SONY\Downloads\Fractal_Animations.flv
2012-05-30 17:20 - 2012-05-30 17:20 - 06127616 ____A C:\Users\SONY\Downloads\Fractal_Animations-2.mp4
2012-05-30 17:20 - 2012-05-30 17:07 - 163556292 ____A C:\Users\SONY\Downloads\Fractal_Animations.mp4
2012-05-30 17:18 - 2012-05-30 17:18 - 06127616 ____A C:\Users\SONY\Downloads\Fractal_Animations-1.mp4
2012-05-28 18:20 - 2012-05-28 18:20 - 04799180 ____A C:\Users\SONY\Downloads\olm bak git 2.flv
2012-05-21 18:36 - 2010-09-08 22:41 - 00013312 ____A C:\Users\SONY\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-05-21 18:20 - 2012-05-21 18:20 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2012-05-21 18:20 - 2012-05-21 18:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-05-20 22:12 - 2012-05-20 22:12 - 01907983 ____A C:\Users\SONY\Desktop\bassorg.mp3
2012-05-20 22:10 - 2012-05-20 22:00 - 21025424 ____A C:\Users\SONY\Desktop\arzbasss Rendered.wav
2012-05-20 19:46 - 2012-05-20 19:46 - 00007457 ____A C:\Users\SONY\Downloads\Bwv_564_Adagio.mid
2012-05-19 21:46 - 2012-05-19 21:46 - 20275422 ____A C:\Users\SONY\Downloads\1205yalandunyaka.mp4
2012-05-19 12:15 - 2012-05-19 12:15 - 00360956 ____A C:\Users\SONY\Downloads\best_blacklist_s3_s60_3_and_5_v_4_00_sw.sisx
2012-05-19 11:27 - 2012-05-19 11:19 - 09841937 ____A C:\Users\SONY\Downloads\Laura-Branigan-A-Self-Control.mp3
2012-05-18 02:47 - 2012-06-13 19:44 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-05-18 02:16 - 2012-06-13 19:44 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-05-18 02:06 - 2012-06-13 19:44 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-05-18 01:59 - 2012-06-13 19:45 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-05-18 01:59 - 2012-06-13 19:45 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-05-18 01:58 - 2012-06-13 19:45 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-05-18 01:58 - 2012-06-13 19:44 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-05-18 01:56 - 2012-06-13 19:44 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-05-18 01:55 - 2012-06-13 19:45 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-05-18 01:55 - 2012-06-13 19:44 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-05-18 01:54 - 2012-06-13 19:45 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-05-18 01:51 - 2012-06-13 19:45 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-05-18 01:51 - 2012-06-13 19:45 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-05-18 01:47 - 2012-06-13 19:45 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-05-17 23:11 - 2012-06-13 19:44 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-05-17 22:48 - 2012-06-13 19:44 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-05-17 22:45 - 2012-06-13 19:44 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-05-17 22:36 - 2012-06-13 19:45 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-05-17 22:35 - 2012-06-13 19:45 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-05-17 22:35 - 2012-06-13 19:44 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-05-17 22:33 - 2012-06-13 19:45 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-05-17 22:31 - 2012-06-13 19:44 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-05-17 22:29 - 2012-06-13 19:45 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-05-17 22:29 - 2012-06-13 19:44 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-05-17 22:27 - 2012-06-13 19:45 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-05-17 22:25 - 2012-06-13 19:45 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-05-17 22:24 - 2012-06-13 19:45 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-05-17 22:20 - 2012-06-13 19:45 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-05-15 17:29 - 2010-06-26 21:18 - 00000000 ____D C:\Users\yasemin\AppData\Local\Google
2012-05-15 16:02 - 2012-05-15 16:02 - 08744608 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2012-05-15 13:18 - 2012-05-15 13:19 - 00476960 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\npdeployJava1.dll
2012-05-15 13:02 - 2010-06-26 21:13 - 00113056 ____A C:\Users\yasemin\AppData\Local\GDIPFONTCACHEV1.DAT
2012-05-15 01:32 - 2012-06-13 17:59 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-05-13 22:07 - 2012-05-13 22:03 - 06132549 ____A C:\Users\SONY\Downloads\Richard-Cheese-A-Creep.mp3
2012-05-13 16:56 - 2012-05-13 16:44 - 02512607 ____A C:\Users\SONY\Downloads\Bob-marley-A-out-of-space.mp3
2012-05-13 16:56 - 2012-05-13 16:24 - 07180839 ____A C:\Users\SONY\Downloads\The-Prodigy-A-Out-Of-Space.mp3
2012-05-13 10:57 - 2009-07-14 07:47 - 00000000 ____D C:\Program Files\Windows Journal
2012-05-12 22:48 - 2012-05-12 22:47 - 02854660 ____A C:\Users\SONY\Downloads\bach_adagio_bwv_564_prp_112010.mp3
2012-05-12 22:39 - 2012-05-12 22:39 - 00006693 ____A C:\Users\SONY\Downloads\Bwv_564_Adagio.gp3
2012-05-12 22:11 - 2012-04-08 11:02 - 04445154 ____A C:\Users\SONY\Downloads\Tiny-Tim-Tip-toe-Thru-_-The-Tulips-With-Me.mp3
2012-05-08 21:50 - 2012-05-08 21:50 - 00310636 ____A C:\Users\SONY\Desktop\jazz imp.wav.asd
2012-05-08 21:46 - 2012-05-08 21:46 - 00311604 ____A C:\Users\SONY\Desktop\jazz imp.mp3.asd
2012-05-07 22:58 - 2012-05-07 22:55 - 05476646 ____A C:\Users\SONY\Downloads\London-Classical-Players-Roger-Norrington-BrahmsSymphony-No-3-in-F-major-Op-90-III-Poco-allegretto.mp3
2012-05-07 22:56 - 2012-05-07 22:53 - 06052801 ____A C:\Users\SONY\Downloads\Herbert-Von-Karajan-Berlin-Philharmonic-Orchestra-Brahms-Symphony-3-In-F-Op-90-3-Poco-Allegretto.mp3
2012-05-07 22:54 - 2010-05-01 17:26 - 00000000 ____D C:\Users\SONY\AppData\Roaming\Azureus
2012-05-07 17:58 - 2010-01-19 11:12 - 00000000 ____D C:\Users\All Users\Adobe
2012-05-07 17:52 - 2010-04-26 18:34 - 00000000 ____D C:\Users\SONY\AppData\Roaming\Adobe
2012-05-07 17:49 - 2012-05-07 17:49 - 00002019 ____A C:\Users\Public\Desktop\Adobe Reader X.lnk
2012-05-07 17:48 - 2010-05-01 15:06 - 00000000 ____D C:\Users\SONY\AppData\Local\Adobe
2012-05-07 17:48 - 2010-01-19 11:12 - 00000000 ____D C:\Program Files (x86)\Adobe
2012-05-07 17:39 - 2010-04-26 15:35 - 00113056 ____A C:\Users\SONY\AppData\Local\GDIPFONTCACHEV1.DAT
2012-05-05 18:09 - 2010-01-19 11:13 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2012-05-05 17:03 - 2012-05-05 16:54 - 07469082 ____A C:\Users\SONY\Downloads\Cake-A-I-Will-Survive.mp3
2012-05-04 16:29 - 2012-06-27 10:13 - 00227720 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2012-05-04 16:29 - 2010-04-28 21:19 - 00687504 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2012-05-04 11:06 - 2012-06-13 18:00 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-05-04 10:03 - 2012-06-13 18:00 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-05-04 10:03 - 2012-06-13 18:00 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-05-03 20:10 - 2012-05-03 20:10 - 00000000 ____D C:\Users\SONY\Downloads\USB_-_Virtual_Analog_Vol.3_-_Nord_Lead_1_CD
2012-05-01 05:40 - 2012-06-13 18:00 - 00209920 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-04-29 15:01 - 2012-04-29 14:29 - 194820392 ____A C:\Users\SONY\Downloads\15Z8I46q_Jodorowsky & Gimenez - The Metabarons - complete - (v1-17).cbr
2012-04-29 14:57 - 2012-04-29 14:27 - 123884945 ____A C:\Users\SONY\Downloads\TwJIB5jw_Jodorowsky & Janjetov - [Before] The Incal - Complete.cbr
2012-04-29 14:25 - 2010-05-01 17:26 - 00000000 ____D C:\Program Files (x86)\Vuze
2012-04-29 11:26 - 2012-04-29 11:26 - 00000000 ____D C:\Users\All Users\Mozilla
2012-04-29 11:26 - 2012-04-29 11:26 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2012-04-29 11:26 - 2010-05-01 15:03 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2012-04-28 03:55 - 2012-06-13 17:59 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-04-26 18:26 - 2011-01-18 21:44 - 00000000 ___RD C:\Users\SONY\Desktop\church organ Project
2012-04-26 05:41 - 2012-06-13 18:00 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-04-26 05:41 - 2012-06-13 18:00 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-04-26 05:34 - 2012-06-13 18:00 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-04-24 05:37 - 2012-06-13 17:59 - 01462272 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-04-24 05:37 - 2012-06-13 17:59 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-04-24 05:37 - 2012-06-13 17:59 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-04-24 04:36 - 2012-06-13 17:59 - 01158656 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-04-24 04:36 - 2012-06-13 17:59 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-04-24 04:36 - 2012-06-13 17:59 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-04-23 10:39 - 2012-04-23 10:39 - 00011416 ____A C:\Users\SONY\Desktop\organ.fxb
2012-04-22 21:48 - 2012-04-22 21:48 - 01538856 ____A C:\Users\SONY\Desktop\organ2 Rendered.mp3
2012-04-21 17:20 - 2012-04-21 17:20 - 00512000 ____A C:\Users\SONY\Downloads\Charles.Darwin.and.the.Tree.of.Life.LAP.
www.Warezme.org.part1.rar.part
2012-04-21 11:37 - 2012-04-21 11:33 - 70877240 ____A C:\Users\SONY\Downloads\PART 1_ David Attenborough on Darwin - by Nature Video.mp4
2012-04-19 15:24 - 2011-12-24 10:33 - 00000000 ___RD C:\Users\yasemin\Virtual Machines
2012-04-18 15:53 - 2012-04-18 15:52 - 05546112 ____A C:\Users\SONY\Downloads\Joe-Cocker-A-Summer-In-The-City.mp3
2012-04-15 11:11 - 2010-04-26 18:25 - 00000000 ____D C:\Users\SONY\AppData\Local\Google
2012-04-15 07:39 - 2012-04-14 23:15 - 00033436 ____A C:\Users\SONY\Desktop\killer wobz_.mp3
2012-04-15 07:37 - 2012-04-14 23:16 - 07696675 ____A C:\Users\SONY\Desktop\killer wobzz.mp3
2012-04-14 23:12 - 2012-04-14 22:58 - 33550136 ____A C:\Users\SONY\Desktop\killer wobz.wav
2012-04-14 21:47 - 2012-04-14 21:47 - 02162688 ____A C:\Users\SONY\Desktop\killer wob Rendered.wav
2012-04-10 16:43 - 2012-04-10 16:38 - 05586442 ____A C:\Users\SONY\Desktop\wobbly.mp3
2012-04-09 17:27 - 2012-04-09 17:27 - 00281560 ____A C:\Windows\Minidump\040912-24897-01.dmp
2012-04-08 20:39 - 2011-02-19 10:18 - 00094200 ____A C:\Users\SONY\Desktop\DUBSTEP2.rns
2012-04-07 12:31 - 2012-06-13 17:59 - 03216384 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-04-07 11:26 - 2012-06-13 17:59 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2012-04-04 18:35 - 2011-06-01 20:43 - 00000000 ____D C:\Users\SONY\AppData\Local\ABBYY
2012-04-04 18:22 - 2012-04-04 18:15 - 00135971 ____A C:\Users\SONY\Desktop\background.pptx
2012-04-03 20:50 - 2012-04-03 20:50 - 00000032 ____A C:\Windows\SysWOW64\w3data.vss
2012-04-03 20:50 - 2012-04-03 20:50 - 00000032 ____A C:\Windows\SysWOW64\msvcsv60.dll
2012-04-03 20:50 - 2012-04-03 20:50 - 00000032 ____A C:\Windows\msocreg32.dat
2012-04-03 20:45 - 2012-04-03 20:42 - 00000000 ____D C:\Program Files (x86)\VstPlugins
2012-04-01 09:23 - 2012-04-01 09:23 - 00000000 ____D C:\Users\SONY\AppData\Local\Apps\2.0
2012-04-01 07:57 - 2010-04-28 21:23 - 00000000 ____D C:\Update
2012-03-31 23:31 - 2012-03-21 20:22 - 02834745 ____A C:\Users\SONY\Downloads\Vaya-Con-Dios-Neh-Nah-a.mp3
ZeroAccess:
C:\Windows\Installer\{90606adb-b9e2-f30b-33c5-be807af1b038}
C:\Windows\Installer\{90606adb-b9e2-f30b-33c5-be807af1b038}\@
C:\Windows\Installer\{90606adb-b9e2-f30b-33c5-be807af1b038}\L
C:\Windows\Installer\{90606adb-b9e2-f30b-33c5-be807af1b038}\U
ZeroAccess:
C:\Users\SONY\AppData\Local\{90606adb-b9e2-f30b-33c5-be807af1b038}
C:\Users\SONY\AppData\Local\{90606adb-b9e2-f30b-33c5-be807af1b038}\@
C:\Users\SONY\AppData\Local\{90606adb-b9e2-f30b-33c5-be807af1b038}\L
C:\Users\SONY\AppData\Local\{90606adb-b9e2-f30b-33c5-be807af1b038}\U
========================= Known DLLs (Whitelisted) ============
========================= Bamital & volsnap Check ============
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
========================= Memory info ======================
Percentage of memory in use: 16%
Total physical RAM: 3766.88 MB
Available physical RAM: 3136.23 MB
Total Pagefile: 3765.03 MB
Available Pagefile: 3127.47 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB
======================= Partitions =========================
1 Drive c: () (Fixed) (Total:164.32 GB) (Free:19.1 GB) NTFS
2 Drive d: (data) (Fixed) (Total:122.07 GB) (Free:11.63 GB) NTFS
3 Drive f: (Recovery) (Fixed) (Total:11.6 GB) (Free:0.81 GB) NTFS
5 Drive h: (KINGSTON) (Removable) (Total:7.2 GB) (Free:7.2 GB) FAT32
6 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
7 Drive y: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 298 GB 1024 KB
Disk 1 Online 7389 MB 0 B
Partitions of Disk 0:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Recovery 11 GB 1024 KB
Partition 2 Primary 100 MB 11 GB
Partition 3 Primary 164 GB 11 GB
Partition 0 Extended 122 GB 176 GB
Partition 4 Logical 122 GB 176 GB
======================================================================================================
Disk: 0
Partition 1
Type : 27
Hidden: Yes
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 F Recovery NTFS Partition 11 GB Healthy Hidden
======================================================================================================
Disk: 0
Partition 2
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 Y System Rese NTFS Partition 100 MB Healthy
======================================================================================================
Disk: 0
Partition 3
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C NTFS Partition 164 GB Healthy
======================================================================================================
Disk: 0
Partition 4
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 D data NTFS Partition 122 GB Healthy
======================================================================================================
Partitions of Disk 1:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 7388 MB 31 KB
======================================================================================================
Disk: 1
Partition 1
Type : 0B
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 5 H KINGSTON FAT32 Removable 7388 MB Healthy
======================================================================================================
==========================================================
Last Boot: 2012-06-28 13:17
======================= End Of Log ==========================